Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229261 7.5 危険 tony iha kazungu - taifajobs の jobdetails.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0727 2012-12-20 19:10 2009-02-24 Show GitHub Exploit DB Packet Storm
229262 7.5 危険 potato-scripts - Potato News の admin.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-0722 2012-12-20 19:10 2009-02-24 Show GitHub Exploit DB Packet Storm
229263 5 警告 vlad alexa mancini - PHPFootball の filter.php におけるパスワードハッシュを取得される脆弱性 CWE-200
情報漏えい
CVE-2009-0711 2012-12-20 19:10 2009-02-23 Show GitHub Exploit DB Packet Storm
229264 4.3 警告 vlad alexa mancini - PHPFootball におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-0710 2012-12-20 19:10 2009-02-23 Show GitHub Exploit DB Packet Storm
229265 7.5 危険 vlad alexa mancini - PHPFootball の login.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0709 2012-12-20 19:10 2009-02-23 Show GitHub Exploit DB Packet Storm
229266 6.8 警告 SemanticScuttle - SemanticScuttle におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2009-0708 2012-12-20 19:10 2009-02-23 Show GitHub Exploit DB Packet Storm
229267 7.5 危険 powerscripts - PowerClan の admin/index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0707 2012-12-20 19:10 2009-02-23 Show GitHub Exploit DB Packet Storm
229268 7.5 危険 simple-review - Joomla! および Mambo 用の simple_review コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0706 2012-12-20 19:10 2009-02-23 Show GitHub Exploit DB Packet Storm
229269 6.8 警告 powerscripts - PowerScripts PowerNews の news.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0705 2012-12-20 19:10 2009-02-23 Show GitHub Exploit DB Packet Storm
229270 7.5 危険 webmastersite - WSN Guest の search.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0704 2012-12-20 19:10 2009-02-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 5, 2026, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
202391 8.8 HIGH
Network
imgtech zoneplayer IMGTech Co,Ltd ZInsX.ocx ActiveX Control in Zoneplayer 2.0.1.3, version 2.0.1.4 and prior versions on Windows. File Donwload vulnerability in ZInsX.ocx of IMGTech Co,Ltd Zoneplayer allows attacker to… NVD-CWE-noinfo
CVE-2020-7803 2024-11-21 14:37 2020-05-8 Show GitHub Exploit DB Packet Storm
202392 9.8 CRITICAL
Network
curlrequest_project curlrequest curlrequest through 1.0.1 allows reading any file by populating the file parameter with user input. CWE-78
OS Command 
CVE-2020-7646 2024-11-21 14:37 2020-05-8 Show GitHub Exploit DB Packet Storm
202393 7.5 HIGH
Network
citrix sharefile_storagezones_controller In certain situations, all versions of Citrix ShareFile StorageZones (aka storage zones) Controller, including the most recent 5.10.x releases as of May 2020, allow unauthenticated attackers to acces… CWE-22
Path Traversal
CVE-2020-7473 2024-11-21 14:37 2020-05-7 Show GitHub Exploit DB Packet Storm
202394 9.8 CRITICAL
Network
tobesoft xplatform Tobesoft Xplatform 9.2.2.250 and earlier version have an arbitrary code execution vulnerability by using method supported by Xplatform ActiveX Control. It allows attacker to cause remote code executi… CWE-494
 Download of Code Without Integrity Check
CVE-2020-7806 2024-11-21 14:37 2020-05-6 Show GitHub Exploit DB Packet Storm
202395 9.8 CRITICAL
Network
google chrome-launcher All versions of chrome-launcher allow execution of arbitrary commands, by controlling the $HOME environment variable in Linux operating systems. CWE-78
OS Command 
CVE-2020-7645 2024-11-21 14:37 2020-05-3 Show GitHub Exploit DB Packet Storm
202396 8.8 HIGH
Network
netfortris trixbox An OS Command Injection vulnerability in the endpoint_devicemap.php component of Fonality Trixbox Community Edition allows an attacker to execute commands on the underlying operating system as the "a… CWE-78
OS Command 
CVE-2020-7351 2024-11-21 14:37 2020-05-2 Show GitHub Exploit DB Packet Storm
202397 7.2 HIGH
Network
handysoft groupware ActiveX Control(HShell.dll) in Handy Groupware 1.7.3.1 for Windows 7, 8, and 10 allows an attacker to execute arbitrary command via the ShellExec method. CWE-78
OS Command 
CVE-2020-7804 2024-11-21 14:37 2020-04-30 Show GitHub Exploit DB Packet Storm
202398 6.0 MEDIUM
Local
freebsd freebsd In FreeBSD 12.1-STABLE before r359021, 12.1-RELEASE before 12.1-RELEASE-p3, 11.3-STABLE before r359020, and 11.3-RELEASE before 11.3-RELEASE-p7, a missing null termination check in the jail_set confi… CWE-754
 Improper Check for Unusual or Exceptional Conditions
CVE-2020-7453 2024-11-21 14:37 2020-04-29 Show GitHub Exploit DB Packet Storm
202399 9.1 CRITICAL
Network
freebsd freebsd In FreeBSD 12.1-STABLE before r357490, 12.1-RELEASE before 12.1-RELEASE-p3, 11.3-STABLE before r357489, and 11.3-RELEASE before 11.3-RELEASE-p7, incorrect use of a user-controlled pointer in the epai… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2020-7452 2024-11-21 14:37 2020-04-29 Show GitHub Exploit DB Packet Storm
202400 5.3 MEDIUM
Network
freebsd freebsd In FreeBSD 12.1-STABLE before r358739, 12.1-RELEASE before 12.1-RELEASE-p3, 11.3-STABLE before r358740, and 11.3-RELEASE before 11.3-RELEASE-p7, a TCP SYN-ACK or challenge TCP-ACK segment over IPv6 t… CWE-908
 Use of Uninitialized Resource
CVE-2020-7451 2024-11-21 14:37 2020-04-29 Show GitHub Exploit DB Packet Storm