|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 19, 2026, 2 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 251761 | 5 | 警告 | osCSS | - | osCSS の catalog/content.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2011-4713 | 2011-12-13 15:01 | 2011-11-8 | Show | GitHub Exploit DB Packet Storm |
| 251762 | 5 | 警告 | monoxide0184 | - | Oxide WebServer におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2011-4712 | 2011-12-13 14:59 | 2011-12-8 | Show | GitHub Exploit DB Packet Storm |
| 251763 | 5 | 警告 | Namazu Project | - | Namazu の namazu.cgi におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2011-4711 | 2011-12-13 14:57 | 2011-12-8 | Show | GitHub Exploit DB Packet Storm |
| 251764 | 7.5 | 危険 | Lucid Crew | - | Pixie CMS における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-4710 | 2011-12-13 14:53 | 2011-12-8 | Show | GitHub Exploit DB Packet Storm |
| 251765 | 4.3 | 警告 | Hotaru CMS | - | Hotaru CMS の Search プラグイン内にある Hotaru.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-4709 | 2011-12-13 14:52 | 2011-12-8 | Show | GitHub Exploit DB Packet Storm |
| 251766 | 4.3 | 警告 | IBM | - | IBM Rational Asset Manager におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-4708 | 2011-12-13 14:51 | 2011-05-5 | Show | GitHub Exploit DB Packet Storm |
| 251767 | 4.3 | 警告 | SAP | - | SAP Netweaver の Virus Scan Interface におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-4707 | 2011-12-13 14:50 | 2011-12-8 | Show | GitHub Exploit DB Packet Storm |
| 251768 | 5 | 警告 | Igor Sysoev | - | nginx におけるヒープベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2011-4315 | 2011-12-13 14:49 | 2011-11-15 | Show | GitHub Exploit DB Packet Storm |
| 251769 | 7.5 | 危険 | Mambo Foundation | - | Mambo CMS の administrator/index2.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-2917 | 2011-12-13 14:41 | 2011-12-8 | Show | GitHub Exploit DB Packet Storm |
| 251770 | 6.8 | 警告 | MIT Kerberos | - | MIT Kerberos の process_tgs_req 関数におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2011-1530 | 2011-12-13 14:40 | 2011-12-6 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 19, 2026, 4:16 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 266071 | 8.8 |
HIGH
Local |
debian hp canonical qemu oracle citrix redhat |
debian_linux helion_openstack ubuntu_linux qemu linux vm_server xenserver enterprise_linux_desktop enterprise_linux_server_aus enterprise_linux_workstation enterprise_li… |
The VGA module in QEMU improperly performs bounds checking on banked access to video memory, which allows local guest OS administrators to execute arbitrary code on the host by changing access modes … |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2016-3710 | 2024-11-21 11:50 | 2016-05-12 | Show | GitHub Exploit DB Packet Storm |
| 266072 | 5.5 |
MEDIUM
Local |
canonical redhat imagemagick |
ubuntu_linux enterprise_linux_server_supplementary_eus enterprise_linux_desktop enterprise_linux_server_aus enterprise_linux_workstation enterprise_linux_server enterprise_linux_hpc… |
The LABEL coder in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allows remote attackers to read arbitrary files via a crafted image. |
CWE-200
Information Exposure |
CVE-2016-3717 | 2024-11-21 11:50 | 2016-05-6 | Show | GitHub Exploit DB Packet Storm |
| 266073 | 3.3 |
LOW
Local |
canonical imagemagick redhat |
ubuntu_linux imagemagick enterprise_linux_server_supplementary_eus enterprise_linux_desktop enterprise_linux_server_aus enterprise_linux_workstation enterprise_linux_server enter… |
The MSL coder in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allows remote attackers to move arbitrary files via a crafted image. |
CWE-264
Permissions, Privileges, and Access Controls |
CVE-2016-3716 | 2024-11-21 11:50 | 2016-05-6 | Show | GitHub Exploit DB Packet Storm |
| 266074 | 4.6 |
MEDIUM
Physics |
novell linux canonical |
suse_linux_enterprise_module_for_public_cloud suse_linux_enterprise_server suse_linux_enterprise_live_patching suse_linux_enterprise_desktop suse_linux_enterprise_real_time_extension s… |
The ims_pcu_parse_cdc_data function in drivers/input/misc/ims-pcu.c in the Linux kernel before 4.5.1 allows physically proximate attackers to cause a denial of service (system crash) via a USB device… |
NVD-CWE-Other
|
CVE-2016-3689 | 2024-11-21 11:50 | 2016-05-2 | Show | GitHub Exploit DB Packet Storm |
| 266075 | 7.8 |
HIGH
Local |
canonical novell linux |
ubuntu_linux suse_linux_enterprise_module_for_public_cloud suse_linux_enterprise_server suse_linux_enterprise_live_patching suse_linux_enterprise_real_time_extension suse_linux_enterpr… |
The arch_pick_mmap_layout function in arch/x86/mm/mmap.c in the Linux kernel through 4.5.2 does not properly randomize the legacy base address, which makes it easier for local users to defeat the int… |
CWE-254
7PK - Security Features |
CVE-2016-3672 | 2024-11-21 11:50 | 2016-04-28 | Show | GitHub Exploit DB Packet Storm |
| 266076 | 9.1 |
CRITICAL
Network |
oracle | field_service | Unspecified vulnerability in the Oracle Field Service component in Oracle E-Business Suite 12.1.1, 12.1.2, and 12.1.3 allows remote attackers to affect confidentiality and integrity via vectors relat… |
NVD-CWE-noinfo
|
CVE-2016-3466 | 2024-11-21 11:50 | 2016-04-21 | Show | GitHub Exploit DB Packet Storm |
| 266077 | 5.5 |
MEDIUM
Local |
oracle | solaris | Unspecified vulnerability in Oracle Sun Solaris 10 and 11.3 allows local users to affect availability via vectors related to ZFS. |
NVD-CWE-noinfo
|
CVE-2016-3465 | 2024-11-21 11:50 | 2016-04-21 | Show | GitHub Exploit DB Packet Storm |
| 266078 | 5.7 |
MEDIUM
Network |
oracle | flexcube_direct_banking | Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 12.0.3 allows remote authenticated users to affect confidentiality via vectors related … |
NVD-CWE-noinfo
|
CVE-2016-3464 | 2024-11-21 11:50 | 2016-04-21 | Show | GitHub Exploit DB Packet Storm |
| 266079 | 6.1 |
MEDIUM
Network |
oracle | flexcube_direct_banking | Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 12.0.3 allows remote attackers to affect confidentiality and integrity via vectors rela… |
NVD-CWE-noinfo
|
CVE-2016-3463 | 2024-11-21 11:50 | 2016-04-21 | Show | GitHub Exploit DB Packet Storm |
| 266080 | 5.5 |
MEDIUM
Local |
oracle | solaris | Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect availability via vectors related to Network Configuration Service. |
NVD-CWE-noinfo
|
CVE-2016-3462 | 2024-11-21 11:50 | 2016-04-21 | Show | GitHub Exploit DB Packet Storm |