Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228791 7.5 危険 phpecho cms - PHPEcho CMS の modules/admin/modules/gallery.php における SQL インジェクションの脆弱性 - CVE-2007-2866 2012-12-20 18:19 2007-05-25 Show GitHub Exploit DB Packet Storm
228792 9.3 危険 phpPgAdmin - phpPgAdmin の sqledit.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-2865 2012-12-20 18:19 2007-05-25 Show GitHub Exploit DB Packet Storm
228793 7.5 危険 saxon - SAXON における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2861 2012-12-20 18:19 2007-05-24 Show GitHub Exploit DB Packet Storm
228794 7.5 危険 simpgb - SimpGB における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2859 2012-12-20 18:19 2007-05-24 Show GitHub Exploit DB Packet Storm
228795 6.5 警告 phpBB - phpBB 用の IP-Tracking Mod における SQL インジェクションの脆弱性 - CVE-2007-2858 2012-12-20 18:19 2007-05-24 Show GitHub Exploit DB Packet Storm
228796 7.5 危険 zakkis technology corporation - ABC Excel Parser の sample/xls2mysql における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2857 2012-12-20 18:19 2007-05-24 Show GitHub Exploit DB Packet Storm
228797 10 危険 sky software - Sky Software Shell MegaPack ActiveX の shComboBox ActiveX コントロールにおけるスタックベースのバッファオーバーフローの脆弱性 - CVE-2007-2848 2012-12-20 18:19 2007-05-24 Show GitHub Exploit DB Packet Storm
228798 6.8 警告 unicon-imc2 - unicon-imc2 の ImmModules/cce/ におけるスタックベースのバッファオーバーフローの脆弱性 - CVE-2007-2835 2012-12-20 18:19 2007-07-1 Show GitHub Exploit DB Packet Storm
228799 9.3 危険 wavelink media - TutorialCMS における認証を回避される脆弱性 - CVE-2007-2822 2012-12-20 18:19 2007-05-22 Show GitHub Exploit DB Packet Storm
228800 7.5 危険 WordPress.org - WordPress の wp-admin/admin-ajax.php における SQL インジェクションの脆弱性 - CVE-2007-2821 2012-12-20 18:19 2007-05-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209881 8.8 HIGH
Network
ifax
avantfax
hylafax
avantfax
sendfax.php in iFAX AvantFAX before 3.3.6 and HylaFAX Enterprise Web Interface before 0.2.5 allows authenticated Command Injection. CWE-78
OS Command 
CVE-2020-11766 2024-11-21 13:58 2020-05-20 Show GitHub Exploit DB Packet Storm
209882 9.8 CRITICAL
Network
panasonic p99_firmware Panasonic P99 devices through 2020-04-10 have Incorrect Access Control. NOTE: the vendor states that all affected products are at "End-of-software-support." NVD-CWE-noinfo
CVE-2020-11715 2024-11-21 13:58 2020-05-20 Show GitHub Exploit DB Packet Storm
209883 7.8 HIGH
Local
sourcefabric newscoop Because of Unrestricted Upload of a File with a Dangerous Type, Sourcefabric Newscoop 4.4.7 allows an authenticated user to execute arbitrary PHP code (and sometimes terminal commands) on a server by… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-11807 2024-11-21 13:58 2020-05-20 Show GitHub Exploit DB Packet Storm
209884 6.1 MEDIUM
Network
microfocus service_manager Cross Site Scripting vulnerability in Micro Focus Service Manager product. Affecting versions 9.50, 9.51, 9.52, 9.60, 9.61, 9.62, 9.63. The vulnerability could be exploited to allow remote attackers … CWE-79
Cross-site Scripting
CVE-2020-11845 2024-11-21 13:58 2020-05-20 Show GitHub Exploit DB Packet Storm
209885 6.5 MEDIUM
Adjacent
netgear rbs50y_firmware
srr60_firmware
srs60_firmware
An issue was discovered on NETGEAR Orbi Tri-Band Business WiFi Add-on Satellite (SRS60) AC3000 V2.5.1.106, Outdoor Satellite (RBS50Y) V2.5.1.106, and Pro Tri-Band Business WiFi Router (SRR60) AC3000 … NVD-CWE-noinfo
CVE-2020-11550 2024-11-21 13:58 2020-05-19 Show GitHub Exploit DB Packet Storm
209886 8.8 HIGH
Adjacent
netgear rbs50y_firmware
srr60_firmware
srs60_firmware
An issue was discovered on NETGEAR Orbi Tri-Band Business WiFi Add-on Satellite (SRS60) AC3000 V2.5.1.106, Outdoor Satellite (RBS50Y) V2.5.1.106, and Pro Tri-Band Business WiFi Router (SRR60) AC3000 … CWE-798
 Use of Hard-coded Credentials
CVE-2020-11549 2024-11-21 13:58 2020-05-19 Show GitHub Exploit DB Packet Storm
209887 8.8 HIGH
Adjacent
netgear rbs50y_firmware
srr60_firmware
srs60_firmware
An issue was discovered on NETGEAR Orbi Tri-Band Business WiFi Add-on Satellite (SRS60) AC3000 V2.5.1.106, Outdoor Satellite (RBS50Y) V2.5.1.106, and Pro Tri-Band Business WiFi Router (SRR60) AC3000 … CWE-287
CWE-330
Improper Authentication
 Use of Insufficiently Random Values
CVE-2020-11551 2024-11-21 13:58 2020-05-19 Show GitHub Exploit DB Packet Storm
209888 2.2 LOW
Network
freerdp
canonical
opensuse
debian
freerdp
ubuntu_linux
leap
debian_linux
libfreerdp/core/update.c in FreeRDP versions > 1.1 through 2.0.0-rc4 has an Out-of-bounds Read. CWE-125
CWE-190
Out-of-bounds Read
 Integer Overflow or Wraparound
CVE-2020-11526 2024-11-21 13:58 2020-05-16 Show GitHub Exploit DB Packet Storm
209889 2.2 LOW
Network
freerdp
debian
canonical
opensuse
freerdp
debian_linux
ubuntu_linux
leap
libfreerdp/cache/bitmap.c in FreeRDP versions > 1.0 through 2.0.0-rc4 has an Out of bounds read. CWE-125
Out-of-bounds Read
CVE-2020-11525 2024-11-21 13:58 2020-05-16 Show GitHub Exploit DB Packet Storm
209890 6.6 MEDIUM
Network
freerdp
canonical
opensuse
freerdp
ubuntu_linux
leap
libfreerdp/codec/interleaved.c in FreeRDP versions > 1.0 through 2.0.0-rc4 has an Out-of-bounds Write. CWE-787
 Out-of-bounds Write
CVE-2020-11524 2024-11-21 13:58 2020-05-16 Show GitHub Exploit DB Packet Storm