Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 24, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230561 7.5 危険 scribe - Ben Ng Scribe の forum.php における regged/ 配下の特定のファイルへ任意の PHP コードを挿入される脆弱性 CWE-94
コード・インジェクション
CVE-2007-5822 2012-12-20 18:33 2007-11-5 Show GitHub Exploit DB Packet Storm
230562 7.6 危険 sblog - sBlog の blocks_edit_do.php におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2007-5818 2012-12-20 18:33 2007-11-5 Show GitHub Exploit DB Packet Storm
230563 10 危険 SonicWALL - SonicWall SSL-VPN 200 および SSL-VPN 2000/4000 の WebCacheCleaner ActiveX コントロールにおける絶対パストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-5815 2012-12-20 18:33 2007-11-5 Show GitHub Exploit DB Packet Storm
230564 9.3 危険 SonicWALL - SonicWall SSL-VPN NetExtender NELaunchCtrl ActiveX コントロールにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-5814 2012-12-20 18:33 2007-11-5 Show GitHub Exploit DB Packet Storm
230565 6.8 警告 ssreader - SSReader の Ultra Star Reader ActiveX コントロールにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-5807 2012-12-20 18:33 2007-11-5 Show GitHub Exploit DB Packet Storm
230566 7.5 危険 work system e-commerce - WORK system e-commerce における脆弱性 CWE-noinfo
情報不足
CVE-2007-5801 2012-12-20 18:33 2007-11-2 Show GitHub Exploit DB Packet Storm
230567 6.8 警告 tom willmot - WordPress 用の BackUpWordPress プラグインにおける PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-5800 2012-12-20 18:33 2007-11-2 Show GitHub Exploit DB Packet Storm
230568 7.1 危険 stonesoft - Stonesoft StoneGate IPS におけるシステムへ侵入される脆弱性 CWE-DesignError
CVE-2007-5793 2012-12-20 18:33 2007-11-1 Show GitHub Exploit DB Packet Storm
230569 7.1 危険 Vonage - Vonage Motorola Phone Adapter VT 2142-VD における盗聴される脆弱性 CWE-310
暗号の問題
CVE-2007-5792 2012-12-20 18:33 2007-11-1 Show GitHub Exploit DB Packet Storm
230570 10 危険 Vonage - Vonage Motorola Phone Adapter VT 2142-VD における偽造された INVITE メッセージを送信される脆弱性 CWE-287
不適切な認証
CVE-2007-5791 2012-12-20 18:33 2007-11-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 24, 2026, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
210141 7.5 HIGH
Network
microsoft windows_server_2008
windows_7
<p>A denial of service vulnerability exists in Windows Remote Desktop Service when an attacker connects to the target system using RDP and sends specially crafted requests. An attacker who successful… NVD-CWE-noinfo
CVE-2020-16863 2024-11-21 14:07 2020-10-17 Show GitHub Exploit DB Packet Storm
210142 8.8 HIGH
Network
zohocorp manageengine_applications_manager Zoho ManageEngine Applications Manager version 14740 and prior allows an authenticated SQL Injection via a crafted jsp request in the RCA module. CWE-89
SQL Injection
CVE-2020-16267 2024-11-21 14:07 2020-10-7 Show GitHub Exploit DB Packet Storm
210143 7.8 HIGH
Local
msi ambientlink_mslo64_firmware The MSI AmbientLink MsIo64 driver 1.0.0.8 has a Buffer Overflow (0x80102040, 0x80102044, 0x80102050,and 0x80102054). CWE-787
 Out-of-bounds Write
CVE-2020-17382 2024-11-21 14:07 2020-10-2 Show GitHub Exploit DB Packet Storm
210144 6.8 MEDIUM
Network
istio istio In Istio 1.5.0 though 1.5.8 and Istio 1.6.0 through 1.6.7, when users specify an AuthorizationPolicy resource with DENY actions using wildcard suffixes (e.g. *-some-suffix) for source principals or n… NVD-CWE-noinfo
CVE-2020-16844 2024-11-21 14:07 2020-10-2 Show GitHub Exploit DB Packet Storm
210145 6.1 MEDIUM
Network
ge s2020_firmware
s2024_firmware
The affected Reason S20 Ethernet Switch is vulnerable to cross-site scripting (XSS), which may allow an attacker to trick application users into performing critical application actions that include, … - CVE-2020-16242 2024-11-21 14:07 2020-09-26 Show GitHub Exploit DB Packet Storm
210146 7.8 HIGH
Local
pango hotspot_shield Improper directory permissions in the Hotspot Shield VPN client software for Windows 10.3.0 and earlier may allow an authorized user to potentially enable escalation of privilege via local access. Th… CWE-59
CWE-732
Link Following
 Incorrect Permission Assignment for Critical Resource
CVE-2020-17365 2024-11-21 14:07 2020-09-25 Show GitHub Exploit DB Packet Storm
210147 7.2 HIGH
Network
ge asset_performance_management_classic GE Digital APM Classic, Versions 4.4 and prior. Salt is not used for hash calculation of passwords, making it possible to decrypt passwords. This design flaw, along with the IDOR vulnerability, puts … NVD-CWE-Other
CVE-2020-16244 2024-11-21 14:07 2020-09-23 Show GitHub Exploit DB Packet Storm
210148 5.3 MEDIUM
Network
ge asset_performance_management_classic GE Digital APM Classic, Versions 4.4 and prior. An insecure direct object reference (IDOR) vulnerability allows user account data to be downloaded in JavaScript object notation (JSON) format by users… - CVE-2020-16240 2024-11-21 14:07 2020-09-23 Show GitHub Exploit DB Packet Storm
210149 7.1 HIGH
Local
philips clinical_collaboration_platform Philips Clinical Collaboration Platform, Versions 12.2.1 and prior. The product exposes a resource to the wrong control sphere, providing unintended actors with inappropriate access to the resource. CWE-668
 Exposure of Resource to Wrong Sphere
CVE-2020-16247 2024-11-21 14:07 2020-09-19 Show GitHub Exploit DB Packet Storm
210150 4.2 MEDIUM
Network
microsoft edge <p>A remote code execution vulnerability exists in the way that the IEToEdge Browser Helper Object (BHO) plugin on Internet Explorer handles objects in memory. The vulnerability could corrupt memory … CWE-787
 Out-of-bounds Write
CVE-2020-16884 2024-11-21 14:07 2020-09-12 Show GitHub Exploit DB Packet Storm