Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230151 7.8 危険 The Cacti Group - Cacti におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-3112 2012-12-20 18:19 2007-05-22 Show GitHub Exploit DB Packet Storm
230152 9 危険 シマンテック - Symantec Client Security および SAV CE などで使用される Symantec Reporting Server における "認証システムを無効にされる" 脆弱性 - CVE-2007-3095 2012-12-20 18:19 2007-06-5 Show GitHub Exploit DB Packet Storm
230153 7.8 危険 rainbowsoft - Z-Blog におけるデータベースをダウンロードされる脆弱性 - CVE-2007-3083 2012-12-20 18:19 2007-06-6 Show GitHub Exploit DB Packet Storm
230154 7.8 危険 sendcard - Sendcard の sendcard.php におけるディレクトリトラバーサルの脆弱性 - CVE-2007-3082 2012-12-20 18:19 2007-06-6 Show GitHub Exploit DB Packet Storm
230155 7.8 危険 zenturi - Zenturi ProgramChecker の sasatl.dll における任意のファイルをダウンロードされる脆弱性 - CVE-2007-3076 2012-12-20 18:19 2007-06-6 Show GitHub Exploit DB Packet Storm
230156 7.5 危険 phpreactor - Reactor における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-3066 2012-12-20 18:19 2007-06-5 Show GitHub Exploit DB Packet Storm
230157 5 警告 sendcard - SendCard における重要な情報を取得される脆弱性 - CVE-2007-3059 2012-12-20 18:19 2007-06-5 Show GitHub Exploit DB Packet Storm
230158 6.8 警告 XOOPS - XOOPS 用の icontent モジュールにおける PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-3057 2012-12-20 18:19 2007-06-5 Show GitHub Exploit DB Packet Storm
230159 4.3 警告 WebSVN - WebSVN の filedetails.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-3056 2012-12-20 18:19 2007-06-5 Show GitHub Exploit DB Packet Storm
230160 7.5 危険 postnuke software foundation - PostNuke 用の PNphpBB2 モジュールにおける SQL インジェクションの脆弱性 - CVE-2007-3052 2012-12-20 18:19 2007-06-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 16, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
210321 5.8 MEDIUM
Network
redhat ansible_tower A data exposure flaw was found in Tower, where sensitive data was revealed from the HTTP return error codes. This flaw allows an unauthenticated, remote attacker to retrieve pages from the default or… CWE-209
Information Exposure Through an Error Message
CVE-2020-14337 2024-11-21 14:03 2020-07-31 Show GitHub Exploit DB Packet Storm
210322 8.8 HIGH
Local
redhat satellite A flaw was found in Red Hat Satellite 6 which allows privileged attacker to read cache files. These cache credentials could help attacker to gain complete control of the Satellite instance. - CVE-2020-14334 2024-11-21 14:03 2020-07-31 Show GitHub Exploit DB Packet Storm
210323 8.8 HIGH
Network
freemedsoftware openclinic_ga OpenClinic GA 5.09.02 and 5.89.05b does not properly verify uploaded files, which may allow a low-privilege user to upload and execute arbitrary files on the system. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-14488 2024-11-21 14:03 2020-07-29 Show GitHub Exploit DB Packet Storm
210324 9.8 CRITICAL
Network
freemedsoftware openclinic_ga OpenClinic GA 5.09.02 contains a hidden default user account that may be accessed if an administrator has not expressly turned off this account, which may allow an attacker to login and execute arbit… NVD-CWE-Other
CVE-2020-14487 2024-11-21 14:03 2020-07-29 Show GitHub Exploit DB Packet Storm
210325 8.8 HIGH
Network
openclinic_ga_project openclinic_ga An attacker may bypass permission/authorization checks in OpenClinic GA 5.09.02 and 5.89.05b by ignoring the redirect of a permission failure, which may allow unauthorized execution of commands. CWE-863
 Incorrect Authorization
CVE-2020-14486 2024-11-21 14:03 2020-07-29 Show GitHub Exploit DB Packet Storm
210326 8.8 HIGH
Network
openclinic_ga_project openclinic_ga A low-privilege user may use SQL syntax to write arbitrary files to the OpenClinic GA 5.09.02 and 5.89.05b server, which may allow the execution of arbitrary commands. CWE-269
 Improper Privilege Management
CVE-2020-14493 2024-11-21 14:03 2020-07-29 Show GitHub Exploit DB Packet Storm
210327 6.1 MEDIUM
Network
openclinic_ga_project openclinic_ga OpenClinic GA 5.09.02 and 5.89.05b does not properly neutralize user-controllable input, which may allow the execution of malicious code within the user’s browser. CWE-79
Cross-site Scripting
CVE-2020-14492 2024-11-21 14:03 2020-07-29 Show GitHub Exploit DB Packet Storm
210328 8.8 HIGH
Network
openclinic_ga_project openclinic_ga OpenClinic GA 5.09.02 and 5.89.05b includes arbitrary local files specified within its parameter and executes some files, which may allow disclosure of sensitive files or the execution of malicious u… CWE-22
Path Traversal
CVE-2020-14490 2024-11-21 14:03 2020-07-29 Show GitHub Exploit DB Packet Storm
210329 7.5 HIGH
Network
openclinic_ga_project openclinic_ga OpenClinic GA 5.09.02 and 5.89.05b stores passwords using inadequate hashing complexity, which may allow an attacker to recover passwords using known password cracking techniques. CWE-522
 Insufficiently Protected Credentials
CVE-2020-14489 2024-11-21 14:03 2020-07-29 Show GitHub Exploit DB Packet Storm
210330 4.9 MEDIUM
Network
oracle
netapp
mysql
active_iq_unified_manager
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.20 and prior. Easily exploitable vulnerability allows high privi… NVD-CWE-noinfo
CVE-2020-14725 2024-11-21 14:03 2020-07-25 Show GitHub Exploit DB Packet Storm