|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 11, 2026, 6:13 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 258361 | 4.3 | 警告 | Glyph & Cog, LLC freedesktop.org 日本電気 サイバートラスト株式会社 CUPS レッドハット |
- | JBIG2 MMR デコーダにおけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2009-1183 | 2010-05-26 16:30 | 2009-04-16 | Show | GitHub Exploit DB Packet Storm |
| 258362 | 7.5 | 危険 | Glyph & Cog, LLC freedesktop.org 日本電気 サイバートラスト株式会社 CUPS レッドハット |
- | JBIG2 MMR デコーダにおけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2009-1182 | 2010-05-26 16:30 | 2009-04-16 | Show | GitHub Exploit DB Packet Storm |
| 258363 | 5 | 警告 | Glyph & Cog, LLC freedesktop.org 日本電気 サイバートラスト株式会社 CUPS レッドハット |
- | JBIG2 デコーダにおけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2009-1181 | 2010-05-26 16:29 | 2009-04-16 | Show | GitHub Exploit DB Packet Storm |
| 258364 | 6.8 | 警告 | Glyph & Cog, LLC freedesktop.org 日本電気 サイバートラスト株式会社 CUPS レッドハット |
- | JBIG2 デコーダにおける任意のコードを実行される脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2009-1180 | 2010-05-26 16:29 | 2009-04-16 | Show | GitHub Exploit DB Packet Storm |
| 258365 | 6.8 | 警告 | Glyph & Cog, LLC freedesktop.org 日本電気 アップル サイバートラスト株式会社 CUPS レッドハット |
- | JBIG2 デコーダにおける整数オーバーフローの脆弱性 |
CWE-189
数値処理の問題 |
CVE-2009-1179 | 2010-05-26 16:29 | 2009-04-16 | Show | GitHub Exploit DB Packet Storm |
| 258366 | 6.8 | 警告 | Glyph & Cog, LLC freedesktop.org 日本電気 サイバートラスト株式会社 CUPS レッドハット |
- | JBIG2 デコーダにおける任意のコードを実行される脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2009-0800 | 2010-05-26 16:29 | 2009-04-16 | Show | GitHub Exploit DB Packet Storm |
| 258367 | 4.3 | 警告 | Glyph & Cog, LLC freedesktop.org 日本電気 サイバートラスト株式会社 CUPS レッドハット |
- | JBIG2 デコーダにおけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2009-0799 | 2010-05-26 16:28 | 2009-04-16 | Show | GitHub Exploit DB Packet Storm |
| 258368 | 6.9 | 警告 | レッドハット | - | RHEL の Linux kernel 用の特定のレッドハットパッチにおける権限昇格の脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2010-0729 | 2010-05-25 16:05 | 2010-03-16 | Show | GitHub Exploit DB Packet Storm |
| 258369 | 4 | 警告 | IBM | - | IBM DB2 の REPEAT 関数におけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2010-1560 | 2010-05-24 18:34 | 2010-04-27 | Show | GitHub Exploit DB Packet Storm |
| 258370 | 4 | 警告 | サン・マイクロシステムズ | - | Sun Solaris における lx ブランドゾーンに関するサービス運用妨害 (DoS) の脆弱性 |
CWE-noinfo
情報不足 |
CVE-2009-4774 | 2010-05-24 18:33 | 2009-09-9 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 11, 2026, 5:13 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 247041 | 5.4 |
MEDIUM
Network |
advanced_real_estate_script_project | advanced_real_estate_script | PHP Scripts Mall advanced-real-estate-script has XSS via the Name field of a profile. |
CWE-79
Cross-site Scripting |
CVE-2018-15189 | 2024-11-21 12:50 | 2018-08-11 | Show | GitHub Exploit DB Packet Storm |
| 247042 | 6.5 |
MEDIUM
Network |
