Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 4, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228631 7.8 危険 VMware - VMware Workstation におけるゲスト OS がサービス運用妨害 (DoS) 状態となる脆弱性 - CVE-2007-1877 2012-12-20 18:19 2007-05-2 Show GitHub Exploit DB Packet Storm
228632 7.2 危険 VMware - VMware Workstation における "仮想マシンに登録されたコンテキストが破損" する脆弱性 - CVE-2007-1876 2012-12-20 18:19 2007-05-2 Show GitHub Exploit DB Packet Storm
228633 4.3 警告 toenda software development - toendaCMS におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-1872 2012-12-20 18:19 2007-04-13 Show GitHub Exploit DB Packet Storm
228634 7.5 危険 webasyst llc - Shop-Script FREE の smarty/smarty_class.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-1855 2012-12-20 18:19 2007-04-3 Show GitHub Exploit DB Packet Storm
228635 7.5 危険 really simple php and ajax - RSPA におけるディレクトリトラバーサルの脆弱性 - CVE-2007-1851 2012-12-20 18:19 2007-04-3 Show GitHub Exploit DB Packet Storm
228636 7.5 危険 XOOPS - XOOPS 用の Repository モジュールにおける SQL インジェクションの脆弱性 - CVE-2007-1847 2012-12-20 18:19 2007-04-3 Show GitHub Exploit DB Packet Storm
228637 7.5 危険 XOOPS - Xoops 用の MyAds モジュールにおける SQL インジェクションの脆弱性 - CVE-2007-1846 2012-12-20 18:19 2007-04-3 Show GitHub Exploit DB Packet Storm
228638 7.5 危険 XOOPS - Xoops 用の Friendfinder モジュールにおける SQL インジェクションの脆弱性 - CVE-2007-1838 2012-12-20 18:19 2007-04-2 Show GitHub Exploit DB Packet Storm
228639 5 警告 web-app.org - web-app.org WebAPP における特定のファイルをアップロードされる脆弱性 - CVE-2007-1832 2012-12-20 18:19 2007-04-2 Show GitHub Exploit DB Packet Storm
228640 6 警告 web-app.org - web-app.org WebAPP におけるファイルを開かれる脆弱性 - CVE-2007-1831 2012-12-20 18:19 2007-04-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 4, 2026, 4:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
200221 7.5 HIGH
Network
dlink dir-880l_firmware The D-Link router DIR-880L 1.07 is vulnerable to credentials disclosure in telnet service through decompilation of firmware, that allows an unauthenticated attacker to gain access to the firmware and… CWE-798
CWE-522
 Use of Hard-coded Credentials
 Insufficiently Protected Credentials
CVE-2020-29322 2024-11-21 14:23 2021-06-5 Show GitHub Exploit DB Packet Storm
200222 7.5 HIGH
Network
dlink dir-868l_firmware The D-Link router DIR-868L 3.01 is vulnerable to credentials disclosure in telnet service through decompilation of firmware, that allows an unauthenticated attacker to gain access to the firmware and… CWE-798
CWE-522
 Use of Hard-coded Credentials
 Insufficiently Protected Credentials
CVE-2020-29321 2024-11-21 14:23 2021-06-5 Show GitHub Exploit DB Packet Storm
200223 6.5 MEDIUM
Network
nagios fusion Incorrect Access Control in Nagios Fusion 4.1.8 and earlier allows low-privileged authenticated users to extract passwords used to manage fused servers via the test_server command in ajaxhelper.php. CWE-922
 Insecure Storage of Sensitive Information
CVE-2020-28911 2024-11-21 14:23 2021-05-24 Show GitHub Exploit DB Packet Storm
200224 9.8 CRITICAL
Network
nagios nagios_xi Creation of a Temporary Directory with Insecure Permissions in Nagios XI 5.7.5 and earlier allows for Privilege Escalation via creation of symlinks, which are mishandled in getprofile.sh. CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2020-28910 2024-11-21 14:23 2021-05-24 Show GitHub Exploit DB Packet Storm
200225 8.8 HIGH
Network
nagios fusion Incorrect File Permissions in Nagios Fusion 4.1.8 and earlier allows for Privilege Escalation to root via modification of scripts. Low-privileges users are able to modify files that can be executed b… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2020-28909 2024-11-21 14:23 2021-05-24 Show GitHub Exploit DB Packet Storm
200226 9.8 CRITICAL
Network
nagios fusion Command Injection in Nagios Fusion 4.1.8 and earlier allows for Privilege Escalation to nagios. CWE-77
Command Injection
CVE-2020-28908 2024-11-21 14:23 2021-05-24 Show GitHub Exploit DB Packet Storm
200227 9.8 CRITICAL
Network
nagios fusion Incorrect SSL certificate validation in Nagios Fusion 4.1.8 and earlier allows for Escalation of Privileges or Code Execution as root via vectors related to download of an untrusted update package in… CWE-295
Improper Certificate Validation 
CVE-2020-28907 2024-11-21 14:23 2021-05-24 Show GitHub Exploit DB Packet Storm
200228 8.8 HIGH
Network
nagios fusion
nagios_xi
Incorrect File Permissions in Nagios XI 5.7.5 and earlier and Nagios Fusion 4.1.8 and earlier allows for Privilege Escalation to root. Low-privileged users are able to modify files that are included … CWE-276
Incorrect Default Permissions 
CVE-2020-28906 2024-11-21 14:23 2021-05-24 Show GitHub Exploit DB Packet Storm
200229 8.8 HIGH
Network
nagios fusion Improper Input Validation in Nagios Fusion 4.1.8 and earlier allows an authenticated attacker to execute remote code via table pagination. CWE-94
Code Injection
CVE-2020-28905 2024-11-21 14:23 2021-05-24 Show GitHub Exploit DB Packet Storm
200230 9.8 CRITICAL
Network
nagios fusion Execution with Unnecessary Privileges in Nagios Fusion 4.1.8 and earlier allows for Privilege Escalation as nagios via installation of a malicious component containing PHP code. CWE-269
 Improper Privilege Management
CVE-2020-28904 2024-11-21 14:23 2021-05-24 Show GitHub Exploit DB Packet Storm