Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228831 9.3 危険 sciurus - Sciurus Hosting Panel の acp/savenews.php における任意の PHP コードを挿入される脆弱性 CWE-94
コード・インジェクション
CVE-2007-6082 2012-12-20 18:33 2007-11-21 Show GitHub Exploit DB Packet Storm
228832 7.5 危険 skyportal - SkyPortal における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-6078 2012-12-20 18:33 2007-11-21 Show GitHub Exploit DB Packet Storm
228833 7.5 危険 profilecms - ProfileCMS の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-6058 2012-12-20 18:33 2007-11-20 Show GitHub Exploit DB Packet Storm
228834 6.8 警告 swsoft - SWSoft Confixx Professional の fehler.inc.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-6042 2012-12-20 18:33 2007-11-20 Show GitHub Exploit DB Packet Storm
228835 7.5 危険 rigs of rogs - RoR のサーバの sequencer.cpp におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-6041 2012-12-20 18:33 2007-11-20 Show GitHub Exploit DB Packet Storm
228836 9 危険 Wonderware - Invensys Wonderware InTouch における任意のプログラムを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-6033 2012-12-20 18:33 2007-11-19 Show GitHub Exploit DB Packet Storm
228837 7.8 危険 van dyke technologies - VanDyke VShell におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2007-6031 2012-12-20 18:33 2007-11-19 Show GitHub Exploit DB Packet Storm
228838 10 危険 weird solutions - Weird Solutions BOOTPTurbo における脆弱性 CWE-noinfo
情報不足
CVE-2007-6030 2012-12-20 18:33 2007-11-19 Show GitHub Exploit DB Packet Storm
228839 7.1 危険 w1.fi - wpa_supplicant の driver_wext.c におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-6025 2012-12-20 18:33 2007-11-19 Show GitHub Exploit DB Packet Storm
228840 6.8 警告 WordPress.org - Wordpress における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2007-6013 2012-12-20 18:33 2007-11-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 12, 2026, 5:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
224431 9.1 CRITICAL
Network
qualcomm ipq4019_firmware
ipq6018_firmware
ipq8064_firmware
ipq8074_firmware
mdm9607_firmware
nicobar_firmware
qcs405_firmware
rennell_firmware
sa6155p_firmware
saipan_firmware
s…
Out of bound access due to Invalid inputs to dapm mux settings which results into kernel failure in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon… CWE-125
Out-of-bounds Read
CVE-2019-14063 2024-11-21 13:26 2020-02-7 Show GitHub Exploit DB Packet Storm
224432 7.8 HIGH
Local
qualcomm apq8009_firmware
apq8017_firmware
apq8053_firmware
apq8098_firmware
ipq4019_firmware
ipq6018_firmware
ipq8064_firmware
ipq8074_firmware
mdm9150_firmware
mdm9206_firmware
Uninitialized stack data gets used If memory is not allocated for blob or if the allocated blob is less than the struct size required due to lack of check of return value for read or write blob in Sn… CWE-824
 Access of Uninitialized Pointer
CVE-2019-14060 2024-11-21 13:26 2020-02-7 Show GitHub Exploit DB Packet Storm
224433 9.1 CRITICAL
Network
qualcomm apq8009_firmware
apq8017_firmware
apq8053_firmware
apq8064_firmware
apq8096au_firmware
apq8098_firmware
mdm9206_firmware
mdm9207c_firmware
mdm9607_firmware
msm8905_firmware…
Buffer Over read of codec private data while parsing an mkv file due to lack of check of buffer size before read in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer I… CWE-125
Out-of-bounds Read
CVE-2019-14057 2024-11-21 13:26 2020-02-7 Show GitHub Exploit DB Packet Storm
224434 5.5 MEDIUM
Local
intel chipset_inf_utility Improper access control in the installer for Intel(R) Chipset Device Software INF Utility before version 10.1.18 may allow an authenticated user to potentially enable denial of service via local acce… NVD-CWE-noinfo
CVE-2019-14596 2024-11-21 13:26 2020-01-18 Show GitHub Exploit DB Packet Storm
224435 7.5 HIGH
Network
ricoh sp_c250sf_firmware
sp_c252sf_firmware
sp_c250dn_firmware
sp_c252dn_firmware
sp_330sn_firmware
sp_330sfn_firmware
sp_330dn_firmware
sp_3710sf_firmware
sp_3710dn_firmware
sp_…
Ricoh SP C250DN 1.06 devices have Incorrect Access Control (issue 2 of 2). NVD-CWE-noinfo
CVE-2019-14306 2024-11-21 13:26 2020-01-11 Show GitHub Exploit DB Packet Storm
224436 8.8 HIGH
Network
ricoh sp_c250sf_firmware
sp_c252sf_firmware
sp_c250dn_firmware
sp_c252dn_firmware
m_c250fw_firmware
m_c250fwb_firmware
p_c300w_firmware
p_c301w_firmware
sp_330sn_firmware
sp_330s…
Ricoh SP C250DN 1.06 devices allow CSRF. CWE-352
 Origin Validation Error
CVE-2019-14304 2024-11-21 13:26 2020-01-11 Show GitHub Exploit DB Packet Storm
224437 6.8 MEDIUM
Physics
ricoh sp_c250sf_firmware
sp_c252sf_firmware
sp_c250dn_firmware
sp_c252dn_firmware
sp_330sn_firmware
sp_330sfn_firmware
sp_330dn_firmware
sp_3710sf_firmware
sp_3710dn_firmware
sp_…
On Ricoh SP C250DN 1.06 devices, a debug port can be used. NVD-CWE-noinfo
CVE-2019-14302 2024-11-21 13:26 2020-01-11 Show GitHub Exploit DB Packet Storm
224438 7.5 HIGH
Network
ricoh sp_c250sf_firmware
sp_c252sf_firmware
sp_c250dn_firmware
sp_c252dn_firmware
m_c250fw_firmware
m_c250fwb_firmware
p_c300w_firmware
p_c301w_firmware
sp_330sn_firmware
sp_330s…
Ricoh SP C250DN 1.06 devices have Incorrect Access Control (issue 1 of 2). CWE-200
Information Exposure
CVE-2019-14301 2024-11-21 13:26 2020-01-11 Show GitHub Exploit DB Packet Storm
224439 6.5 MEDIUM
Network
gosa_project
debian
gosa
debian_linux
The GOsa_Filter_Settings cookie in GONICUS GOsa 2.7.5.2 is vulnerable to PHP objection injection, which allows a remote authenticated attacker to perform file deletions (in the context of the user ac… CWE-502
 Deserialization of Untrusted Data
CVE-2019-14466 2024-11-21 13:26 2020-01-1 Show GitHub Exploit DB Packet Storm
224440 7.8 HIGH
Local
intel rapid_storage_technology Improper permissions in the executable for Intel(R) RST before version 17.7.0.1006 may allow an authenticated user to potentially enable escalation of privilege via local access. CWE-276
Incorrect Default Permissions 
CVE-2019-14568 2024-11-21 13:26 2019-12-17 Show GitHub Exploit DB Packet Storm