advanced_real_estate_script_project | advanced_real_estate_script | PHP Scripts Mall advanced-real-estate-script 4.0.9 allows remote attackers to cause a denial of service (page structure loss) via crafted JavaScript code in the Name field of a profile. |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2018-15188 | 2024-11-21 12:50 | 2018-08-11 | Show | GitHub Exploit DB Packet Storm |
| 247043 | 8.0 |
HIGH
Network |
advanced_real_estate_script_project | advanced_real_estate_script | PHP Scripts Mall advanced-real-estate-script 4.0.9 has CSRF via edit-profile.php. |
CWE-352
Origin Validation Error |
CVE-2018-15187 | 2024-11-21 12:50 | 2018-08-11 | Show | GitHub Exploit DB Packet Storm |
| 247044 | 8.8 |
HIGH
Network |
chartered_accountant_\ | _auditor_website_project | PHP Scripts Mall Chartered Accountant : Auditor Website 2.0.1 has CSRF via client/auditor/updprofile.php. |
CWE-352
Origin Validation Error |
CVE-2018-15186 | 2024-11-21 12:50 | 2018-08-11 | Show | GitHub Exploit DB Packet Storm |
| 247045 | 6.5 |
MEDIUM
Network |
naukri_clone_script_project | naukri_clone_script | PHP Scripts Mall Naukri / Shine / Jobsite Clone Script 3.0.4 allows remote attackers to cause a denial of service (page update outage) via crafted PHP and JavaScript code in the "Current Position" fi… |
CWE-20
Improper Input Validation |
CVE-2018-15185 | 2024-11-21 12:50 | 2018-08-11 | Show | GitHub Exploit DB Packet Storm |
| 247046 | 5.4 |
MEDIUM
Network |
naukri_clone_script_project | naukri_clone_script | PHP Scripts Mall Naukri / Shine / Jobsite Clone Script 3.0.4 has Stored XSS via the USERNAME field, a related issue to CVE-2018-6795. |
CWE-79
Cross-site Scripting |
CVE-2018-15184 | 2024-11-21 12:50 | 2018-08-10 | Show | GitHub Exploit DB Packet Storm |
| 247047 | 6.1 |
MEDIUM
Network |
myperfectresume_\/_jobhero_\/_resume_clone_script_project | myperfectresume_\/_jobhero_\/_resume_clone_script | PHP Scripts Mall Myperfectresume / JobHero / Resume Clone Script 2.0.6 has Stored XSS via the Full Name and Title fields. |
CWE-79
Cross-site Scripting |
CVE-2018-15183 | 2024-11-21 12:50 | 2018-08-10 | Show | GitHub Exploit DB Packet Storm |
| 247048 | 5.4 |
MEDIUM
Network |
car_rental_script_project | car_rental_script | PHP Scripts Mall Car Rental Script 2.0.8 has XSS via the FirstName and LastName fields. |
CWE-79
Cross-site Scripting |
CVE-2018-15182 | 2024-11-21 12:50 | 2018-08-10 | Show | GitHub Exploit DB Packet Storm |
| 247049 | 6.5 |
MEDIUM
Network |
jio | 4g_hotspot_m2s_firmware | JioFi 4G Hotspot M2S devices allow attackers to cause a denial of service (secure configuration outage) via an XSS payload in the SSID name and Security Key fields. |
CWE-79
Cross-site Scripting |
CVE-2018-15181 | 2024-11-21 12:50 | 2018-08-10 | Show | GitHub Exploit DB Packet Storm |
| 247050 | 8.1 |
HIGH
Network |
laravel | laravel | In Laravel Framework through 5.5.40 and 5.6.x through 5.6.29, remote code execution might occur as a result of an unserialize call on a potentially untrusted X-XSRF-TOKEN value. This involves the dec… |
CWE-502
Deserialization of Untrusted Data |
CVE-2018-15133 | 2024-11-21 12:50 | 2018-08-10 | Show | GitHub Exploit DB Packet Storm |