|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 23, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 256871 | 5.8 | 警告 | アップル サイバートラスト株式会社 Python Software Foundation サン・マイクロシステムズ レッドハット |
- | Python の imageop モジュールにおける複数の整数オーバーフローの脆弱性 |
CWE-189
数値処理の問題 |
CVE-2007-4965 | 2010-01-19 15:47 | 2007-09-18 | Show | GitHub Exploit DB Packet Storm |
| 256872 | 7.5 | 危険 | アップル | - | Mac OS X 用の Java における任意のコードを実行される脆弱性 |
CWE-310
暗号の問題 |
CVE-2009-2843 | 2010-01-18 12:22 | 2009-12-3 | Show | GitHub Exploit DB Packet Storm |
| 256873 | 6.8 | 警告 | アップル GNU Project サン・マイクロシステムズ サイバートラスト株式会社 レッドハット |
- | GNU tar の contains_dot_dot() 関数におけるディレクトリトラバーサルの脆弱性 | - | CVE-2007-4131 | 2010-01-18 12:21 | 2007-08-23 | Show | GitHub Exploit DB Packet Storm |
| 256874 | 4.6 | 警告 | IBM | - | IBM DB2 の dasauto における管理者権限を持たないユーザが実行可能な脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-4150 | 2010-01-15 14:10 | 2009-12-2 | Show | GitHub Exploit DB Packet Storm |
| 256875 | 2.1 | 注意 | サン・マイクロシステムズ | - | Sun Solaris の ldap_cachemgr におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-Other
その他 |
CVE-2009-4080 | 2010-01-15 14:10 | 2009-11-24 | Show | GitHub Exploit DB Packet Storm |
| 256876 | 5 | 警告 | サン・マイクロシステムズ | - | Sun Solaris の sshd におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-noinfo
情報不足 |
CVE-2009-4075 | 2010-01-15 14:09 | 2009-11-23 | Show | GitHub Exploit DB Packet Storm |
| 256877 | 2.6 | 注意 | オラクル | - | Oracle Application Server におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
- | 2010-01-14 15:01 | 2010-01-14 | Show | GitHub Exploit DB Packet Storm |
| 256878 | 9.3 | 危険 | マイクロソフト | - | Microsoft Internet Explorer に脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-3672 | 2010-01-14 12:08 | 2009-11-25 | Show | GitHub Exploit DB Packet Storm |
| 256879 | 9.3 | 危険 | サン・マイクロシステムズ VMware |
- | Sun Java SE の java.lang パッケージにおける脆弱性 |
CWE-362
競合状態 |
CVE-2009-2724 | 2010-01-14 12:08 | 2009-08-10 | Show | GitHub Exploit DB Packet Storm |
| 256880 | 10 | 危険 | サン・マイクロシステムズ VMware |
- | Sun Java SE の Provider クラスにおける脆弱性 |
CWE-noinfo
情報不足 |
CVE-2009-2721 | 2010-01-14 12:08 | 2009-08-10 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 23, 2026, 4:08 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 258641 | 8.8 |
HIGH
Network |
loginizer | loginizer | Cross Site Request Forgery (CSRF) exists in the Blacklist and Whitelist IP Wizard in init.php in the Loginizer plugin before 1.3.6 for WordPress because the HTTP Referer header is not checked. |
CWE-352
Origin Validation Error |
CVE-2017-12651 | 2024-11-21 12:09 | 2017-08-8 | Show | GitHub Exploit DB Packet Storm |
| 258642 | 9.8 |
CRITICAL
Network |
loginizer | loginizer | SQL Injection exists in the Loginizer plugin before 1.3.6 for WordPress via the X-Forwarded-For HTTP header. |
CWE-89
SQL Injection |
CVE-2017-12650 | 2024-11-21 12:09 | 2017-08-8 | Show | GitHub Exploit DB Packet Storm |
| 258643 | 6.1 |
MEDIUM
Network |
liferay | liferay_portal | XSS exists in Liferay Portal before 7.0 CE GA4 via a crafted title or summary that is mishandled in the Web Content Display. |
CWE-79
Cross-site Scripting |
CVE-2017-12649 | 2024-11-21 12:09 | 2017-08-8 | Show | GitHub Exploit DB Packet Storm |
| 258644 | 6.1 |
MEDIUM
Network |
liferay | liferay_portal | XSS exists in Liferay Portal before 7.0 CE GA4 via a bookmark URL. |
CWE-79
Cross-site Scripting |
CVE-2017-12648 | 2024-11-21 12:09 | 2017-08-8 | Show | GitHub Exploit DB Packet Storm |
| 258645 | 6.1 |
MEDIUM
Network |
liferay | liferay_portal | XSS exists in Liferay Portal before 7.0 CE GA4 via a Knowledge Base article title. |
CWE-79
Cross-site Scripting |
CVE-2017-12647 | 2024-11-21 12:09 | 2017-08-8 | Show | GitHub Exploit DB Packet Storm |
| 258646 | 6.1 |
MEDIUM
Network |
liferay | liferay_portal | XSS exists in Liferay Portal before 7.0 CE GA4 via a login name, password, or e-mail address. |
CWE-79
Cross-site Scripting |
CVE-2017-12646 | 2024-11-21 12:09 | 2017-08-8 | Show | GitHub Exploit DB Packet Storm |
| 258647 | 6.1 |
MEDIUM
Network |
liferay | liferay_portal | XSS exists in Liferay Portal before 7.0 CE GA4 via an invalid portletId. |
CWE-79
Cross-site Scripting |
CVE-2017-12645 | 2024-11-21 12:09 | 2017-08-8 | Show | GitHub Exploit DB Packet Storm |
| 258648 | 9.8 |
CRITICAL
Network |
quest |
kace_asset_management_appliance kace_systems_management_appliance k1000_as_a_service |
SQL injection exists in Quest KACE Asset Management Appliance 6.4.120822 through 7.2, Systems Management Appliance 6.4.120822 through 7.2.101, and K1000 as a Service 7.0 through 7.2. |
CWE-89
SQL Injection |
CVE-2017-12567 | 2024-11-21 12:09 | 2017-08-8 | Show | GitHub Exploit DB Packet Storm |
| 258649 | 8.8 |
HIGH
Network |
imagemagick | imagemagick | ImageMagick 7.0.6-1 has a memory leak vulnerability in ReadDCMImage in coders\dcm.c. |
CWE-772
Missing Release of Resource after Effective Lifetime |
CVE-2017-12644 | 2024-11-21 12:09 | 2017-08-8 | Show | GitHub Exploit DB Packet Storm |
| 258650 | 6.5 |
MEDIUM
Network |
imagemagick debian |
imagemagick debian_linux |
ImageMagick 7.0.6-1 has a memory exhaustion vulnerability in ReadOneJNGImage in coders\png.c. |
CWE-770
Allocation of Resources Without Limits or Throttling |
CVE-2017-12643 | 2024-11-21 12:09 | 2017-08-8 | Show | GitHub Exploit DB Packet Storm |