|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 9, 2026, 6 p.m.
Update Date:May 9, 2026, 5:07 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 284421 | 9.8 |
CRITICAL
Network |
hubot_scripts_project | hubot_scripts | scripts/email.coffee in the Hubot Scripts module before 2.4.4 for Node.js allows remote attackers to execute arbitrary commands. |
CWE-74
Injection |
CVE-2013-7378 | 2024-11-21 11:00 | 2020-02-12 | Show | GitHub Exploit DB Packet Storm |
| 284422 | 9.8 |
CRITICAL
Network |
dlink | dir-100_firmware | D-Link DIR-100 4.03B07 has PPTP and poe information disclosure |
CWE-522
Insufficiently Protected Credentials |
CVE-2013-7055 | 2024-11-21 11:00 | 2020-02-4 | Show | GitHub Exploit DB Packet Storm |
| 284423 | 6.1 |
MEDIUM
Network |
dlink | dir-100_firmware | D-Link DIR-100 4.03B07: cli.cgi XSS |
CWE-79
Cross-site Scripting |
CVE-2013-7054 | 2024-11-21 11:00 | 2020-02-4 | Show | GitHub Exploit DB Packet Storm |
| 284424 | 8.8 |
HIGH
Network |
dlink | dir-100_firmware | D-Link DIR-100 4.03B07: cli.cgi CSRF |
CWE-352
Origin Validation Error |
CVE-2013-7053 | 2024-11-21 11:00 | 2020-02-4 | Show | GitHub Exploit DB Packet Storm |
| 284425 | 9.8 |
CRITICAL
Network |
dlink | dir-100_firmware | D-Link DIR-100 4.03B07: security bypass via an error in the cliget.cgi script |
CWE-522
Insufficiently Protected Credentials |
CVE-2013-7052 | 2024-11-21 11:00 | 2020-02-4 | Show | GitHub Exploit DB Packet Storm |
| 284426 | 8.8 |
HIGH
Network |
dlink | dir-100_firmware | D-Link DIR-100 4.03B07: cli.cgi security bypass due to failure to check authentication parameters |
CWE-287
Improper Authentication |
CVE-2013-7051 | 2024-11-21 11:00 | 2020-02-4 | Show | GitHub Exploit DB Packet Storm |
| 284427 | 9.8 |
CRITICAL
Network |
zohocorp | manageengine_desktop_central | Unrestricted file upload vulnerability in AgentLogUploadServlet in ManageEngine DesktopCentral 7.x and 8.0.0 before build 80293 allows remote attackers to execute arbitrary code by uploading a file w… |
CWE-434
Unrestricted Upload of File with Dangerous Type |
CVE-2013-7390 | 2024-11-21 11:00 | 2020-01-28 | Show | GitHub Exploit DB Packet Storm |
| 284428 | 7.8 |
HIGH
Local |
daum | potplayer | PotPlayer 1.5.40688: .avi File Memory Corruption |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2013-7185 | 2024-11-21 11:00 | 2020-01-15 | Show | GitHub Exploit DB Packet Storm |
| 284429 | 9.8 |
CRITICAL
Network |
ep_imageconvert_project | ep_imageconvert | The Etherpad Lite ep_imageconvert Plugin has a Remote Command Injection Vulnerability |
CWE-74
Injection |
CVE-2013-7380 | 2024-11-21 11:00 | 2020-01-10 | Show | GitHub Exploit DB Packet Storm |
| 284430 | 6.1 |
MEDIUM
Network |
shaarli_project | shaarli | Multiple cross-site scripting (XSS) vulnerabilities in index.php in Shaarli allow remote attackers to inject arbitrary web script or HTML via the URL to the (1) showRSS, (2) showATOM, or (3) showDail… |
CWE-79
Cross-site Scripting |
CVE-2013-7351 | 2024-11-21 11:00 | 2020-01-3 | Show | GitHub Exploit DB Packet Storm |