|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 7, 2026, 10 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 228051 | 10 | 危険 | visionsoft | - | Visionsoft Audit の VSAOD におけるヒープベースのバッファオーバーフローの脆弱性 | - | CVE-2007-4148 | 2012-12-20 18:33 | 2007-08-3 | Show | GitHub Exploit DB Packet Storm |
| 228052 | 4.3 | 警告 | webevents | - | ebEvent の webevent.cgi におけるクロスサイトスクリプティングの脆弱性 | - | CVE-2007-4146 | 2012-12-20 18:33 | 2007-08-3 | Show | GitHub Exploit DB Packet Storm |
| 228053 | 4 | 警告 | phpcoupon | - | phpCoupon の Billing Control Panel における Premium Member ステイタスを取得される脆弱性 | - | CVE-2007-4143 | 2012-12-20 18:33 | 2007-08-3 | Show | GitHub Exploit DB Packet Storm |
| 228054 | 4.3 | 警告 | WordPress.org | - | WordPress の Temporary Uploads 編集機能におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2007-4139 | 2012-12-20 18:33 | 2007-08-3 | Show | GitHub Exploit DB Packet Storm |
| 228055 | 6.5 | 警告 | レッドハット | - | Red Hat Network Satellite Server における任意のコードを実行される脆弱性 |
CWE-noinfo
情報不足 |
CVE-2007-4132 | 2012-12-20 18:33 | 2007-08-29 | Show | GitHub Exploit DB Packet Storm |
| 228056 | 7.5 | 危険 | suskunduygular | - | SuskunDuygular Uyelik Sistemi の unuttum.asp における SQL インジェクションの脆弱性 | - | CVE-2007-4114 | 2012-12-20 18:33 | 2007-07-31 | Show | GitHub Exploit DB Packet Storm |
| 228057 | 7.5 | 危険 | phpmyforum | - | phpMyForum の editpost.php における SQL インジェクションの脆弱性 | - | CVE-2007-4107 | 2012-12-20 18:33 | 2007-06-7 | Show | GitHub Exploit DB Packet Storm |
| 228058 | 4.3 | 警告 | sblog | - | sBlog の search.php におけるクロスサイトスクリプティングの脆弱性 | - | CVE-2007-4102 | 2012-12-20 18:33 | 2007-07-31 | Show | GitHub Exploit DB Packet Storm |
| 228059 | 5.8 | 警告 | The Tor Project | - | Tor における重要な情報を取得される脆弱性 | - | CVE-2007-4099 | 2012-12-20 18:33 | 2007-07-30 | Show | GitHub Exploit DB Packet Storm |
| 228060 | 5.8 | 警告 | The Tor Project | - | Tor における任意のストリームへセルを挿入される脆弱性 | - | CVE-2007-4098 | 2012-12-20 18:33 | 2007-07-30 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 7, 2026, 4:22 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 209891 | 6.6 |
MEDIUM
Network |
freerdp debian canonical opensuse |
freerdp debian_linux ubuntu_linux leap |
libfreerdp/gdi/region.c in FreeRDP versions > 1.0 through 2.0.0-rc4 has an Integer Overflow. |
CWE-190
Integer Overflow or Wraparound |
CVE-2020-11523 | 2024-11-21 13:58 | 2020-05-16 | Show | GitHub Exploit DB Packet Storm |
| 209892 | 6.5 |
MEDIUM
Network |
freerdp debian canonical opensuse |
freerdp debian_linux ubuntu_linux leap |
libfreerdp/gdi/gdi.c in FreeRDP > 1.0 through 2.0.0-rc4 has an Out-of-bounds Read. |
CWE-125
Out-of-bounds Read |
CVE-2020-11522 | 2024-11-21 13:58 | 2020-05-16 | Show | GitHub Exploit DB Packet Storm |
| 209893 | 6.6 |
MEDIUM
Network |
freerdp canonical opensuse debian |
freerdp ubuntu_linux leap debian_linux |
libfreerdp/codec/planar.c in FreeRDP version > 1.0 through 2.0.0-rc4 has an Out-of-bounds Write. |
CWE-125 CWE-190 Out-of-bounds Read Integer Overflow or Wraparound |
CVE-2020-11521 | 2024-11-21 13:58 | 2020-05-16 | Show | GitHub Exploit DB Packet Storm |
| 209894 | 3.3 |
LOW
Local |
pulseaudio canonical |
pulseaudio ubuntu_linux |
An Ubuntu-specific modification to Pulseaudio to provide security mediation for Snap-packaged applications was found to have a bypass of intended access restriction for snaps which plugs any of pulse… |
CWE-668
Exposure of Resource to Wrong Sphere |
CVE-2020-11931 | 2024-11-21 13:58 | 2020-05-15 | Show | GitHub Exploit DB Packet Storm |
| 209895 | 2.3 |
LOW
Local |
canonical | subiquity | It was discovered that the Subiquity installer for Ubuntu Server logged the LUKS full disk encryption password if one was entered. |
CWE-532
Inclusion of Sensitive Information in Log Files |
CVE-2020-11932 | 2024-11-21 13:58 | 2020-05-13 | Show | GitHub Exploit DB Packet Storm |
| 209896 | 7.8 |
HIGH
Local |
libemf_project opensuse fedoraproject |
libemf leap fedora |
libEMF (aka ECMA-234 Metafile Library) through 1.0.11 allows a use-after-free. |
CWE-416
Use After Free |
CVE-2020-11866 | 2024-11-21 13:58 | 2020-05-12 | Show | GitHub Exploit DB Packet Storm |
| 209897 | 7.8 |
HIGH
Local |
libemf_project opensuse fedoraproject |
libemf leap fedora |
libEMF (aka ECMA-234 Metafile Library) through 1.0.11 allows out-of-bounds memory access. |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2020-11865 | 2024-11-21 13:58 | 2020-05-12 | Show | GitHub Exploit DB Packet Storm |
| 209898 | 5.5 |
MEDIUM
Local |
libemf_project opensuse fedoraproject |
libemf leap fedora |
libEMF (aka ECMA-234 Metafile Library) through 1.0.11 allows denial of service (issue 2 of 2). |
NVD-CWE-noinfo
|
CVE-2020-11864 | 2024-11-21 13:58 | 2020-05-12 | Show | GitHub Exploit DB Packet Storm |
| 209899 | 5.5 |
MEDIUM
Local |
libemf_project opensuse fedoraproject |
libemf leap fedora |
libEMF (aka ECMA-234 Metafile Library) through 1.0.11 allows denial of service (issue 1 of 2). |
NVD-CWE-noinfo
|
CVE-2020-11863 | 2024-11-21 13:58 | 2020-05-12 | Show | GitHub Exploit DB Packet Storm |
| 209900 | 9.8 |
CRITICAL
Network |
zohocorp |
manageengine_datasecurity_plus manageengine_adaudit_plus |
Zoho ManageEngine DataSecurity Plus prior to 6.0.1 uses default admin credentials to communicate with a DataEngine Xnode server. This allows an attacker to bypass authentication for this server and e… |
CWE-1188
Insecure Default Initialization of Resource |
CVE-2020-11532 | 2024-11-21 13:58 | 2020-05-9 | Show | GitHub Exploit DB Packet Storm |