|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 17, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 230681 | 6.8 | 警告 | phpMyFAQ | - | phpMyFAQ における "サーバ上にファイルをアップロードする権限を取得される" 脆弱性 |
CWE-noinfo
情報不足 |
CVE-2007-1032 | 2012-12-20 18:19 | 2007-02-8 | Show | GitHub Exploit DB Packet Storm |
| 230682 | 6.8 | 警告 | spoonlabs | - | SpoonLabs Vivvo Article Management CMS の include/db_conn.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2007-1031 | 2012-12-20 18:19 | 2007-02-21 | Show | GitHub Exploit DB Packet Storm |
| 230683 | 7.6 | 危険 | quicksoft | - | Quiksoft EasyMail Objects の IMAP4 コンポーネントにおけるスタックベースのバッファオーバーフローの脆弱性 | - | CVE-2007-1029 | 2012-12-20 18:19 | 2007-02-21 | Show | GitHub Exploit DB Packet Storm |
| 230684 | 7.5 | 危険 | scriptdungeon | - | XLAtunes の view.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2007-1026 | 2012-12-20 18:19 | 2007-02-21 | Show | GitHub Exploit DB Packet Storm |
| 230685 | 7.5 | 危険 | virtualsystem | - | VS-Link-Partner の inc/functions_inc.php における PHP リモートファイルインクルージョンの脆弱性 | - | CVE-2007-1025 | 2012-12-20 18:19 | 2007-02-21 | Show | GitHub Exploit DB Packet Storm |
| 230686 | 7.5 | 危険 | Snitz | - | Snitz Forums 2000 の pop_profile.asp における SQL インジェクションの脆弱性 | - | CVE-2007-1023 | 2012-12-20 18:19 | 2007-02-21 | Show | GitHub Exploit DB Packet Storm |
| 230687 | 7.5 | 危険 | turuncu portal | - | Turuncu Portal の h_goster.asp における SQL インジェクションの脆弱性 | - | CVE-2007-1022 | 2012-12-20 18:19 | 2007-02-21 | Show | GitHub Exploit DB Packet Storm |
| 230688 | 10 | 危険 | xfairguy | - | CodeAvalanche News の inc_listnews.asp における SQL インジェクションの脆弱性 | - | CVE-2007-1021 | 2012-12-20 18:19 | 2007-02-21 | Show | GitHub Exploit DB Packet Storm |
| 230689 | 6.8 | 警告 | webSPELL | - | webSPELL の news.php における SQL インジェクションの脆弱性 | - | CVE-2007-1019 | 2012-12-20 18:19 | 2007-02-21 | Show | GitHub Exploit DB Packet Storm |
| 230690 | 9.3 | 危険 | virtualsystem | - | VirtualSystem VS-News-System の tpl/header.php における PHP リモートファイルインクルージョンの脆弱性 | - | CVE-2007-1018 | 2012-12-20 18:19 | 2007-02-21 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 17, 2026, 4:15 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 199851 | 8.1 |
HIGH
Network |
f5 |
big-iq_centralized_management big-ip_access_policy_manager big-ip_advanced_firewall_manager big-ip_analytics big-ip_application_acceleration_manager big-ip_application_security_manager… |
On BIG-IP 15.0.0-15.1.0.2, 14.1.0-14.1.2.3, 13.1.0-13.1.3.2, 12.1.0-12.1.5.1, and 11.5.2-11.6.5.1 and BIG-IQ 7.0.0, 6.0.0-6.1.0, and 5.2.0-5.4.0, in a High Availability (HA) network failover in Devic… |
CWE-287 CWE-319 Improper Authentication Cleartext Transmission of Sensitive Information |
CVE-2020-5860 | 2024-11-21 14:34 | 2020-03-28 | Show | GitHub Exploit DB Packet Storm |
| 199852 | 7.8 |
HIGH
Local |
f5 |
big-iq_centralized_management big-ip_access_policy_manager big-ip_advanced_firewall_manager big-ip_analytics big-ip_application_acceleration_manager big-ip_application_security_manager… |
