Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229921 9.3 危険 phpbbviet - phpBBViet の includes/functions_mod_user.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-6088 2012-12-20 18:33 2007-11-21 Show GitHub Exploit DB Packet Storm
229922 6.8 警告 vigilecms - VigileCMS の index.php におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2007-6087 2012-12-20 18:33 2007-11-21 Show GitHub Exploit DB Packet Storm
229923 9.3 危険 vigilecms - VigileCMS の index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-6086 2012-12-20 18:33 2007-11-21 Show GitHub Exploit DB Packet Storm
229924 4.3 警告 vigilecms - VigileCMS の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-6085 2012-12-20 18:33 2007-11-21 Show GitHub Exploit DB Packet Storm
229925 9.3 危険 sciurus - Sciurus Hosting Panel の acp/savenews.php における任意の PHP コードを挿入される脆弱性 CWE-94
コード・インジェクション
CVE-2007-6082 2012-12-20 18:33 2007-11-21 Show GitHub Exploit DB Packet Storm
229926 7.5 危険 skyportal - SkyPortal における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-6078 2012-12-20 18:33 2007-11-21 Show GitHub Exploit DB Packet Storm
229927 7.5 危険 profilecms - ProfileCMS の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-6058 2012-12-20 18:33 2007-11-20 Show GitHub Exploit DB Packet Storm
229928 6.8 警告 swsoft - SWSoft Confixx Professional の fehler.inc.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-6042 2012-12-20 18:33 2007-11-20 Show GitHub Exploit DB Packet Storm
229929 7.5 危険 rigs of rogs - RoR のサーバの sequencer.cpp におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-6041 2012-12-20 18:33 2007-11-20 Show GitHub Exploit DB Packet Storm
229930 9 危険 Wonderware - Invensys Wonderware InTouch における任意のプログラムを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-6033 2012-12-20 18:33 2007-11-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 19, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209811 8.8 HIGH
Network
redlion n-tron_702-w_firmware
n-tron_702m12-w_firmware
The affected product is vulnerable to cross-site request forgery, which may allow an attacker to modify different configurations of a device by luring an authenticated user to click on a crafted link… - CVE-2020-16208 2024-11-21 14:06 2020-09-2 Show GitHub Exploit DB Packet Storm
209812 9.0 CRITICAL
Network
redlion n-tron_702-w_firmware
n-tron_702m12-w_firmware
The affected product is vulnerable to stored cross-site scripting, which may allow an attacker to remotely execute arbitrary code to gain access to sensitive data on the N-Tron 702-W / 702M12-W (all … - CVE-2020-16206 2024-11-21 14:06 2020-09-2 Show GitHub Exploit DB Packet Storm
209813 9.8 CRITICAL
Network
redlion n-tron_702-w_firmware
n-tron_702m12-w_firmware
The affected product is vulnerable due to an undocumented interface found on the device, which may allow an attacker to execute commands as root on the device on the N-Tron 702-W / 702M12-W (all vers… - CVE-2020-16204 2024-11-21 14:06 2020-09-2 Show GitHub Exploit DB Packet Storm
209814 5.5 MEDIUM
Local
canonical ppp The modprobe child process in the ./debian/patches/load_ppp_generic_if_needed patch file incorrectly handled module loading. A local non-root attacker could exploit the MODPROBE_OPTIONS environment v… CWE-20
 Improper Input Validation 
CVE-2020-15704 2024-11-21 14:06 2020-09-1 Show GitHub Exploit DB Packet Storm
209815 7.5 HIGH
Network
linuxfoundation acrn Missing access control restrictions in the Hypervisor component of the ACRN Project (v2.0 and v1.6.1) allow a malicious entity, with root access in the Service VM userspace, to abuse the PCIe assign/… NVD-CWE-Other
CVE-2020-15687 2024-11-21 14:06 2020-09-1 Show GitHub Exploit DB Packet Storm
209816 3.5 LOW
Adjacent
mercedes-benz comand On Mercedes-Benz C Class AMG Premium Plus c220 BlueTec vehicles, the Bluetooth stack mishandles %x and %c format-string specifiers in a device name in the COMAND infotainment software. CWE-134
Use of Externally-Controlled Format String
CVE-2020-16142 2024-11-21 14:06 2020-08-28 Show GitHub Exploit DB Packet Storm
209817 5.4 MEDIUM
Network
osticket osticket osTicket before 1.14.3 allows XSS because include/staff/banrule.inc.php has an unvalidated echo $info['notes'] call. CWE-79
Cross-site Scripting
CVE-2020-16193 2024-11-21 14:06 2020-08-26 Show GitHub Exploit DB Packet Storm
209818 4.3 MEDIUM
Network
octopus server
octopus_server
An issue was discovered in Octopus Deploy 3.4. A deployment target can be configured with an Account or Certificate that is outside the scope of the deployment target. An authorised user can potentia… CWE-295
Improper Certificate Validation 
CVE-2020-16197 2024-11-21 14:06 2020-08-26 Show GitHub Exploit DB Packet Storm
209819 7.8 HIGH
Local
gradle maven An issue was discovered in the Maven Extension plugin before 1.6 for Gradle Enterprise. The extension uses a socket connection to send serialized Java objects. Deserialization is not restricted to an… CWE-502
 Deserialization of Untrusted Data
CVE-2020-15777 2024-11-21 14:06 2020-08-26 Show GitHub Exploit DB Packet Storm
209820 6.4 MEDIUM
Physics
thalesgroup bgs5_firmware
ehs5_firmware
ehs8_firmware
ehs6_firmware
pds5_firmware
pds6_firmware
els61_firmware
els81_firmware
pls62_firmware
Some devices of Thales DIS (formerly Gemalto, formerly Cinterion) allow Directory Traversal by physically proximate attackers. The directory path access check of the internal flash file system can be… CWE-22
Path Traversal
CVE-2020-15858 2024-11-21 14:06 2020-08-22 Show GitHub Exploit DB Packet Storm