|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 30, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 256411 | 5.8 | 警告 | Qihoo 360 Technology | - | Android 用 360 KouXin における SMS メッセージおよび連絡先リストを読まれる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2011-4772 | 2012-01-27 15:06 | 2012-01-25 | Show | GitHub Exploit DB Packet Storm |
| 256412 | 5.8 | 警告 | Lucion Technologies | - | Android 用 Scan to PDF Free におけるスキャンされたファイルおよび Google アカウントを読まれる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2011-4771 | 2012-01-27 15:05 | 2012-01-25 | Show | GitHub Exploit DB Packet Storm |
| 256413 | 5.8 | 警告 | QIWI Wallet | - | Android 用 QIWI Wallet における金銭に関する情報を読まれる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2011-4770 | 2012-01-27 15:03 | 2012-01-25 | Show | GitHub Exploit DB Packet Storm |
| 256414 | 5.8 | 警告 | Qihoo 360 Technology | - | Android 用 360 MobileSafe における SMS メッセージおよび連絡先リストを読まれる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2011-4769 | 2012-01-27 14:56 | 2012-01-25 | Show | GitHub Exploit DB Packet Storm |
| 256415 | 5.8 | 警告 | Ming Software | - | Android 用 Ming Blacklist Free におけるブラックリストおよび連絡先リストを読まれる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2011-4705 | 2012-01-27 14:56 | 2012-01-25 | Show | GitHub Exploit DB Packet Storm |
| 256416 | 5.8 | 警告 | Voxofon LLC | - | Android 用 Voxofon における SMS 情報を読まれる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2011-4704 | 2012-01-27 14:54 | 2012-01-25 | Show | GitHub Exploit DB Packet Storm |
| 256417 | 5.8 | 警告 | Nathaniel Kh | - | Android 用 Limit My Call における通話履歴および連絡先リストを読まれる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2011-4703 | 2012-01-27 14:52 | 2012-01-25 | Show | GitHub Exploit DB Packet Storm |
| 256418 | 5.8 | 警告 | Nimbuzz | - | Android 用 Nimbuzz における連絡先リストを読まれる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2011-4702 | 2012-01-27 14:46 | 2012-01-25 | Show | GitHub Exploit DB Packet Storm |
| 256419 | 5.8 | 警告 | fa | - | Android 用 CallConfirm における allow/block リストを読まれる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2011-4701 | 2012-01-27 14:45 | 2012-01-25 | Show | GitHub Exploit DB Packet Storm |
| 256420 | 5.8 | 警告 | UberMedia | - | Android 用 UberMedia UberSocial における Twitter 情報を読まれる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2011-4700 | 2012-01-27 14:44 | 2012-01-25 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 30, 2026, 4:22 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 245741 | 6.5 |
MEDIUM
Network |
i-lan | draytekl_firmware | DrayTek routers before 2018-05-23 allow CSRF attacks to change DNS or DHCP settings, a related issue to CVE-2017-11649. |
CWE-352
Origin Validation Error |
CVE-2018-20872 | 2024-11-21 13:02 | 2019-08-1 | Show | GitHub Exploit DB Packet Storm |
| 245742 | 9.8 |
CRITICAL
Network |
univa | grid_engine | In Univa Grid Engine before 8.6.3, when configured for Docker jobs and execd spooling on root_squash, weak file permissions ("other" write access) occur in certain cases (GE-6890). |
CWE-732
Incorrect Permission Assignment for Critical Resource |
CVE-2018-20871 | 2024-11-21 13:02 | 2019-07-31 | Show | GitHub Exploit DB Packet Storm |
| 245743 | 6.5 |
MEDIUM
Network |
openmpt | libopenmpt | libopenmpt before 0.3.11 allows a crash with certain malformed custom tunings in MPTM files. |
CWE-20
Improper Input Validation |
CVE-2018-20861 | 2024-11-21 13:02 | 2019-07-31 | Show | GitHub Exploit DB Packet Storm |
| 245744 | 6.5 |
MEDIUM
Network |
openmpt opensuse |
libopenmpt leap |
libopenmpt before 0.3.13 allows a crash with malformed MED files. |
CWE-20
Improper Input Validation |
CVE-2018-20860 | 2024-11-21 13:02 | 2019-07-31 | Show | GitHub Exploit DB Packet Storm |
| 245745 | 6.1 |
MEDIUM
Network |
edx | edx-platform | edx-platform before 2018-07-18 allows XSS via a response to a Chemical Equation advanced problem. |
CWE-79
Cross-site Scripting |
CVE-2018-20859 | 2024-11-21 13:02 | 2019-07-31 | Show | GitHub Exploit DB Packet Storm |
| 245746 | 5.5 |
MEDIUM
Local |
cpanel | cpanel | The WebDAV transport feature in cPanel before 76.0.8 enables debug logging (SEC-467). |
CWE-200
Information Exposure |
CVE-2018-20870 | 2024-11-21 13:02 | 2019-07-31 | Show | GitHub Exploit DB Packet Storm |
| 245747 | 7.8 |
HIGH
Local |
cpanel | cpanel | cPanel before 76.0.8 allows arbitrary code execution in the context of the root account via dnssec adminbin (SEC-465). |
CWE-20
Improper Input Validation |
CVE-2018-20869 | 2024-11-21 13:02 | 2019-07-31 | Show | GitHub Exploit DB Packet Storm |
| 245748 | 6.1 |
MEDIUM
Network |
cpanel | cpanel | cPanel before 76.0.8 has Stored XSS in the WHM MultiPHP Manager interface (SEC-464). |
CWE-79
Cross-site Scripting |
CVE-2018-20868 | 2024-11-21 13:02 | 2019-07-31 | Show | GitHub Exploit DB Packet Storm |
| 245749 | 6.1 |
MEDIUM
Network |
cpanel | cpanel | cPanel before 76.0.8 has Stored XSS in the WHM "Reset a DNS Zone" feature (SEC-461). |
CWE-79
Cross-site Scripting |
CVE-2018-20866 | 2024-11-21 13:02 | 2019-07-31 | Show | GitHub Exploit DB Packet Storm |
| 245750 | 6.1 |
MEDIUM
Network |
cpanel | cpanel | cPanel before 76.0.8 has Self XSS in the WHM Additional Backup Destination field (SEC-459). |
CWE-79
Cross-site Scripting |
CVE-2018-20865 | 2024-11-21 13:02 | 2019-07-31 | Show | GitHub Exploit DB Packet Storm |