|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 10, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 252811 | 5 | 警告 | webwiz | - | Web Wiz NewsPad におけるデータベースをダウンロードされる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-5019 | 2012-03-27 18:42 | 2010-12-1 | Show | GitHub Exploit DB Packet Storm |
| 252812 | 4.3 | 警告 | mark pilgrim | - | Universal Feed Parser の feedparser.py におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-5065 | 2012-03-27 18:42 | 2009-11-18 | Show | GitHub Exploit DB Packet Storm |
| 252813 | 6.8 | 警告 | レッドハット | - | Red Hat Network Satellite およびその他の製品の Spacewalk におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2009-4139 | 2012-03-27 18:42 | 2011-06-16 | Show | GitHub Exploit DB Packet Storm |
| 252814 | 5 | 警告 | Stichting NLnet Labs | - | Unbound におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2009-4008 | 2012-03-27 18:42 | 2011-06-2 | Show | GitHub Exploit DB Packet Storm |
| 252815 | 6.4 | 警告 | レッドハット | - | RHN Satellite Server における不適切なプロキシとして利用される脆弱性 |
CWE-200
情報漏えい |
CVE-2009-0788 | 2012-03-27 18:42 | 2011-04-11 | Show | GitHub Exploit DB Packet Storm |
| 252816 | 4.3 | 警告 | Mozilla Foundation | - | Mozilla Firefox におけるクロスサイトスクリプティングの保護機能を回避される脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-5017 | 2012-03-27 18:42 | 2010-11-12 | Show | GitHub Exploit DB Packet Storm |
| 252817 | 7.5 | 危険 | turbogears | - | TurboGears2 の URL ディスパッチメカニズムにおける詳細不明な脆弱性 |
CWE-noinfo
情報不足 |
CVE-2009-5015 | 2012-03-27 18:42 | 2010-11-5 | Show | GitHub Exploit DB Packet Storm |
| 252818 | 7.5 | 危険 | turbogears | - | TurboGears2 のデフォルトのクイックスタートの設定における repoze.who 認証を回避される脆弱性 |
CWE-310
暗号の問題 |
CVE-2009-5014 | 2012-03-27 18:42 | 2010-11-5 | Show | GitHub Exploit DB Packet Storm |
| 252819 | 5 | 警告 | infradead | - | OpenConnect におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2009-5009 | 2012-03-27 18:42 | 2010-10-14 | Show | GitHub Exploit DB Packet Storm |
| 252820 | 2.1 | 注意 | シスコシステムズ | - | CSD におけるポリシー制限を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-5008 | 2012-03-27 18:42 | 2010-10-14 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 10, 2026, 5 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 259611 | 9.8 |
CRITICAL
Network |
readymade_php_classified_script_project | readymade_php_classified_script | Readymade PHP Classified Script 3.3 has SQL Injection via the /categories subctid or mctid parameter. |
CWE-89
SQL Injection |
CVE-2017-17626 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |
| 259612 | 9.8 |
CRITICAL
Network |
on_demand_marketplace_script_project | on_demand_marketplace_script | Professional Service Script 1.0 has SQL Injection via the service-list city parameter. |
CWE-89
SQL Injection |
CVE-2017-17625 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |
| 259613 | 9.8 |
CRITICAL
Network |
php_multivendor_ecommerce_project | php_multivendor_ecommerce | PHP Multivendor Ecommerce 1.0 has SQL Injection via the single_detail.php sid parameter, or the category.php searchcat or chid1 parameter. |
CWE-89
SQL Injection |
CVE-2017-17624 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |
| 259614 | 9.8 |
CRITICAL
Network |
opensource_classified_ads_script_project | opensource_classified_ads_script | Opensource Classified Ads Script 3.2 has SQL Injection via the advance_result.php keyword parameter. |
CWE-89
SQL Injection |
CVE-2017-17623 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |
| 259615 | 9.8 |
CRITICAL
Network |
online_exam_test_application_script_project | online_exam_test_application_script | Online Exam Test Application Script 1.6 has SQL Injection via the exams.php sort parameter. |
CWE-89
SQL Injection |
CVE-2017-17622 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |
| 259616 | 9.8 |
CRITICAL
Network |
multivendor_penny_auction_clone_script_project | multivendor_penny_auction_clone_script | Multivendor Penny Auction Clone Script 1.0 has SQL Injection via the PATH_INFO to the /detail URI. |
CWE-89
SQL Injection |
CVE-2017-17621 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |
| 259617 | 9.8 |
CRITICAL
Network |
lawyer_search_script_project | lawyer_search_script | Lawyer Search Script 1.1 has SQL Injection via the /lawyer-list city parameter. |
CWE-89
SQL Injection |
CVE-2017-17620 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |
| 259618 | 9.8 |
CRITICAL
Network |
laundry_booking_script_project | laundry_booking_script | Laundry Booking Script 1.0 has SQL Injection via the /list city parameter. |
CWE-89
SQL Injection |
CVE-2017-17619 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |
| 259619 | 9.8 |
CRITICAL
Network |
kickstarter_clone_script_project | kickstarter_clone_script | Kickstarter Clone Script 2.0 has SQL Injection via the investcalc.php projid parameter. |
CWE-89
SQL Injection |
CVE-2017-17618 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |
| 259620 | 9.8 |
CRITICAL
Network |
foodspotting_clone_script_project | foodspotting_clone_script | Foodspotting Clone Script 1.0 has SQL Injection via the quicksearch.php q parameter. |
CWE-89
SQL Injection |
CVE-2017-17617 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |