Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228361 7.5 危険 vu - VU Case Manager の default.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-6143 2012-12-20 18:34 2007-11-27 Show GitHub Exploit DB Packet Storm
228362 4.3 警告 salims softhouse - ph03y3nk JAF CMS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-6142 2012-12-20 18:34 2007-11-27 Show GitHub Exploit DB Packet Storm
228363 4.3 警告 vbtube - vBTube の vBTube.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-6141 2012-12-20 18:34 2007-11-27 Show GitHub Exploit DB Packet Storm
228364 7.5 危険 vu - VU Mass Mailer の redir.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-6138 2012-12-20 18:33 2007-11-27 Show GitHub Exploit DB Packet Storm
228365 4.3 警告 phpslideshow - PHPSlideShow の phpslideshow.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-6135 2012-12-20 18:33 2007-11-27 Show GitHub Exploit DB Packet Storm
228366 7.5 危険 PHPKIT - PHPKIT の pkinc/public/article.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-6134 2012-12-20 18:33 2007-11-27 Show GitHub Exploit DB Packet Storm
228367 2.1 注意 レッドハット - scanbuttond の buttonpressed.sh における任意のファイルを上書きされる脆弱性 CWE-16
環境設定
CVE-2007-6131 2012-12-20 18:33 2007-11-14 Show GitHub Exploit DB Packet Storm
228368 7.5 危険 project alumni - project alumni における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-6127 2012-12-20 18:33 2007-11-26 Show GitHub Exploit DB Packet Storm
228369 4.3 警告 project alumni - project alumni におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-6126 2012-12-20 18:33 2007-11-26 Show GitHub Exploit DB Packet Storm
228370 7.5 危険 softbiz - Softbiz Freelancers Script の search_form.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-6125 2012-12-20 18:33 2007-11-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 8, 2026, 4:54 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
200981 7.5 HIGH
Network
paloaltonetworks pan-os An information exposure vulnerability exists in Palo Alto Networks Panorama software that discloses the token for the Panorama web interface administrator's session to a managed device when the Panor… CWE-269
 Improper Privilege Management
CVE-2020-2022 2024-11-21 14:24 2020-11-12 Show GitHub Exploit DB Packet Storm
200982 7.2 HIGH
Network
paloaltonetworks pan-os A buffer overflow vulnerability in the PAN-OS management web interface allows authenticated administrators to disrupt system processes and potentially execute arbitrary code with root privileges. Thi… CWE-120
Classic Buffer Overflow
CVE-2020-2042 2024-11-21 14:24 2020-09-10 Show GitHub Exploit DB Packet Storm
200983 7.5 HIGH
Network
paloaltonetworks pan-os An insecure configuration of the appweb daemon of Palo Alto Networks PAN-OS 8.1 allows a remote unauthenticated user to send a specifically crafted request to the device that causes the appweb servic… NVD-CWE-Other
CVE-2020-2041 2024-11-21 14:24 2020-09-10 Show GitHub Exploit DB Packet Storm
200984 3.3 LOW
Local
paloaltonetworks pan-os An information exposure through log file vulnerability where an administrator's password or other sensitive information may be logged in cleartext while using the CLI in Palo Alto Networks PAN-OS sof… CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2020-2044 2024-11-21 14:24 2020-09-10 Show GitHub Exploit DB Packet Storm
200985 3.3 LOW
Local
paloaltonetworks pan-os An information exposure through log file vulnerability where sensitive fields are recorded in the configuration log without masking on Palo Alto Networks PAN-OS software when the after-change-detail … CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2020-2043 2024-11-21 14:24 2020-09-10 Show GitHub Exploit DB Packet Storm
200986 9.8 CRITICAL
Network
paloaltonetworks pan-os A buffer overflow vulnerability in PAN-OS allows an unauthenticated attacker to disrupt system processes and potentially execute arbitrary code with root privileges by sending a malicious request to … CWE-120
Classic Buffer Overflow
CVE-2020-2040 2024-11-21 14:24 2020-09-10 Show GitHub Exploit DB Packet Storm
200987 5.3 MEDIUM
Network
paloaltonetworks pan-os An uncontrolled resource consumption vulnerability in Palo Alto Networks PAN-OS allows for a remote unauthenticated user to upload temporary files through the management web interface that are not pr… CWE-400
 Uncontrolled Resource Consumption
CVE-2020-2039 2024-11-21 14:24 2020-09-10 Show GitHub Exploit DB Packet Storm
200988 7.2 HIGH
Network
paloaltonetworks pan-os An OS Command Injection vulnerability in the PAN-OS management interface that allows authenticated administrators to execute arbitrary OS commands with root privileges. This issue impacts: PAN-OS 9.0… CWE-78
OS Command 
CVE-2020-2038 2024-11-21 14:24 2020-09-10 Show GitHub Exploit DB Packet Storm
200989 7.2 HIGH
Network
paloaltonetworks pan-os An OS Command Injection vulnerability in the PAN-OS management interface that allows authenticated administrators to execute arbitrary OS commands with root privileges. This issue impacts: PAN-OS 8.1… CWE-78
OS Command 
CVE-2020-2037 2024-11-21 14:24 2020-09-10 Show GitHub Exploit DB Packet Storm
200990 8.8 HIGH
Network
paloaltonetworks pan-os A reflected cross-site scripting (XSS) vulnerability exists in the PAN-OS management web interface. A remote attacker able to convince an administrator with an active authenticated session on the fir… CWE-79
Cross-site Scripting
CVE-2020-2036 2024-11-21 14:24 2020-09-10 Show GitHub Exploit DB Packet Storm