Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228081 3.6 注意 TUG
teTeX
- teTeX および TeXlive 2007 の dvips における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-5936 2012-12-20 18:33 2007-11-13 Show GitHub Exploit DB Packet Storm
228082 7.8 危険 pioneers - Pioneers におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2007-5933 2012-12-20 18:33 2007-11-13 Show GitHub Exploit DB Packet Storm
228083 6.8 警告 picoflat cms - Domenico Mancini PicoFlat CMS の index.php における特定のファイルをインクルードされる脆弱性 CWE-22
パス・トラバーサル
CVE-2007-5920 2012-12-20 18:33 2007-11-9 Show GitHub Exploit DB Packet Storm
228084 6.8 警告 skalinks - Skalinks の admin/admin_account.php におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2007-5917 2012-12-20 18:33 2007-11-9 Show GitHub Exploit DB Packet Storm
228085 7.5 危険 phphelpdesk - phphelpdesk における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-5916 2012-12-20 18:33 2007-11-9 Show GitHub Exploit DB Packet Storm
228086 6.8 警告 phphelpdesk - phphelpdesk の index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-5915 2012-12-20 18:33 2007-11-9 Show GitHub Exploit DB Packet Storm
228087 6.8 警告 viewpoint - Viewpoint Media Player の AxMetaStream.dll におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-5911 2012-12-20 18:33 2007-11-9 Show GitHub Exploit DB Packet Storm
228088 4.7 警告 Xen プロジェクト - Xen におけるサービス運用妨害 (DoS) の脆弱性 CWE-DesignError
CVE-2007-5906 2012-12-20 18:33 2007-11-9 Show GitHub Exploit DB Packet Storm
228089 10 危険 ssreader - SSReader の pdg2.dll ActiveX コントロールにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-5892 2012-12-20 18:33 2007-11-7 Show GitHub Exploit DB Packet Storm
228090 6.8 警告 scwiki - scWiki の includes/common.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-5843 2012-12-20 18:33 2007-11-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
224081 7.5 HIGH
Network
3cx 3cx An issue was discovered in the 3CX Phone system (web) management console 12.5.44178.1002 through 12.5 SP2. The Content.MainForm.wgx component is affected by XXE via a crafted XML document in POST dat… CWE-611
XXE
CVE-2019-13176 2024-11-21 13:24 2019-08-8 Show GitHub Exploit DB Packet Storm
224082 9.8 CRITICAL
Network
dlink dir-600m_firmware An issue was discovered on D-Link DIR-600M 3.02, 3.03, 3.04, and 3.06 devices. wan.htm can be accessed directly without authentication, which can lead to disclosure of information about the WAN, and … CWE-306
Missing Authentication for Critical Function
CVE-2019-13101 2024-11-21 13:24 2019-08-8 Show GitHub Exploit DB Packet Storm
224083 7.8 HIGH
Local
denx
opensuse
u-boot
leap
Das U-Boot versions 2016.09 through 2019.07-rc4 can memset() too much data while reading a crafted ext4 filesystem, which results in a stack buffer overflow and likely code execution. CWE-787
 Out-of-bounds Write
CVE-2019-13106 2024-11-21 13:24 2019-08-7 Show GitHub Exploit DB Packet Storm
224084 7.8 HIGH
Local
denx u-boot Das U-Boot versions 2019.07-rc1 through 2019.07-rc4 can double-free a cached block of data when listing files in a crafted ext4 filesystem. CWE-415
 Double Free
CVE-2019-13105 2024-11-21 13:24 2019-08-7 Show GitHub Exploit DB Packet Storm
224085 7.8 HIGH
Local
denx
opensuse
u-boot
leap
In Das U-Boot versions 2016.11-rc1 through 2019.07-rc4, an underflow can cause memcpy() to overwrite a very large amount of data (including the whole stack) while reading a crafted ext4 filesystem. CWE-787
CWE-191
 Out-of-bounds Write
 Integer Underflow (Wrap or Wraparound)
CVE-2019-13104 2024-11-21 13:24 2019-08-7 Show GitHub Exploit DB Packet Storm
224086 9.8 CRITICAL
Network
shenzhen_dragon_brothers fb50_firmware An HTTP parameter pollution issue was discovered on Shenzhen Dragon Brothers Fingerprint Bluetooth Round Padlock FB50 2.3. With the user ID, user name, and the lock's MAC address, anyone can unbind t… CWE-20
 Improper Input Validation 
CVE-2019-13143 2024-11-21 13:24 2019-08-7 Show GitHub Exploit DB Packet Storm
224087 9.8 CRITICAL
Network
oxid-esales eshop OXID eShop 6.0.x before 6.0.5 and 6.1.x before 6.1.4 allows SQL Injection via a crafted URL, leading to full access by an attacker. This includes all shopping cart options, customer data, and the dat… CWE-89
SQL Injection
CVE-2019-13026 2024-11-21 13:24 2019-07-31 Show GitHub Exploit DB Packet Storm
224088 7.5 HIGH
Network
nats nats_server An integer overflow in NATS Server before 2.0.2 allows a remote attacker to crash the server by sending a crafted request. If authentication is enabled, then the remote attacker must have first authe… CWE-190
 Integer Overflow or Wraparound
CVE-2019-13126 2024-11-21 13:24 2019-07-30 Show GitHub Exploit DB Packet Storm
224089 7.1 HIGH
Local
denx u-boot A crafted self-referential DOS partition table will cause all Das U-Boot versions through 2019.07-rc4 to infinitely recurse, causing the stack to grow infinitely and eventually either crash or overwr… CWE-674
 Uncontrolled Recursion
CVE-2019-13103 2024-11-21 13:24 2019-07-30 Show GitHub Exploit DB Packet Storm
224090 6.1 MEDIUM
Network
control-webpanel webpanel In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.846, Reflected XSS in filemanager2.php (parameter fm_current_dir) allows attackers to steal a cookie or session, or redirect to a phishing webs… CWE-79
Cross-site Scripting
CVE-2019-13387 2024-11-21 13:24 2019-07-26 Show GitHub Exploit DB Packet Storm