|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 18, 2026, 4:01 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 251491 | 9.3 | 危険 | Steve Baker | - | PLIB の util/ulError.cxx 内の ulSetError 関数におけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2011-4620 | 2012-01-5 16:21 | 2011-12-31 | Show | GitHub Exploit DB Packet Storm |
| 251492 | 1.2 | 注意 | Celery | - | virtualenv の virtualenv.py における任意のファイルを上書きされる脆弱性 |
CWE-59
リンク解釈の問題 |
CVE-2011-4617 | 2012-01-5 16:20 | 2011-12-31 | Show | GitHub Exploit DB Packet Storm |
| 251493 | 7.5 | 危険 | Novell | - | Novell XTier framework の HTTP サーバにおける整数オーバーフローの脆弱性 |
CWE-189
数値処理の問題 |
CVE-2011-1710 | 2012-01-5 16:19 | 2011-12-31 | Show | GitHub Exploit DB Packet Storm |
| 251494 | 4.3 | 警告 | JJWDesign | - | PHP Booking Calendar の details_view.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-5045 | 2012-01-5 16:14 | 2011-12-30 | Show | GitHub Exploit DB Packet Storm |
| 251495 | 7.2 | 危険 | SopCast | - | SopCast における任意のコードを実行される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2011-5044 | 2012-01-5 16:13 | 2011-12-30 | Show | GitHub Exploit DB Packet Storm |
| 251496 | 4.3 | 警告 | Tomatosoft | - | TomatoSoft Free Mp3 Player におけるサービス運用妨害 (アプリケーションクラッシュ) の脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2011-5043 | 2012-01-5 16:12 | 2011-12-30 | Show | GitHub Exploit DB Packet Storm |
| 251497 | 4.3 | 警告 | gphemsley | - | SASHA の inc/lib/lib.base.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-5042 | 2012-01-5 16:11 | 2011-12-30 | Show | GitHub Exploit DB Packet Storm |
| 251498 | 4.3 | 警告 | PulseCMS | - | Pulse Pro CMS におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-5041 | 2012-01-5 16:10 | 2011-12-30 | Show | GitHub Exploit DB Packet Storm |
| 251499 | 4.3 | 警告 | Infoproject | - | Infoproject Biznis Heroj におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-5040 | 2012-01-5 14:27 | 2011-12-30 | Show | GitHub Exploit DB Packet Storm |
| 251500 | 7.5 | 危険 | Infoproject | - | Infoproject Biznis Heroj における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-5039 | 2012-01-5 14:26 | 2011-12-30 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 18, 2026, 4:12 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 266431 | 8.8 |
HIGH
Network |
debian mercurial |
debian_linux mercurial |
The convert extension in Mercurial before 3.8 might allow context-dependent attackers to execute arbitrary code via a crafted git repository name. |
CWE-284
Improper Access Control |
CVE-2016-3105 | 2024-11-21 11:49 | 2016-05-10 | Show | GitHub Exploit DB Packet Storm |
| 266432 | 4.6 |
MEDIUM
Physics |
canonical linux novell |
ubuntu_linux linux_kernel suse_linux_enterprise_module_for_public_cloud suse_linux_enterprise_server suse_linux_enterprise_live_patching suse_linux_enterprise_real_time_extension su… |
The digi_port_init function in drivers/usb/serial/digi_acceleport.c in the Linux kernel before 4.5.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and s… |
NVD-CWE-Other
|
CVE-2016-3140 | 2024-11-21 11:49 | 2016-05-2 | Show | GitHub Exploit DB Packet Storm |
| 266433 | 4.6 |
MEDIUM
Physics |
linux canonical novell |
linux_kernel ubuntu_linux suse_linux_enterprise_module_for_public_cloud suse_linux_enterprise_server suse_linux_enterprise_live_patching suse_linux_enterprise_real_time_extension su… |
The acm_probe function in drivers/usb/class/cdc-acm.c in the Linux kernel before 4.5.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system crash) v… |
NVD-CWE-Other
|
