Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229451 7.5 危険 W-Agora - Web-Agora における任意のコードを実行される脆弱性 - CVE-2007-1604 2012-12-20 18:19 2007-03-22 Show GitHub Exploit DB Packet Storm
229452 7.5 危険 weekly drawing contest - Weekly Drawing Contest の admin/contest.php における新規のコンテスト情報をデータベースに挿入される脆弱性 - CVE-2007-1603 2012-12-20 18:19 2007-03-22 Show GitHub Exploit DB Packet Storm
229453 7.5 危険 weekly drawing contest - Weekly Drawing Contest の check_vote.php における SQL インジェクションの脆弱性 - CVE-2007-1602 2012-12-20 18:19 2007-03-22 Show GitHub Exploit DB Packet Storm
229454 6.5 警告 WordPress.org - WordPress の wp-login.php における認証ユーザを他の Web サイトへリダイレクトされる脆弱性 - CVE-2007-1599 2012-12-20 18:19 2007-03-22 Show GitHub Exploit DB Packet Storm
229455 5 警告 unclassified newsboard - Unclassified NewsBoard における board ログを取得される脆弱性 - CVE-2007-1597 2012-12-20 18:19 2007-03-22 Show GitHub Exploit DB Packet Storm
229456 5 警告 シマンテック - Symantec Storage Foundation 製品の Symantec VVR および VVR の管理サービスにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2007-1593 2012-12-20 18:19 2007-06-1 Show GitHub Exploit DB Packet Storm
229457 2.1 注意 TrueCrypt Foundation - TrueCrypt におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-1589 2012-12-20 18:19 2007-03-21 Show GitHub Exploit DB Packet Storm
229458 10 危険 tim soderstrom - Tim Soderstrom StatsDawg の templates/config/mail.tpl における任意のプログラムを実行される脆弱性 - CVE-2007-1587 2012-12-20 18:19 2007-03-21 Show GitHub Exploit DB Packet Storm
229459 7.8 危険 ZyXEL - ZynOS におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-1586 2012-12-20 18:19 2007-03-21 Show GitHub Exploit DB Packet Storm
229460 4.3 警告 phprojekt - PHProjekt におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-1576 2012-12-20 18:19 2007-03-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
210311 9.8 CRITICAL
Network
baxter sigma_spectrum_infusion_system_firmware Sigma Spectrum Infusion System v's6.x (model 35700BAX) and Baxter Spectrum Infusion System Version(s) 8.x (model 35700BAX2) at the application layer uses an unauthenticated clear-text communication c… CWE-319
Cleartext Transmission of Sensitive Information
CVE-2020-12040 2024-11-21 13:59 2020-06-29 Show GitHub Exploit DB Packet Storm
210312 2.4 LOW
Physics
baxter sigma_spectrum_infusion_system_firmware Baxter Sigma Spectrum Infusion Pumps Sigma Spectrum Infusion System v's6.x model 35700BAX & Baxter Spectrum Infusion System v's8.x model 35700BAX2 contain hardcoded passwords when physically entered … CWE-798
 Use of Hard-coded Credentials
CVE-2020-12039 2024-11-21 13:59 2020-06-29 Show GitHub Exploit DB Packet Storm
210313 7.5 HIGH
Network
baxter prismaflex_firmware
prismax_firmware
Baxter PrismaFlex all versions, PrisMax all versions prior to 3.x, The affected devices do not implement data-in-transit encryption (e.g., TLS/SSL) when configured to send treatment data to a PDMS (P… CWE-319
Cleartext Transmission of Sensitive Information
CVE-2020-12037 2024-11-21 13:59 2020-06-29 Show GitHub Exploit DB Packet Storm
210314 7.5 HIGH
Network
baxter prismaflex_firmware
prismax_firmware
Baxter PrismaFlex all versions, PrisMax all versions prior to 3.x, The affected devices do not implement data-in-transit encryption (e.g., TLS/SSL) when configured to send treatment data to a PDMS (P… CWE-319
Cleartext Transmission of Sensitive Information
CVE-2020-12036 2024-11-21 13:59 2020-06-29 Show GitHub Exploit DB Packet Storm
210315 4.9 MEDIUM
Physics
baxter prismaflex_firmware
prismax_firmware
Baxter PrismaFlex all versions, PrisMax all versions prior to 3.x, The PrismaFlex device contains a hard-coded service password that provides access to biomedical information, device settings, calibr… CWE-798
 Use of Hard-coded Credentials
CVE-2020-12035 2024-11-21 13:59 2020-06-29 Show GitHub Exploit DB Packet Storm
210316 9.1 CRITICAL
Network
baxter em2400_firmware
em1200_firmware
Baxter ExactaMix EM 2400 Versions 1.10, 1.11 and ExactaMix EM1200 Versions 1.1, 1.2 systems store device data with sensitive information in an unencrypted database. This could allow an attacker with … CWE-312
 Cleartext Storage of Sensitive Information
CVE-2020-12032 2024-11-21 13:59 2020-06-29 Show GitHub Exploit DB Packet Storm
210317 6.1 MEDIUM
Physics
baxter em2400_firmware
em1200_firmware
Baxter ExactaMix EM 2400 versions 1.10, 1.11, 1.13, 1.14 and ExactaMix EM1200 Versions 1.1, 1.2, 1.4 and 1.5 does not restrict access to the USB interface from an unauthorized user with physical acce… NVD-CWE-Other
CVE-2020-12024 2024-11-21 13:59 2020-06-29 Show GitHub Exploit DB Packet Storm
210318 6.1 MEDIUM
Local
baxter em2400_firmware
em1200_firmware
Baxter ExactaMix EM 2400 Versions 1.10, 1.11, and 1.13 and ExactaMix EM1200 Versions 1.1, 1.2, and 1.4 does not restrict non administrative users from gaining access to the operating system and editi… CWE-668
 Exposure of Resource to Wrong Sphere
CVE-2020-12020 2024-11-21 13:59 2020-06-29 Show GitHub Exploit DB Packet Storm
210319 9.8 CRITICAL
Network
baxter em2400_firmware
em1200_firmware
Baxter ExactaMix EM 2400 & EM 1200, Versions ExactaMix EM2400 Versions 1.10, 1.11, 1.13, 1.14, ExactaMix EM1200 Versions 1.1, 1.2, 1.4, 1.5, Baxter ExactaMix EM 2400 Versions 1.10, 1.11, 1.13, 1.14 a… CWE-798
 Use of Hard-coded Credentials
CVE-2020-12016 2024-11-21 13:59 2020-06-29 Show GitHub Exploit DB Packet Storm
210320 7.5 HIGH
Network
baxter em2400_firmware
em1200_firmware
Baxter ExactaMix EM 2400 Versions 1.10, 1.11 and ExactaMix EM1200 Versions 1.1, 1.2 systems use cleartext messages to communicate order information with an order entry system. This could allow an att… CWE-319
Cleartext Transmission of Sensitive Information
CVE-2020-12008 2024-11-21 13:59 2020-06-29 Show GitHub Exploit DB Packet Storm