|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 7, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 252161 | 4.3 | 警告 | IBM サイバートラスト株式会社 ヒューレット・パッカード ターボリナックス OpenSSL Project VMware レッドハット |
- | OpenSSL の kssl_keytab_is_available 関数におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2010-0433 | 2011-03-4 10:48 | 2010-03-24 | Show | GitHub Exploit DB Packet Storm |
| 252162 | 5.1 | 警告 | アップル サイバートラスト株式会社 サン・マイクロシステムズ ヒューレット・パッカード VMware レッドハット |
- | 複数の Oracle 製品の Java Runtime Environment コンポーネントにおける脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-0085 | 2011-03-4 10:45 | 2010-03-30 | Show | GitHub Exploit DB Packet Storm |
| 252163 | 5 | 警告 | アップル サイバートラスト株式会社 サン・マイクロシステムズ ヒューレット・パッカード VMware レッドハット |
- | 複数の Oracle 製品の Java Runtime Environment コンポーネントにおける脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-0084 | 2011-03-4 10:44 | 2010-03-30 | Show | GitHub Exploit DB Packet Storm |
| 252164 | 5.1 | 警告 | アップル サイバートラスト株式会社 サン・マイクロシステムズ ヒューレット・パッカード VMware レッドハット |
- | 複数の Oracle 製品の HotSpot Server コンポーネントにおける脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-0082 | 2011-03-4 10:43 | 2010-03-30 | Show | GitHub Exploit DB Packet Storm |
| 252165 | 9 | 危険 | マイクロソフト VMware |
- | Microsoft SQL Server の insert ステートメントに関するバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2008-0106 | 2011-03-4 10:39 | 2008-07-8 | Show | GitHub Exploit DB Packet Storm |
| 252166 | 9 | 危険 | マイクロソフト VMware |
- | Microsoft SQL Server のバックアップファイルのレコードサイズに関するバッファオーバーフローの脆弱性 |
CWE-189
数値処理の問題 |
CVE-2008-0107 | 2011-03-4 10:37 | 2008-07-8 | Show | GitHub Exploit DB Packet Storm |
| 252167 | 9 | 危険 | マイクロソフト VMware |
- | Microsoft SQL Server の SQL データ型の処理に関するバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2008-0086 | 2011-03-4 10:35 | 2008-07-8 | Show | GitHub Exploit DB Packet Storm |
| 252168 | 5 | 警告 | マイクロソフト VMware |
- | Microsoft SQL Server のメモリ再配置の際メモリページを初期化しない脆弱性 |
CWE-200
情報漏えい |
CVE-2008-0085 | 2011-03-4 10:34 | 2008-07-8 | Show | GitHub Exploit DB Packet Storm |
| 252169 | 9 | 危険 | マイクロソフト VMware |
- | Microsoft SQL Server の sp_replwritetovarbin 拡張ストアド プロシージャの処理における脆弱性 |
CWE-119
バッファエラー |
CVE-2008-5416 | 2011-03-4 10:33 | 2008-12-25 | Show | GitHub Exploit DB Packet Storm |
| 252170 | 9.3 | 危険 | Sielco Sistemi | - | Sielco Sistemi Winlog にバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2011-0517 | 2011-03-3 16:57 | 2011-02-7 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 7, 2026, 4:22 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 309461 | 4.8 |
MEDIUM
Network |
premio | my_sticky_bar | The Floating Notification Bar, Sticky Menu on Scroll, Announcement Banner, and Sticky Header for Any WordPress plugin before 2.7.3 does not validate and escape some of its settings before outputtin… |
CWE-79
Cross-site Scripting |
CVE-2024-7133 | 2024-09-28 06:27 | 2024-09-13 | Show | GitHub Exploit DB Packet Storm |
| 309462 | 6.5 |
MEDIUM
Network |
pixeljar | favicon_generator | The Favicon Generator (CLOSED) WordPress plugin before 2.1 does not have CSRF and path validation in the output_sub_admin_page_0() function, allowing attackers to make logged in admins delete arbitra… |
CWE-352
Origin Validation Error |
CVE-2024-7864 | 2024-09-28 06:26 | 2024-09-13 | Show | GitHub Exploit DB Packet Storm |
| 309463 | 6.5 |
MEDIUM
Network |
gowildchild | visual_sound | The Visual Sound (old) WordPress plugin through 1.06 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack |
CWE-352
