Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 14, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229301 9.3 危険 SonicWALL - SonicWall SSL-VPN NetExtender NELaunchCtrl ActiveX コントロールにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-5603 2012-12-20 18:33 2007-11-5 Show GitHub Exploit DB Packet Storm
229302 10 危険 swiftview - SwiftView Viewer におけるスタックベースのバッファーオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-5602 2012-12-20 18:33 2007-10-2 Show GitHub Exploit DB Packet Storm
229303 4.3 警告 The phpMyAdmin Project - phpMyAdmin におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-5589 2012-12-20 18:33 2007-10-17 Show GitHub Exploit DB Packet Storm
229304 5 警告 XScreenSaver project - xscreensaver におけるロックされたセッションへのアクセス権を取得される脆弱性 CWE-399
リソース管理の問題
CVE-2007-5585 2012-12-20 18:33 2007-10-19 Show GitHub Exploit DB Packet Storm
229305 7.5 危険 Pligg - Pligg CMS の login.php におけるユーザのパスワードを再設定される脆弱性 CWE-255
証明書・パスワード管理
CVE-2007-5579 2012-12-20 18:33 2007-10-18 Show GitHub Exploit DB Packet Storm
229306 7.5 危険 Secure Ideas - BASE における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2007-5578 2012-12-20 18:33 2007-10-18 Show GitHub Exploit DB Packet Storm
229307 4.3 警告 treble designs - 1024 CMS におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2007-5575 2012-12-20 18:33 2007-10-18 Show GitHub Exploit DB Packet Storm
229308 6.8 警告 phpdj - PHPDJ の djpage.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-5574 2012-12-20 18:33 2007-10-18 Show GitHub Exploit DB Packet Storm
229309 4.3 警告 sphpblog - Simple PHP Blog におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2007-5572 2012-12-20 18:33 2007-10-18 Show GitHub Exploit DB Packet Storm
229310 2.6 注意 simple php forum - NSSboard におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-5564 2012-12-20 18:33 2007-10-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 14, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209651 5.8 MEDIUM
Network
redhat ansible_tower A data exposure flaw was found in Tower, where sensitive data was revealed from the HTTP return error codes. This flaw allows an unauthenticated, remote attacker to retrieve pages from the default or… CWE-209
Information Exposure Through an Error Message
CVE-2020-14337 2024-11-21 14:03 2020-07-31 Show GitHub Exploit DB Packet Storm
209652 8.8 HIGH
Local
redhat satellite A flaw was found in Red Hat Satellite 6 which allows privileged attacker to read cache files. These cache credentials could help attacker to gain complete control of the Satellite instance. - CVE-2020-14334 2024-11-21 14:03 2020-07-31 Show GitHub Exploit DB Packet Storm
209653 8.8 HIGH
Network
freemedsoftware openclinic_ga OpenClinic GA 5.09.02 and 5.89.05b does not properly verify uploaded files, which may allow a low-privilege user to upload and execute arbitrary files on the system. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-14488 2024-11-21 14:03 2020-07-29 Show GitHub Exploit DB Packet Storm
209654 9.8 CRITICAL
Network
freemedsoftware openclinic_ga OpenClinic GA 5.09.02 contains a hidden default user account that may be accessed if an administrator has not expressly turned off this account, which may allow an attacker to login and execute arbit… NVD-CWE-Other
CVE-2020-14487 2024-11-21 14:03 2020-07-29 Show GitHub Exploit DB Packet Storm
209655 8.8 HIGH
Network
openclinic_ga_project openclinic_ga An attacker may bypass permission/authorization checks in OpenClinic GA 5.09.02 and 5.89.05b by ignoring the redirect of a permission failure, which may allow unauthorized execution of commands. CWE-863
 Incorrect Authorization
CVE-2020-14486 2024-11-21 14:03 2020-07-29 Show GitHub Exploit DB Packet Storm
209656 8.8 HIGH
Network
openclinic_ga_project openclinic_ga A low-privilege user may use SQL syntax to write arbitrary files to the OpenClinic GA 5.09.02 and 5.89.05b server, which may allow the execution of arbitrary commands. CWE-269
 Improper Privilege Management
CVE-2020-14493 2024-11-21 14:03 2020-07-29 Show GitHub Exploit DB Packet Storm
209657 6.1 MEDIUM
Network
openclinic_ga_project openclinic_ga OpenClinic GA 5.09.02 and 5.89.05b does not properly neutralize user-controllable input, which may allow the execution of malicious code within the user’s browser. CWE-79
Cross-site Scripting
CVE-2020-14492 2024-11-21 14:03 2020-07-29 Show GitHub Exploit DB Packet Storm
209658 8.8 HIGH
Network
openclinic_ga_project openclinic_ga OpenClinic GA 5.09.02 and 5.89.05b includes arbitrary local files specified within its parameter and executes some files, which may allow disclosure of sensitive files or the execution of malicious u… CWE-22
Path Traversal
CVE-2020-14490 2024-11-21 14:03 2020-07-29 Show GitHub Exploit DB Packet Storm
209659 7.5 HIGH
Network
openclinic_ga_project openclinic_ga OpenClinic GA 5.09.02 and 5.89.05b stores passwords using inadequate hashing complexity, which may allow an attacker to recover passwords using known password cracking techniques. CWE-522
 Insufficiently Protected Credentials
CVE-2020-14489 2024-11-21 14:03 2020-07-29 Show GitHub Exploit DB Packet Storm
209660 4.9 MEDIUM
Network
oracle
netapp
mysql
active_iq_unified_manager
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.20 and prior. Easily exploitable vulnerability allows high privi… NVD-CWE-noinfo
CVE-2020-14725 2024-11-21 14:03 2020-07-25 Show GitHub Exploit DB Packet Storm