|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 16, 2026, 4:01 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 254321 | 7.5 | 危険 | Johannes Ekberg | - | XRay CMS の login2.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2012-1026 | 2012-02-10 14:15 | 2012-02-8 | Show | GitHub Exploit DB Packet Storm |
| 254322 | 5 | 警告 | Dream Property GmbH | - | Enigma2 Webinterface のファイルにおける絶対パストラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2012-1025 | 2012-02-10 14:01 | 2012-02-8 | Show | GitHub Exploit DB Packet Storm |
| 254323 | 5 | 警告 | Dream Property GmbH | - | Enigma2 Webinterface のファイルにおけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2012-1024 | 2012-02-10 14:00 | 2012-02-8 | Show | GitHub Exploit DB Packet Storm |
| 254324 | 6.8 | 警告 | Apache Software Foundation | - | Apache Struts 2 における任意の Java メソッド実行の脆弱性 |
CWE-Other
その他 |
CVE-2012-0838 | 2012-02-10 12:02 | 2012-02-10 | Show | GitHub Exploit DB Packet Storm |
| 254325 | 5.8 | 警告 | 4homepages | - | 4images の admin/index.php におけるオープンリダイレクトの脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2012-1023 | 2012-02-10 11:10 | 2012-02-8 | Show | GitHub Exploit DB Packet Storm |
| 254326 | 7.5 | 危険 | 4homepages | - | 4images の admin/categories.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2012-1022 | 2012-02-10 11:08 | 2012-02-8 | Show | GitHub Exploit DB Packet Storm |
| 254327 | 4.3 | 警告 | 4homepages | - | 4images の admin/categories.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-1021 | 2012-02-10 10:35 | 2012-02-8 | Show | GitHub Exploit DB Packet Storm |
| 254328 | 4.3 | 警告 | Overseas | - | NexorONE Online Banking の login.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-1020 | 2012-02-10 10:29 | 2012-02-8 | Show | GitHub Exploit DB Packet Storm |
| 254329 | 4.3 | 警告 | XWiki | - | XWiki Enterprise におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-1019 | 2012-02-10 10:16 | 2012-02-8 | Show | GitHub Exploit DB Packet Storm |
| 254330 | 4.3 | 警告 | D-Mack Media | - | Joomla! 用 D-Mack Media Currency Converter モジュールにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-1018 | 2012-02-10 10:15 | 2012-02-8 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 16, 2026, 4:13 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 259821 | 6.1 |
MEDIUM
Network |
marvinlabs | wp_customer_area | The customer-area plugin before 7.4.3 for WordPress has XSS via admin pages. |
CWE-79
Cross-site Scripting |
CVE-2017-18519 | 2024-11-21 12:20 | 2019-08-21 | Show | GitHub Exploit DB Packet Storm |
| 259822 | 6.1 |
MEDIUM
Network |
bestwebsoft | smtp | The bws-smtp plugin before 1.1.0 for WordPress has multiple XSS issues. |
CWE-79
Cross-site Scripting |
CVE-2017-18518 | 2024-11-21 12:20 | 2019-08-21 | Show | GitHub Exploit DB Packet Storm |
| 259823 | 8.8 |
HIGH
Network |
mythemeshop | my_wp_translate | The my-wp-translate plugin before 1.0.4 for WordPress has CSRF. |
CWE-352
Origin Validation Error |
CVE-2017-18569 | 2024-11-21 12:20 | 2019-08-21 | Show | GitHub Exploit DB Packet Storm |
| 259824 | 6.1 |
MEDIUM
Network |
mythemeshop | my_wp_translate | The my-wp-translate plugin before 1.0.4 for WordPress has XSS. |
CWE-79
Cross-site Scripting |
CVE-2017-18568 | 2024-11-21 12:20 | 2019-08-21 | Show | GitHub Exploit DB Packet Storm |
| 259825 | 6.1 |
MEDIUM
Network |
soflyy | wp_all_import | The wp-all-import plugin before 3.4.6 for WordPress has XSS. |
CWE-79
Cross-site Scripting |
CVE-2017-18567 | 2024-11-21 12:20 | 2019-08-21 | Show | GitHub Exploit DB Packet Storm |
| 259826 | 6.1 |
MEDIUM
Network |
wp-kama | democracy_poll | The democracy-poll plugin before 5.4 for WordPress has XSS via update_l10n in admin/class.DemAdminInit.php. |
CWE-79
Cross-site Scripting |
CVE-2017-18520 | 2024-11-21 12:20 | 2019-08-21 | Show | GitHub Exploit DB Packet Storm |
| 259827 | 6.1 |
MEDIUM
Network |
bestwebsoft | The bws-pinterest plugin before 1.0.5 for WordPress has multiple XSS issues. |
CWE-79
Cross-site Scripting |
CVE-2017-18517 | 2024-11-21 12:20 | 2019-08-21 | Show | GitHub Exploit DB Packet Storm | |
| 259828 | 7.8 |
HIGH
Local |
linux | linux_kernel | An issue was discovered in net/rds/af_rds.c in the Linux kernel before 4.11. There is an out of bounds write and read in the function rds_recv_track_latency. |
CWE-787
Out-of-bounds Write |
CVE-2017-18552 | 2024-11-21 12:20 | 2019-08-19 | Show | GitHub Exploit DB Packet Storm |
| 259829 | 6.7 |
MEDIUM
Local |
linux opensuse |
linux_kernel leap |
An issue was discovered in drivers/i2c/i2c-core-smbus.c in the Linux kernel before 4.14.15. There is an out of bounds write in the function i2c_smbus_xfer_emulated. |
CWE-787
Out-of-bounds Write |
CVE-2017-18551 | 2024-11-21 12:20 | 2019-08-19 | Show | GitHub Exploit DB Packet Storm |
| 259830 | 5.5 |
MEDIUM
Local |
linux | linux_kernel | An issue was discovered in drivers/scsi/aacraid/commctrl.c in the Linux kernel before 4.13. There is potential exposure of kernel stack memory because aac_get_hba_info does not initialize the hbainfo… |
CWE-200
Information Exposure |
CVE-2017-18550 | 2024-11-21 12:20 | 2019-08-19 | Show | GitHub Exploit DB Packet Storm |