|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 6, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 257121 | 4.3 | 警告 | アップル | - | Apple Mac OS X のヘルプビューアにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2010-1373 | 2010-07-8 18:27 | 2010-06-15 | Show | GitHub Exploit DB Packet Storm |
| 257122 | 3.3 | 注意 | アップル | - | Apple Mac OS X の Folder Manager における任意のフォルダを削除される脆弱性 |
CWE-59
リンク解釈の問題 |
CVE-2010-0546 | 2010-07-8 18:27 | 2010-06-15 | Show | GitHub Exploit DB Packet Storm |
| 257123 | 4.4 | 警告 | アップル | - | Apple Mac OS X の DesktopServices におけるアクセス制限を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2010-0545 | 2010-07-8 18:26 | 2010-06-15 | Show | GitHub Exploit DB Packet Storm |
| 257124 | 10 | 危険 | ヒューレット・パッカード SGI IBM |
- | rpc.pcnfsd の _msgout 関数における任意のコードを実行される脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-1039 | 2010-07-8 18:03 | 2010-05-18 | Show | GitHub Exploit DB Packet Storm |
| 257125 | 1.2 | 注意 | IBM OpenBSD |
- | OpenSSH における X11 転送ポートをハイジャックされる脆弱性 |
CWE-200
情報漏えい |
CVE-2008-3259 | 2010-07-7 16:40 | 2008-07-22 | Show | GitHub Exploit DB Packet Storm |
| 257126 | 4.3 | 警告 | アップル サイバートラスト株式会社 レッドハット SquirrelMail Project |
- | SquirrelMail におけるユーザインターフェースを偽装される脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-1581 | 2010-07-6 19:19 | 2009-05-12 | Show | GitHub Exploit DB Packet Storm |
| 257127 | 6.8 | 警告 | アップル SquirrelMail Project |
- | SquirrelMail におけるセッション固定の脆弱性 |
CWE-287
不適切な認証 |
CVE-2009-1580 | 2010-07-6 19:18 | 2009-05-11 | Show | GitHub Exploit DB Packet Storm |
| 257128 | 6.8 | 警告 | アップル サイバートラスト株式会社 レッドハット SquirrelMail Project |
- | SquirrelMail における任意のコマンドを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-1579 | 2010-07-6 19:18 | 2009-05-10 | Show | GitHub Exploit DB Packet Storm |
| 257129 | 4.3 | 警告 | アップル サイバートラスト株式会社 レッドハット SquirrelMail Project |
- | SquirrelMail におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-1578 | 2010-07-6 19:18 | 2009-05-8 | Show | GitHub Exploit DB Packet Storm |
| 257130 | 8.5 | 危険 | マイクロソフト | - | Microsoft IIS における任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2010-1256 | 2010-07-5 17:52 | 2010-06-8 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 6, 2026, 4:18 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 249071 | 5.4 |
MEDIUM
Network |
printeron | printeron | PrinterOn Enterprise 4.1.3 suffers from multiple authenticated stored XSS vulnerabilities via the (1) department field in the printer configuration, (2) description field in the print server configur… |
CWE-79
Cross-site Scripting |
CVE-2018-10326 | 2024-11-21 12:41 | 2018-05-18 | Show | GitHub Exploit DB Packet Storm |
| 249072 | 9.0 |
CRITICAL
Network |
phoenixcontact |
fl_switch_3005_firmware fl_switch_3005t_firmware fl_switch_3004t-fx_firmware fl_switch_3004t-fx_st_firmware fl_switch_3008_firmware fl_switch_3008t_firmware fl_switch_3006t-2fx_firm… |
All Phoenix Contact managed FL SWITCH 3xxx, 4xxx, 48xx products running firmware version 1.0 to 1.33 are prone to buffer overflows when handling very large cookies (a different vulnerability than CVE… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2018-10731 | 2024-11-21 12:41 | 2018-05-18 | Show | GitHub Exploit DB Packet Storm |
| 249073 | 9.1 |
CRITICAL
Network |
phoenixcontact |
fl_switch_3005_firmware fl_switch_3005t_firmware fl_switch_3004t-fx_firmware fl_switch_3004t-fx_st_firmware fl_switch_3008_firmware fl_switch_3008t_firmware fl_switch_3006t-2fx_firm… |
All Phoenix Contact managed FL SWITCH 3xxx, 4xxx, 48xx products running firmware version 1.0 to 1.33 are prone to OS command injection. |
CWE-78
OS Command |
CVE-2018-10730 | 2024-11-21 12:41 | 2018-05-18 | Show | GitHub Exploit DB Packet Storm |
| 249074 | 5.3 |
MEDIUM
Network |
phoenixcontact |
fl_switch_3005_firmware fl_switch_3005t_firmware fl_switch_3004t-fx_firmware fl_switch_3004t-fx_st_firmware fl_switch_3008_firmware fl_switch_3008t_firmware fl_switch_3006t-2fx_firm… |
All Phoenix Contact managed FL SWITCH 3xxx, 4xxx, 48xx products running firmware version 1.0 to 1.33 allow reading the configuration file by an unauthenticated user. |
CWE-200
Information Exposure |
CVE-2018-10729 | 2024-11-21 12:41 | 2018-05-18 | Show | GitHub Exploit DB Packet Storm |
| 249075 | 8.1 |
HIGH
Network |
phoenixcontact |
fl_switch_3005_firmware fl_switch_3005t_firmware fl_switch_3004t-fx_firmware fl_switch_3004t-fx_st_firmware fl_switch_3008_firmware fl_switch_3008t_firmware fl_switch_3006t-2fx_firm… |
All Phoenix Contact managed FL SWITCH 3xxx, 4xxx, 48xx products running firmware version 1.0 to 1.33 are prone to buffer overflows (a different vulnerability than CVE-2018-10731). |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2018-10728 | 2024-11-21 12:41 | 2018-05-18 | Show | GitHub Exploit DB Packet Storm |
| 249076 | 8.8 |
HIGH
Network |
projectpier | projectpier | Unrestricted file upload vulnerability in the Files plugin in ProjectPier 0.88 and earlier allows remote authenticated users to execute arbitrary PHP code by uploading a file with an executable exten… |
CWE-434
Unrestricted Upload of File with Dangerous Type |
CVE-2018-10760 | 2024-11-21 12:41 | 2018-05-16 | Show | GitHub Exploit DB Packet Storm |
| 249077 | 9.8 |
CRITICAL
Network |
projectpier | projectpier | PHP remote file inclusion vulnerability in public/patch/patch.php in Project Pier 0.8.8 and earlier allows remote attackers to execute arbitrary commands or SQL statements via the id parameter. |
CWE-89
SQL Injection |
CVE-2018-10759 | 2024-11-21 12:41 | 2018-05-16 | Show | GitHub Exploit DB Packet Storm |
| 249078 | 6.5 |
MEDIUM
Network |
solarwinds | serv-u | A denial of service vulnerability in SolarWinds Serv-U before 15.1.6 HFv1 allows an authenticated user to crash the application (with a NULL pointer dereference) via a specially crafted URL beginning… |
CWE-476
NULL Pointer Dereference |
CVE-2018-10241 | 2024-11-21 12:41 | 2018-05-16 | Show | GitHub Exploit DB Packet Storm |
| 249079 | 7.3 |
HIGH
Network |
solarwinds | serv-u | SolarWinds Serv-U MFT before 15.1.6 HFv1 assigns authenticated users a low-entropy session token that can be included in requests to the application as a URL parameter in lieu of a session cookie. Th… |
CWE-331
Insufficient Entropy |
CVE-2018-10240 | 2024-11-21 12:41 | 2018-05-16 | Show | GitHub Exploit DB Packet Storm |
| 249080 | 7.2 |
HIGH
Network |
nagios | nagios_xi | A SQL injection issue was discovered in Nagios XI before 5.4.13 via the admin/menuaccess.php chbKey1 parameter. |
CWE-89
SQL Injection |
CVE-2018-10738 | 2024-11-21 12:41 | 2018-05-16 | Show | GitHub Exploit DB Packet Storm |