|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 26, 2026, 10 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 251661 | 6 | 警告 | Pluck CMS | - | pluck の admin.php におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2012-1227 | 2012-02-22 16:26 | 2012-02-21 | Show | GitHub Exploit DB Packet Storm |
| 251662 | 6.8 | 警告 | Antonio de Vincentiis | - | GAzie の modules/config/admin_utente.php におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2012-1220 | 2012-02-22 16:24 | 2012-02-21 | Show | GitHub Exploit DB Packet Storm |
| 251663 | 4.3 | 警告 | freelancerKit | - | freelancerKit におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-1219 | 2012-02-22 16:18 | 2012-02-21 | Show | GitHub Exploit DB Packet Storm |
| 251664 | 7.5 | 危険 | freelancerKit | - | freelancerKit における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2012-1218 | 2012-02-22 16:15 | 2012-02-21 | Show | GitHub Exploit DB Packet Storm |
| 251665 | 4.3 | 警告 | Zenphoto | - | Zenphoto におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-0995 | 2012-02-22 16:12 | 2012-02-21 | Show | GitHub Exploit DB Packet Storm |
| 251666 | 6 | 警告 | Zenphoto | - | Zenphoto の Manage Albums 機能における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2012-0994 | 2012-02-22 16:09 | 2012-02-21 | Show | GitHub Exploit DB Packet Storm |
| 251667 | 6.8 | 警告 | Zenphoto | - | Zenphoto の viewer_size_image.php における任意の PHP コードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2012-0993 | 2012-02-22 16:07 | 2012-02-21 | Show | GitHub Exploit DB Packet Storm |
| 251668 | 4 | 警告 | IBM | - | IBM solidDB のサーバにおけるサービス運用妨害 (デーモンクラッシュ) の脆弱性 |
CWE-noinfo
情報不足 |
CVE-2012-0200 | 2012-02-22 15:31 | 2012-02-7 | Show | GitHub Exploit DB Packet Storm |
| 251669 | 4 | 警告 | IBM | - | IBM solidDB のサーバにおけるサービス運用妨害 (デーモンクラッシュ) の脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2011-4890 | 2012-02-22 15:30 | 2011-11-17 | Show | GitHub Exploit DB Packet Storm |
| 251670 | 4.3 | 警告 | SIMHL | - | STHS v2 Web Portal におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-1217 | 2012-02-22 15:24 | 2012-02-21 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 26, 2026, 4:05 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 254901 | 9.8 |
CRITICAL
Network |
nearbuy_clone_script_project | nearbuy_clone_script | Nearbuy Clone Script 3.2 has SQL Injection via the category_list.php search parameter. |
CWE-89
SQL Injection |
CVE-2017-17597 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |
| 254902 | 9.8 |
CRITICAL
Network |
entrepreneur_job_portal_script_project | entrepreneur_job_portal_script | Entrepreneur Job Portal Script 2.0.6 has SQL Injection via the jobsearch_all.php rid1 parameter. |
CWE-89
SQL Injection |
CVE-2017-17596 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |
| 254903 | 9.8 |
CRITICAL
Network |
beauty_parlour_booking_script_project | beauty_parlour_booking_script | Beauty Parlour Booking Script 1.0 has SQL Injection via the /list gender or city parameter. |
CWE-89
SQL Injection |
CVE-2017-17595 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |
| 254904 | 9.8 |
CRITICAL
Network |
domainsale_php_script_project | domainsale_php_script | DomainSale PHP Script 1.0 has SQL Injection via the domain.php id parameter. |
CWE-89
SQL Injection |
CVE-2017-17594 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |
| 254905 | 7.5 |
HIGH
Network |
simple_chatting_system_project | simple_chatting_system | Simple Chatting System 1.0 allows Arbitrary File Upload via view/my_profile.php, which places files under uploads/. |
CWE-434
Unrestricted Upload of File with Dangerous Type |
CVE-2017-17593 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |
| 254906 | 9.8 |
CRITICAL
Network |
website_auction_marketplace_project | website_auction_marketplace | Website Auction Marketplace 2.0.5 has SQL Injection via the search.php cat_id parameter. |
CWE-89
SQL Injection |
CVE-2017-17592 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |
| 254907 | 9.8 |
CRITICAL
Network |
realestate_crowdfunding_script_project | realestate_crowdfunding_script | Realestate Crowdfunding Script 2.7.2 has SQL Injection via the single-cause.php pid parameter. |
CWE-89
SQL Injection |
CVE-2017-17591 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |
| 254908 | 9.8 |
CRITICAL
Network |
stackoverflow-clone_project | stackoverflow-clone | FS Stackoverflow Clone 1.0 has SQL Injection via the /question keywords parameter. |
CWE-89
SQL Injection |
CVE-2017-17590 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |
| 254909 | 9.8 |
CRITICAL
Network |
thumbtack_clone_project | thumbtack_clone | FS Thumbtack Clone 1.0 has SQL Injection via the browse-category.php cat parameter or the browse-scategory.php sc parameter. |
CWE-89
SQL Injection |
CVE-2017-17589 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |
| 254910 | 9.8 |
CRITICAL
Network |
imdb_clone_project | imdb_clone | FS IMDB Clone 1.0 has SQL Injection via the movie.php f parameter, tvshow.php s parameter, or show_misc_video.php id parameter. |
CWE-89
SQL Injection |
CVE-2017-17588 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |