Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228811 7.5 危険 phpmyforum - phpMyForum の editpost.php における SQL インジェクションの脆弱性 - CVE-2007-4107 2012-12-20 18:33 2007-06-7 Show GitHub Exploit DB Packet Storm
228812 4.3 警告 sblog - sBlog の search.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-4102 2012-12-20 18:33 2007-07-31 Show GitHub Exploit DB Packet Storm
228813 5.8 警告 The Tor Project - Tor における重要な情報を取得される脆弱性 - CVE-2007-4099 2012-12-20 18:33 2007-07-30 Show GitHub Exploit DB Packet Storm
228814 5.8 警告 The Tor Project - Tor における任意のストリームへセルを挿入される脆弱性 - CVE-2007-4098 2012-12-20 18:33 2007-07-30 Show GitHub Exploit DB Packet Storm
228815 6.4 警告 The Tor Project - Tor における仕様に反して重要な情報を取得される脆弱性 - CVE-2007-4097 2012-12-20 18:33 2007-07-30 Show GitHub Exploit DB Packet Storm
228816 5.8 警告 The Tor Project - Tor におけるバッファオーバーフローの脆弱性 - CVE-2007-4096 2012-12-20 18:33 2007-07-30 Show GitHub Exploit DB Packet Storm
228817 6.8 警告 rsync.samba.org - rsync の sender.c における任意のコードを実行される脆弱性 - CVE-2007-4091 2012-12-20 18:33 2007-08-15 Show GitHub Exploit DB Packet Storm
228818 4.3 警告 vikingboard - Vikingboard におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-4090 2012-12-20 18:33 2007-07-30 Show GitHub Exploit DB Packet Storm
228819 4.3 警告 wp-feedstats - WordPress 用の WP-FeedStats プラグインにおけるクロスサイトスクリプティングの脆弱性 - CVE-2007-4104 2012-12-20 18:33 2006-08-17 Show GitHub Exploit DB Packet Storm
228820 7.5 危険 wikiwebweaver - WikiWebWeaver の index.php における任意のコードを実行される脆弱性 - CVE-2007-4182 2012-12-20 18:33 2007-08-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
222371 9.8 CRITICAL
Network
fortinet fortisiem A hard-coded password vulnerability in the Fortinet FortiSIEM database component version 5.2.5 and below may allow attackers to access the device database via the use of static credentials. CWE-798
 Use of Hard-coded Credentials
CVE-2019-16153 2024-11-21 13:30 2020-01-24 Show GitHub Exploit DB Packet Storm
222372 7.5 HIGH
Network
adobe experience_manager Adobe Experience Manager versions 6.5, 6.4, 6.3, 6.2, 6.1, and 6.0 have an expression language injection vulnerability. Successful exploitation could lead to sensitive information disclosure. CWE-917
 Improper Neutralization of Special Elements used in an Expression Language Statement ('Expression Language Injection')
CVE-2019-16469 2024-11-21 13:30 2020-01-16 Show GitHub Exploit DB Packet Storm
222373 7.5 HIGH
Network
adobe experience_manager Adobe Experience Manager versions 6.5, 6.4, 6.3, 6.2, 6.1, and 6.0 have an user interface injection vulnerability. Successful exploitation could lead to sensitive information disclosure. CWE-74
Injection
CVE-2019-16468 2024-11-21 13:30 2020-01-16 Show GitHub Exploit DB Packet Storm
222374 6.1 MEDIUM
Network
adobe experience_manager Adobe Experience Manager versions 6.5, 6.4, 6.3, 6.2, 6.1, and 6.0 have a reflected cross-site scripting vulnerability. Successful exploitation could lead to sensitive information disclosure. CWE-79
Cross-site Scripting
CVE-2019-16467 2024-11-21 13:30 2020-01-16 Show GitHub Exploit DB Packet Storm
222375 6.1 MEDIUM
Network
adobe experience_manager Adobe Experience Manager versions 6.5, 6.4, 6.3, 6.2, 6.1, and 6.0 have a reflected cross-site scripting vulnerability. Successful exploitation could lead to sensitive information disclosure. CWE-79
Cross-site Scripting
CVE-2019-16466 2024-11-21 13:30 2020-01-16 Show GitHub Exploit DB Packet Storm
222376 6.1 MEDIUM
Network
fortinet fortiauthenticator An improper neutralization of input during web page generation in FortiAuthenticator WEB UI 6.0.0 may allow an unauthenticated user to perform a cross-site scripting attack (XSS) via a parameter of t… CWE-79
Cross-site Scripting
CVE-2019-16154 2024-11-21 13:30 2020-01-8 Show GitHub Exploit DB Packet Storm
222377 5.3 MEDIUM
Network
dten d5_firmware
d7_firmware
DTEN D5 and D7 before 1.3.2 devices allows remote attackers to read saved whiteboard image PDF documents via storage/emulated/0/Notes/PDF on TCP port 8080 without authentication. CWE-306
Missing Authentication for Critical Function
CVE-2019-16271 2024-11-21 13:30 2020-01-7 Show GitHub Exploit DB Packet Storm
222378 7.5 HIGH
Network
dten d5_firmware
d7_firmware
DTEN D5 before 1.3 and D7 before 1.3 devices transfer customer data files via unencrypted HTTP. CWE-319
Cleartext Transmission of Sensitive Information
CVE-2019-16274 2024-11-21 13:30 2020-01-7 Show GitHub Exploit DB Packet Storm
222379 9.8 CRITICAL
Network
dten d5_firmware
d7_firmware
DTEN D5 and D7 before 1.3.4 devices allow unauthenticated root shell access through Android Debug Bridge (adb), leading to arbitrary code execution and system administration. Also, this provides a co… NVD-CWE-noinfo
CVE-2019-16273 2024-11-21 13:30 2020-01-7 Show GitHub Exploit DB Packet Storm
222380 9.8 CRITICAL
Network
dten d5_firmware
d7_firmware
On DTEN D5 and D7 before 1.3.4 devices, factory settings allows for firmware reflash and Android Debug Bridge (adb) enablement. CWE-1188
 Insecure Default Initialization of Resource
CVE-2019-16272 2024-11-21 13:30 2020-01-7 Show GitHub Exploit DB Packet Storm