Origin Validation Error |
CVE-2024-8047 | 2024-09-28 06:25 | 2024-09-17 | Show | GitHub Exploit DB Packet Storm |
| 309464 | 6.1 |
MEDIUM
Network |
outtolunchproductions | simple_headline_rotator | The Simple Headline Rotator WordPress plugin through 1.0 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which could allow attackers to make logged in admin … |
CWE-79
Cross-site Scripting |
CVE-2024-7860 | 2024-09-28 05:56 | 2024-09-12 | Show | GitHub Exploit DB Packet Storm |
| 309465 | 6.1 |
MEDIUM
Network |
michalaugustyniak | misiek_paypal | The Misiek Paypal WordPress plugin through 1.1.20090324 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which could allow attackers to make logged in admin a… |
CWE-79
Cross-site Scripting |
CVE-2024-7861 | 2024-09-28 05:52 | 2024-09-12 | Show | GitHub Exploit DB Packet Storm |
| 309466 | 5.7 |
MEDIUM
Network |
phoenixcontact |
tc_mguard_rs4000_4g_vzw_vpn_firmware tc_mguard_rs4000_4g_vpn_firmware tc_mguard_rs4000_4g_att_vpn_firmware tc_mguard_rs4000_3g_vpn_firmware tc_mguard_rs2000_4g_vzw_vpn_firmware tc_mgua… |
A low privileged remote attacker can get access to CSRF tokens of higher privileged users which can be abused to mount CSRF attacks. |
CWE-212
Improper Removal of Sensitive Information Before Storage or Transfer |
CVE-2024-7698 | 2024-09-28 04:39 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |
| 309467 | 8.8 |
HIGH
Network |
phoenixcontact |
tc_mguard_rs4000_4g_vzw_vpn_firmware tc_mguard_rs4000_4g_vpn_firmware tc_mguard_rs4000_4g_att_vpn_firmware tc_mguard_rs4000_3g_vpn_firmware tc_mguard_rs2000_4g_vzw_vpn_firmware tc_mgua… |
A low privileged remote attacker can read and write files as root due to improper neutralization of special elements in the variable EMAIL_RELAY_PASSWORD in mGuard devices. |
CWE-78
OS Command |
CVE-2024-43387 | 2024-09-28 04:33 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |
| 309468 | 8.8 |
HIGH
Network |
phoenixcontact |
tc_mguard_rs4000_4g_vzw_vpn_firmware tc_mguard_rs4000_4g_vpn_firmware tc_mguard_rs4000_4g_att_vpn_firmware tc_mguard_rs4000_3g_vpn_firmware tc_mguard_rs2000_4g_vzw_vpn_firmware tc_mgua… |
A low privileged remote attacker can trigger the execution of arbitrary OS commands as root due to improper neutralization of special elements in the variable EMAIL_NOTIFICATION.TO in mGuard devices. |
CWE-78
OS Command |
CVE-2024-43386 | 2024-09-28 04:33 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |
| 309469 | 8.8 |
HIGH
Network |
phoenixcontact |
tc_mguard_rs4000_4g_vzw_vpn_firmware tc_mguard_rs4000_4g_vpn_firmware tc_mguard_rs4000_4g_att_vpn_firmware tc_mguard_rs4000_3g_vpn_firmware tc_mguard_rs2000_4g_vzw_vpn_firmware tc_mgua… |
A low privileged remote attacker can trigger the execution of arbitrary OS commands as root due to improper neutralization of special elements in the variable PROXY_HTTP_PORT in mGuard devices. |
CWE-78
OS Command |
CVE-2024-43385 | 2024-09-28 04:33 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |
| 309470 | 8.8 |
HIGH
Network |
phoenixcontact |
tc_mguard_rs4000_4g_vzw_vpn_firmware tc_mguard_rs4000_4g_vpn_firmware tc_mguard_rs4000_4g_att_vpn_firmware tc_mguard_rs4000_3g_vpn_firmware tc_mguard_rs2000_4g_vzw_vpn_firmware tc_mgua… |
A low privileged remote attacker with write permissions can reconfigure the SNMP service due to improper input validation. |
NVD-CWE-noinfo
|
CVE-2024-43388 | 2024-09-28 04:32 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |