|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 18, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 257431 | 9.3 | 危険 | アドビシステムズ | - | Adobe Shockwave Player における整数オーバーフローの脆弱性 |
CWE-189
数値処理の問題 |
CVE-2011-0557 | 2011-03-17 08:38 | 2011-02-8 | Show | GitHub Exploit DB Packet Storm |
| 257432 | 9.3 | 危険 | アドビシステムズ | - | Adobe Shockwave Player の Font Xtra.x32 モジュールにおける任意のコードを実行される脆弱性 |
CWE-119
バッファエラー |
CVE-2011-0556 | 2011-03-17 08:37 | 2011-02-8 | Show | GitHub Exploit DB Packet Storm |
| 257433 | 9.3 | 危険 | アドビシステムズ | - | Adobe Shockwave Player の TextXtra.x32 モジュールにおける任意のコードを実行される脆弱性 |
CWE-119
バッファエラー |
CVE-2011-0555 | 2011-03-17 08:37 | 2011-02-8 | Show | GitHub Exploit DB Packet Storm |
| 257434 | 9.3 | 危険 | アドビシステムズ | - | Adobe Shockwave Player におけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2010-4307 | 2011-03-17 08:36 | 2011-02-8 | Show | GitHub Exploit DB Packet Storm |
| 257435 | 9.3 | 危険 | アドビシステムズ | - | Adobe Shockwave Player における任意のコードを実行される脆弱性 |
CWE-119
バッファエラー |
CVE-2010-4306 | 2011-03-17 08:36 | 2011-02-8 | Show | GitHub Exploit DB Packet Storm |
| 257436 | 9.3 | 危険 | アドビシステムズ | - | Adobe Shockwave Player の Shockwave 3d Asset モジュールにおける任意のコードを実行される脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2010-4196 | 2011-03-17 08:36 | 2011-02-8 | Show | GitHub Exploit DB Packet Storm |
| 257437 | 7.5 | 危険 | アップル VMware サン・マイクロシステムズ ヒューレット・パッカード レッドハット |
- | 複数の Oracle 製品の Java 2D コンポーネントにおける脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-0849 | 2011-03-17 08:18 | 2010-03-30 | Show | GitHub Exploit DB Packet Storm |
| 257438 | 7.5 | 危険 | アップル VMware サン・マイクロシステムズ ヒューレット・パッカード レッドハット |
- | 複数の Oracle 製品の Java 2D コンポーネントにおける脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-0848 | 2011-03-17 08:18 | 2010-03-30 | Show | GitHub Exploit DB Packet Storm |
| 257439 | 7.5 | 危険 | サン・マイクロシステムズ VMware |
- | 複数の Oracle 製品の Java 2D コンポーネントにおける脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-0850 | 2011-03-17 08:17 | 2010-03-30 | Show | GitHub Exploit DB Packet Storm |
| 257440 | 9.3 | 危険 | アドビシステムズ | - | Adobe Shockwave Player の TextXtra モジュールにおける任意のコードを実行される脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2010-4195 | 2011-03-11 18:22 | 2011-02-8 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 19, 2026, 4:01 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 248231 | 5.4 |
MEDIUM
Network |
emlsoft_project | emlsoft | An issue was discovered in EMLsoft 5.4.5. XSS exists via the eml/upload/eml/?action=address&do=edit page. |
CWE-79
Cross-site Scripting |
CVE-2018-14964 | 2024-11-21 12:50 | 2018-08-7 | Show | GitHub Exploit DB Packet Storm |
| 248232 | 8.8 |
HIGH
Network |
zzcms | zzcms | zzcms 8.3 has CSRF via the admin/adminadd.php?action=add URI. |
CWE-352
Origin Validation Error |
CVE-2018-14963 | 2024-11-21 12:50 | 2018-08-7 | Show | GitHub Exploit DB Packet Storm |
| 248233 | 5.4 |
MEDIUM
Network |
zzcms | zzcms | zzcms 8.3 has stored XSS related to the content variable in user/manage.php and zt/show.php. |
CWE-79
Cross-site Scripting |
CVE-2018-14962 | 2024-11-21 12:50 | 2018-08-7 | Show | GitHub Exploit DB Packet Storm |
| 248234 | 9.8 |
CRITICAL
Network |
zzcms | zzcms | dl/dl_sendmail.php in zzcms 8.3 has SQL Injection via the sql parameter. |
CWE-89
SQL Injection |
CVE-2018-14961 | 2024-11-21 12:50 | 2018-08-7 | Show | GitHub Exploit DB Packet Storm |
| 248235 | 8.8 |
HIGH
Network |
xiao5ucompany_project | xiao5ucompany | Xiao5uCompany 1.7 has CSRF via admin/Admin.asp. |
CWE-352
Origin Validation Error |
CVE-2018-14960 | 2024-11-21 12:50 | 2018-08-7 | Show | GitHub Exploit DB Packet Storm |
| 248236 | 8.8 |
HIGH
Network |
weaselcms_project | weaselcms | An issue was discovered in WeaselCMS v0.3.5. CSRF can create new pages via an index.php?b=pages&a=new URI. |
CWE-352
Origin Validation Error |
CVE-2018-14959 | 2024-11-21 12:50 | 2018-08-6 | Show | GitHub Exploit DB Packet Storm |
| 248237 | 8.8 |
HIGH
Network |
weaselcms_project | weaselcms | An issue was discovered in WeaselCMS v0.3.5. CSRF can update the website settings (such as the theme, title, and description) via index.php. |
CWE-352
Origin Validation Error |
CVE-2018-14958 | 2024-11-21 12:50 | 2018-08-6 | Show | GitHub Exploit DB Packet Storm |
| 248238 | 6.1 |
MEDIUM
Network |
squirrelmail | squirrelmail | The mail message display page in SquirrelMail through 1.4.22 has XSS via SVG animations (animate to attribute). |
CWE-79
Cross-site Scripting |
CVE-2018-14955 | 2024-11-21 12:50 | 2018-08-6 | Show | GitHub Exploit DB Packet Storm |
| 248239 | 6.1 |
MEDIUM
Network |
squirrelmail | squirrelmail | The mail message display page in SquirrelMail through 1.4.22 has XSS via the formaction attribute. |
CWE-79
Cross-site Scripting |
CVE-2018-14954 | 2024-11-21 12:50 | 2018-08-6 | Show | GitHub Exploit DB Packet Storm |
| 248240 | 6.1 |
MEDIUM
Network |
squirrelmail | squirrelmail | The mail message display page in SquirrelMail through 1.4.22 has XSS via a "<math xlink:href=" attack. |
CWE-79
Cross-site Scripting |
CVE-2018-14953 | 2024-11-21 12:50 | 2018-08-6 | Show | GitHub Exploit DB Packet Storm |