|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 9, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 253191 | 4.3 | 警告 | マイクロソフト | - | Microsoft SharePoint Foundation 2010 におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-0017 | 2012-02-20 18:16 | 2012-02-14 | Show | GitHub Exploit DB Packet Storm |
| 253192 | 4.3 | 警告 | マイクロソフト | - | Microsoft Office SharePoint の themeweb.aspx におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-0144 | 2012-02-20 18:14 | 2012-02-14 | Show | GitHub Exploit DB Packet Storm |
| 253193 | 4.3 | 警告 | マイクロソフト | - | Microsoft Office SharePoint の wizardlist.aspx におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-0145 | 2012-02-20 18:12 | 2012-02-14 | Show | GitHub Exploit DB Packet Storm |
| 253194 | 9.3 | 危険 | マイクロソフト | - | Microsoft Windows の msvcrt.dll におけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2012-0150 | 2012-02-20 18:10 | 2012-02-14 | Show | GitHub Exploit DB Packet Storm |
| 253195 | 9.3 | 危険 | マイクロソフト | - | Microsoft Visio Viewer における任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2012-0019 | 2012-02-20 18:08 | 2012-02-14 | Show | GitHub Exploit DB Packet Storm |
| 253196 | 9.3 | 危険 | マイクロソフト | - | Microsoft Visio Viewer における任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2012-0020 | 2012-02-20 18:06 | 2012-02-14 | Show | GitHub Exploit DB Packet Storm |
| 253197 | 9.3 | 危険 | マイクロソフト | - | Microsoft Visio Viewer における任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2012-0136 | 2012-02-20 18:04 | 2012-02-14 | Show | GitHub Exploit DB Packet Storm |
| 253198 | 9.3 | 危険 | マイクロソフト | - | Microsoft Visio Viewer における任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2012-0137 | 2012-02-20 18:03 | 2012-02-14 | Show | GitHub Exploit DB Packet Storm |
| 253199 | 9.3 | 危険 | マイクロソフト | - | Microsoft Visio Viewer における任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2012-0138 | 2012-02-20 18:01 | 2012-02-14 | Show | GitHub Exploit DB Packet Storm |
| 253200 | 9.3 | 危険 | マイクロソフト | - | Microsoft .NET Framework および Silverlight における任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2012-0014 | 2012-02-20 17:29 | 2012-02-14 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 9, 2026, 4:16 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 246071 | 5.4 |
MEDIUM
Network |
advanced_real_estate_script_project | advanced_real_estate_script | PHP Scripts Mall advanced-real-estate-script has XSS via the Name field of a profile. |
CWE-79
Cross-site Scripting |
CVE-2018-15189 | 2024-11-21 12:50 | 2018-08-11 | Show | GitHub Exploit DB Packet Storm |
| 246072 | 6.5 |
MEDIUM
Network |
advanced_real_estate_script_project | advanced_real_estate_script | PHP Scripts Mall advanced-real-estate-script 4.0.9 allows remote attackers to cause a denial of service (page structure loss) via crafted JavaScript code in the Name field of a profile. |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2018-15188 | 2024-11-21 12:50 | 2018-08-11 | Show | GitHub Exploit DB Packet Storm |
| 246073 | 8.0 |
HIGH
Network |
advanced_real_estate_script_project | advanced_real_estate_script | PHP Scripts Mall advanced-real-estate-script 4.0.9 has CSRF via edit-profile.php. |
CWE-352
Origin Validation Error |
CVE-2018-15187 | 2024-11-21 12:50 | 2018-08-11 | Show | GitHub Exploit DB Packet Storm |
| 246074 | 8.8 |
HIGH
Network |
chartered_accountant_\ | _auditor_website_project | PHP Scripts Mall Chartered Accountant : Auditor Website 2.0.1 has CSRF via client/auditor/updprofile.php. |
CWE-352
Origin Validation Error |
CVE-2018-15186 | 2024-11-21 12:50 | 2018-08-11 | Show | GitHub Exploit DB Packet Storm |
| 246075 | 6.5 |
MEDIUM
Network |
naukri_clone_script_project | naukri_clone_script | PHP Scripts Mall Naukri / Shine / Jobsite Clone Script 3.0.4 allows remote attackers to cause a denial of service (page update outage) via crafted PHP and JavaScript code in the "Current Position" fi… |
CWE-20
Improper Input Validation |
CVE-2018-15185 | 2024-11-21 12:50 | 2018-08-11 | Show | GitHub Exploit DB Packet Storm |
| 246076 | 5.4 |
MEDIUM
Network |
naukri_clone_script_project | naukri_clone_script | PHP Scripts Mall Naukri / Shine / Jobsite Clone Script 3.0.4 has Stored XSS via the USERNAME field, a related issue to CVE-2018-6795. |
CWE-79
Cross-site Scripting |
CVE-2018-15184 | 2024-11-21 12:50 | 2018-08-10 | Show | GitHub Exploit DB Packet Storm |
| 246077 | 6.1 |
MEDIUM
Network |
myperfectresume_\/_jobhero_\/_resume_clone_script_project | myperfectresume_\/_jobhero_\/_resume_clone_script | PHP Scripts Mall Myperfectresume / JobHero / Resume Clone Script 2.0.6 has Stored XSS via the Full Name and Title fields. |
CWE-79
Cross-site Scripting |
CVE-2018-15183 | 2024-11-21 12:50 | 2018-08-10 | Show | GitHub Exploit DB Packet Storm |
| 246078 | 5.4 |
MEDIUM
Network |
car_rental_script_project | car_rental_script | PHP Scripts Mall Car Rental Script 2.0.8 has XSS via the FirstName and LastName fields. |
CWE-79
Cross-site Scripting |
CVE-2018-15182 | 2024-11-21 12:50 | 2018-08-10 | Show | GitHub Exploit DB Packet Storm |
| 246079 | 6.5 |
MEDIUM
Network |
jio | 4g_hotspot_m2s_firmware | JioFi 4G Hotspot M2S devices allow attackers to cause a denial of service (secure configuration outage) via an XSS payload in the SSID name and Security Key fields. |
CWE-79
Cross-site Scripting |
CVE-2018-15181 | 2024-11-21 12:50 | 2018-08-10 | Show | GitHub Exploit DB Packet Storm |
| 246080 | 8.1 |
HIGH
Network |
laravel | laravel | In Laravel Framework through 5.5.40 and 5.6.x through 5.6.29, remote code execution might occur as a result of an unserialize call on a potentially untrusted X-XSRF-TOKEN value. This involves the dec… |
CWE-502
Deserialization of Untrusted Data |
CVE-2018-15133 | 2024-11-21 12:50 | 2018-08-10 | Show | GitHub Exploit DB Packet Storm |