|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 12, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 253061 | 6.8 | 警告 | The PHP Group サイバートラスト株式会社 レッドハット |
- | PHP の xml_utf8_decode 関数における整数オーバーフローの脆弱性 |
CWE-189
数値処理の問題 |
CVE-2009-5016 | 2011-02-18 15:03 | 2010-11-12 | Show | GitHub Exploit DB Packet Storm |
| 253062 | 6.8 | 警告 | The PHP Group | - | PHP の set_magic_quotes_runtime 関数における SQL インジェクション攻撃を誘導される脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-4700 | 2011-02-18 14:42 | 2010-07-1 | Show | GitHub Exploit DB Packet Storm |
| 253063 | 7.5 | 危険 | The PHP Group | - | PHP の iconv_mime_decode_headers 関数におけるスパムの検出を回避される脆弱性 |
CWE-189
数値処理の問題 |
CVE-2010-4699 | 2011-02-18 14:40 | 2010-09-28 | Show | GitHub Exploit DB Packet Storm |
| 253064 | 5 | 警告 | The PHP Group | - | PHP の GD 拡張モジュールにおけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2010-4698 | 2011-02-18 14:38 | 2010-12-7 | Show | GitHub Exploit DB Packet Storm |
| 253065 | 6.8 | 警告 | The PHP Group | - | PHP の Zend Engine におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2010-4697 | 2011-02-18 14:35 | 2010-09-18 | Show | GitHub Exploit DB Packet Storm |
| 253066 | 1 | 注意 | サン・マイクロシステムズ | - | Oracle Sun Java System Portal Server のプロキシにおける脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-4431 | 2011-02-18 14:30 | 2011-01-18 | Show | GitHub Exploit DB Packet Storm |
| 253067 | 3.6 | 注意 | オラクル | - | Oracle Solaris 9 の XScreenSaver における脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-3586 | 2011-02-18 14:28 | 2011-01-18 | Show | GitHub Exploit DB Packet Storm |
| 253068 | 3.6 | 注意 | オラクル | - | Oracle Solaris 10 の Fault Manager Daemon における脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-4460 | 2011-02-18 14:11 | 2011-01-18 | Show | GitHub Exploit DB Packet Storm |
| 253069 | 4.1 | 警告 | オラクル | - | Oracle Solaris 11 Express の ZFS における脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-4458 | 2011-02-18 14:08 | 2011-01-18 | Show | GitHub Exploit DB Packet Storm |
| 253070 | 4.1 | 警告 | オラクル | - | Oracle Solaris の libc における脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-4415 | 2011-02-18 14:06 | 2011-01-18 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 12, 2026, 5:06 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 253661 | 9.8 |
CRITICAL
Network |
cpa_lead_reward_script_project | cpa_lead_reward_script | CPA Lead Reward Script allows SQL Injection via the username parameter. |
CWE-89
SQL Injection |
CVE-2017-15986 | 2024-11-21 12:15 | 2017-10-31 | Show | GitHub Exploit DB Packet Storm |
| 253662 | 9.8 |
CRITICAL
Network |
readymadeb2bscript | basic_b2b_script | Basic B2B Script allows SQL Injection via the product_view1.php pid or id parameter. |
CWE-89
SQL Injection |
CVE-2017-15985 | 2024-11-21 12:15 | 2017-10-31 | Show | GitHub Exploit DB Packet Storm |
| 253663 | 9.8 |
CRITICAL
Network |
bekirk | creative_management_system_lite | Creative Management System (CMS) Lite 1.4 allows SQL Injection via the S parameter to index.php. |
CWE-89
SQL Injection |
CVE-2017-15984 | 2024-11-21 12:15 | 2017-10-31 | Show | GitHub Exploit DB Packet Storm |
| 253664 | 9.8 |
CRITICAL
Network |
geniusocean | mymagazine_magazine_\&_blog_cms | MyMagazine Magazine & Blog CMS 1.0 allows SQL Injection via the id parameter to admin/admin_process.php for form editing. |
CWE-89
SQL Injection |
CVE-2017-15983 | 2024-11-21 12:15 | 2017-10-31 | Show | GitHub Exploit DB Packet Storm |
| 253665 | 9.8 |
CRITICAL
Network |
geniusocean | news | Dynamic News Magazine & Blog CMS 1.0 allows SQL Injection via the id parameter to admin/admin_process.php for form editing. |
CWE-89
SQL Injection |
CVE-2017-15982 | 2024-11-21 12:15 | 2017-10-31 | Show | GitHub Exploit DB Packet Storm |
| 253666 | 9.8 |
CRITICAL
Network |
geniusocean | newspaper | Responsive Newspaper Magazine & Blog CMS 1.0 allows SQL Injection via the id parameter to admin/admin_process.php for form editing. |
CWE-89
SQL Injection |
CVE-2017-15981 | 2024-11-21 12:15 | 2017-10-31 | Show | GitHub Exploit DB Packet Storm |
| 253667 | 9.8 |
CRITICAL
Network |
rowindex | us_zip_codes_database_script | US Zip Codes Database Script 1.0 allows SQL Injection via the state parameter. |
CWE-89
SQL Injection |
CVE-2017-15980 | 2024-11-21 12:15 | 2017-10-31 | Show | GitHub Exploit DB Packet Storm |
| 253668 | 9.8 |
CRITICAL
Network |
odallated | shareet | Shareet - Photo Sharing Social Network 1.0 allows SQL Injection via the photo parameter. |
CWE-89
SQL Injection |
CVE-2017-15979 | 2024-11-21 12:15 | 2017-10-31 | Show | GitHub Exploit DB Packet Storm |
| 253669 | 9.8 |
CRITICAL
Network |
arox | school_erp_php_script | AROX School ERP PHP Script 1.0 allows SQL Injection via the office_admin/ id parameter. |
CWE-89
SQL Injection |
CVE-2017-15978 | 2024-11-21 12:15 | 2017-10-31 | Show | GitHub Exploit DB Packet Storm |
| 253670 | 9.8 |
CRITICAL
Network |
protectedlinks | expiring_download_links | Protected Links - Expiring Download Links 1.0 allows SQL Injection via the username parameter. |
CWE-89
SQL Injection |
CVE-2017-15977 | 2024-11-21 12:15 | 2017-10-31 | Show | GitHub Exploit DB Packet Storm |