Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229871 5 警告 solarpay - SolarPay の index.php におけるディレクトリトラバーサルの脆弱性 - CVE-2006-7099 2012-12-20 18:18 2007-03-3 Show GitHub Exploit DB Packet Storm
229872 10 危険 taskfreak - TaskFreak! における脆弱性 - CVE-2006-7097 2012-12-20 18:18 2007-03-2 Show GitHub Exploit DB Packet Storm
229873 6.8 警告 phpbb security - phpBB Security の phpbb_security.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2006-7090 2012-12-20 18:18 2007-03-2 Show GitHub Exploit DB Packet Storm
229874 7.5 危険 simple php forum - Simple PHP Forum における SQL インジェクションの脆弱性 - CVE-2006-7088 2012-12-20 18:18 2007-03-2 Show GitHub Exploit DB Packet Storm
229875 4.3 警告 rigter portal system - RPS における XSS 攻撃を実行される脆弱性 - CVE-2006-7085 2012-12-20 18:18 2007-03-2 Show GitHub Exploit DB Packet Storm
229876 4.3 警告 rigter portal system - RPS の index.php におけるディレクトリトラバーサルの脆弱性 - CVE-2006-7083 2012-12-20 18:18 2007-03-2 Show GitHub Exploit DB Packet Storm
229877 7.5 危険 rigter portal system - RPS における認証を回避される脆弱性 - CVE-2006-7082 2012-12-20 18:18 2007-03-2 Show GitHub Exploit DB Packet Storm
229878 7.5 危険 phpnews - PhpNews における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-7081 2012-12-20 18:18 2007-03-2 Show GitHub Exploit DB Packet Storm
229879 4.3 警告 professional home page tools login script - Professional Home Page Tools Login Script におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-7078 2012-12-20 18:18 2007-03-2 Show GitHub Exploit DB Packet Storm
229880 6.8 警告 phpBB - phpBB 用の Advanced Guestbook における SQL インジェクションの脆弱性 - CVE-2006-7077 2012-12-20 18:18 2007-03-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 10, 2026, 4:58 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
197391 9.8 CRITICAL
Network
sap solution_manager SAP Solution Manager (User Experience Monitoring), version- 7.2, due to Missing Authentication Check does not perform any authentication for a service resulting in complete compromise of all SMDAgent… CWE-306
Missing Authentication for Critical Function
CVE-2020-6207 2024-11-21 14:35 2020-03-11 Show GitHub Exploit DB Packet Storm
197392 4.3 MEDIUM
Network
sap cloud_platform_integration SAP Cloud Platform Integration for Data Services, version 1.0, allows user inputs to be reflected as error or warning massages. This could mislead the victim to follow malicious instructions inserted… CWE-352
 Origin Validation Error
CVE-2020-6206 2024-11-21 14:35 2020-03-11 Show GitHub Exploit DB Packet Storm
197393 4.3 MEDIUM
Network
sap treasury_and_risk_management_\(ea-finserv\)
treasury_and_risk_management_\(s4core\)
The selection query in SAP Treasury and Risk Management (Transaction Management) (EA-FINSERV?versions 600, 603, 604, 605, 606, 616, 617, 618, 800 and S4CORE versions 101, 102, 103, 104) returns more … CWE-862
 Missing Authorization
CVE-2020-6204 2024-11-21 14:35 2020-03-11 Show GitHub Exploit DB Packet Storm
197394 6.1 MEDIUM
Network
sap netweaver_as_abap_business_server_pages SAP NetWeaver AS ABAP Business Server Pages (Smart Forms), SAP_BASIS versions- 7.00, 7.01, 7.02, 7.10, 7.11, 7.30, 7.31, 7.40, 7.50, 7.51, 7.52, 7.53, 7.54; does not sufficiently encode user controll… CWE-79
Cross-site Scripting
CVE-2020-6205 2024-11-21 14:35 2020-03-11 Show GitHub Exploit DB Packet Storm
197395 9.1 CRITICAL
Network
sap netweaver SAP NetWeaver UDDI Server (Services Registry), versions- 7.10, 7.11, 7.20, 7.30, 7.31, 7.40, 7.50; allows an attacker to exploit insufficient validation of path information provided by users, thus ch… CWE-22
Path Traversal
CVE-2020-6203 2024-11-21 14:35 2020-03-11 Show GitHub Exploit DB Packet Storm
197396 7.2 HIGH
Network
sap netweaver_application_server_java SAP NetWeaver Application Server Java (User Management Engine), versions- 7.10, 7.11, 7.20, 7.30, 7.31, 7.40, 7.50; does not sufficiently validate the LDAP data source configuration XML document acce… CWE-20
 Improper Input Validation 
CVE-2020-6202 2024-11-21 14:35 2020-03-11 Show GitHub Exploit DB Packet Storm
197397 6.1 MEDIUM
Network
sap commerce_cloud The SAP Commerce (Testweb Extension), versions- 6.6, 6.7, 1808, 1811, 1905, does not sufficiently encode user-controlled inputs, due to which certain GET URL parameters are reflected in the HTTP resp… CWE-79
Cross-site Scripting
CVE-2020-6201 2024-11-21 14:35 2020-03-11 Show GitHub Exploit DB Packet Storm
197398 5.4 MEDIUM
Network
sap commerce_cloud The SAP Commerce (SmartEdit Extension), versions- 6.6, 6.7, 1808, 1811, is vulnerable to client-side angularjs template injection, a variant of Cross-Site-Scripting (XSS) that exploits the templating… CWE-79
Cross-site Scripting
CVE-2020-6200 2024-11-21 14:35 2020-03-11 Show GitHub Exploit DB Packet Storm
197399 5.4 MEDIUM
Network
sap erp The view FIMENAV_COMPCERT in SAP ERP (MENA Certificate Management), EAPPGLO version 607, SAP_FIN versions- 618, 730 and SAP S/4HANA (MENA Certificate Management), S4CORE versions- 100, 101, 102, 103,… CWE-862
 Missing Authorization
CVE-2020-6199 2024-11-21 14:35 2020-03-11 Show GitHub Exploit DB Packet Storm
197400 9.8 CRITICAL
Network
sap solution_manager SAP Solution Manager (Diagnostics Agent), version 720, allows unencrypted connections from unauthenticated sources. This allows an attacker to control all remote functions on the Agent due to Missing… CWE-306
CWE-319
Missing Authentication for Critical Function
Cleartext Transmission of Sensitive Information
CVE-2020-6198 2024-11-21 14:35 2020-03-11 Show GitHub Exploit DB Packet Storm