|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 23, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 252061 | 4 | 警告 | IBM | - | IBM AIX 上の invscout.rte における任意のファイルを削除される脆弱性 |
CWE-59
リンク解釈の問題 |
CVE-2011-1384 | 2012-01-6 15:24 | 2011-12-2 | Show | GitHub Exploit DB Packet Storm |
| 252062 | 4.3 | 警告 | IBM | - | IBM Web Experience Factory におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-5048 | 2012-01-6 15:23 | 2012-01-3 | Show | GitHub Exploit DB Packet Storm |
| 252063 | 4.3 | 警告 | Electric Sheep Fencing | - | pfSense におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-5047 | 2012-01-6 15:22 | 2012-01-3 | Show | GitHub Exploit DB Packet Storm |
| 252064 | 7.5 | 危険 | Electric Sheep Fencing | - | pfSense における証明書を作成される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2011-4197 | 2012-01-6 15:21 | 2011-12-20 | Show | GitHub Exploit DB Packet Storm |
| 252065 | 4.3 | 警告 | Splunk | - | Splunk の Splunk Web におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-4778 | 2012-01-5 16:29 | 2011-12-12 | Show | GitHub Exploit DB Packet Storm |
| 252066 | 9.3 | 危険 | Splunk | - | Splunk における任意のファイルを読まれる脆弱性 |
CWE-287
不適切な認証 |
CVE-2011-4644 | 2012-01-5 16:28 | 2012-01-3 | Show | GitHub Exploit DB Packet Storm |
| 252067 | 4 | 警告 | Splunk | - | Splunk におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2011-4643 | 2012-01-5 16:27 | 2011-12-12 | Show | GitHub Exploit DB Packet Storm |
| 252068 | 4.6 | 警告 | Splunk | - | Splunk の Splunk Web 内にある mappy.py における任意のコードを実行される脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2011-4642 | 2012-01-5 16:27 | 2011-12-12 | Show | GitHub Exploit DB Packet Storm |
| 252069 | 6.8 | 警告 | Mozilla Foundation | - | Bugzilla の attachment.cgi におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2011-3669 | 2012-01-5 16:26 | 2011-11-20 | Show | GitHub Exploit DB Packet Storm |
| 252070 | 6.8 | 警告 | Mozilla Foundation | - | Bugzilla の post_bug.cgi におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2011-3668 | 2012-01-5 16:26 | 2011-11-20 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 23, 2026, 4:08 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 276201 | - |
fedoraproject canonical debian apple haxx hp opensuse |
fedora ubuntu_linux debian_linux mac_os_x libcurl system_management_homepage curl opensuse |
cURL and libcurl 7.10.6 through 7.41.0 do not properly re-use authenticated Negotiate connections, which allows remote attackers to connect as other users via a request. |
CWE-284
Improper Access Control |
CVE-2015-3148 | 2024-11-21 11:28 | 2015-04-24 | Show | GitHub Exploit DB Packet Storm | |
| 276202 | - |
fedoraproject canonical debian haxx apple oracle hp opensuse |
fedora ubuntu_linux debian_linux curl mac_os_x solaris libcurl system_management_homepage opensuse |
The sanitize_cookie_path function in cURL and libcurl 7.31.0 through 7.41.0 does not properly calculate an index, which allows remote attackers to cause a denial of service (out-of-bounds write and c… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2015-3145 | 2024-11-21 11:28 | 2015-04-24 | Show | GitHub Exploit DB Packet Storm | |
| 276203 | - |
oracle haxx canonical debian |
mysql_enterprise_monitor curl libcurl ubuntu_linux debian_linux |
The fix_hostname function in cURL and libcurl 7.37.0 through 7.41.0 does not properly calculate an index, which allows remote attackers to cause a denial of service (out-of-bounds read or write and c… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2015-3144 | 2024-11-21 11:28 | 2015-04-24 | Show | GitHub Exploit DB Packet Storm | |
| 276204 | - |
haxx canonical debian hp apple |
curl ubuntu_linux debian_linux libcurl system_management_homepage mac_os_x |
cURL and libcurl 7.10.6 through 7.41.0 does not properly re-use NTLM connections, which allows remote attackers to connect as other users via an unauthenticated request, a similar issue to CVE-2014-0… |
CWE-264
Permissions, Privileges, and Access Controls |
CVE-2015-3143 | 2024-11-21 11:28 | 2015-04-24 | Show | GitHub Exploit DB Packet Storm | |
| 276205 | - | simple_ads_manager_project | simple_ads_manager | Unrestricted file upload vulnerability in sam-ajax-admin.php in the Simple Ads Manager plugin before 2.5.96 for WordPress allows remote attackers to execute arbitrary code by uploading a file with an… |
NVD-CWE-Other
|
CVE-2015-2825 | 2024-11-21 11:28 | 2015-04-22 | Show | GitHub Exploit DB Packet Storm | |
| 276206 | - |
redhat novell opensuse adobe |
enterprise_linux_desktop_supplementary enterprise_linux_server_supplementary enterprise_linux_workstation_supplementary enterprise_linux_server_supplementary_eus enterprise_linux_suppleme… |
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to bypass intended access restrictions and obtain se… |
CWE-200
Information Exposure |
CVE-2015-3044 | 2024-11-21 11:28 | 2015-04-15 | Show | GitHub Exploit DB Packet Storm | |
| 276207 | - |
adobe suse opensuse redhat |
flash_player suse_linux_enterprise_desktop suse_linux_workstation_extension opensuse enterprise_linux_desktop_supplementary enterprise_linux_server_supplementary enterprise_linux_wo… |
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of servi… |
NVD-CWE-noinfo
|
CVE-2015-3042 | 2024-11-21 11:28 | 2015-04-15 | Show | GitHub Exploit DB Packet Storm | |
| 276208 | - |
redhat adobe suse opensuse |
enterprise_linux_desktop_supplementary enterprise_linux_server_supplementary enterprise_linux_workstation_supplementary enterprise_linux_server_supplementary_eus flash_player suse_linu… |
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux does not properly restrict discovery of memory addresses, which allow… |
CWE-200
Information Exposure |
CVE-2015-3040 | 2024-11-21 11:28 | 2015-04-15 | Show | GitHub Exploit DB Packet Storm | |
| 276209 | - |
redhat adobe suse opensuse |
enterprise_linux_desktop_supplementary enterprise_linux_server_supplementary enterprise_linux_workstation_supplementary enterprise_linux_server_supplementary_eus flash_player suse_linu… |
Use-after-free vulnerability in Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary… |
NVD-CWE-Other
|
CVE-2015-3039 | 2024-11-21 11:28 | 2015-04-15 | Show | GitHub Exploit DB Packet Storm | |
| 276210 | - |
adobe redhat suse opensuse |
flash_player enterprise_linux_desktop_supplementary enterprise_linux_server_supplementary enterprise_linux_workstation_supplementary enterprise_linux_server_supplementary_eus suse_linu… |
Adobe Flash Player before 13.0.0.281 and 14.x through 17.x before 17.0.0.169 on Windows and OS X and before 11.2.202.457 on Linux allows attackers to execute arbitrary code or cause a denial of servi… |
NVD-CWE-noinfo
|
CVE-2015-3041 | 2024-11-21 11:28 | 2015-04-15 | Show | GitHub Exploit DB Packet Storm |