|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 8, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 254321 | 4.3 | 警告 | アップル Ruby on Rails project |
- | Ruby on Rails の strip_tags 関数におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4214 | 2010-04-16 16:58 | 2009-12-7 | Show | GitHub Exploit DB Packet Storm |
| 254322 | 4.3 | 警告 | アップル Ruby on Rails project |
- | Ruby on Rails におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-3009 | 2010-04-16 16:58 | 2009-09-8 | Show | GitHub Exploit DB Packet Storm |
| 254323 | 7.5 | 危険 | アップル Ruby on Rails project |
- | Ruby on Rails のダイジェスト認証における認証を回避される脆弱性 |
CWE-287
不適切な認証 |
CVE-2009-2422 | 2010-04-16 16:57 | 2009-07-10 | Show | GitHub Exploit DB Packet Storm |
| 254324 | 6.8 | 警告 | アップル | - | Apple Mac OS X の QuickTime におけるヒープベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2010-0526 | 2010-04-16 16:57 | 2010-03-29 | Show | GitHub Exploit DB Packet Storm |
| 254325 | 6.8 | 警告 | アップル | - | Apple Mac OS X の QuickTime におけるヒープベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2010-0520 | 2010-04-16 16:57 | 2010-03-29 | Show | GitHub Exploit DB Packet Storm |
| 254326 | 6.8 | 警告 | アップル | - | Apple Mac OS X の QuickTime における整数オーバーフローの脆弱性 |
CWE-189
数値処理の問題 |
CVE-2010-0519 | 2010-04-16 16:57 | 2010-03-29 | Show | GitHub Exploit DB Packet Storm |
| 254327 | 6.8 | 警告 | アップル | - | Apple Mac OS X の QuickTime における任意のコードを実行される脆弱性 |
CWE-119
バッファエラー |
CVE-2010-0518 | 2010-04-16 16:56 | 2010-03-29 | Show | GitHub Exploit DB Packet Storm |
| 254328 | 6.8 | 警告 | アップル | - | Apple Mac OS X の QuickTime におけるヒープベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2010-0517 | 2010-04-16 16:56 | 2010-03-29 | Show | GitHub Exploit DB Packet Storm |
| 254329 | 6.8 | 警告 | アップル | - | Apple Mac OS X の QuickTime におけるヒープベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2010-0516 | 2010-04-15 18:39 | 2010-03-29 | Show | GitHub Exploit DB Packet Storm |
| 254330 | 6.8 | 警告 | アップル | - | Apple Mac OS X の QuickTime における任意のコードを実行される脆弱性 |
CWE-119
バッファエラー |
CVE-2010-0515 | 2010-04-15 18:39 | 2010-03-29 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 9, 2026, 5:07 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 252001 | 9.8 |
CRITICAL
Network |
secure_e-commerce_script_project | secure_e-commerce_script | Secure E-commerce Script 2.0.1 has SQL Injection via the category.php searchmain or searchcat parameter, or the single_detail.php sid parameter. |
CWE-89
SQL Injection |
CVE-2017-17629 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |
| 252002 | 9.8 |
CRITICAL
Network |
responsive_realestate_script_project | responsive_realestate_script | Responsive Realestate Script 3.2 has SQL Injection via the property-list tbud parameter. |
CWE-89
SQL Injection |
CVE-2017-17628 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |
| 252003 | 9.8 |
CRITICAL
Network |
readymade_video_sharing_script_project | readymade_video_sharing_script | Readymade Video Sharing Script 3.2 has SQL Injection via the single-video-detail.php report_videos array parameter. |
CWE-89
SQL Injection |
CVE-2017-17627 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |
| 252004 | 9.8 |
CRITICAL
Network |
readymade_php_classified_script_project | readymade_php_classified_script | Readymade PHP Classified Script 3.3 has SQL Injection via the /categories subctid or mctid parameter. |
CWE-89
SQL Injection |
CVE-2017-17626 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |
| 252005 | 9.8 |
CRITICAL
Network |
on_demand_marketplace_script_project | on_demand_marketplace_script | Professional Service Script 1.0 has SQL Injection via the service-list city parameter. |
CWE-89
SQL Injection |
CVE-2017-17625 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |
| 252006 | 9.8 |
CRITICAL
Network |
php_multivendor_ecommerce_project | php_multivendor_ecommerce | PHP Multivendor Ecommerce 1.0 has SQL Injection via the single_detail.php sid parameter, or the category.php searchcat or chid1 parameter. |
CWE-89
SQL Injection |
CVE-2017-17624 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |
| 252007 | 9.8 |
CRITICAL
Network |
opensource_classified_ads_script_project | opensource_classified_ads_script | Opensource Classified Ads Script 3.2 has SQL Injection via the advance_result.php keyword parameter. |
CWE-89
SQL Injection |
CVE-2017-17623 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |
| 252008 | 9.8 |
CRITICAL
Network |
online_exam_test_application_script_project | online_exam_test_application_script | Online Exam Test Application Script 1.6 has SQL Injection via the exams.php sort parameter. |
CWE-89
SQL Injection |
CVE-2017-17622 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |
| 252009 | 9.8 |
CRITICAL
Network |
multivendor_penny_auction_clone_script_project | multivendor_penny_auction_clone_script | Multivendor Penny Auction Clone Script 1.0 has SQL Injection via the PATH_INFO to the /detail URI. |
CWE-89
SQL Injection |
CVE-2017-17621 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |
| 252010 | 9.8 |
CRITICAL
Network |
lawyer_search_script_project | lawyer_search_script | Lawyer Search Script 1.1 has SQL Injection via the /lawyer-list city parameter. |
CWE-89
SQL Injection |
CVE-2017-17620 | 2024-11-21 12:18 | 2017-12-13 | Show | GitHub Exploit DB Packet Storm |