Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229901 5.1 警告 tsep - Olaf Noehring TSEP の copyright.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-3993 2012-12-20 18:02 2006-08-4 Show GitHub Exploit DB Packet Storm
229902 7.5 危険 voc-project - Cisco Unified Wireless IP Phone 7921 における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-3991 2012-12-20 18:02 2006-08-4 Show GitHub Exploit DB Packet Storm
229903 7.5 危険 phpsavant - Paul M. Jones Savant2 における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-3990 2012-12-20 18:02 2006-08-4 Show GitHub Exploit DB Packet Storm
229904 5 警告 scott weedon - Scott Weedon Ajax Chat の visitor/livesupport/chat.php におけるディレクトリトラバーサルの脆弱性 - CVE-2006-3972 2012-12-20 18:02 2006-08-2 Show GitHub Exploit DB Packet Storm
229905 6.8 警告 scott weedon - Scott Weedon Ajax Chat の visitor/livesupport/chat.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-3971 2012-12-20 18:02 2006-08-2 Show GitHub Exploit DB Packet Storm
229906 5 警告 サン・マイクロシステムズ - Sun Solaris 10 3/05 HW2 の暗号化プロバイダにおけるアプリケーションがデータ変更を検出しない脆弱性 - CVE-2006-3968 2012-12-20 18:02 2006-08-1 Show GitHub Exploit DB Packet Storm
229907 7.5 危険 x-scripts - X-Scripts X-Poll の top.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2006-3960 2012-12-20 18:02 2006-08-1 Show GitHub Exploit DB Packet Storm
229908 7.5 危険 x-scripts - X-Scripts X-Protection の protect.php における SQL インジェクションの脆弱性 - CVE-2006-3959 2012-12-20 18:02 2006-08-1 Show GitHub Exploit DB Packet Storm
229909 4.3 警告 pkr internet - Taskjitsu におけるクロスサイトスクリプティングの脆弱性 CWE-noinfo
情報不足
CVE-2006-3958 2012-12-20 18:02 2006-07-6 Show GitHub Exploit DB Packet Storm
229910 4.3 警告 total online solutions - AWBS の contact.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-3956 2012-12-20 18:02 2006-08-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
199531 6.8 MEDIUM
Adjacent
netgear d7800_firmware
r7800_firmware
r8900_firmware
r9000_firmware
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D7800 before 1.0.1.56, R7800 before 1.0.2.68, R8900 before 1.0.4.26, and R9000 before 1.0.4.26. CWE-77
Command Injection
CVE-2020-35790 2024-11-21 14:28 2020-12-30 Show GitHub Exploit DB Packet Storm
199532 8.8 HIGH
Network
netgear nms300_firmware NETGEAR NMS300 devices before 1.6.0.27 are affected by command injection by an authenticated user. CWE-20
CWE-78
 Improper Input Validation 
OS Command 
CVE-2020-35789 2024-11-21 14:28 2020-12-30 Show GitHub Exploit DB Packet Storm
199533 6.8 MEDIUM
Adjacent
netgear wac104_firmware NETGEAR WAC104 devices before 1.0.4.13 are affected by a buffer overflow by an authenticated user. CWE-120
Classic Buffer Overflow
CVE-2020-35788 2024-11-21 14:28 2020-12-30 Show GitHub Exploit DB Packet Storm
199534 4.5 MEDIUM
Adjacent
netgear r7800_firmware NETGEAR R7800 devices before 1.0.2.74 are affected by a buffer overflow by an authenticated user. CWE-120
Classic Buffer Overflow
CVE-2020-35786 2024-11-21 14:28 2020-12-30 Show GitHub Exploit DB Packet Storm
199535 8.8 HIGH
Adjacent
netgear dgn2200_firmware NETGEAR DGN2200v1 devices before v1.0.0.60 mishandle HTTPd authentication (aka PSV-2020-0363, PSV-2020-0364, and PSV-2020-0365). CWE-287
Improper Authentication
CVE-2020-35785 2024-11-21 14:28 2020-12-30 Show GitHub Exploit DB Packet Storm
199536 4.8 MEDIUM
Network
netgear d7800_firmware
r7500v2_firmware
r7800_firmware
r8900_firmware
r9000_firmware
rax120_firmware
rbk50_firmware
rbr50_firmware
rbs50_firmware
xr500_firmware
xr700_firmware
Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 before 1.0.2.74, R8900 before 1.0.4.28, R9000 before 1.0.4.28, RAX120 before 1.0… CWE-79
Cross-site Scripting
CVE-2020-35809 2024-11-21 14:28 2020-12-30 Show GitHub Exploit DB Packet Storm
199537 4.8 MEDIUM
Network
netgear d7800_firmware
r7800_firmware
rax120_firmware
rbk22_firmware
rbr20_firmware
rbs20_firmware
rbk40_firmware
rbr40_firmware
rbs40_firmware
rbk50_firmware
rbr50_firmware
Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7800 before 1.0.2.68, RAX120 before 1.0.0.78, RBK22 before 2.3.5.26, RBR20 before 2.3.5.26, RBS20 before 2.3.5… CWE-79
Cross-site Scripting
CVE-2020-35807 2024-11-21 14:28 2020-12-30 Show GitHub Exploit DB Packet Storm
199538 4.8 MEDIUM
Network
netgear d7800_firmware
r7500v2_firmware
r7800_firmware
rax120_firmware
rbk22_firmware
rbr20_firmware
rbs20_firmware
rbk40_firmware
rbr40_firmware
rbs40_firmware
rbk50_firmware
Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 before 1.0.2.68, RAX120 before 1.0.0.78, RBK22 before 2.3.5.26, RBR20 before 2.3… CWE-79
Cross-site Scripting
CVE-2020-35806 2024-11-21 14:28 2020-12-30 Show GitHub Exploit DB Packet Storm
199539 4.8 MEDIUM
Network
netgear d7800_firmware
r7500v2_firmware
r7800_firmware
r8900_firmware
r9000_firmware
rax120_firmware
rbk20_firmware
rbr20_firmware
rbs20_firmware
rbk40_firmware
rbr40_firmware
Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 before 1.0.2.74, R8900 before 1.0.4.28, R9000 before 1.0.4.28, RAX120 before 1.0… CWE-79
Cross-site Scripting
CVE-2020-35805 2024-11-21 14:28 2020-12-30 Show GitHub Exploit DB Packet Storm
199540 4.4 MEDIUM
Local
netgear d6200_firmware
d7000_firmware
r6020_firmware
r6080_firmware
r6120_firmware
r6220_firmware
r6230_firmware
r6260_firmware
r6700v2_firmware
r6800_firmware
r6900v2_firmware<…
Certain NETGEAR devices are affected by disclosure of sensitive information. This affects D6200 before 1.1.00.40, D7000 before 1.0.1.78, R6020 before 1.0.0.46, R6080 before 1.0.0.46, R6120 before 1.0… NVD-CWE-noinfo
CVE-2020-35803 2024-11-21 14:28 2020-12-30 Show GitHub Exploit DB Packet Storm