Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":April 30, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228101 10 危険 リアルネットワークス - RealNetworks GameHouse dldisplay ActiveX コントロール におけるバッファオーバーフローの脆弱性 - CVE-2007-2924 2012-12-20 18:19 2007-06-19 Show GitHub Exploit DB Packet Storm
228102 9.3 危険 zoomify - ZActiveX.dll の Zoomify Viewer ActiveX コントロールにおけるスタックベースのバッファーオーバーフローの脆弱性 - CVE-2007-2920 2012-12-20 18:19 2007-06-11 Show GitHub Exploit DB Packet Storm
228103 4.3 警告 rm easymail - RM EasyMail Plus におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-2915 2012-12-20 18:19 2007-05-30 Show GitHub Exploit DB Packet Storm
228104 4.3 警告 psychostats - PsychoStats におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-2914 2012-12-20 18:19 2007-05-30 Show GitHub Exploit DB Packet Storm
228105 4.9 警告 ssl-explorer - SSL-Explorer における JavaScript などを含むリダイレクト URL を入力される脆弱性 CWE-119
バッファエラー
CVE-2007-2907 2012-12-20 18:19 2007-05-30 Show GitHub Exploit DB Packet Storm
228106 5 警告 サン・マイクロシステムズ - Java Embedding プラグインにおけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-2906 2012-12-20 18:19 2007-05-30 Show GitHub Exploit DB Packet Storm
228107 4.3 警告 サン・マイクロシステムズ - Sun Java System Messaging Server におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-2904 2012-12-20 18:19 2007-05-23 Show GitHub Exploit DB Packet Storm
228108 6.8 警告 scallywag.org - Scallywag における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-2900 2012-12-20 18:19 2007-05-30 Show GitHub Exploit DB Packet Storm
228109 4.3 警告 シマンテック - Windows 上で稼動する Symantec ESM マネージャなどにおけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-2896 2012-12-20 18:19 2007-05-24 Show GitHub Exploit DB Packet Storm
228110 10 危険 サン・マイクロシステムズ - Sun Java Web Proxy Server の sockd におけるスタックベースのバッファオーバーフローの脆弱性 - CVE-2007-2881 2012-12-20 18:19 2007-05-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 30, 2026, 4:58 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
223361 9.8 CRITICAL
Network
salesagility suitecrm SuiteCRM 7.8.x before 7.8.30, 7.10.x before 7.10.17, and 7.11.x before 7.11.5 allows SQL Injection (issue 3 of 3). CWE-89
SQL Injection
CVE-2019-12601 2024-11-21 13:23 2019-06-8 Show GitHub Exploit DB Packet Storm
223362 9.8 CRITICAL
Network
salesagility suitecrm SuiteCRM 7.8.x before 7.8.30, 7.10.x before 7.10.17, and 7.11.x before 7.11.5 allows SQL Injection (issue 2 of 3). CWE-89
SQL Injection
CVE-2019-12600 2024-11-21 13:23 2019-06-8 Show GitHub Exploit DB Packet Storm
223363 9.8 CRITICAL
Network
salesagility suitecrm SuiteCRM 7.10.x before 7.10.17 and 7.11.x before 7.11.5 allows SQL Injection. CWE-89
SQL Injection
CVE-2019-12599 2024-11-21 13:23 2019-06-8 Show GitHub Exploit DB Packet Storm
223364 9.8 CRITICAL
Network
salesagility suitecrm SuiteCRM 7.8.x before 7.8.30, 7.10.x before 7.10.17, and 7.11.x before 7.11.5 allows SQL Injection (issue 1 of 3). CWE-89
SQL Injection
CVE-2019-12598 2024-11-21 13:23 2019-06-8 Show GitHub Exploit DB Packet Storm
223365 6.1 MEDIUM
Network
enttec datagate_mk2_firmware
storm_24_firmware
pixelator_firmware
e-streamer_mk2_firmware
A number of stored XSS vulnerabilities have been identified in the web configuration feature in ENTTEC Datagate Mk2 70044_update_05032019-482 that could allow an unauthenticated threat actor to injec… CWE-79
Cross-site Scripting
CVE-2019-12774 2024-11-21 13:23 2019-06-8 Show GitHub Exploit DB Packet Storm
223366 7.8 HIGH
Local
enttec datagate_mk2_firmware
storm_24_firmware
pixelator_firmware
e-streamer_mk2_firmware
An issue was discovered on the ENTTEC Datagate MK2, Storm 24, Pixelator, and E-Streamer MK2 with firmware 70044_update_05032019-482. They replace secure and protected directory permissions (set as de… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2019-12777 2024-11-21 13:23 2019-06-8 Show GitHub Exploit DB Packet Storm
223367 9.8 CRITICAL
Network
enttec datagate_mk2_firmware
storm_24_firmware
pixelator_firmware
e-streamer_mk2_firmware
An issue was discovered on the ENTTEC Datagate MK2, Storm 24, Pixelator, and E-Streamer MK2 with firmware 70044_update_05032019-482. They include a hard-coded SSH backdoor for remote SSH and SCP acce… CWE-798
 Use of Hard-coded Credentials
CVE-2019-12776 2024-11-21 13:23 2019-06-8 Show GitHub Exploit DB Packet Storm
223368 8.8 HIGH
Network
enttec datagate_mk2_firmware
storm_24_firmware
pixelator_firmware
e-streamer_mk2_firmware
An issue was discovered on the ENTTEC Datagate MK2, Storm 24, Pixelator, and E-Streamer MK2 with firmware 70044_update_05032019-482. They allow high-privileged root access by www-data via sudo withou… CWE-269
 Improper Privilege Management
CVE-2019-12775 2024-11-21 13:23 2019-06-8 Show GitHub Exploit DB Packet Storm
223369 9.8 CRITICAL
Network
thinstation_project thinstation Command injection is possible in ThinStation through 6.1.1 via shell metacharacters after the cgi-bin/CdControl.cgi action= substring, or after the cgi-bin/VolControl.cgi OK= substring. CWE-78
OS Command 
CVE-2019-12771 2024-11-21 13:23 2019-06-7 Show GitHub Exploit DB Packet Storm
223370 7.5 HIGH
Network
securitycamera security_camera_cz The Security Camera CZ application through 1.6.8 for Android stores potentially sensitive recorded video in external data storage, which is readable by any application. NVD-CWE-noinfo
CVE-2019-12763 2024-11-21 13:23 2019-06-7 Show GitHub Exploit DB Packet Storm