Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229881 6.8 警告 rsync.samba.org - rsync の sender.c における任意のコードを実行される脆弱性 - CVE-2007-4091 2012-12-20 18:33 2007-08-15 Show GitHub Exploit DB Packet Storm
229882 4.3 警告 vikingboard - Vikingboard におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-4090 2012-12-20 18:33 2007-07-30 Show GitHub Exploit DB Packet Storm
229883 4.3 警告 wp-feedstats - WordPress 用の WP-FeedStats プラグインにおけるクロスサイトスクリプティングの脆弱性 - CVE-2007-4104 2012-12-20 18:33 2006-08-17 Show GitHub Exploit DB Packet Storm
229884 7.5 危険 wikiwebweaver - WikiWebWeaver の index.php における任意のコードを実行される脆弱性 - CVE-2007-4182 2012-12-20 18:33 2007-08-7 Show GitHub Exploit DB Packet Storm
229885 5.8 警告 The Tor Project - Tor における torrc 設定ファイルを変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-4174 2012-12-20 18:33 2007-08-7 Show GitHub Exploit DB Packet Storm
229886 5 警告 WordPress.org - WordPress 用の Unnamed テーマなどの index.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-4166 2012-12-20 18:33 2007-08-7 Show GitHub Exploit DB Packet Storm
229887 4.3 警告 WordPress.org
xu yiyang
- WordPress 用の Blue Memories テーマの index.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-4165 2012-12-20 18:33 2007-08-7 Show GitHub Exploit DB Packet Storm
229888 7.8 危険 TIBCO Software - TIBCO RV におけるトラフィックをキャプチャされる脆弱性 - CVE-2007-4162 2012-12-20 18:33 2007-08-3 Show GitHub Exploit DB Packet Storm
229889 4.3 警告 TIBCO Software - TIBCO RV の rvd におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-4161 2012-12-20 18:33 2007-08-3 Show GitHub Exploit DB Packet Storm
229890 4.3 警告 vikingboard - Vikingboard における重要な情報を取得される脆弱性 - CVE-2007-4089 2012-12-20 18:33 2007-07-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 17, 2026, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209841 7.5 HIGH
Network
zyxel cloudcnm_secumanager Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has an unauthenticated update_all_realm_license API. CWE-522
 Insufficiently Protected Credentials
CVE-2020-15341 2024-11-21 14:05 2022-09-29 Show GitHub Exploit DB Packet Storm
209842 7.5 HIGH
Network
zyxel cloudcnm_secumanager Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has a hardcoded opt/axess/AXAssets/default_axess/axess/TR69/Handlers/turbolink/sshkeys/id_rsa SSH key. CWE-311
Missing Encryption of Sensitive Data
CVE-2020-15340 2024-11-21 14:05 2022-09-29 Show GitHub Exploit DB Packet Storm
209843 6.1 MEDIUM
Network
zyxel cloudcnm_secumanager Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 allows live/CPEManager/AXCampaignManager/handle_campaign_script_link?script_name= XSS. CWE-79
Cross-site Scripting
CVE-2020-15339 2024-11-21 14:05 2022-09-29 Show GitHub Exploit DB Packet Storm
209844 5.3 MEDIUM
Network
zyxel cloudcnm_secumanager Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has a "Use of GET Request Method With Sensitive Query Strings" issue for /cnr requests. CWE-862
 Missing Authorization
CVE-2020-15338 2024-11-21 14:05 2022-09-29 Show GitHub Exploit DB Packet Storm
209845 5.3 MEDIUM
Network
zyxel cloudcnm_secumanager Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has a "Use of GET Request Method With Sensitive Query Strings" issue for /registerCpe requests. CWE-862
 Missing Authorization
CVE-2020-15337 2024-11-21 14:05 2022-09-29 Show GitHub Exploit DB Packet Storm
209846 5.3 MEDIUM
Network
zyxel cloudcnm_secumanager Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 allows escape-sequence injection into the /var/log/axxmpp.log file. NVD-CWE-Other
CVE-2020-15334 2024-11-21 14:05 2022-09-29 Show GitHub Exploit DB Packet Storm
209847 5.3 MEDIUM
Network
zyxel cloudcnm_secumanager Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 allows attackers to discover accounts via MySQL "select * from Administrator_users" and "select * from Users_users" requests. CWE-89
SQL Injection
CVE-2020-15333 2024-11-21 14:05 2022-09-29 Show GitHub Exploit DB Packet Storm
209848 9.8 CRITICAL
Network
zyxel cloudcnm_secumanager Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has weak /opt/axess/etc/default/axess permissions. CWE-312
 Cleartext Storage of Sensitive Information
CVE-2020-15332 2024-11-21 14:05 2022-09-29 Show GitHub Exploit DB Packet Storm
209849 9.8 CRITICAL
Network
zyxel cloudcnm_secumanager Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has a hardcoded OAUTH_SECRET_KEY in /opt/axess/etc/default/axess. CWE-311
Missing Encryption of Sensitive Data
CVE-2020-15331 2024-11-21 14:05 2022-09-29 Show GitHub Exploit DB Packet Storm
209850 5.3 MEDIUM
Network
zyxel cloudcnm_secumanager Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has a hardcoded APP_KEY in /opt/axess/etc/default/axess. CWE-311
Missing Encryption of Sensitive Data
CVE-2020-15330 2024-11-21 14:05 2022-09-29 Show GitHub Exploit DB Packet Storm