Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230401 4.3 警告 xeroxer - XeroXer Simple one-file gallery の gallery.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-1125 2012-12-20 18:19 2007-02-26 Show GitHub Exploit DB Packet Storm
230402 5 警告 xeroxer - XeroXer Simple one-file gallery の gallery.php におけるディレクトリトラバーサルの脆弱性 - CVE-2007-1124 2012-12-20 18:19 2007-02-26 Show GitHub Exploit DB Packet Storm
230403 7.5 危険 ZPanel Project - ZPanel における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-1123 2012-12-20 18:19 2007-02-26 Show GitHub Exploit DB Packet Storm
230404 6.4 警告 zephyrsoft toolbox - Mathis Dirksen-Thedens ZephyrSoft Toolbox ABC における SQL インジェクションの脆弱性 - CVE-2007-1122 2012-12-20 18:19 2007-02-26 Show GitHub Exploit DB Packet Storm
230405 6.4 警告 zephyrsoft toolbox - Mathis Dirksen-Thedens ZephyrSoft Toolbox ABC における SQL インジェクションの脆弱性 - CVE-2007-1121 2012-12-20 18:19 2007-02-26 Show GitHub Exploit DB Packet Storm
230406 9.3 危険 steema software - TeeChart Pro ActiveX コントロールにおける .tee ファイルをダウンロードされる脆弱性 - CVE-2007-1120 2012-12-20 18:19 2007-02-26 Show GitHub Exploit DB Packet Storm
230407 4.3 警告 phpwebgallery - Phpwebgallery におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-1109 2012-12-20 18:19 2007-02-26 Show GitHub Exploit DB Packet Storm
230408 4.3 警告 The Tor Project - Tor における超過リソースを不当要求される脆弱性 - CVE-2007-1103 2012-12-20 18:19 2007-02-26 Show GitHub Exploit DB Packet Storm
230409 7.8 危険 pickle - Ahmet Sacan Pickle の download.php におけるディレクトリトラバーサルの脆弱性 - CVE-2007-1100 2012-12-20 18:19 2007-02-26 Show GitHub Exploit DB Packet Storm
230410 7.8 危険 scrymud - ScryMUD における脆弱性 - CVE-2007-1098 2012-12-20 18:19 2007-02-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
213301 6.8 MEDIUM
Physics
mi xiaomi_xiaoai_speaker_pro_lx06_firmware An issue was discovered on XIAOMI XIAOAI speaker Pro LX06 1.52.4. Attackers can get root shell by accessing the UART interface and then they can (i) read Wi-Fi SSID or password, (ii) read the dialogu… CWE-306
Missing Authentication for Critical Function
CVE-2020-10263 2024-11-21 13:55 2020-04-9 Show GitHub Exploit DB Packet Storm
213302 6.8 MEDIUM
Physics
mi xiaomi_xiaoai_speaker_pro_lx06_firmware An issue was discovered on XIAOMI XIAOAI speaker Pro LX06 1.58.10. Attackers can activate the failsafe mode during the boot process, and use the mi_console command cascaded by the SN code shown on th… NVD-CWE-noinfo
CVE-2020-10262 2024-11-21 13:55 2020-04-9 Show GitHub Exploit DB Packet Storm
213303 6.1 MEDIUM
Network
hms-networks ewon_flexy_firmware
ewon_cosy_firmware
A non-persistent XSS (cross-site scripting) vulnerability exists in eWON Flexy and Cosy (all firmware versions prior to 14.1s0). An attacker could send a specially crafted URL to initiate a password … CWE-79
Cross-site Scripting
CVE-2020-10633 2024-11-21 13:55 2020-04-8 Show GitHub Exploit DB Packet Storm
213304 7.5 HIGH
Network
logicaldoc logicaldoc LogicalDoc before 8.3.3 allows /servlet.gupld Directory Traversal, a different vulnerability than CVE-2020-9423 and CVE-2020-10365. CWE-22
Path Traversal
CVE-2020-10366 2024-11-21 13:55 2020-04-8 Show GitHub Exploit DB Packet Storm
213305 7.5 HIGH
Network
universal-robots ur_software Universal Robots control box CB 3.1 across firmware versions (tested on 1.12.1, 1.12, 1.11 and 1.10) does not encrypt or protect in any way the intellectual property artifacts installed from the UR+ … CWE-312
 Cleartext Storage of Sensitive Information
CVE-2020-10267 2024-11-21 13:55 2020-04-6 Show GitHub Exploit DB Packet Storm
213306 8.1 HIGH
Network
universal-robots ur\+ UR+ (Universal Robots+) is a platform of hardware and software component sellers, for Universal Robots robots. When installing any of these components in the robots (e.g. in the UR10), no integrity c… CWE-345
 Insufficient Verification of Data Authenticity
CVE-2020-10266 2024-11-21 13:55 2020-04-6 Show GitHub Exploit DB Packet Storm
213307 9.4 CRITICAL
Network
universal-robots ur_software Universal Robots Robot Controllers Version CB2 SW Version 1.4 upwards, CB3 SW Version 3.0 and upwards, e-series SW Version 5.0 and upwards expose a service called DashBoard server at port 29999 that … CWE-306
Missing Authentication for Critical Function
CVE-2020-10265 2024-11-21 13:55 2020-04-6 Show GitHub Exploit DB Packet Storm
213308 8.8 HIGH
Adjacent
universal-robots ur_software CB3 SW Version 3.3 and upwards, e-series SW Version 5.0 and upwards allow authenticated access to the RTDE (Real-Time Data Exchange) interface on port 30004 which allows setting registers, the speed … CWE-306
Missing Authentication for Critical Function
CVE-2020-10264 2024-11-21 13:55 2020-04-6 Show GitHub Exploit DB Packet Storm
213309 7.8 HIGH
Local
visam vbase_editor
vbase_web-remote
VISAM VBASE Editor version 11.5.0.2 and VBASE Web-Remote Module allow weak hashing algorithm and insecure permissions which may allow a local attacker to bypass the password-protected mechanism throu… CWE-327
 Use of a Broken or Risky Cryptographic Algorithm
CVE-2020-10601 2024-11-21 13:55 2020-04-4 Show GitHub Exploit DB Packet Storm
213310 9.8 CRITICAL
Network
visam vbase_web-remote
vbase_editor
VISAM VBASE Editor version 11.5.0.2 and VBASE Web-Remote Module may allow a vulnerable ActiveX component to be exploited resulting in a buffer overflow, which may lead to a denial-of-service conditio… CWE-120
Classic Buffer Overflow
CVE-2020-10599 2024-11-21 13:55 2020-04-4 Show GitHub Exploit DB Packet Storm