|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 20, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 252261 | 4.3 | 警告 | Beanbag | - | Review Board の commenting system におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-4312 | 2011-11-25 16:03 | 2011-11-15 | Show | GitHub Exploit DB Packet Storm |
| 252262 | 3.2 | 注意 | ヒューレット・パッカード | - | HP Operations Agent および Performance Agent におけるディレクトリアクセス制限を回避される脆弱性 |
CWE-noinfo
情報不足 |
CVE-2011-4160 | 2011-11-25 16:02 | 2011-11-22 | Show | GitHub Exploit DB Packet Storm |
| 252263 | 7.5 | 危険 | Technicolor | - | Thomson TG585 上の UPnP IGD の実装における任意のポートマッピングを確立される脆弱性 |
CWE-16
環境設定 |
CVE-2011-4506 | 2011-11-25 14:33 | 2011-11-22 | Show | GitHub Exploit DB Packet Storm |
| 252264 | 7.5 | 危険 | 日本アルカテル・ルーセント | - | SpeedTouch 5x6 上の UPnP IGD の実装における任意のポートマッピングを確立される脆弱性 |
CWE-16
環境設定 |
CVE-2011-4505 | 2011-11-25 14:32 | 2011-11-22 | Show | GitHub Exploit DB Packet Storm |
| 252265 | 7.5 | 危険 | ZyXEL Genmei Mori |
- | ZyXEL P-330W におけるポートマッピングによる通信を確立される脆弱性 |
CWE-16
環境設定 |
CVE-2011-4504 | 2011-11-25 14:31 | 2011-11-22 | Show | GitHub Exploit DB Packet Storm |
| 252266 | 7.5 | 危険 | Sitecom Broadcom |
- | Sitecom WL-111 上で動作する Broadcom Linux の UPnP IGD 実装におけるポートマッピングを確立される脆弱性 |
CWE-16
環境設定 |
CVE-2011-4503 | 2011-11-25 14:31 | 2011-11-22 | Show | GitHub Exploit DB Packet Storm |
| 252267 | 7.5 | 危険 | Sitecom Canyon EDIMAX Technology Sweex |
- | 複数のルータ上で動作する Edimax EdiLinux の UPnP IGD 実装における任意のコマンドを実行される脆弱性 |
CWE-16
環境設定 |
CVE-2011-4502 | 2011-11-25 14:30 | 2011-11-22 | Show | GitHub Exploit DB Packet Storm |
| 252268 | 7.5 | 危険 | Sitecom Canyon EDIMAX Technology Sweex |
- | 複数のルータ上で動作する Edimax EdiLinux の UPnP IGD 実装におけるポートマッピングを確立される脆弱性 |
CWE-16
環境設定 |
CVE-2011-4501 | 2011-11-25 14:29 | 2011-11-22 | Show | GitHub Exploit DB Packet Storm |
| 252269 | 7.5 | 危険 | シスコシステムズ (Linksys) シスコシステムズ |
- | Cisco Linksys WRT54GX の UPnP IGD 実装におけるファイアウォールを管理される脆弱性 |
CWE-16
環境設定 |
CVE-2011-4500 | 2011-11-25 14:28 | 2011-11-22 | Show | GitHub Exploit DB Packet Storm |
| 252270 | 7.5 | 危険 | シスコシステムズ (Linksys) シスコシステムズ |
- | Cisco Linksys WRT54G および WRT54GS の UPnP IGD 実装におけるポートマッピングを確立される脆弱性 |
CWE-16
環境設定 |
CVE-2011-4499 | 2011-11-25 14:18 | 2011-11-22 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 20, 2026, 4:14 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 276121 | - | microsoft |
windows_8.1 windows_server_2012 |
Hyper-V in Microsoft Windows 8.1 and Windows Server 2012 R2 does not properly initialize guest OS system data structures, which allows guest OS users to execute arbitrary code on the host OS or cause… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2015-2361 | 2024-11-21 11:27 | 2015-07-15 | Show | GitHub Exploit DB Packet Storm | |
| 276122 | - |
mozilla oracle novell |
firefox_esr firefox solaris suse_linux_enterprise_server suse_linux_enterprise_desktop suse_linux_enterprise_software_development_kit |
PDF.js in Mozilla Firefox before 39.0 and Firefox ESR 31.x before 31.8 and 38.x before 38.1 enables excessive privileges for internal Workers, which might allow remote attackers to execute arbitrary … |
CWE-17
Code |
CVE-2015-2743 | 2024-11-21 11:27 | 2015-07-6 | Show | GitHub Exploit DB Packet Storm | |
| 276123 | - |
oracle mozilla |
solaris firefox |
Mozilla Firefox before 39.0 on OS X includes native key press information during the logging of crashes, which allows remote attackers to obtain sensitive information by leveraging access to a crash-… |
CWE-200
Information Exposure |
