Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228841 4.3 警告 WordPress.org - WordPress 用の Blix テーマなどに関する特定の index.php インストールスクリプトにおけるクロスサイトスクリプティングの脆弱性 - CVE-2007-4014 2012-12-20 18:33 2007-07-25 Show GitHub Exploit DB Packet Storm
228842 6.8 警告 virtual hosting control system - VHCS におけるセッションをハイジャックされる脆弱性 CWE-287
不適切な認証
CVE-2007-3988 2012-12-20 18:33 2007-07-25 Show GitHub Exploit DB Packet Storm
228843 5 警告 securecomputing - Secure Computing SecurityReporter の file.cgi における認証を回避される脆弱性 - CVE-2007-3986 2012-12-20 18:33 2007-07-25 Show GitHub Exploit DB Packet Storm
228844 5 警告 securecomputing - SecurityReporter の file.cgi におけるディレクトリトラバーサルの脆弱性 - CVE-2007-3985 2012-12-20 18:33 2007-07-25 Show GitHub Exploit DB Packet Storm
228845 7.5 危険 zenturi - sasatl.dll の NixonMyPrograms クラスにおけるバッファオーバーフローの脆弱性 - CVE-2007-3984 2012-12-20 18:33 2007-07-25 Show GitHub Exploit DB Packet Storm
228846 7.5 危険 wsnlinks - WSN Links Basic Edition の index.php における SQL インジェクションの脆弱性 - CVE-2007-3981 2012-12-20 18:33 2007-07-25 Show GitHub Exploit DB Packet Storm
228847 10 危険 rcms pro - RCMS Pro RGameScript Pro の page.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-3980 2012-12-20 18:33 2007-07-25 Show GitHub Exploit DB Packet Storm
228848 6.8 警告 ufmod - uFMOD における脆弱性 - CVE-2007-3965 2012-12-20 18:33 2007-07-25 Show GitHub Exploit DB Packet Storm
228849 9.3 危険 usebb - UseBB におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3963 2012-12-20 18:33 2007-07-25 Show GitHub Exploit DB Packet Storm
228850 7.8 危険 TeamSpeak Systems GmbH - Windows 用の TeamSpeak WebServer におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-3956 2012-12-20 18:33 2007-07-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 10, 2026, 4:58 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209601 5.4 MEDIUM
Network
dolibarr dolibarr_erp\/crm Dolibarr 11.0.4 is affected by multiple stored Cross-Site Scripting (XSS) vulnerabilities that could allow remote authenticated attackers to inject arbitrary web script or HTML via ticket/card.php?ac… CWE-79
Cross-site Scripting
CVE-2020-13828 2024-11-21 14:01 2020-09-1 Show GitHub Exploit DB Packet Storm
209602 4.6 MEDIUM
Physics
gigadevice gd32f103_firmware The flash memory readout protection in Gigadevice GD32F103 devices allows physical attackers to extract firmware via the debug interface by utilizing the DMA module. CWE-668
 Exposure of Resource to Wrong Sphere
CVE-2020-13472 2024-11-21 14:01 2020-09-1 Show GitHub Exploit DB Packet Storm
209603 6.8 MEDIUM
Physics
apexmic apm32f103_firmware Apex Microelectronics APM32F103 devices allow physical attackers to execute arbitrary code via a power glitch and a specific flash patch/breakpoint unit configuration. NVD-CWE-noinfo
CVE-2020-13471 2024-11-21 14:01 2020-09-1 Show GitHub Exploit DB Packet Storm
209604 4.6 MEDIUM
Physics
gigadevice gd32f103_firmware
gd32f130_firmware
Gigadevice GD32F103 and GD32F130 devices allow physical attackers to extract data via the probing of easily accessible bonding wires and de-obfuscation of the observed data. CWE-668
 Exposure of Resource to Wrong Sphere
CVE-2020-13470 2024-11-21 14:01 2020-09-1 Show GitHub Exploit DB Packet Storm
209605 4.6 MEDIUM
Physics
gigadevice gd32vf103_firmware The flash memory readout protection in Gigadevice GD32VF103 devices allows physical attackers to extract firmware via the debug interface by utilizing the CPU. CWE-668
 Exposure of Resource to Wrong Sphere
CVE-2020-13469 2024-11-21 14:01 2020-09-1 Show GitHub Exploit DB Packet Storm
209606 6.8 MEDIUM
Physics
gigadevice gd32f130_firmware Gigadevice GD32F130 devices allow physical attackers to escalate their debug interface permissions via fault injection into inter-IC bonding wires (which have insufficient physical protection). CWE-276
Incorrect Default Permissions 
CVE-2020-13468 2024-11-21 14:01 2020-09-1 Show GitHub Exploit DB Packet Storm
209607 4.6 MEDIUM
Physics
cksic cks32f103_firmware The flash memory readout protection in China Key Systems & Integrated Circuit CKS32F103 devices allows physical attackers to extract firmware via the debug interface and exception handling. CWE-755
 Improper Handling of Exceptional Conditions
CVE-2020-13467 2024-11-21 14:01 2020-09-1 Show GitHub Exploit DB Packet Storm
209608 6.8 MEDIUM
Physics
st stm32f103_firmware STMicroelectronics STM32F103 devices through 2020-05-20 allow physical attackers to execute arbitrary code via a power glitch and a specific flash patch/breakpoint unit configuration. NVD-CWE-noinfo
CVE-2020-13466 2024-11-21 14:01 2020-09-1 Show GitHub Exploit DB Packet Storm
209609 6.8 MEDIUM
Physics
gigadevice gd32f103_firmware The security protection in Gigadevice GD32F103 devices allows physical attackers to redirect the control flow and execute arbitrary code via the debug interface. CWE-20
 Improper Input Validation 
CVE-2020-13465 2024-11-21 14:01 2020-09-1 Show GitHub Exploit DB Packet Storm
209610 4.2 MEDIUM
Physics
cksic cks32f103_firmware The flash memory readout protection in China Key Systems & Integrated Circuit CKS32F103 devices allows physical attackers to extract firmware via the debug interface by utilizing the CPU or DMA modul… CWE-862
 Missing Authorization
CVE-2020-13464 2024-11-21 14:01 2020-09-1 Show GitHub Exploit DB Packet Storm