|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 13, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 253201 | 6.8 | 警告 | The PHP Group サイバートラスト株式会社 レッドハット |
- | PHP の xml_utf8_decode 関数における整数オーバーフローの脆弱性 |
CWE-189
数値処理の問題 |
CVE-2009-5016 | 2011-02-18 15:03 | 2010-11-12 | Show | GitHub Exploit DB Packet Storm |
| 253202 | 6.8 | 警告 | The PHP Group | - | PHP の set_magic_quotes_runtime 関数における SQL インジェクション攻撃を誘導される脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-4700 | 2011-02-18 14:42 | 2010-07-1 | Show | GitHub Exploit DB Packet Storm |
| 253203 | 7.5 | 危険 | The PHP Group | - | PHP の iconv_mime_decode_headers 関数におけるスパムの検出を回避される脆弱性 |
CWE-189
数値処理の問題 |
CVE-2010-4699 | 2011-02-18 14:40 | 2010-09-28 | Show | GitHub Exploit DB Packet Storm |
| 253204 | 5 | 警告 | The PHP Group | - | PHP の GD 拡張モジュールにおけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2010-4698 | 2011-02-18 14:38 | 2010-12-7 | Show | GitHub Exploit DB Packet Storm |
| 253205 | 6.8 | 警告 | The PHP Group | - | PHP の Zend Engine におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2010-4697 | 2011-02-18 14:35 | 2010-09-18 | Show | GitHub Exploit DB Packet Storm |
| 253206 | 1 | 注意 | サン・マイクロシステムズ | - | Oracle Sun Java System Portal Server のプロキシにおける脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-4431 | 2011-02-18 14:30 | 2011-01-18 | Show | GitHub Exploit DB Packet Storm |
| 253207 | 3.6 | 注意 | オラクル | - | Oracle Solaris 9 の XScreenSaver における脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-3586 | 2011-02-18 14:28 | 2011-01-18 | Show | GitHub Exploit DB Packet Storm |
| 253208 | 3.6 | 注意 | オラクル | - | Oracle Solaris 10 の Fault Manager Daemon における脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-4460 | 2011-02-18 14:11 | 2011-01-18 | Show | GitHub Exploit DB Packet Storm |
| 253209 | 4.1 | 警告 | オラクル | - | Oracle Solaris 11 Express の ZFS における脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-4458 | 2011-02-18 14:08 | 2011-01-18 | Show | GitHub Exploit DB Packet Storm |
| 253210 | 4.1 | 警告 | オラクル | - | Oracle Solaris の libc における脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-4415 | 2011-02-18 14:06 | 2011-01-18 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 14, 2026, 4 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 254521 | 7.2 |
HIGH
Network |
tp-link |
er5110g_firmware er5120g_firmware er5510g_firmware er5520g_firmware r4149g_firmware r4239g_firmware r4299g_firmware r473gp-ac_firmware r473g_firmware r473p-ac_firmware r… |
TP-Link WVR, WAR and ER devices allow remote authenticated administrators to execute arbitrary commands via command injection in the new-remotesubnet variable in the pptp_client.lua file. |
NVD-CWE-noinfo
|
CVE-2017-15630 | 2024-11-21 12:14 | 2018-01-12 | Show | GitHub Exploit DB Packet Storm |
| 254522 | 7.2 |
HIGH
Network |
tp-link |
er5110g_firmware er5120g_firmware er5510g_firmware er5520g_firmware r4149g_firmware r4239g_firmware r4299g_firmware r473gp-ac_firmware r473g_firmware r473p-ac_firmware r… |
TP-Link WVR, WAR and ER devices allow remote authenticated administrators to execute arbitrary commands via command injection in the new-tunnelname variable in the pptp_client.lua file. |
NVD-CWE-noinfo
|
CVE-2017-15629 | 2024-11-21 12:14 | 2018-01-12 | Show | GitHub Exploit DB Packet Storm |
| 254523 | 7.2 |
HIGH
Network |
tp-link |
er5110g_firmware er5120g_firmware er5510g_firmware er5520g_firmware r4149g_firmware r4239g_firmware r4299g_firmware r473gp-ac_firmware r473g_firmware r473p-ac_firmware r… |
TP-Link WVR, WAR and ER devices allow remote authenticated administrators to execute arbitrary commands via command injection in the lcpechointerval variable in the pptp_server.lua file. |
