Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 4, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228061 6.4 警告 The Tor Project - Tor における仕様に反して重要な情報を取得される脆弱性 - CVE-2007-4097 2012-12-20 18:33 2007-07-30 Show GitHub Exploit DB Packet Storm
228062 5.8 警告 The Tor Project - Tor におけるバッファオーバーフローの脆弱性 - CVE-2007-4096 2012-12-20 18:33 2007-07-30 Show GitHub Exploit DB Packet Storm
228063 6.8 警告 rsync.samba.org - rsync の sender.c における任意のコードを実行される脆弱性 - CVE-2007-4091 2012-12-20 18:33 2007-08-15 Show GitHub Exploit DB Packet Storm
228064 4.3 警告 vikingboard - Vikingboard におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-4090 2012-12-20 18:33 2007-07-30 Show GitHub Exploit DB Packet Storm
228065 4.3 警告 wp-feedstats - WordPress 用の WP-FeedStats プラグインにおけるクロスサイトスクリプティングの脆弱性 - CVE-2007-4104 2012-12-20 18:33 2006-08-17 Show GitHub Exploit DB Packet Storm
228066 7.5 危険 wikiwebweaver - WikiWebWeaver の index.php における任意のコードを実行される脆弱性 - CVE-2007-4182 2012-12-20 18:33 2007-08-7 Show GitHub Exploit DB Packet Storm
228067 5.8 警告 The Tor Project - Tor における torrc 設定ファイルを変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-4174 2012-12-20 18:33 2007-08-7 Show GitHub Exploit DB Packet Storm
228068 5 警告 WordPress.org - WordPress 用の Unnamed テーマなどの index.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-4166 2012-12-20 18:33 2007-08-7 Show GitHub Exploit DB Packet Storm
228069 4.3 警告 WordPress.org
xu yiyang
- WordPress 用の Blue Memories テーマの index.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-4165 2012-12-20 18:33 2007-08-7 Show GitHub Exploit DB Packet Storm
228070 7.8 危険 TIBCO Software - TIBCO RV におけるトラフィックをキャプチャされる脆弱性 - CVE-2007-4162 2012-12-20 18:33 2007-08-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 4, 2026, 4:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
196761 5.5 MEDIUM
Local
ibm spectrum_protect_plus IBM Spectrum Protect Plus 10.1.0 through 10.1.6 agent files, in non-default configurations, on Windows are assigned access to everyone with full control permissions, which could allow a local user to… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2020-4631 2024-11-21 14:33 2020-08-5 Show GitHub Exploit DB Packet Storm
196762 5.4 MEDIUM
Network
ibm planning_analytics_local IBM Planning Analytics Local 2.0.0 through 2.0.9.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended f… CWE-79
Cross-site Scripting
CVE-2020-4645 2024-11-21 14:33 2020-07-29 Show GitHub Exploit DB Packet Storm
196763 5.4 MEDIUM
Network
ibm planning_analytics_local IBM Planning Analytics Local 2.0.0 through 2.0.9.1 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker c… CWE-1021
 Improper Restriction of Rendered UI Layers or Frames
CVE-2020-4644 2024-11-21 14:33 2020-07-29 Show GitHub Exploit DB Packet Storm
196764 7.8 HIGH
Local
sonicwall netextender SonicWall NetExtender Windows client vulnerable to arbitrary file write vulnerability, this allows attacker to overwrite a DLL and execute code with the same privilege in the host operating system. T… CWE-20
 Improper Input Validation 
CVE-2020-5131 2024-11-21 14:33 2020-07-18 Show GitHub Exploit DB Packet Storm
196765 5.3 MEDIUM
Network
sonicwall sonicos SonicOS SSLVPN LDAP login request allows remote attackers to cause external service interaction (DNS) due to improper validation of the request. This vulnerability impact SonicOS version 6.5.4.4-44n … CWE-20
 Improper Input Validation 
CVE-2020-5130 2024-11-21 14:33 2020-07-18 Show GitHub Exploit DB Packet Storm
196766 6.5 MEDIUM
Network
traccar traccar Traccar GPS Tracking System before version 4.9 has a LDAP injection vulnerability. It occurs when user input is being used in LDAP search filter. By providing specially crafted input, an attacker can… CWE-74
Injection
CVE-2020-5246 2024-11-21 14:33 2020-07-15 Show GitHub Exploit DB Packet Storm
196767 6.5 MEDIUM
Network
dell powerprotect_data_manager
powerprotect_x400_firmware
Dell PowerProtect Data Manager (PPDM) versions prior to 19.4 and Dell PowerProtect X400 versions prior to 3.2 contain an improper authorization vulnerability. A remote authenticated malicious user ma… CWE-552
 Files or Directories Accessible to External Parties
CVE-2020-5356 2024-11-21 14:33 2020-07-7 Show GitHub Exploit DB Packet Storm
196768 8.8 HIGH
Network
dell emc_data_protection_advisor Dell EMC Data Protection Advisor 6.4, 6.5 and 18.1 contain an OS command injection vulnerability. A remote authenticated malicious user may exploit this vulnerability to execute arbitrary commands on… CWE-78
OS Command 
CVE-2020-5352 2024-11-21 14:33 2020-07-7 Show GitHub Exploit DB Packet Storm
196769 6.5 MEDIUM
Network
github_flavored_markdown_project
fedoraproject
github_flavored_markdown
fedora
The table extension in GitHub Flavored Markdown before version 0.29.0.gfm.1 takes O(n * n) time to parse certain inputs. An attacker could craft a markdown table which would take an unreasonably long… - CVE-2020-5238 2024-11-21 14:33 2020-07-2 Show GitHub Exploit DB Packet Storm
196770 5.4 MEDIUM
Network
dell powermax_os
emc_unisphere_for_powermax_virtual_appliance
emc_unisphere_for_powermax
Dell EMC Unisphere for PowerMax versions prior to 9.1.0.17, Dell EMC Unisphere for PowerMax Virtual Appliance versions prior to 9.1.0.17, and PowerMax OS Release 5978 contain an authorization bypass … CWE-862
 Missing Authorization
CVE-2020-5345 2024-11-21 14:33 2020-06-24 Show GitHub Exploit DB Packet Storm