Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 1, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228751 7.5 危険 woltlab - wBB の search.php における SQL インジェクションの脆弱性 - CVE-2007-0388 2012-12-20 18:19 2007-01-19 Show GitHub Exploit DB Packet Storm
228752 10 危険 postnuke software foundation - PostNuke の rating セクションにおける脆弱性 - CVE-2007-0386 2012-12-20 18:19 2007-01-19 Show GitHub Exploit DB Packet Storm
228753 7.8 危険 postnuke software foundation - PostNuke の faq セクションにおける重要な情報を取得される脆弱性 - CVE-2007-0385 2012-12-20 18:19 2007-01-19 Show GitHub Exploit DB Packet Storm
228754 5.1 警告 postnuke software foundation - PostNuke のプレビューにおけるクロスサイトスクリプティングの脆弱性 - CVE-2007-0384 2012-12-20 18:19 2007-01-19 Show GitHub Exploit DB Packet Storm
228755 7.5 危険 XOOPS - Xoops における SQL インジェクションの脆弱性 - CVE-2007-0377 2012-12-20 18:19 2007-01-19 Show GitHub Exploit DB Packet Storm
228756 6.8 警告 VirtueMart - Virtuemart におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-0376 2012-12-20 18:19 2007-01-19 Show GitHub Exploit DB Packet Storm
228757 7.5 危険 phpbp - phpBP の index.php における upload/banners/ ファイルに任意の PHP コードを挿入される脆弱性 - CVE-2007-0370 2012-12-20 18:19 2007-01-19 Show GitHub Exploit DB Packet Storm
228758 7.5 危険 phpbp - phpBP における SQL インジェクションの脆弱性 - CVE-2007-0369 2012-12-20 18:19 2007-01-19 Show GitHub Exploit DB Packet Storm
228759 7.5 危険 uberghey - Uberghey CMS の frontpage.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-0359 2012-12-20 18:19 2007-01-18 Show GitHub Exploit DB Packet Storm
228760 6.2 警告 zonelabs - Microsoft Windows XP および Windows Server 2003 における権限を取得される脆弱性 - CVE-2007-0351 2012-12-20 18:19 2007-01-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 1, 2026, 4:54 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
213091 5.3 MEDIUM
Network
image_sharing_script_project image_sharing_script PHP Scripts Mall Image Sharing Script 1.3.4 has HTML injection via the Search Bar. CWE-79
Cross-site Scripting
CVE-2019-7430 2024-11-21 13:48 2019-03-22 Show GitHub Exploit DB Packet Storm
213092 6.5 MEDIUM
Network
property_rental_software_project property_rental_software PHP Scripts Mall Property Rental Software 2.1.4 has directory traversal via a direct request for a listing of an uploads directory such as the wp-content/uploads/2016/08 directory. CWE-200
Information Exposure
CVE-2019-7429 2024-11-21 13:48 2019-03-22 Show GitHub Exploit DB Packet Storm
213093 6.1 MEDIUM
Network
zohocorp manageengine_netflow_analyzer XSS exists in Zoho ManageEngine Netflow Analyzer Professional v7.0.0.2 in the Administration zone "/netflow/jspui/linkdownalertConfig.jsp" file in the task parameter. CWE-79
Cross-site Scripting
CVE-2019-7425 2024-11-21 13:48 2019-03-22 Show GitHub Exploit DB Packet Storm
213094 6.1 MEDIUM
Network
zohocorp manageengine_netflow_analyzer XSS exists in Zoho ManageEngine Netflow Analyzer Professional v7.0.0.2 in the Administration zone "/netflow/jspui/index.jsp" file in the view GET parameter or any of these POST parameters: autorefTim… CWE-79
Cross-site Scripting
CVE-2019-7424 2024-11-21 13:48 2019-03-22 Show GitHub Exploit DB Packet Storm
213095 6.1 MEDIUM
Network
zohocorp manageengine_netflow_analyzer XSS exists in Zoho ManageEngine Netflow Analyzer Professional v7.0.0.2 in the Administration zone "/netflow/jspui/editProfile.jsp" file in the userName parameter. CWE-79
Cross-site Scripting
CVE-2019-7423 2024-11-21 13:48 2019-03-22 Show GitHub Exploit DB Packet Storm
213096 6.1 MEDIUM
Network
zohocorp manageengine_netflow_analyzer XSS exists in Zoho ManageEngine Netflow Analyzer Professional v7.0.0.2 in the Administration zone "/netflow/jspui/addMailSettings.jsp" file in the gF parameter. CWE-79
Cross-site Scripting
CVE-2019-7422 2024-11-21 13:48 2019-03-22 Show GitHub Exploit DB Packet Storm
213097 6.1 MEDIUM
Network
samsung syncthru_web_service
x7400gx_firmware
XSS exists in SAMSUNG X7400GX SyncThru Web Service V6.A6.25 V11.01.05.25_08-21-2015 in "/sws.login/gnb/loginView.sws" in multiple parameters: contextpath and basedURL. CWE-79
Cross-site Scripting
CVE-2019-7421 2024-11-21 13:48 2019-03-22 Show GitHub Exploit DB Packet Storm
213098 6.1 MEDIUM
Network
samsung syncthru_web_service
x7400gx_firmware
XSS exists in SAMSUNG X7400GX SyncThru Web Service V6.A6.25 V11.01.05.25_08-21-2015 in "/sws.application/information/networkinformationView.sws" in the tabName parameter. CWE-79
Cross-site Scripting
CVE-2019-7420 2024-11-21 13:48 2019-03-22 Show GitHub Exploit DB Packet Storm
213099 6.1 MEDIUM
Network
samsung syncthru_web_service
x7400gx_firmware
XSS exists in SAMSUNG X7400GX SyncThru Web Service V6.A6.25 V11.01.05.25_08-21-2015 in "/sws/leftmenu.sws" in multiple parameters: ruiFw_id, ruiFw_pid, ruiFw_title. CWE-79
Cross-site Scripting
CVE-2019-7419 2024-11-21 13:48 2019-03-22 Show GitHub Exploit DB Packet Storm
213100 6.1 MEDIUM
Network
samsung syncthru_web_service
x7400gx_firmware
XSS exists in SAMSUNG X7400GX SyncThru Web Service V6.A6.25 V11.01.05.25_08-21-2015 in "/sws/swsAlert.sws" in multiple parameters: flag, frame, func, and Nfunc. CWE-79
Cross-site Scripting
CVE-2019-7418 2024-11-21 13:48 2019-03-22 Show GitHub Exploit DB Packet Storm