|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 22, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 252001 | 4.3 | 警告 | IBM | - | IBM Cognos TM1 の Executive Viewer におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-0696 | 2012-01-16 15:04 | 2010-11-12 | Show | GitHub Exploit DB Packet Storm |
| 252002 | 10 | 危険 | Google サムスン 日本エイサー |
- | Chromebook プラットフォームで稼働する Google Chrome における詳細不明な脆弱性 |
CWE-noinfo
情報不足 |
CVE-2012-0695 | 2012-01-16 15:04 | 2012-01-10 | Show | GitHub Exploit DB Packet Storm |
| 252003 | 4.9 | 警告 | Adaptive Computing | - | TORQUE Resource Manager における任意のユーザアカウントを偽装される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2011-4925 | 2012-01-16 15:03 | 2012-01-13 | Show | GitHub Exploit DB Packet Storm |
| 252004 | 10 | 危険 | ヒューレット・パッカード | - | HP Diagnostics におけるスタックベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2011-4789 | 2012-01-16 15:02 | 2012-01-13 | Show | GitHub Exploit DB Packet Storm |
| 252005 | 7.8 | 危険 | ヒューレット・パッカード | - | HP StorageWorks P2000 G3 MSA array systems における絶対パストラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2011-4788 | 2012-01-16 15:02 | 2012-01-13 | Show | GitHub Exploit DB Packet Storm |
| 252006 | 9.3 | 危険 | ヒューレット・パッカード | - | HP Easy Printer Care Software における任意のプログラムをダウンロードされる脆弱性 |
CWE-94
コード・インジェクション |
CVE-2011-4787 | 2012-01-16 15:01 | 2012-01-11 | Show | GitHub Exploit DB Packet Storm |
| 252007 | 9.3 | 危険 | ヒューレット・パッカード | - | HP Easy Printer Care Software における任意のプログラムをダウンロードされる脆弱性 |
CWE-94
コード・インジェクション |
CVE-2011-4786 | 2012-01-16 15:00 | 2012-01-11 | Show | GitHub Exploit DB Packet Storm |
| 252008 | 6.9 | 警告 | マイクロソフト | - | Microsoft Windows のクライアント/サーバランタイムサブシステムにおける権限昇格の脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2012-0005 | 2012-01-13 18:22 | 2012-01-10 | Show | GitHub Exploit DB Packet Storm |
| 252009 | 6.9 | 警告 | FreeBSD | - | FreeBSD の openpam_configure.c におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2011-4122 | 2012-01-13 18:14 | 2011-11-17 | Show | GitHub Exploit DB Packet Storm |
| 252010 | 4 | 警告 | Openswan レッドハット |
- | Openswan におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2011-4073 | 2012-01-13 18:10 | 2011-10-28 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 23, 2026, 4:08 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 258641 | 8.8 |
HIGH
Network |
loginizer | loginizer | Cross Site Request Forgery (CSRF) exists in the Blacklist and Whitelist IP Wizard in init.php in the Loginizer plugin before 1.3.6 for WordPress because the HTTP Referer header is not checked. |
CWE-352
Origin Validation Error |
CVE-2017-12651 | 2024-11-21 12:09 | 2017-08-8 | Show | GitHub Exploit DB Packet Storm |
| 258642 | 9.8 |
CRITICAL
Network |
loginizer | loginizer | SQL Injection exists in the Loginizer plugin before 1.3.6 for WordPress via the X-Forwarded-For HTTP header. |
CWE-89
SQL Injection |
CVE-2017-12650 | 2024-11-21 12:09 | 2017-08-8 | Show | GitHub Exploit DB Packet Storm |
| 258643 | 6.1 |
MEDIUM
Network |
liferay | liferay_portal | XSS exists in Liferay Portal before 7.0 CE GA4 via a crafted title or summary that is mishandled in the Web Content Display. |
CWE-79
Cross-site Scripting |
CVE-2017-12649 | 2024-11-21 12:09 | 2017-08-8 | Show | GitHub Exploit DB Packet Storm |
| 258644 | 6.1 |
MEDIUM
Network |
liferay | liferay_portal | XSS exists in Liferay Portal before 7.0 CE GA4 via a bookmark URL. |
CWE-79
Cross-site Scripting |
CVE-2017-12648 | 2024-11-21 12:09 | 2017-08-8 | Show | GitHub Exploit DB Packet Storm |
| 258645 | 6.1 |
MEDIUM
Network |
liferay | liferay_portal | XSS exists in Liferay Portal before 7.0 CE GA4 via a Knowledge Base article title. |
CWE-79
Cross-site Scripting |
CVE-2017-12647 | 2024-11-21 12:09 | 2017-08-8 | Show | GitHub Exploit DB Packet Storm |
| 258646 | 6.1 |
MEDIUM
Network |
liferay | liferay_portal | XSS exists in Liferay Portal before 7.0 CE GA4 via a login name, password, or e-mail address. |
CWE-79
Cross-site Scripting |
CVE-2017-12646 | 2024-11-21 12:09 | 2017-08-8 | Show | GitHub Exploit DB Packet Storm |
| 258647 | 6.1 |
MEDIUM
Network |
liferay | liferay_portal | XSS exists in Liferay Portal before 7.0 CE GA4 via an invalid portletId. |
CWE-79
Cross-site Scripting |
CVE-2017-12645 | 2024-11-21 12:09 | 2017-08-8 | Show | GitHub Exploit DB Packet Storm |
| 258648 | 9.8 |
CRITICAL
Network |
quest |
kace_asset_management_appliance kace_systems_management_appliance k1000_as_a_service |
SQL injection exists in Quest KACE Asset Management Appliance 6.4.120822 through 7.2, Systems Management Appliance 6.4.120822 through 7.2.101, and K1000 as a Service 7.0 through 7.2. |
CWE-89
SQL Injection |
CVE-2017-12567 | 2024-11-21 12:09 | 2017-08-8 | Show | GitHub Exploit DB Packet Storm |
| 258649 | 8.8 |
HIGH
Network |
imagemagick | imagemagick | ImageMagick 7.0.6-1 has a memory leak vulnerability in ReadDCMImage in coders\dcm.c. |
CWE-772
Missing Release of Resource after Effective Lifetime |
CVE-2017-12644 | 2024-11-21 12:09 | 2017-08-8 | Show | GitHub Exploit DB Packet Storm |
| 258650 | 6.5 |
MEDIUM
Network |
imagemagick debian |
imagemagick debian_linux |
ImageMagick 7.0.6-1 has a memory exhaustion vulnerability in ReadOneJNGImage in coders\png.c. |
CWE-770
Allocation of Resources Without Limits or Throttling |
CVE-2017-12643 | 2024-11-21 12:09 | 2017-08-8 | Show | GitHub Exploit DB Packet Storm |