Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229401 10 危険 Sprint - Sprint Nextel Sprint ボイスメールシステムにおけるメッセージを回復される脆弱性 - CVE-2007-1821 2012-12-20 18:19 2007-04-2 Show GitHub Exploit DB Packet Storm
229402 7.5 危険 XOOPS - XOOPS 用の Tutoriais モジュールにおける SQL インジェクションの脆弱性 - CVE-2007-1816 2012-12-20 18:19 2007-04-2 Show GitHub Exploit DB Packet Storm
229403 7.5 危険 XOOPS - Xoops 用の Library モジュールの viewcat.php における SQL インジェクションの脆弱性 - CVE-2007-1815 2012-12-20 18:19 2007-04-2 Show GitHub Exploit DB Packet Storm
229404 7.5 危険 XOOPS - Xoops 用の Core モジュールの viewcat.php における SQL インジェクションの脆弱性 - CVE-2007-1814 2012-12-20 18:19 2007-04-2 Show GitHub Exploit DB Packet Storm
229405 7.5 危険 red mexico - Xoops 用の rmgallery モジュールにおける SQL インジェクションの脆弱性 - CVE-2007-1806 2012-12-20 18:19 2007-04-2 Show GitHub Exploit DB Packet Storm
229406 7.8 危険 PulseAudio - PulseAudio におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-1804 2012-12-20 18:19 2007-04-2 Show GitHub Exploit DB Packet Storm
229407 7.5 危険 sblog - sBLOG の inc/lang.php におけるディレクトリトラバーサルの脆弱性 - CVE-2007-1801 2012-12-20 18:19 2007-04-2 Show GitHub Exploit DB Packet Storm
229408 4.9 警告 シマンテック - Symantec Norton Personal Firewall の SPBBCDrv.sys におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2007-1793 2012-12-20 18:19 2007-04-2 Show GitHub Exploit DB Packet Storm
229409 7.8 危険 シマンテック - SMTP 用の Symantec Mail Security および Mail Security Appliance におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-1792 2012-12-20 18:19 2007-06-26 Show GitHub Exploit DB Packet Storm
229410 9.3 危険 softerra - Softerra Time-Assistant の lib/timesheet.class.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-1787 2012-12-20 18:19 2007-03-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 10, 2026, 4:58 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
196911 7.5 HIGH
Network
wpseeds wp_database_backup The WP Database Backup plugin through 5.5 for WordPress stores downloads by default locally in the directory wp-content/uploads/db-backup/. This might allow attackers to read ZIP archives by guessing… CWE-330
 Use of Insufficiently Random Values
CVE-2020-7241 2024-11-21 14:36 2020-01-21 Show GitHub Exploit DB Packet Storm
196912 5.5 MEDIUM
Local
gallagher command_centre An issue was discovered in Gallagher Command Centre 7.x before 7.90.991(MR5), 8.00 before 8.00.1161(MR5), and 8.10 before 8.10.1134(MR4). External system configuration data (used for third party inte… CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2020-7215 2024-11-21 14:36 2020-01-20 Show GitHub Exploit DB Packet Storm
196913 8.8 HIGH
Network
cacti cacti Cacti 1.2.8 allows Remote Code Execution (by privileged users) via shell metacharacters in the Performance Boost Debug Log field of poller_automation.php. OS commands are executed when a new poller c… CWE-78
OS Command 
CVE-2020-7237 2024-11-21 14:36 2020-01-20 Show GitHub Exploit DB Packet Storm
196914 6.1 MEDIUM
Network
uhp uhp-100_firmware UHP UHP-100 3.4.1.15, 3.4.2.4, and 3.4.3 devices allow XSS via cw2?td= (Site Name field of the Site Setup section). CWE-79
Cross-site Scripting
CVE-2020-7236 2024-11-21 14:36 2020-01-20 Show GitHub Exploit DB Packet Storm
196915 6.1 MEDIUM
Network
uhp uhp-100_firmware UHP UHP-100 3.4.1.15, 3.4.2.4, and 3.4.3 devices allow XSS via cB3?ta= (profile title). CWE-79
Cross-site Scripting
CVE-2020-7235 2024-11-21 14:36 2020-01-20 Show GitHub Exploit DB Packet Storm
196916 4.8 MEDIUM
Network
ruckuswireless r310_firmware Ruckus ZoneFlex R310 104.0.0.0.1347 devices allow Stored XSS via the SSID field on the Configuration > Radio 2.4G > Wireless X screen (after a successful login to the super account). CWE-79
Cross-site Scripting
CVE-2020-7234 2024-11-21 14:36 2020-01-20 Show GitHub Exploit DB Packet Storm
196917 9.8 CRITICAL
Network
kmccontrols bac-a1616bc_firmware KMS Controls BAC-A1616BC BACnet devices have a cleartext password of snowman in the BACKDOOR_NAME variable in the BC_Logon.swf file. CWE-522
 Insufficiently Protected Credentials
CVE-2020-7233 2024-11-21 14:36 2020-01-20 Show GitHub Exploit DB Packet Storm
196918 7.5 HIGH
Network
evoko home Evoko Home devices 1.31 through 1.37 allow remote attackers to obtain sensitive information (such as usernames and password hashes) via a WebSocket request, as demonstrated by the sockjs/224/uf1psgff… NVD-CWE-noinfo
CVE-2020-7232 2024-11-21 14:36 2020-01-20 Show GitHub Exploit DB Packet Storm
196919 5.3 MEDIUM
Network
evoko home Evoko Home 1.31 devices provide different error messages for failed login requests depending on whether the username is valid. CWE-209
Information Exposure Through an Error Message
CVE-2020-7231 2024-11-21 14:36 2020-01-20 Show GitHub Exploit DB Packet Storm
196920 6.5 MEDIUM
Network
westermo mrd-315_firmware Westermo MRD-315 1.7.3 and 1.7.4 devices have an information disclosure vulnerability that allows an authenticated remote attacker to retrieve the source code of different functions of the web applic… NVD-CWE-noinfo
CVE-2020-7227 2024-11-21 14:36 2020-01-19 Show GitHub Exploit DB Packet Storm