Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 24, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230761 2.1 注意 XWiki - XWiki Enterprise の Multiwiki プラグインにおける重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2007-4898 2012-12-20 18:33 2007-09-14 Show GitHub Exploit DB Packet Storm
230762 4.3 警告 toms-seiten.at - Toms Gaestebuch の admin/header.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-4896 2012-12-20 18:33 2007-09-14 Show GitHub Exploit DB Packet Storm
230763 5 警告 sisfo kampus - Semarang 3 の dwoprn.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-4895 2012-12-20 18:33 2007-09-14 Show GitHub Exploit DB Packet Storm
230764 7.5 危険 WordPress.org - Wordpress および MU における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-4894 2012-12-20 18:33 2007-09-8 Show GitHub Exploit DB Packet Storm
230765 4.3 警告 WordPress.org - Wordpress および MU の wp-admin/admin-functions.php におけるクロスサイトスクリプティング (XSS) 攻撃を実行される脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2007-4893 2012-12-20 18:33 2007-09-8 Show GitHub Exploit DB Packet Storm
230766 7.5 危険 swsoft - Windows 用の SWSoft Plesk における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-4892 2012-12-20 18:33 2007-09-14 Show GitHub Exploit DB Packet Storm
230767 3.5 注意 XWiki - XWiki の "You are not allowed ..." のエラーハンドラにおける任意のドキュメントを読み取られる脆弱性 CWE-DesignError
CVE-2007-4888 2012-12-20 18:33 2007-01-11 Show GitHub Exploit DB Packet Storm
230768 4.3 警告 techexcel inc. - TechExcel CustomerWise におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-4882 2012-12-20 18:33 2007-09-13 Show GitHub Exploit DB Packet Storm
230769 7.5 危険 psi-labs - psisns の profile/myprofile.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-4881 2012-12-20 18:33 2007-09-13 Show GitHub Exploit DB Packet Storm
230770 5 警告 Simplenews Project - SimpNews における任意の .inc ファイルをダウンロードされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-4873 2012-12-20 18:33 2007-09-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 25, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
197501 6.5 MEDIUM
Network
squaredup squaredup CSRF protection was not present in SquaredUp before version 4.6.0. A CSRF attack could have been possible by an administrator executing arbitrary code in a HTML dashboard tile via a crafted HTML page… CWE-352
 Origin Validation Error
CVE-2020-9388 2024-11-21 14:40 2021-02-4 Show GitHub Exploit DB Packet Storm
197502 8.8 HIGH
Network
apache
oracle
hadoop
solr
financial_services_crime_and_compliance_management_studio
In Apache Hadoop 3.2.0 to 3.2.1, 3.0.0-alpha1 to 3.1.3, and 2.0.0-alpha to 2.10.0, WebHDFS client might send SPNEGO authorization header to remote URL without proper verification. CWE-863
 Incorrect Authorization
CVE-2020-9492 2024-11-21 14:40 2021-01-27 Show GitHub Exploit DB Packet Storm
197503 6.7 MEDIUM
Local
huawei smc2.0_firmware There is a privilege escalation vulnerability in SMC2.0 product. Some files in a directory of a module are located improperly. It does not apply the directory limitation. Attackers can exploit this v… CWE-862
 Missing Authorization
CVE-2020-9209 2024-11-21 14:40 2021-01-14 Show GitHub Exploit DB Packet Storm
197504 3.3 LOW
Local
huawei p30_firmware There is a resource management errors vulnerability in Huawei P30. Local attackers construct broadcast message for some application, causing this application to send this broadcast message and impact… CWE-400
 Uncontrolled Resource Consumption
CVE-2020-9203 2024-11-21 14:40 2021-01-14 Show GitHub Exploit DB Packet Storm
197505 5.3 MEDIUM
Network
huawei magic_ui
emui
There is a missing authentication vulnerability in some Huawei smartphone.Successful exploitation of this vulnerability may lead to low-sensitive information exposure. CWE-306
Missing Authentication for Critical Function
CVE-2020-9143 2024-11-21 14:40 2021-01-14 Show GitHub Exploit DB Packet Storm
197506 9.1 CRITICAL
Network
huawei magic_ui
emui
There is a heap base buffer overflow vulnerability in some Huawei smartphone.Successful exploitation of this vulnerability can cause heap overflow and memory overwriting when the system incorrectly p… CWE-787
 Out-of-bounds Write
CVE-2020-9142 2024-11-21 14:40 2021-01-14 Show GitHub Exploit DB Packet Storm
197507 9.1 CRITICAL
Network
huawei magic_ui
emui
There is a improper privilege management vulnerability in some Huawei smartphone. Successful exploitation of this vulnerability can cause information disclosure and malfunctions due to insufficient v… CWE-345
CWE-269
 Insufficient Verification of Data Authenticity
 Improper Privilege Management
CVE-2020-9141 2024-11-21 14:40 2021-01-14 Show GitHub Exploit DB Packet Storm
197508 9.8 CRITICAL
Network
huawei magic_ui
emui
There is a vulnerability with buffer access with incorrect length value in some Huawei Smartphone.Unauthorized users may trigger code execution when a buffer overflow occurs. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2020-9140 2024-11-21 14:40 2021-01-14 Show GitHub Exploit DB Packet Storm
197509 9.1 CRITICAL
Network
huawei magic_ui
emui
There is a improper input validation vulnerability in some Huawei Smartphone.Successful exploit of this vulnerability can cause memory access errors and denial of service. CWE-20
 Improper Input Validation 
CVE-2020-9139 2024-11-21 14:40 2021-01-14 Show GitHub Exploit DB Packet Storm
197510 5.3 MEDIUM
Network
huawei magic_ui
emui
There is a heap-based buffer overflow vulnerability in some Huawei Smartphone, Successful exploit of this vulnerability can cause process exceptions during updating. CWE-787
 Out-of-bounds Write
CVE-2020-9138 2024-11-21 14:40 2021-01-14 Show GitHub Exploit DB Packet Storm