|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 10, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 252061 | 7.2 | 危険 | マイクロソフト | - | Microsoft Windows の win32k.sys における権限昇格の脆弱性 |
CWE-Other
その他 |
CVE-2011-1232 | 2011-05-9 12:09 | 2011-04-12 | Show | GitHub Exploit DB Packet Storm |
| 252062 | 7.2 | 危険 | マイクロソフト | - | Microsoft Windows の win32k.sys における権限昇格の脆弱性 |
CWE-Other
その他 |
CVE-2011-1231 | 2011-05-9 12:08 | 2011-04-12 | Show | GitHub Exploit DB Packet Storm |
| 252063 | 7.2 | 危険 | マイクロソフト | - | Microsoft Windows の win32k.sys における権限昇格の脆弱性 |
CWE-Other
その他 |
CVE-2011-1230 | 2011-05-9 12:07 | 2011-04-12 | Show | GitHub Exploit DB Packet Storm |
| 252064 | 7.2 | 危険 | マイクロソフト | - | Microsoft Windows の win32k.sys における権限昇格の脆弱性 |
CWE-Other
その他 |
CVE-2011-1229 | 2011-05-9 12:06 | 2011-04-12 | Show | GitHub Exploit DB Packet Storm |
| 252065 | 7.2 | 危険 | マイクロソフト | - | Microsoft Windows の win32k.sys における権限昇格の脆弱性 |
CWE-Other
その他 |
CVE-2011-1228 | 2011-05-9 12:04 | 2011-04-12 | Show | GitHub Exploit DB Packet Storm |
| 252066 | 7.2 | 危険 | マイクロソフト | - | Microsoft Windows の win32k.sys における権限昇格の脆弱性 |
CWE-Other
その他 |
CVE-2011-1227 | 2011-05-9 12:03 | 2011-04-12 | Show | GitHub Exploit DB Packet Storm |
| 252067 | 7.2 | 危険 | マイクロソフト | - | Microsoft Windows の win32k.sys における権限昇格の脆弱性 |
CWE-Other
その他 |
CVE-2011-1226 | 2011-05-9 12:02 | 2011-04-12 | Show | GitHub Exploit DB Packet Storm |
| 252068 | 7.2 | 危険 | マイクロソフト | - | Microsoft Windows の win32k.sys における権限昇格の脆弱性 |
CWE-Other
その他 |
CVE-2011-1225 | 2011-05-9 12:01 | 2011-04-12 | Show | GitHub Exploit DB Packet Storm |
| 252069 | 7.2 | 危険 | マイクロソフト | - | Microsoft Windows の win32k.sys における権限昇格の脆弱性 |
CWE-Other
その他 |
CVE-2011-0677 | 2011-05-9 11:59 | 2011-04-12 | Show | GitHub Exploit DB Packet Storm |
| 252070 | 7.2 | 危険 | マイクロソフト | - | Microsoft Windows の win32k.sys における権限昇格の脆弱性 |
CWE-Other
その他 |
CVE-2011-0676 | 2011-05-9 11:57 | 2011-04-12 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 11, 2026, 4:09 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 266421 | 5.4 |
MEDIUM
Network |
cpanel | cpanel | cPanel before 60.0.25 allows stored XSS in the ftp_sessions API (SEC-180). |
CWE-79
Cross-site Scripting |
CVE-2016-10780 | 2024-11-21 11:44 | 2019-08-6 | Show | GitHub Exploit DB Packet Storm |
| 266422 | 5.4 |
MEDIUM
Network |
cpanel | cpanel | cPanel before 60.0.25 allows stored XSS in api1_listautoresponders (SEC-179). |
CWE-79
Cross-site Scripting |
CVE-2016-10779 | 2024-11-21 11:44 | 2019-08-6 | Show | GitHub Exploit DB Packet Storm |
| 266423 | 5.4 |
MEDIUM
Network |
cpanel | cpanel | cPanel before 60.0.25 allows self stored XSS in the listftpstable API (SEC-178). |
CWE-79
Cross-site Scripting |
CVE-2016-10778 | 2024-11-21 11:44 | 2019-08-6 | Show | GitHub Exploit DB Packet Storm |
| 266424 | 5.4 |
MEDIUM
Network |
cpanel | cpanel | cPanel before 60.0.25 allows self XSS in WHM Tweak Settings for autodiscover_host (SEC-177). |
CWE-79
Cross-site Scripting |
CVE-2016-10777 | 2024-11-21 11:44 | 2019-08-6 | Show | GitHub Exploit DB Packet Storm |
| 266425 | 5.4 |
MEDIUM
Network |
cpanel | cpanel | cPanel before 60.0.25 allows stored XSS during the homedir removal phase of WHM Account termination (SEC-174). |
CWE-79
Cross-site Scripting |
CVE-2016-10776 | 2024-11-21 11:44 | 2019-08-6 | Show | GitHub Exploit DB Packet Storm |
| 266426 | 6.5 |
MEDIUM
Network |
cpanel | cpanel | cPanel before 60.0.25 allows arbitrary file-chown operations via reassign_post_terminate_cruft (SEC-173). |
CWE-20
Improper Input Validation |
CVE-2016-10775 | 2024-11-21 11:44 | 2019-08-5 | Show | GitHub Exploit DB Packet Storm |
| 266427 | 5.4 |
MEDIUM
Network |
cpanel | cpanel | cPanel before 60.0.25 allows self XSS in the tail_ea4_migration.cgi interface (SEC-172). |
CWE-79
Cross-site Scripting |
CVE-2016-10774 | 2024-11-21 11:44 | 2019-08-5 | Show | GitHub Exploit DB Packet Storm |
| 266428 | 8.8 |
HIGH
Network |
cpanel | cpanel | cPanel before 60.0.25 allows format-string injection in exception-message handling (SEC-171). |
CWE-134
Use of Externally-Controlled Format String |
CVE-2016-10773 | 2024-11-21 11:44 | 2019-08-5 | Show | GitHub Exploit DB Packet Storm |
| 266429 | 3.3 |
LOW
Local |
cpanel | cpanel | cPanel before 60.0.25 does not enforce feature-list restrictions when calling the multilang adminbin (SEC-168). |
CWE-254
7PK - Security Features |
CVE-2016-10772 | 2024-11-21 11:44 | 2019-08-5 | Show | GitHub Exploit DB Packet Storm |
| 266430 | 8.1 |
HIGH
Network |
cpanel | cpanel | cPanel before 60.0.25 allows file-create and file-chmod operations during ModSecurity Audit logfile processing (SEC-165). |
CWE-20
Improper Input Validation |
CVE-2016-10771 | 2024-11-21 11:44 | 2019-08-5 | Show | GitHub Exploit DB Packet Storm |