Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 19, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229831 7.5 危険 sinecms - SineCMS における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-6366 2012-12-20 18:34 2007-12-14 Show GitHub Exploit DB Packet Storm
229832 7.8 危険 サン・マイクロシステムズ - Sun XSCF XCP におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2007-6360 2012-12-20 18:34 2007-12-4 Show GitHub Exploit DB Packet Storm
229833 8.5 危険 scponly - scponly におけるコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-6350 2012-12-20 18:34 2007-12-14 Show GitHub Exploit DB Packet Storm
229834 6.8 警告 SquirrelMail Project - SquirrelMail における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2007-6348 2012-12-20 18:34 2007-12-14 Show GitHub Exploit DB Packet Storm
229835 6.8 警告 prowizard - prowiz におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-6510 2012-12-20 18:34 2007-12-21 Show GitHub Exploit DB Packet Storm
229836 7.5 危険 xecms - xeCMS の view.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-6508 2012-12-20 18:34 2007-12-21 Show GitHub Exploit DB Packet Storm
229837 10 危険 トレンドマイクロ - Windows 用の Trend Micro ServerProtect における "ファイルシステムの全アクセス権限" を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-6507 2012-12-20 18:34 2007-07-27 Show GitHub Exploit DB Packet Storm
229838 4.9 警告 plain black - Plain Black WebGUI における管理アカウントを作成される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-6487 2012-12-20 18:34 2007-12-20 Show GitHub Exploit DB Packet Storm
229839 6.8 警告 phprpg - phpRPG の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-6484 2012-12-20 18:34 2007-12-20 Show GitHub Exploit DB Packet Storm
229840 7.8 危険 サン・マイクロシステムズ - Sun Ray Server Software の utdevmgrd におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2007-6482 2012-12-20 18:34 2007-12-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 19, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
223001 5.4 MEDIUM
Network
teampasswordmanager team_password_manager Post-authentication Stored XSS in Team Password Manager through 7.93.204 allows attackers to steal other users' credentials by creating a shared password with HTML code as the title. CWE-79
Cross-site Scripting
CVE-2019-19461 2024-11-21 13:34 2020-03-17 Show GitHub Exploit DB Packet Storm
223002 9.8 CRITICAL
Network
dolibarr dolibarr Dolibarr ERP/CRM 3.0 through 10.0.3 allows XSS via the qty parameter to product/fournisseurs.php (product price screen). CWE-79
Cross-site Scripting
CVE-2019-19212 2024-11-21 13:34 2020-03-17 Show GitHub Exploit DB Packet Storm
223003 7.4 HIGH
Network
opcfoundation ua-.netstandard
netstandard.opc.ua
In OPC Foundation OPC UA .NET Standard codebase 1.4.357.28, servers do not create sufficiently random numbers in OPCFoundation.NetStandard.Opc.Ua before 1.4.359.31, which allows man in the middle att… CWE-330
 Use of Insufficiently Random Values
CVE-2019-19135 2024-11-21 13:34 2020-03-17 Show GitHub Exploit DB Packet Storm
223004 6.1 MEDIUM
Network
dolibarr dolibarr Dolibarr ERP/CRM before 10.0.3 has an Insufficient Filtering issue that can lead to user/card.php XSS. CWE-79
Cross-site Scripting
CVE-2019-19211 2024-11-21 13:34 2020-03-17 Show GitHub Exploit DB Packet Storm
223005 5.4 MEDIUM
Network
dolibarr dolibarr Dolibarr ERP/CRM before 10.0.3 allows XSS because uploaded HTML documents are served as text/html despite being renamed to .noexe files. CWE-79
Cross-site Scripting
CVE-2019-19210 2024-11-21 13:34 2020-03-17 Show GitHub Exploit DB Packet Storm
223006 7.5 HIGH
Network
dolibarr dolibarr Dolibarr ERP/CRM before 10.0.3 allows SQL Injection. CWE-89
SQL Injection
CVE-2019-19209 2024-11-21 13:34 2020-03-17 Show GitHub Exploit DB Packet Storm
223007 9.8 CRITICAL
Network
codiad codiad Codiad Web IDE through 2.8.4 allows PHP Code injection. CWE-94
Code Injection
CVE-2019-19208 2024-11-21 13:34 2020-03-17 Show GitHub Exploit DB Packet Storm
223008 6.1 MEDIUM
Network
abacus abacus oauth/oauth2/v1/saml/ in Abacus OAuth Login 2019_01_r4_20191021_0000 before prior to R4 (20.11.2019 Hotfix) allows Reflected Cross Site Scripting (XSS) via an error message. CWE-79
Cross-site Scripting
CVE-2019-19381 2024-11-21 13:34 2020-03-11 Show GitHub Exploit DB Packet Storm
223009 7.5 HIGH
Network
siemens sinvr\/sivms_video_server A vulnerability has been identified in SiNVR/SiVMS Video Server (All versions < V5.0.0), SiNVR/SiVMS Video Server (All versions >= V5.0.0 < V5.0.2), SiNVR/SiVMS Video Server (All versions >= V5.0.2).… - CVE-2019-19299 2024-11-21 13:34 2020-03-11 Show GitHub Exploit DB Packet Storm
223010 7.5 HIGH
Network
siemens sinvr\/sivms_video_server A vulnerability has been identified in SiNVR/SiVMS Video Server (All versions < V5.0.0), SiNVR/SiVMS Video Server (All versions >= V5.0.0 < V5.0.2). The streaming service (default port 5410/tcp) of t… - CVE-2019-19298 2024-11-21 13:34 2020-03-11 Show GitHub Exploit DB Packet Storm