Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 3, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229421 6.8 警告 SAMEDIA O.E. - SAMEDIA LandShop の ls.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5915 2012-12-20 18:02 2006-11-15 Show GitHub Exploit DB Packet Storm
229422 7.5 危険 SAMEDIA O.E. - SAMEDIA LandShop の ls.php における SQL インジェクションの脆弱性 - CVE-2006-5914 2012-12-20 18:02 2006-11-15 Show GitHub Exploit DB Packet Storm
229423 6.4 警告 web directory pro - Web Directory Pro におけるコンフィギュレーションを変更される脆弱性 - CVE-2006-5905 2012-12-20 18:02 2006-11-15 Show GitHub Exploit DB Packet Storm
229424 7.5 危険 rahul jonna - Rahul Jonna GSpace における仮想ファイルシステム操作を実行される脆弱性 - CVE-2006-5903 2012-12-20 18:02 2006-11-15 Show GitHub Exploit DB Packet Storm
229425 7.5 危険 viksoe - viksoe GMail Drive シェルエクステンションにおける仮想ファイルシステムのアクションを実行される脆弱性 - CVE-2006-5902 2012-12-20 18:02 2006-11-15 Show GitHub Exploit DB Packet Storm
229426 6.8 警告 Zend Technologies Ltd. - Zend Framework Preview の incubator/tests/Zend/Http/_files/testRedirections.php サンプルコードにおけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5900 2012-12-20 18:02 2006-11-15 Show GitHub Exploit DB Packet Storm
229427 5 警告 php heaven - PhpMyChat の localization/languages.lib.php3 におけるディレクトリトラバーサルの脆弱性 - CVE-2006-5898 2012-12-20 18:02 2006-11-15 Show GitHub Exploit DB Packet Storm
229428 5 警告 php heaven - PhpMyChat Plus におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2006-5897 2012-12-20 18:02 2006-11-15 Show GitHub Exploit DB Packet Storm
229429 5 警告 remlab - REMLAB Web Mech Designer におけるスクリプトのフルパスを取得される脆弱性 - CVE-2006-5896 2012-12-20 18:02 2006-11-27 Show GitHub Exploit DB Packet Storm
229430 6.8 警告 rama cms - Rama CMS の lang.php におけるディレクトリトラバーサルの脆弱性 - CVE-2006-5894 2012-12-20 18:02 2006-11-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 3, 2026, 4:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
213221 7.2 HIGH
Network
sonicwall sonicosv
sonicos
A vulnerability in SonicOS allow authenticated read-only admin can elevate permissions to configuration mode. This vulnerability affected SonicOS Gen 5 version 5.9.1.12-4o and earlier, Gen 6 version … CWE-269
 Improper Privilege Management
CVE-2019-7479 2024-11-21 13:48 2019-12-31 Show GitHub Exploit DB Packet Storm
213222 9.8 CRITICAL
Network
sonicwall global_management_system A vulnerability in GMS allow unauthenticated user to SQL injection in Webservice module. This vulnerability affected GMS versions GMS 8.4, 8.5, 8.6, 8.7, 9.0 and 9.1. CWE-89
SQL Injection
CVE-2019-7478 2024-11-21 13:48 2019-12-31 Show GitHub Exploit DB Packet Storm
213223 9.8 CRITICAL
Network
sonicwall email_security_appliance A vulnerability in SonicWall Email Security appliance allow an unauthenticated user to perform remote code execution. This vulnerability affected Email Security Appliance version 10.0.2 and earlier. NVD-CWE-noinfo
CVE-2019-7489 2024-11-21 13:48 2019-12-24 Show GitHub Exploit DB Packet Storm
213224 9.8 CRITICAL
Network
sonicwall email_security_appliance Weak default password cause vulnerability in SonicWall Email Security appliance which leads to attacker gain access to appliance database. This vulnerability affected Email Security Appliance version… CWE-521
Weak Password Requirements 
CVE-2019-7488 2024-11-21 13:48 2019-12-24 Show GitHub Exploit DB Packet Storm
213225 7.8 HIGH
Local
sonicwall sonicos
sonicos_sslvpn_nacagent
Installation of the SonicOS SSLVPN NACagent 3.5 on the Windows operating system, an autorun value is created does not put the path in quotes, so if a malicious binary by an attacker within the parent… CWE-428
 Unquoted Search Path or Element
CVE-2019-7487 2024-11-21 13:48 2019-12-19 Show GitHub Exploit DB Packet Storm
213226 8.8 HIGH
Network
sonicwall sma_100_firmware Code injection in SonicWall SMA100 allows an authenticated user to execute arbitrary code in viewcacert CGI script. This vulnerability impacted SMA100 version 9.0.0.4 and earlier. CWE-94
Code Injection
CVE-2019-7486 2024-11-21 13:48 2019-12-19 Show GitHub Exploit DB Packet Storm
213227 8.8 HIGH
Network
sonicwall sma_100_firmware Buffer overflow in SonicWall SMA100 allows an authenticated user to execute arbitrary code in DEARegister CGI script. This vulnerability impacted SMA100 version 9.0.0.3 and earlier. CWE-120
Classic Buffer Overflow
CVE-2019-7485 2024-11-21 13:48 2019-12-19 Show GitHub Exploit DB Packet Storm
213228 6.5 MEDIUM
Network
sonicwall sma_100_firmware Authenticated SQL Injection in SonicWall SMA100 allow user to gain read-only access to unauthorized resources using viewcacert CGI script. This vulnerability impacted SMA100 version 9.0.0.3 and earli… CWE-89
SQL Injection
CVE-2019-7484 2024-11-21 13:48 2019-12-19 Show GitHub Exploit DB Packet Storm
213229 7.5 HIGH
Network
sonicwall sma_100_firmware In SonicWall SMA100, an unauthenticated Directory Traversal vulnerability in the handleWAFRedirect CGI allows the user to test for the presence of a file on the server. CWE-22
Path Traversal
CVE-2019-7483 2024-11-21 13:48 2019-12-19 Show GitHub Exploit DB Packet Storm
213230 9.8 CRITICAL
Network
sonicwall sma_100_firmware Stack-based buffer overflow in SonicWall SMA100 allows an unauthenticated user to execute arbitrary code in function libSys.so. This vulnerability impacted SMA100 version 9.0.0.3 and earlier. CWE-787
 Out-of-bounds Write
CVE-2019-7482 2024-11-21 13:48 2019-12-19 Show GitHub Exploit DB Packet Storm