|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 23, 2026, noon
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 251951 | 5.5 | 警告 | オラクル | - | Oracle Database Server の Core RDBMS コンポーネントにおける脆弱性 |
CWE-noinfo
情報不足 |
CVE-2012-0082 | 2012-01-20 10:31 | 2012-01-17 | Show | GitHub Exploit DB Packet Storm |
| 251952 | 4.9 | 警告 | OpenStack | - | OpenStack Compute の Nova および Essex におけるアクセス制限を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2012-0030 | 2012-01-19 16:08 | 2012-01-11 | Show | GitHub Exploit DB Packet Storm |
| 251953 | 5 | 警告 | The PHP Group | - | PHP におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2011-4153 | 2012-01-19 13:52 | 2012-01-18 | Show | GitHub Exploit DB Packet Storm |
| 251954 | 7.5 | 危険 | Simon Phillips | - | Joomla! 用 Aardvertiser コンポーネント における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-4904 | 2012-01-19 11:45 | 2011-10-8 | Show | GitHub Exploit DB Packet Storm |
| 251955 | 7.5 | 危険 | CubeCart Limited | - | CubeCart の index.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-4903 | 2012-01-19 11:44 | 2011-10-8 | Show | GitHub Exploit DB Packet Storm |
| 251956 | 7.5 | 危険 | Joomla-Clantools | - | Joomla! 用 Clantools コンポーネントにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-4902 | 2012-01-19 11:44 | 2011-10-8 | Show | GitHub Exploit DB Packet Storm |
| 251957 | 4.3 | 警告 | Squiz | - | MySource Matrix の char_map.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2010-4901 | 2012-01-19 11:43 | 2011-10-8 | Show | GitHub Exploit DB Packet Storm |
| 251958 | 5.8 | 警告 | WebManager Pro | - | CMS WebManager-Pro の c.php におけるオープンリダイレクトの脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2010-4900 | 2012-01-19 11:43 | 2011-10-8 | Show | GitHub Exploit DB Packet Storm |
| 251959 | 7.5 | 危険 | WebManager Pro | - | CMS WebManager-Pro の c.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-4899 | 2012-01-19 11:42 | 2011-10-8 | Show | GitHub Exploit DB Packet Storm |
| 251960 | 7.5 | 危険 | Gantry framework | - | Joomla! 用 Gantry における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-4898 | 2012-01-19 11:41 | 2011-10-8 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 23, 2026, 4:08 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 258641 | 8.8 |
HIGH
Network |
loginizer | loginizer | Cross Site Request Forgery (CSRF) exists in the Blacklist and Whitelist IP Wizard in init.php in the Loginizer plugin before 1.3.6 for WordPress because the HTTP Referer header is not checked. |
CWE-352
Origin Validation Error |
CVE-2017-12651 | 2024-11-21 12:09 | 2017-08-8 | Show | GitHub Exploit DB Packet Storm |
| 258642 | 9.8 |
CRITICAL
Network |
loginizer | loginizer | SQL Injection exists in the Loginizer plugin before 1.3.6 for WordPress via the X-Forwarded-For HTTP header. |
CWE-89
SQL Injection |
CVE-2017-12650 | 2024-11-21 12:09 | 2017-08-8 | Show | GitHub Exploit DB Packet Storm |
| 258643 | 6.1 |
MEDIUM
Network |
liferay | liferay_portal | XSS exists in Liferay Portal before 7.0 CE GA4 via a crafted title or summary that is mishandled in the Web Content Display. |
CWE-79
Cross-site Scripting |
CVE-2017-12649 | 2024-11-21 12:09 | 2017-08-8 | Show | GitHub Exploit DB Packet Storm |
| 258644 | 6.1 |
MEDIUM
Network |
liferay | liferay_portal | XSS exists in Liferay Portal before 7.0 CE GA4 via a bookmark URL. |
CWE-79
Cross-site Scripting |
CVE-2017-12648 | 2024-11-21 12:09 | 2017-08-8 | Show | GitHub Exploit DB Packet Storm |
| 258645 | 6.1 |
MEDIUM
Network |
liferay | liferay_portal | XSS exists in Liferay Portal before 7.0 CE GA4 via a Knowledge Base article title. |
CWE-79
Cross-site Scripting |
CVE-2017-12647 | 2024-11-21 12:09 | 2017-08-8 | Show | GitHub Exploit DB Packet Storm |
| 258646 | 6.1 |
MEDIUM
Network |
liferay | liferay_portal | XSS exists in Liferay Portal before 7.0 CE GA4 via a login name, password, or e-mail address. |
CWE-79
Cross-site Scripting |
CVE-2017-12646 | 2024-11-21 12:09 | 2017-08-8 | Show | GitHub Exploit DB Packet Storm |
| 258647 | 6.1 |
MEDIUM
Network |
liferay | liferay_portal | XSS exists in Liferay Portal before 7.0 CE GA4 via an invalid portletId. |
CWE-79
Cross-site Scripting |
CVE-2017-12645 | 2024-11-21 12:09 | 2017-08-8 | Show | GitHub Exploit DB Packet Storm |
| 258648 | 9.8 |
CRITICAL
Network |
quest |
kace_asset_management_appliance kace_systems_management_appliance k1000_as_a_service |
SQL injection exists in Quest KACE Asset Management Appliance 6.4.120822 through 7.2, Systems Management Appliance 6.4.120822 through 7.2.101, and K1000 as a Service 7.0 through 7.2. |
CWE-89
SQL Injection |
CVE-2017-12567 | 2024-11-21 12:09 | 2017-08-8 | Show | GitHub Exploit DB Packet Storm |
| 258649 | 8.8 |
HIGH
Network |
imagemagick | imagemagick | ImageMagick 7.0.6-1 has a memory leak vulnerability in ReadDCMImage in coders\dcm.c. |
CWE-772
Missing Release of Resource after Effective Lifetime |
CVE-2017-12644 | 2024-11-21 12:09 | 2017-08-8 | Show | GitHub Exploit DB Packet Storm |
| 258650 | 6.5 |
MEDIUM
Network |
imagemagick debian |
imagemagick debian_linux |
ImageMagick 7.0.6-1 has a memory exhaustion vulnerability in ReadOneJNGImage in coders\png.c. |
CWE-770
Allocation of Resources Without Limits or Throttling |
CVE-2017-12643 | 2024-11-21 12:09 | 2017-08-8 | Show | GitHub Exploit DB Packet Storm |