Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 12, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229511 6.8 警告 webavis - Webavis の class/class.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2943 2012-12-20 18:19 2007-05-30 Show GitHub Exploit DB Packet Storm
229512 7.5 危険 troforum - TROforum の admin/admin.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2937 2012-12-20 18:19 2007-05-30 Show GitHub Exploit DB Packet Storm
229513 10 危険 リアルネットワークス - RealNetworks GameHouse dldisplay ActiveX コントロール におけるバッファオーバーフローの脆弱性 - CVE-2007-2924 2012-12-20 18:19 2007-06-19 Show GitHub Exploit DB Packet Storm
229514 9.3 危険 zoomify - ZActiveX.dll の Zoomify Viewer ActiveX コントロールにおけるスタックベースのバッファーオーバーフローの脆弱性 - CVE-2007-2920 2012-12-20 18:19 2007-06-11 Show GitHub Exploit DB Packet Storm
229515 4.3 警告 rm easymail - RM EasyMail Plus におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-2915 2012-12-20 18:19 2007-05-30 Show GitHub Exploit DB Packet Storm
229516 4.3 警告 psychostats - PsychoStats におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-2914 2012-12-20 18:19 2007-05-30 Show GitHub Exploit DB Packet Storm
229517 4.9 警告 ssl-explorer - SSL-Explorer における JavaScript などを含むリダイレクト URL を入力される脆弱性 CWE-119
バッファエラー
CVE-2007-2907 2012-12-20 18:19 2007-05-30 Show GitHub Exploit DB Packet Storm
229518 5 警告 サン・マイクロシステムズ - Java Embedding プラグインにおけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-2906 2012-12-20 18:19 2007-05-30 Show GitHub Exploit DB Packet Storm
229519 4.3 警告 サン・マイクロシステムズ - Sun Java System Messaging Server におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-2904 2012-12-20 18:19 2007-05-23 Show GitHub Exploit DB Packet Storm
229520 6.8 警告 scallywag.org - Scallywag における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-2900 2012-12-20 18:19 2007-05-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 12, 2026, 5:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
196891 8.8 HIGH
Network
arubanetworks airwave_glass A remote escalation of privilege vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2. CWE-269
 Improper Privilege Management
CVE-2020-7125 2024-11-21 14:36 2020-10-27 Show GitHub Exploit DB Packet Storm
196892 9.8 CRITICAL
Network
arubanetworks airwave_glass A remote unauthorized access vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2. NVD-CWE-noinfo
CVE-2020-7124 2024-11-21 14:36 2020-10-27 Show GitHub Exploit DB Packet Storm
196893 5.4 MEDIUM
Network
zte evdc A ZTE product is impacted by an XSS vulnerability. The vulnerability is caused by the lack of correct verification of client data in the WEB module. By inserting malicious scripts into the web module… CWE-79
Cross-site Scripting
CVE-2020-6876 2024-11-21 14:36 2020-10-27 Show GitHub Exploit DB Packet Storm
196894 3.1 LOW
Network
elastic elasticsearch Elasticsearch versions before 6.8.13 and 7.9.2 contain a document disclosure flaw when Document or Field Level Security is used. Search queries do not properly preserve security permissions when exec… CWE-269
 Improper Privilege Management
CVE-2020-7020 2024-11-21 14:36 2020-10-23 Show GitHub Exploit DB Packet Storm
196895 6.5 MEDIUM
Network
fortinet fortios
fortiproxy
A cleartext storage of sensitive information vulnerability in FortiOS command line interface in versions 6.2.4 and earlier and FortiProxy 2.0.0, 1.2.9 and earlier may allow an authenticated attacker … CWE-312
 Cleartext Storage of Sensitive Information
CVE-2020-6648 2024-11-21 14:36 2020-10-21 Show GitHub Exploit DB Packet Storm
196896 8.8 HIGH
Network
hp intelligent_management_center A iccselectrules expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07). CWE-917
 Improper Neutralization of Special Elements used in an Expression Language Statement ('Expression Language Injection')
CVE-2020-7195 2024-11-21 14:36 2020-10-20 Show GitHub Exploit DB Packet Storm
196897 8.8 HIGH
Network
hp intelligent_management_center A perfaddormoddevicemonitor expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07). CWE-917
 Improper Neutralization of Special Elements used in an Expression Language Statement ('Expression Language Injection')
CVE-2020-7194 2024-11-21 14:36 2020-10-20 Show GitHub Exploit DB Packet Storm
196898 8.8 HIGH
Network
hp intelligent_management_center A ictexpertcsvdownload expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07). CWE-917
 Improper Neutralization of Special Elements used in an Expression Language Statement ('Expression Language Injection')
CVE-2020-7193 2024-11-21 14:36 2020-10-20 Show GitHub Exploit DB Packet Storm
196899 8.8 HIGH
Network
hp intelligent_management_center A devicethresholdconfig expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07). CWE-917
 Improper Neutralization of Special Elements used in an Expression Language Statement ('Expression Language Injection')
CVE-2020-7192 2024-11-21 14:36 2020-10-20 Show GitHub Exploit DB Packet Storm
196900 8.8 HIGH
Network
hp intelligent_management_center A devsoftsel expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07). CWE-917
 Improper Neutralization of Special Elements used in an Expression Language Statement ('Expression Language Injection')
CVE-2020-7191 2024-11-21 14:36 2020-10-20 Show GitHub Exploit DB Packet Storm