|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 20, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 230471 | 4.3 | 警告 | symantec veritas | - | Windows 用の Symantec Veritas Storage Foundation におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2007-4516 | 2012-12-20 18:33 | 2008-02-20 | Show | GitHub Exploit DB Packet Storm |
| 230472 | 4.3 | 警告 | x-diesel | - | Unreal Commander における重要な情報 (メモリコンテンツ) を取得される脆弱性 |
CWE-noinfo
情報不足 |
CVE-2007-4547 | 2012-12-20 18:33 | 2007-08-27 | Show | GitHub Exploit DB Packet Storm |
| 230473 | 5.8 | 警告 | x-diesel | - | Unreal Commander におけるユーザに危険なファイルを上書きまたは作成させる脆弱性 |
CWE-DesignError
|
CVE-2007-4546 | 2012-12-20 18:33 | 2007-08-27 | Show | GitHub Exploit DB Packet Storm |
| 230474 | 6.8 | 警告 | x-diesel | - | Unreal Commander におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2007-4545 | 2012-12-20 18:33 | 2007-08-27 | Show | GitHub Exploit DB Packet Storm |
| 230475 | 4.3 | 警告 | WordPress.org | - | WordPress MU の wp-newblog.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2007-4544 | 2012-12-20 18:33 | 2007-08-27 | Show | GitHub Exploit DB Packet Storm |
| 230476 | 4.3 | 警告 | university of minnesota | - | MapServer におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2007-4542 | 2012-12-20 18:33 | 2007-08-27 | Show | GitHub Exploit DB Packet Storm |
| 230477 | 6.8 | 警告 | skulltag team | - | Huffman 解凍アルゴリズムにおけるヒープベースのバッファオーバーフローの脆弱性 | - | CVE-2007-4537 | 2012-12-20 18:33 | 2007-08-27 | Show | GitHub Exploit DB Packet Storm |
| 230478 | 4.6 | 警告 | torrenttrader | - | TorrentTrader における任意の PHP コードを実行される脆弱性 | - | CVE-2007-4536 | 2012-12-20 18:33 | 2007-08-24 | Show | GitHub Exploit DB Packet Storm |
| 230479 | 4.3 | 警告 | vavoom | - | Vavoom の str.cpp におけるサービス運用妨害 (DoS) の脆弱性 | - | CVE-2007-4535 | 2012-12-20 18:33 | 2007-08-24 | Show | GitHub Exploit DB Packet Storm |
| 230480 | 7.5 | 危険 | vavoom | - | Vavoom の p_thinker.cpp におけるバッファオーバーフローの脆弱性 | - | CVE-2007-4534 | 2012-12-20 18:33 | 2007-08-24 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 20, 2026, 4:14 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 200171 | 5.9 |
MEDIUM
Network |
grandstream |
ucm6202_firmware ucm6204_firmware ucm6208_firmware |
The Grandstream UCM6200 series before 1.0.20.22 is vulnerable to an SQL injection via the HTTP server's websockify endpoint. A remote unauthenticated attacker can invoke the login action with a craft… |
CWE-89
SQL Injection |
CVE-2020-5725 | 2024-11-21 14:34 | 2020-03-31 | Show | GitHub Exploit DB Packet Storm |
| 200172 | 7.5 |
HIGH
Network |
grandstream |
ucm6202_firmware ucm6204_firmware ucm6208_firmware |
The Grandstream UCM6200 series before 1.0.20.22 is vulnerable to an SQL injection via the HTTP server's websockify endpoint. A remote unauthenticated attacker can invoke the challenge action with a c… |
CWE-89
SQL Injection |
CVE-2020-5724 | 2024-11-21 14:34 | 2020-03-31 | Show | GitHub Exploit DB Packet Storm |
| 200173 | 9.8 |
CRITICAL
Network |
grandstream |
ucm6202_firmware ucm6204_firmware ucm6208_firmware |
The UCM6200 series 1.0.20.22 and below stores unencrypted user passwords in an SQLite database. This could allow an attacker to retrieve all passwords and possibly gain elevated privileges. |
CWE-312
Cleartext Storage of Sensitive Information |
CVE-2020-5723 | 2024-11-21 14:34 | 2020-03-31 | Show | GitHub Exploit DB Packet Storm |
| 200174 | 7.5 |
HIGH