CVE-2015-2742 | 2024-11-21 11:27 | 2015-07-6 | Show | GitHub Exploit DB Packet Storm | |
| 276124 | - |
mozilla oracle |
firefox solaris firefox_esr |
Mozilla Firefox before 39.0, Firefox ESR 38.x before 38.1, and Thunderbird before 38.1 do not enforce key pinning upon encountering an X.509 certificate problem that generates a user dialog, which al… |
CWE-310
Cryptographic Issues |
CVE-2015-2741 | 2024-11-21 11:27 | 2015-07-6 | Show | GitHub Exploit DB Packet Storm | |
| 276125 | - |
mozilla canonical novell debian oracle |
thunderbird firefox_esr firefox ubuntu_linux suse_linux_enterprise_server debian_linux suse_linux_enterprise_desktop suse_linux_enterprise_software_development_kit solaris |
Buffer overflow in the nsXMLHttpRequest::AppendToResponseText function in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and Thunderbird before 38.1 might allow remot… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2015-2740 | 2024-11-21 11:27 | 2015-07-6 | Show | GitHub Exploit DB Packet Storm | |
| 276126 | - |
mozilla canonical novell debian oracle |
firefox ubuntu_linux suse_linux_enterprise_server suse_linux_enterprise_desktop suse_linux_enterprise_software_development_kit debian_linux firefox_esr solaris thunderbird |
The ArrayBufferBuilder::append function in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and Thunderbird before 38.1 accesses unintended memory locations, which has … |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2015-2739 | 2024-11-21 11:27 | 2015-07-6 | Show | GitHub Exploit DB Packet Storm | |
| 276127 | - |
canonical suse debian mozilla oracle |
ubuntu_linux linux_enterprise_server linux_enterprise_software_development_kit linux_enterprise_desktop suse_linux_enterprise_server debian_linux firefox firefox_esr thunderbi… |
The YCbCrImageDataDeserializer::ToDataSourceSurface function in the YCbCr implementation in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and Thunderbird before 38.1… |
CWE-17
Code |
CVE-2015-2738 | 2024-11-21 11:27 | 2015-07-6 | Show | GitHub Exploit DB Packet Storm | |
| 276128 | - |
mozilla canonical oracle suse debian |
firefox_esr firefox ubuntu_linux solaris linux_enterprise_server linux_enterprise_software_development_kit linux_enterprise_desktop suse_linux_enterprise_server debian_linux | The rx::d3d11::SetBufferData function in the Direct3D 11 implementation in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and Thunderbird before 38.1 reads data from … |
CWE-17
Code |
CVE-2015-2737 | 2024-11-21 11:27 | 2015-07-6 | Show | GitHub Exploit DB Packet Storm | |
| 276129 | - |
mozilla oracle canonical novell debian |
firefox thunderbird firefox_esr solaris ubuntu_linux suse_linux_enterprise_server debian_linux suse_linux_enterprise_desktop suse_linux_enterprise_software_development_kit |
The nsZipArchive::BuildFileList function in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and Thunderbird before 38.1 accesses unintended memory locations, which all… |
CWE-17
Code |
CVE-2015-2736 | 2024-11-21 11:27 | 2015-07-6 | Show | GitHub Exploit DB Packet Storm | |
| 276130 | - |
mozilla canonical novell debian oracle |
firefox firefox_esr thunderbird ubuntu_linux suse_linux_enterprise_server debian_linux suse_linux_enterprise_desktop suse_linux_enterprise_software_development_kit solaris |
nsZipArchive.cpp in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and Thunderbird before 38.1 accesses unintended memory locations, which allows remote attackers to … |
CWE-17
Code |
CVE-2015-2735 | 2024-11-21 11:27 | 2015-07-6 | Show | GitHub Exploit DB Packet Storm |