|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 11, 2026, 6:01 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 253341 | 4.3 | 警告 | CA Technologies | - | CA SiteMinder における J2EE アプリケーションのクロスサイトスクリプティングに対する保護を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-2705 | 2010-12-27 11:19 | 2009-08-11 | Show | GitHub Exploit DB Packet Storm |
| 253342 | 4.3 | 警告 | CA Technologies | - | CA SiteMinder における J2EE アプリケーションのクロスサイトスクリプティングに対する保護を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-2704 | 2010-12-27 10:47 | 2009-08-11 | Show | GitHub Exploit DB Packet Storm |
| 253343 | 10 | 危険 | CA Technologies | - | 複数の CA 製品の Data Transport Services におけるスタックベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2009-2026 | 2010-12-27 10:45 | 2009-08-6 | Show | GitHub Exploit DB Packet Storm |
| 253344 | 5 | 警告 | CA Technologies | - | CA ARCserve Backup のメッセージエンジンにおけるサービス運用妨害 (DoS) の脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2009-1761 | 2010-12-27 10:41 | 2009-06-15 | Show | GitHub Exploit DB Packet Storm |
| 253345 | 2.1 | 注意 | CA Technologies | - | CA Internet Security Suite の vetmonnt.sys におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2009-0682 | 2010-12-27 10:36 | 2009-08-18 | Show | GitHub Exploit DB Packet Storm |
| 253346 | 10 | 危険 | CA Technologies | - | CA Service Metric Analysis および Service Level Management の smmsnmpd サービスにおける任意のコマンドを実行される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-0043 | 2010-12-27 10:34 | 2009-01-7 | Show | GitHub Exploit DB Packet Storm |
| 253347 | 10 | 危険 | CA Technologies | - | 複数の CA 製品の Arclib library におけるウィルス検知を回避される脆弱性 |
CWE-DesignError CWE-noinfo |
CVE-2009-0042 | 2010-12-27 10:30 | 2009-01-26 | Show | GitHub Exploit DB Packet Storm |
| 253348 | 9.3 | 危険 | アドビシステムズ | - | Adobe Illustrator における任意のコードを実行される脆弱性 |
CWE-Other
その他 |
CVE-2010-3152 | 2010-12-24 16:16 | 2010-12-3 | Show | GitHub Exploit DB Packet Storm |
| 253349 | - | - | Laurent Destailleur | - | AWStats に脆弱性 | - | - | 2010-12-24 16:06 | 2010-12-1 | Show | GitHub Exploit DB Packet Storm |
| 253350 | 5 | 警告 | ISC, Inc. | - | ISC BIND named の allow-query の処理における脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2010-3615 | 2010-12-24 16:01 | 2010-12-2 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 12, 2026, 5:06 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 253661 | 9.8 |
CRITICAL
Network |
cpa_lead_reward_script_project | cpa_lead_reward_script | CPA Lead Reward Script allows SQL Injection via the username parameter. |
CWE-89
SQL Injection |
CVE-2017-15986 | 2024-11-21 12:15 | 2017-10-31 | Show | GitHub Exploit DB Packet Storm |
| 253662 | 9.8 |
CRITICAL
Network |
readymadeb2bscript | basic_b2b_script | Basic B2B Script allows SQL Injection via the product_view1.php pid or id parameter. |
CWE-89
SQL Injection |
CVE-2017-15985 | 2024-11-21 12:15 | 2017-10-31 | Show | GitHub Exploit DB Packet Storm |
| 253663 | 9.8 |
CRITICAL
Network |
bekirk | creative_management_system_lite | Creative Management System (CMS) Lite 1.4 allows SQL Injection via the S parameter to index.php. |
CWE-89
SQL Injection |
CVE-2017-15984 | 2024-11-21 12:15 | 2017-10-31 | Show | GitHub Exploit DB Packet Storm |
| 253664 | 9.8 |
CRITICAL
Network |
geniusocean | mymagazine_magazine_\&_blog_cms | MyMagazine Magazine & Blog CMS 1.0 allows SQL Injection via the id parameter to admin/admin_process.php for form editing. |
CWE-89
SQL Injection |
CVE-2017-15983 | 2024-11-21 12:15 | 2017-10-31 | Show | GitHub Exploit DB Packet Storm |
| 253665 | 9.8 |
CRITICAL
Network |
geniusocean | news | Dynamic News Magazine & Blog CMS 1.0 allows SQL Injection via the id parameter to admin/admin_process.php for form editing. |
CWE-89
SQL Injection |
CVE-2017-15982 | 2024-11-21 12:15 | 2017-10-31 | Show | GitHub Exploit DB Packet Storm |
| 253666 | 9.8 |
CRITICAL
Network |
geniusocean | newspaper | Responsive Newspaper Magazine & Blog CMS 1.0 allows SQL Injection via the id parameter to admin/admin_process.php for form editing. |
CWE-89
SQL Injection |
CVE-2017-15981 | 2024-11-21 12:15 | 2017-10-31 | Show | GitHub Exploit DB Packet Storm |
| 253667 | 9.8 |
CRITICAL
Network |
rowindex | us_zip_codes_database_script | US Zip Codes Database Script 1.0 allows SQL Injection via the state parameter. |
CWE-89
SQL Injection |
CVE-2017-15980 | 2024-11-21 12:15 | 2017-10-31 | Show | GitHub Exploit DB Packet Storm |
| 253668 | 9.8 |
CRITICAL
Network |
odallated | shareet | Shareet - Photo Sharing Social Network 1.0 allows SQL Injection via the photo parameter. |
CWE-89
SQL Injection |
CVE-2017-15979 | 2024-11-21 12:15 | 2017-10-31 | Show | GitHub Exploit DB Packet Storm |
| 253669 | 9.8 |
CRITICAL
Network |
arox | school_erp_php_script | AROX School ERP PHP Script 1.0 allows SQL Injection via the office_admin/ id parameter. |
CWE-89
SQL Injection |
CVE-2017-15978 | 2024-11-21 12:15 | 2017-10-31 | Show | GitHub Exploit DB Packet Storm |
| 253670 | 9.8 |
CRITICAL
Network |
protectedlinks | expiring_download_links | Protected Links - Expiring Download Links 1.0 allows SQL Injection via the username parameter. |
CWE-89
SQL Injection |
CVE-2017-15977 | 2024-11-21 12:15 | 2017-10-31 | Show | GitHub Exploit DB Packet Storm |