On BIG-IP 15.0.0-15.0.1.2, 14.1.0-14.1.2.2, 13.1.0-13.1.3.2, 12.1.0-12.1.5, and 11.5.2-11.6.5.1 and BIG-IQ 7.0.0, 6.0.0-6.1.0, and 5.2.0-5.4.0, users with non-administrator roles (for example, Guest … |
NVD-CWE-noinfo
|
CVE-2020-5858 | 2024-11-21 14:34 | 2020-03-28 | Show | GitHub Exploit DB Packet Storm |
| 199853 | 7.5 |
HIGH
Network |
f5 |
big-ip_access_policy_manager big-ip_advanced_firewall_manager big-ip_analytics big-ip_application_acceleration_manager big-ip_application_security_manager big-ip_domain_name_system … |
On BIG-IP 15.0.0-15.0.1, 14.1.0-14.1.2.2, 13.1.0-13.1.3.1, 12.1.0-12.1.5, and 11.5.2-11.6.5.1, undisclosed HTTP behavior may lead to a denial of service. |
NVD-CWE-noinfo
|
CVE-2020-5857 | 2024-11-21 14:34 | 2020-03-28 | Show | GitHub Exploit DB Packet Storm |
| 199854 | 9.8 |
CRITICAL
Network |
keijiban_tsumiki_project | keijiban_tsumiki | Keijiban Tsumiki v1.15 allows remote attackers to execute arbitrary OS commands via unspecified vectors. |
CWE-78
OS Command |
CVE-2020-5561 | 2024-11-21 14:34 | 2020-03-25 | Show | GitHub Exploit DB Packet Storm |
| 199855 | 9.8 |
CRITICAL
Network |
wl-enq_project | wl-enq | WL-Enq 1.11 and 1.12 allows remote attackers to execute arbitrary OS commands with the administrative privilege via unspecified vectors. |
CWE-78
OS Command |
CVE-2020-5560 | 2024-11-21 14:34 | 2020-03-25 | Show | GitHub Exploit DB Packet Storm |
| 199856 | 6.1 |
MEDIUM
Network |
wl-enq_project | wl-enq | Cross-site scripting vulnerability in WL-Enq 1.11 and 1.12 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. |
CWE-79
Cross-site Scripting |
CVE-2020-5559 | 2024-11-21 14:34 | 2020-03-25 | Show | GitHub Exploit DB Packet Storm |
| 199857 | 8.8 |
HIGH
Network |
cutephp | cutenews | CuteNews 2.0.1 allows remote authenticated attackers to execute arbitrary PHP code via unspecified vectors. |
CWE-94
Code Injection |
CVE-2020-5558 | 2024-11-21 14:34 | 2020-03-25 | Show | GitHub Exploit DB Packet Storm |
| 199858 | 6.1 |
MEDIUM
Network |
cutephp | cutenews | Cross-site scripting vulnerability in CuteNews 2.0.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. |
CWE-79
Cross-site Scripting |
CVE-2020-5557 | 2024-11-21 14:34 | 2020-03-25 | Show | GitHub Exploit DB Packet Storm |
| 199859 | 9.8 |
CRITICAL
Network |
shihonkanri_plus_goout_project | shihonkanri_plus_goout | Shihonkanri Plus GOOUT Ver1.5.8 and Ver2.2.10 allows remote attackers to execute arbitrary OS commands via unspecified vectors. |
CWE-78
OS Command |
CVE-2020-5556 | 2024-11-21 14:34 | 2020-03-25 | Show | GitHub Exploit DB Packet Storm |
| 199860 | 9.1 |
CRITICAL
Network |
shihonkanri_plus_goout_project | shihonkanri_plus_goout | Shihonkanri Plus GOOUT Ver1.5.8 and Ver2.2.10 allows remote attackers to read and write data of the files placed in the same directory where it is placed via unspecified vector due to the improper in… |
CWE-20
Improper Input Validation |
CVE-2020-5555 | 2024-11-21 14:34 | 2020-03-25 | Show | GitHub Exploit DB Packet Storm |