Network |
mitsubishielectric |
cr800-q_firmware fx3g_firmware fx3gc_firmware fx3s_firmware fx3u_firmware fx3uc_firmware fx5u_firmware fx5uc_firmware fx5uj_firmware l02cpu_firmware l02cpu-p_firmware | When MELSOFT transmission port (UDP/IP) of Mitsubishi Electric MELSEC iQ-R series (all versions), MELSEC iQ-F series (all versions), MELSEC Q series (all versions), MELSEC L series (all versions), an… |
CWE-400
Uncontrolled Resource Consumption |
CVE-2020-5527 | 2024-11-21 14:34 | 2020-03-30 | Show | GitHub Exploit DB Packet Storm |
| 200175 | 8.8 |
HIGH
Adjacent |
toyota | display_control_unit | Toyota 2017 Model Year DCU (Display Control Unit) allows an unauthenticated attacker within Bluetooth range to cause a denial of service attack and/or execute an arbitrary command. The affected DCUs … |
CWE-276
Incorrect Default Permissions |
CVE-2020-5551 | 2024-11-21 14:34 | 2020-03-30 | Show | GitHub Exploit DB Packet Storm |
| 200176 | 8.6 |
HIGH
Network |
f5 netapp |
nginx_controller cloud_backup |
In NGINX Controller versions prior to 3.2.0, an unauthenticated attacker with network access to the Controller API can create unprivileged user accounts. The user which is created is only able to upl… |
NVD-CWE-noinfo
|
CVE-2020-5863 | 2024-11-21 14:34 | 2020-03-28 | Show | GitHub Exploit DB Packet Storm |
| 200177 | 7.5 |
HIGH
Network |
f5 |
big-ip_access_policy_manager big-ip_advanced_firewall_manager big-ip_analytics big-ip_application_acceleration_manager big-ip_application_security_manager big-ip_domain_name_system … |
On BIG-IP 15.1.0-15.1.0.1, 15.0.0-15.0.1.1, and 14.1.0-14.1.2.2, under certain conditions, TMM may crash or stop processing new traffic with the DPDK/ENA driver on AWS systems while sending traffic. … |
NVD-CWE-noinfo
|
CVE-2020-5862 | 2024-11-21 14:34 | 2020-03-28 | Show | GitHub Exploit DB Packet Storm |
| 200178 | 7.5 |
HIGH
Network |
f5 |
big-ip_access_policy_manager big-ip_advanced_firewall_manager big-ip_analytics big-ip_application_acceleration_manager big-ip_application_security_manager big-ip_domain_name_system … |
On BIG-IP 15.1.0.1, specially formatted HTTP/3 messages may cause TMM to produce a core file. |
NVD-CWE-noinfo
|
CVE-2020-5859 | 2024-11-21 14:34 | 2020-03-28 | Show | GitHub Exploit DB Packet Storm |
| 200179 | 7.5 |
HIGH
Network |
f5 |
big-ip_access_policy_manager big-ip_advanced_firewall_manager big-ip_analytics big-ip_application_acceleration_manager big-ip_application_security_manager big-ip_domain_name_system … |
On BIG-IP 12.1.0-12.1.5, the TMM process may produce a core file in some cases when Ram Cache incorrectly optimizes stored data resulting in memory errors. |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2020-5861 | 2024-11-21 14:34 | 2020-03-28 | Show | GitHub Exploit DB Packet Storm |
| 200180 | 8.1 |
HIGH
Network |
f5 |
big-iq_centralized_management big-ip_access_policy_manager big-ip_advanced_firewall_manager big-ip_analytics big-ip_application_acceleration_manager big-ip_application_security_manager… |
On BIG-IP 15.0.0-15.1.0.2, 14.1.0-14.1.2.3, 13.1.0-13.1.3.2, 12.1.0-12.1.5.1, and 11.5.2-11.6.5.1 and BIG-IQ 7.0.0, 6.0.0-6.1.0, and 5.2.0-5.4.0, in a High Availability (HA) network failover in Devic… |
CWE-287 CWE-319 Improper Authentication Cleartext Transmission of Sensitive Information |
CVE-2020-5860 | 2024-11-21 14:34 | 2020-03-28 | Show | GitHub Exploit DB Packet Storm |