|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 19, 2026, 2 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 251651 | 5 | 警告 | Parallels | - | Parallels Plesk Small Business Panel における重要な情報を取得される脆弱性 |
CWE-200
情報漏えい |
CVE-2011-4760 | 2011-12-20 11:31 | 2011-12-16 | Show | GitHub Exploit DB Packet Storm |
| 251652 | 5 | 警告 | Parallels | - | Parallels Plesk Small Business Panel における重要な情報を取得される脆弱性 |
CWE-200
情報漏えい |
CVE-2011-4759 | 2011-12-20 11:30 | 2011-12-16 | Show | GitHub Exploit DB Packet Storm |
| 251653 | 5 | 警告 | Parallels | - | Parallels Plesk Small Business Panel における重要な情報を取得される脆弱性 |
CWE-310
暗号の問題 |
CVE-2011-4758 | 2011-12-20 11:30 | 2011-12-16 | Show | GitHub Exploit DB Packet Storm |
| 251654 | 10 | 危険 | Parallels | - | Parallels Plesk Small Business Panel における認証を回避される脆弱性 |
CWE-255
証明書・パスワード管理 |
CVE-2011-4757 | 2011-12-20 11:29 | 2011-12-16 | Show | GitHub Exploit DB Packet Storm |
| 251655 | 5 | 警告 | Parallels | - | Parallels Plesk Small Business Panel における重要な情報を取得される脆弱性 |
CWE-200
情報漏えい |
CVE-2011-4756 | 2011-12-20 11:28 | 2011-12-16 | Show | GitHub Exploit DB Packet Storm |
| 251656 | 10 | 危険 | Parallels | - | Parallels Plesk Small Business Panel におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2011-4755 | 2011-12-20 11:28 | 2011-12-16 | Show | GitHub Exploit DB Packet Storm |
| 251657 | 4.3 | 警告 | Parallels | - | Parallels Plesk Small Business Panel におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-4754 | 2011-12-20 11:27 | 2011-12-16 | Show | GitHub Exploit DB Packet Storm |
| 251658 | 7.5 | 危険 | Parallels | - | Parallels Plesk Small Business Panel における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-4753 | 2011-12-20 11:27 | 2011-12-16 | Show | GitHub Exploit DB Packet Storm |
| 251659 | 10 | 危険 | Parallels | - | Parallels Plesk Panel の billing system における認証を回避される脆弱性 |
CWE-255
証明書・パスワード管理 |
CVE-2011-4749 | 2011-12-20 11:26 | 2011-12-16 | Show | GitHub Exploit DB Packet Storm |
| 251660 | 5 | 警告 | Parallels | - | Parallels Plesk Panel の billing system における重要な情報を取得される脆弱性 |
CWE-200
情報漏えい |
CVE-2011-4748 | 2011-12-20 11:25 | 2011-12-16 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 19, 2026, 4:16 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 255441 | 9.8 |
CRITICAL
Network |
cpa_lead_reward_script_project | cpa_lead_reward_script | CPA Lead Reward Script allows SQL Injection via the username parameter. |
CWE-89
SQL Injection |
CVE-2017-15986 | 2024-11-21 12:15 | 2017-10-31 | Show | GitHub Exploit DB Packet Storm |
| 255442 | 9.8 |
CRITICAL
Network |
readymadeb2bscript | basic_b2b_script | Basic B2B Script allows SQL Injection via the product_view1.php pid or id parameter. |
CWE-89
SQL Injection |
CVE-2017-15985 | 2024-11-21 12:15 | 2017-10-31 | Show | GitHub Exploit DB Packet Storm |
| 255443 | 9.8 |
CRITICAL
Network |
bekirk | creative_management_system_lite | Creative Management System (CMS) Lite 1.4 allows SQL Injection via the S parameter to index.php. |
CWE-89
SQL Injection |
CVE-2017-15984 | 2024-11-21 12:15 | 2017-10-31 | Show | GitHub Exploit DB Packet Storm |
| 255444 | 9.8 |
CRITICAL
Network |
geniusocean | mymagazine_magazine_\&_blog_cms | MyMagazine Magazine & Blog CMS 1.0 allows SQL Injection via the id parameter to admin/admin_process.php for form editing. |
CWE-89
SQL Injection |
CVE-2017-15983 | 2024-11-21 12:15 | 2017-10-31 | Show | GitHub Exploit DB Packet Storm |
| 255445 | 9.8 |
CRITICAL
Network |
geniusocean | news | Dynamic News Magazine & Blog CMS 1.0 allows SQL Injection via the id parameter to admin/admin_process.php for form editing. |
CWE-89
SQL Injection |
CVE-2017-15982 | 2024-11-21 12:15 | 2017-10-31 | Show | GitHub Exploit DB Packet Storm |
| 255446 | 9.8 |
CRITICAL
Network |
geniusocean | newspaper | Responsive Newspaper Magazine & Blog CMS 1.0 allows SQL Injection via the id parameter to admin/admin_process.php for form editing. |
CWE-89
SQL Injection |
CVE-2017-15981 | 2024-11-21 12:15 | 2017-10-31 | Show | GitHub Exploit DB Packet Storm |
| 255447 | 9.8 |
CRITICAL
Network |
rowindex | us_zip_codes_database_script | US Zip Codes Database Script 1.0 allows SQL Injection via the state parameter. |
CWE-89
SQL Injection |
CVE-2017-15980 | 2024-11-21 12:15 | 2017-10-31 | Show | GitHub Exploit DB Packet Storm |
| 255448 | 9.8 |
CRITICAL
Network |
odallated | shareet | Shareet - Photo Sharing Social Network 1.0 allows SQL Injection via the photo parameter. |
CWE-89
SQL Injection |
CVE-2017-15979 | 2024-11-21 12:15 | 2017-10-31 | Show | GitHub Exploit DB Packet Storm |
| 255449 | 9.8 |
CRITICAL
Network |
arox | school_erp_php_script | AROX School ERP PHP Script 1.0 allows SQL Injection via the office_admin/ id parameter. |
CWE-89
SQL Injection |
CVE-2017-15978 | 2024-11-21 12:15 | 2017-10-31 | Show | GitHub Exploit DB Packet Storm |
| 255450 | 9.8 |
CRITICAL
Network |
protectedlinks | expiring_download_links | Protected Links - Expiring Download Links 1.0 allows SQL Injection via the username parameter. |
CWE-89
SQL Injection |
CVE-2017-15977 | 2024-11-21 12:15 | 2017-10-31 | Show | GitHub Exploit DB Packet Storm |