CVE-2016-3138 | 2024-11-21 11:49 | 2016-05-2 | Show | GitHub Exploit DB Packet Storm |
| 266434 | 4.6 |
MEDIUM
Physics |
novell canonical linux |
suse_linux_enterprise_module_for_public_cloud suse_linux_enterprise_server suse_linux_enterprise_live_patching suse_linux_enterprise_real_time_extension suse_linux_enterprise_desktop s… |
drivers/usb/serial/cypress_m8.c in the Linux kernel before 4.5.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system crash) via a USB device withou… |
NVD-CWE-Other
|
CVE-2016-3137 | 2024-11-21 11:49 | 2016-05-2 | Show | GitHub Exploit DB Packet Storm |
| 266435 | 4.6 |
MEDIUM
Physics |
linux novell canonical |
linux_kernel suse_linux_enterprise_module_for_public_cloud suse_linux_enterprise_server suse_linux_enterprise_live_patching suse_linux_enterprise_desktop suse_linux_enterprise_real_tim… |
The mct_u232_msr_to_state function in drivers/usb/serial/mct_u232.c in the Linux kernel before 4.5.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and s… |
NVD-CWE-Other
|
CVE-2016-3136 | 2024-11-21 11:49 | 2016-05-2 | Show | GitHub Exploit DB Packet Storm |
| 266436 | 5.5 |
MEDIUM
Local |
novell canonical linux |
suse_linux_enterprise_module_for_public_cloud suse_linux_enterprise_server suse_linux_enterprise_live_patching suse_linux_enterprise_real_time_extension suse_linux_enterprise_desktop s… |
The IPv4 implementation in the Linux kernel before 4.5.2 mishandles destruction of device objects, which allows guest OS users to cause a denial of service (host OS networking outage) by arranging fo… |
CWE-399
Resource Management Errors |
CVE-2016-3156 | 2024-11-21 11:49 | 2016-04-28 | Show | GitHub Exploit DB Packet Storm |
| 266437 | 7.8 |
HIGH
Local |
linux canonical |
linux_kernel ubuntu_linux |
Integer overflow in the xt_alloc_table_info function in net/netfilter/x_tables.c in the Linux kernel through 4.5.2 on 32-bit platforms allows local users to gain privileges or cause a denial of servi… |
CWE-189 NVD-CWE-Other Numeric Errors |
CVE-2016-3135 | 2024-11-21 11:49 | 2016-04-28 | Show | GitHub Exploit DB Packet Storm |
| 266438 | 4.6 |
MEDIUM
Physics |
novell linux |
suse_linux_enterprise_module_for_public_cloud suse_linux_enterprise_server suse_linux_enterprise_live_patching suse_linux_enterprise_real_time_extension suse_linux_enterprise_desktop s… |
The wacom_probe function in drivers/input/tablet/wacom_sys.c in the Linux kernel before 3.17 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system cr… |
NVD-CWE-Other
|
CVE-2016-3139 | 2024-11-21 11:49 | 2016-04-28 | Show | GitHub Exploit DB Packet Storm |
| 266439 | 8.4 |
HIGH
Local |
novell linux |
suse_linux_enterprise_module_for_public_cloud suse_linux_enterprise_server suse_linux_enterprise_live_patching suse_linux_enterprise_desktop suse_linux_enterprise_real_time_extension s… |
The netfilter subsystem in the Linux kernel through 4.5.2 does not validate certain offset fields, which allows local users to gain privileges or cause a denial of service (heap memory corruption) vi… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2016-3134 | 2024-11-21 11:49 | 2016-04-28 | Show | GitHub Exploit DB Packet Storm |
| 266440 | 9.8 |
CRITICAL
Network |
apache | struts | XSLTResult in Apache Struts 2.x before 2.3.20.2, 2.3.24.x before 2.3.24.2, and 2.3.28.x before 2.3.28.1 allows remote attackers to execute arbitrary code via the stylesheet location parameter. |
CWE-20
Improper Input Validation |
CVE-2016-3082 | 2024-11-21 11:49 | 2016-04-26 | Show | GitHub Exploit DB Packet Storm |