NVD-CWE-noinfo
|
CVE-2017-15628 | 2024-11-21 12:14 | 2018-01-12 | Show | GitHub Exploit DB Packet Storm |
| 254524 | 7.2 |
HIGH
Network |
tp-link |
er5110g_firmware er5120g_firmware er5510g_firmware er5520g_firmware r4149g_firmware r4239g_firmware r4299g_firmware r473gp-ac_firmware r473g_firmware r473p-ac_firmware r… |
TP-Link WVR, WAR and ER devices allow remote authenticated administrators to execute arbitrary commands via command injection in the new-pns variable in the pptp_client.lua file. |
NVD-CWE-noinfo
|
CVE-2017-15627 | 2024-11-21 12:14 | 2018-01-12 | Show | GitHub Exploit DB Packet Storm |
| 254525 | 7.2 |
HIGH
Network |
tp-link |
er5110g_firmware er5120g_firmware er5510g_firmware er5520g_firmware r4149g_firmware r4239g_firmware r4299g_firmware r473gp-ac_firmware r473g_firmware r473p-ac_firmware r… |
TP-Link WVR, WAR and ER devices allow remote authenticated administrators to execute arbitrary commands via command injection in the new-bindif variable in the pptp_server.lua file. |
NVD-CWE-noinfo
|
CVE-2017-15626 | 2024-11-21 12:14 | 2018-01-12 | Show | GitHub Exploit DB Packet Storm |
| 254526 | 7.2 |
HIGH
Network |
tp-link |
er5110g_firmware er5120g_firmware er5510g_firmware er5520g_firmware r4149g_firmware r4239g_firmware r4299g_firmware r473gp-ac_firmware r473g_firmware r473p-ac_firmware r… |
TP-Link WVR, WAR and ER devices allow remote authenticated administrators to execute arbitrary commands via command injection in the new-olmode variable in the pptp_client.lua file. |
NVD-CWE-noinfo
|
CVE-2017-15625 | 2024-11-21 12:14 | 2018-01-12 | Show | GitHub Exploit DB Packet Storm |
| 254527 | 7.2 |
HIGH
Network |
tp-link |
er5110g_firmware er5120g_firmware er5510g_firmware er5520g_firmware r4149g_firmware r4239g_firmware r4299g_firmware r473gp-ac_firmware r473g_firmware r473p-ac_firmware r… |
TP-Link WVR, WAR and ER devices allow remote authenticated administrators to execute arbitrary commands via command injection in the new-authtype variable in the pptp_server.lua file. |
NVD-CWE-noinfo
|
CVE-2017-15624 | 2024-11-21 12:14 | 2018-01-12 | Show | GitHub Exploit DB Packet Storm |
| 254528 | 7.2 |
HIGH
Network |
tp-link |
er5110g_firmware er5120g_firmware er5510g_firmware er5520g_firmware r4149g_firmware r4239g_firmware r4299g_firmware r473gp-ac_firmware r473g_firmware r473p-ac_firmware r… |
TP-Link WVR, WAR and ER devices allow remote authenticated administrators to execute arbitrary commands via command injection in the new-enable variable in the pptp_server.lua file. |
NVD-CWE-noinfo
|
CVE-2017-15623 | 2024-11-21 12:14 | 2018-01-12 | Show | GitHub Exploit DB Packet Storm |
| 254529 | 7.2 |
HIGH
Network |
tp-link |
er5110g_firmware er5120g_firmware er5510g_firmware er5520g_firmware r4149g_firmware r4239g_firmware r4299g_firmware r473gp-ac_firmware r473g_firmware r473p-ac_firmware r… |
TP-Link WVR, WAR and ER devices allow remote authenticated administrators to execute arbitrary commands via command injection in the new-mppeencryption variable in the pptp_client.lua file. |
NVD-CWE-noinfo
|
CVE-2017-15622 | 2024-11-21 12:14 | 2018-01-12 | Show | GitHub Exploit DB Packet Storm |
| 254530 | 7.2 |
HIGH
Network |
tp-link |
er5110g_firmware er5120g_firmware er5510g_firmware er5520g_firmware r4149g_firmware r4239g_firmware r4299g_firmware r473gp-ac_firmware r473g_firmware r473p-ac_firmware r… |
TP-Link WVR, WAR and ER devices allow remote authenticated administrators to execute arbitrary commands via command injection in the olmode variable in the interface_wan.lua file. |
NVD-CWE-noinfo
|
CVE-2017-15621 | 2024-11-21 12:14 | 2018-01-12 | Show | GitHub Exploit DB Packet Storm |