Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 31, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229171 7.5 危険 turnkeyforms - TurnkeyForms Web Hosting Directory のログイン機能における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6941 2012-12-20 19:10 2009-08-12 Show GitHub Exploit DB Packet Storm
229172 7.5 危険 turnkeyforms - TurnkeyForms Web Hosting Directory におけるデータベースのバックアップを取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-6940 2012-12-20 19:10 2009-08-12 Show GitHub Exploit DB Packet Storm
229173 7.5 危険 turnkeyforms - TurnkeyForms Web Hosting Directory における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2008-6939 2012-12-20 19:10 2009-08-12 Show GitHub Exploit DB Packet Storm
229174 7.5 危険 sansuart - Sanus|artificium Free simple guestbook PHP における messages.txt へ任意の PHP コードを挿入される脆弱性 CWE-94
コード・インジェクション
CVE-2008-6934 2012-12-20 19:10 2009-08-11 Show GitHub Exploit DB Packet Storm
229175 6.5 警告 phpstore - PHPStore Job Search における任意のコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-6931 2012-12-20 19:10 2009-08-11 Show GitHub Exploit DB Packet Storm
229176 6.5 警告 phpstore - PHPStore Real Estate における任意のコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-6930 2012-12-20 19:10 2009-08-11 Show GitHub Exploit DB Packet Storm
229177 6.5 警告 phpstore - PHPStore Auto Classifieds における任意のコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-6929 2012-12-20 19:10 2009-08-11 Show GitHub Exploit DB Packet Storm
229178 6.5 警告 phpstore - PHPStore Complete Classifieds における任意のコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-6928 2012-12-20 19:10 2009-08-11 Show GitHub Exploit DB Packet Storm
229179 4.3 警告 Zenphoto - Zenphoto の function.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-6925 2012-12-20 19:10 2009-08-10 Show GitHub Exploit DB Packet Storm
229180 9.3 危険 Youngzsoft - CMailServer の CMailCOM.dll におけるスタックベースのバッファーオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-6922 2012-12-20 19:10 2009-08-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 31, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
202151 8.8 HIGH
Network
os4ed opensis An exploitable SQL injection vulnerability exists in the GetSchool.php functionality of OS4Ed openSIS 7.3. A specially crafted HTTP request can lead to SQL injection. An attacker can make an authenti… CWE-89
SQL Injection
CVE-2020-6125 2024-11-21 14:35 2020-09-2 Show GitHub Exploit DB Packet Storm
202152 8.8 HIGH
Network
os4ed opensis An exploitable sql injection vulnerability exists in the email parameter functionality of OS4Ed openSIS 7.3. The email parameter in the page EmailCheckOthers.php is vulnerable to SQL injection. An at… CWE-89
SQL Injection
CVE-2020-6124 2024-11-21 14:35 2020-09-2 Show GitHub Exploit DB Packet Storm
202153 8.8 HIGH
Network
os4ed opensis SQL injection vulnerabilities exist in the course_period_id parameters used in OS4Ed openSIS 7.3 pages. The course_period_id parameter in the page MassScheduleSessionSet.php is vulnerable to SQL inje… CWE-89
SQL Injection
CVE-2020-6131 2024-11-21 14:35 2020-09-1 Show GitHub Exploit DB Packet Storm
202154 8.8 HIGH
Network
os4ed opensis SQL injection vulnerabilities exist in the course_period_id parameters used in OS4Ed openSIS 7.3 pages. The course_period_id parameter in the page MassDropSessionSet.php is vulnerable to SQL injectio… CWE-89
SQL Injection
CVE-2020-6130 2024-11-21 14:35 2020-09-1 Show GitHub Exploit DB Packet Storm
202155 8.8 HIGH
Network
os4ed opensis SQL injection vulnerabilities exist in the course_period_id parameters used in OS4Ed openSIS 7.3 pages. The course_period_id parameter in the page CpSessionSet.php is vulnerable to SQL injection.An a… CWE-89
SQL Injection
CVE-2020-6129 2024-11-21 14:35 2020-09-1 Show GitHub Exploit DB Packet Storm
202156 8.8 HIGH
Network
os4ed opensis An exploitable sql injection vulnerability exists in the email parameter functionality of OS4Ed openSIS 7.3. The email parameter in the page EmailCheck.php is vulnerable to SQL injection. An attacker… CWE-89
SQL Injection
CVE-2020-6123 2024-11-21 14:35 2020-09-1 Show GitHub Exploit DB Packet Storm
202157 8.8 HIGH
Network
os4ed opensis SQL injection vulnerability exists in the CheckDuplicateStudent.php page of OS4Ed openSIS 7.3. The mn parameter in the page CheckDuplicateStudent.php is vulnerable to SQL injection. An attacker can m… CWE-89
SQL Injection
CVE-2020-6122 2024-11-21 14:35 2020-09-1 Show GitHub Exploit DB Packet Storm
202158 8.8 HIGH
Network
os4ed opensis SQL injection vulnerabilities exist in the CheckDuplicateStudent.php page of OS4Ed openSIS 7.3. The ln parameter in the page CheckDuplicateStudent.php is vulnerable to SQL injection. An attacker can … CWE-89
SQL Injection
CVE-2020-6121 2024-11-21 14:35 2020-09-1 Show GitHub Exploit DB Packet Storm
202159 8.8 HIGH
Network
os4ed opensis SQL injection vulnerability exists in the CheckDuplicateStudent.php page of OS4Ed openSIS 7.3. The fn parameter in the page CheckDuplicateStudent.php is vulnerable to SQL injection. An attacker can m… CWE-89
SQL Injection
CVE-2020-6120 2024-11-21 14:35 2020-09-1 Show GitHub Exploit DB Packet Storm
202160 8.8 HIGH
Network
os4ed opensis SQL injection vulnerabilities exist in the CheckDuplicateStudent.php page of OS4Ed openSIS 7.3. The byear parameter in the page CheckDuplicateStudent.php is vulnerable to SQL injection. An attacker c… CWE-89
SQL Injection
CVE-2020-6119 2024-11-21 14:35 2020-09-1 Show GitHub Exploit DB Packet Storm