Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":April 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228111 7.5 危険 sky gunning - MySpeach の up.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-0498 2012-12-20 18:19 2007-01-25 Show GitHub Exploit DB Packet Storm
228112 6.8 警告 upload-service - Upload-Service の upload/top.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-0497 2012-12-20 18:19 2007-01-25 Show GitHub Exploit DB Packet Storm
228113 10 危険 phpsherpa - PhpSherpa の include/config.inc.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-0495 2012-12-20 18:19 2007-01-25 Show GitHub Exploit DB Packet Storm
228114 7.5 危険 webSPELL - webSPELL の gallery.php における SQL インジェクションの脆弱性 - CVE-2007-0492 2012-12-20 18:19 2007-01-24 Show GitHub Exploit DB Packet Storm
228115 6.8 警告 sky gunning - Sky GUNNING MySpeach の up.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-0491 2012-12-20 18:19 2007-01-24 Show GitHub Exploit DB Packet Storm
228116 6.8 警告 visohotlink - VisoHotlink の includes/functions.visohotlink.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-0489 2012-12-20 18:19 2007-01-24 Show GitHub Exploit DB Packet Storm
228117 7.5 危険 webchat.org - WebChat の defines.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-0485 2012-12-20 18:19 2007-01-24 Show GitHub Exploit DB Packet Storm
228118 4.6 警告 サン・マイクロシステムズ - Sun Ray Server Software の cgi-bin/main における utadmin パスワードを取得される脆弱性 - CVE-2007-0482 2012-12-20 18:19 2007-01-23 Show GitHub Exploit DB Packet Storm
228119 4.4 警告 smb4k - Smb4K の utilities/smb4k_*.cpp におけるスタックベースのバッファオーバーフローの脆弱性 - CVE-2007-0475 2012-12-20 18:19 2007-02-3 Show GitHub Exploit DB Packet Storm
228120 3.3 注意 smb4k - Smb4K における任意のプロセスを停止される脆弱性 - CVE-2007-0474 2012-12-20 18:19 2007-02-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 29, 2026, 4:51 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
223251 9.8 CRITICAL
Network
onap open_network_automation_platform An issue was discovered in ONAP SDC through Dublin. By accessing port 7000 of demo-sdc-sdc-wfd-fe pod, an unauthenticated attacker (who already has access to pod-to-pod communication) may execute arb… CWE-306
Missing Authentication for Critical Function
CVE-2019-12119 2024-11-21 13:22 2020-03-19 Show GitHub Exploit DB Packet Storm
223252 9.8 CRITICAL
Network
onap open_network_automation_platform An issue was discovered in ONAP SDC through Dublin. By accessing port 7001 of demo-sdc-sdc-wfd-be pod, an unauthenticated attacker (who already has access to pod-to-pod communication) may execute arb… CWE-306
Missing Authentication for Critical Function
CVE-2019-12118 2024-11-21 13:22 2020-03-19 Show GitHub Exploit DB Packet Storm
223253 9.8 CRITICAL
Network
onap open_network_automation_platform An issue was discovered in ONAP SDC through Dublin. By accessing port 4001 of demo-sdc-sdc-onboarding-be pod, an unauthenticated attacker (who already has access to pod-to-pod communication) may exec… CWE-306
Missing Authentication for Critical Function
CVE-2019-12117 2024-11-21 13:22 2020-03-19 Show GitHub Exploit DB Packet Storm
223254 9.8 CRITICAL
Network
onap open_network_automation_platform An issue was discovered in ONAP SDC through Dublin. By accessing port 6000 of demo-sdc-sdc-fe pod, an unauthenticated attacker (who already has access to pod-to-pod communication) may execute arbitra… CWE-306
Missing Authentication for Critical Function
CVE-2019-12116 2024-11-21 13:22 2020-03-19 Show GitHub Exploit DB Packet Storm
223255 9.8 CRITICAL
Network
onap open_network_automation_platform An issue was discovered in ONAP SDC through Dublin. By accessing port 4000 of demo-sdc-sdc-be pod, an unauthenticated attacker (who already has access to pod-to-pod communication) may execute arbitra… CWE-306
Missing Authentication for Critical Function
CVE-2019-12115 2024-11-21 13:22 2020-03-19 Show GitHub Exploit DB Packet Storm
223256 9.8 CRITICAL
Network
onap open_network_automation_platform An issue was discovered in ONAP HOLMES before Dublin. By accessing port 9202 of dep-holmes-engine-mgmt pod, an unauthenticated attacker (who already has access to pod-to-pod communication) may execut… CWE-306
Missing Authentication for Critical Function
CVE-2019-12114 2024-11-21 13:22 2020-03-19 Show GitHub Exploit DB Packet Storm
223257 8.8 HIGH
Network
onap open_network_automation_platform An issue was discovered in ONAP SDNC before Dublin. By executing sla/printAsGv with a crafted module parameter, an authenticated user can execute an arbitrary command. All SDC setups that include adm… CWE-78
OS Command 
CVE-2019-12113 2024-11-21 13:22 2020-03-19 Show GitHub Exploit DB Packet Storm
223258 9.8 CRITICAL
Network
onap open_network_automation_platform An issue was discovered in ONAP SDNC before Dublin. By executing sla/upload with a crafted filename parameter, an unauthenticated attacker can execute an arbitrary command. All SDC setups that includ… CWE-78
OS Command 
CVE-2019-12112 2024-11-21 13:22 2020-03-19 Show GitHub Exploit DB Packet Storm
223259 7.5 HIGH
Network
facebook thrift Golang Facebook Thrift servers would not error upon receiving messages declaring containers of sizes larger than the payload. As a result, malicious clients could send short messages which would resu… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2019-11939 2024-11-21 13:22 2020-03-18 Show GitHub Exploit DB Packet Storm
223260 9.8 CRITICAL
Network
safescan ta-8010_firmware
ta-8015_firmware
ta-8020_firmware
ta-8025_firmware
ta-8030_firmware
ta-8035_firmware
tm-616_firmware
Directory Traversal in Safescan Timemoto and TA-8000 series version 1.0 allows unauthenticated remote attackers to execute code via the administrative API. CWE-22
Path Traversal
CVE-2019-12182 2024-11-21 13:22 2020-03-14 Show GitHub Exploit DB Packet Storm