Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 21, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230791 4.3 警告 WordPress.org - WordPress 用の Blix テーマなどに関する特定の index.php インストールスクリプトにおけるクロスサイトスクリプティングの脆弱性 - CVE-2007-4014 2012-12-20 18:33 2007-07-25 Show GitHub Exploit DB Packet Storm
230792 6.8 警告 virtual hosting control system - VHCS におけるセッションをハイジャックされる脆弱性 CWE-287
不適切な認証
CVE-2007-3988 2012-12-20 18:33 2007-07-25 Show GitHub Exploit DB Packet Storm
230793 5 警告 securecomputing - Secure Computing SecurityReporter の file.cgi における認証を回避される脆弱性 - CVE-2007-3986 2012-12-20 18:33 2007-07-25 Show GitHub Exploit DB Packet Storm
230794 5 警告 securecomputing - SecurityReporter の file.cgi におけるディレクトリトラバーサルの脆弱性 - CVE-2007-3985 2012-12-20 18:33 2007-07-25 Show GitHub Exploit DB Packet Storm
230795 7.5 危険 zenturi - sasatl.dll の NixonMyPrograms クラスにおけるバッファオーバーフローの脆弱性 - CVE-2007-3984 2012-12-20 18:33 2007-07-25 Show GitHub Exploit DB Packet Storm
230796 7.5 危険 wsnlinks - WSN Links Basic Edition の index.php における SQL インジェクションの脆弱性 - CVE-2007-3981 2012-12-20 18:33 2007-07-25 Show GitHub Exploit DB Packet Storm
230797 10 危険 rcms pro - RCMS Pro RGameScript Pro の page.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-3980 2012-12-20 18:33 2007-07-25 Show GitHub Exploit DB Packet Storm
230798 6.8 警告 ufmod - uFMOD における脆弱性 - CVE-2007-3965 2012-12-20 18:33 2007-07-25 Show GitHub Exploit DB Packet Storm
230799 9.3 危険 usebb - UseBB におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3963 2012-12-20 18:33 2007-07-25 Show GitHub Exploit DB Packet Storm
230800 7.8 危険 TeamSpeak Systems GmbH - Windows 用の TeamSpeak WebServer におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-3956 2012-12-20 18:33 2007-07-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
198171 7.8 HIGH
Local
bitdefender endpoint_security
endpoint_security_tools
An improper authentication vulnerability in Bitdefender Endpoint Security Tools for Windows and Bitdefender Endpoint Security SDK allows an unprivileged local attacker to escalate privileges or tampe… CWE-287
Improper Authentication
CVE-2020-8097 2024-11-21 14:38 2020-08-31 Show GitHub Exploit DB Packet Storm
198172 6.5 MEDIUM
Network
bufferlist_project
debian
bufferlist
debian_linux
A buffer over-read vulnerability exists in bl <4.0.3, <3.0.1, <2.2.1, and <1.2.3 which could allow an attacker to supply user input (even typed) that if it ends up in consume() argument and can becom… CWE-125
Out-of-bounds Read
CVE-2020-8244 2024-11-21 14:38 2020-08-31 Show GitHub Exploit DB Packet Storm
198173 9.8 CRITICAL
Network
ui edgemax_firmware A vulnerability exists in The EdgeMax EdgeSwitch firmware <v1.9.1 where the EdgeSwitch legacy web interface SIDSSL cookie for admin can be guessed, enabling the attacker to obtain high privileges and… CWE-613
 Insufficient Session Expiration
CVE-2020-8234 2024-11-21 14:38 2020-08-22 Show GitHub Exploit DB Packet Storm
198174 6.8 MEDIUM
Network
nextcloud desktop Missing sanitization of a server response in Nextcloud Desktop Client 2.6.4 for Linux allowed a malicious Nextcloud Server to store files outside of the dedicated sync directory. CWE-22
Path Traversal
CVE-2020-8227 2024-11-21 14:38 2020-08-22 Show GitHub Exploit DB Packet Storm
198175 5.4 MEDIUM
Network
nextcloud desktop A cross-site scripting error in Nextcloud Desktop client 2.6.4 allowed to present any html (including local links) when responding with invalid data on the login attempt. CWE-79
Cross-site Scripting
CVE-2020-8189 2024-11-21 14:38 2020-08-22 Show GitHub Exploit DB Packet Storm
198176 6.5 MEDIUM
Network
mongodb mongodb A user authorized to perform database queries may cause denial of service by issuing specially crafted queries, which violate an invariant in the query subsystem's support for geoNear. This issue aff… CWE-755
 Improper Handling of Exceptional Conditions
CVE-2020-7923 2024-11-21 14:38 2020-08-22 Show GitHub Exploit DB Packet Storm
198177 8.8 HIGH
Network
ui
opensuse
edgeswitch_firmware
leap
backports_sle
A command injection vulnerability exists in EdgeSwitch firmware <v1.9.0 that allowed an authenticated read-only user to execute arbitrary shell commands over the HTTP interface, allowing them to esca… CWE-78
OS Command 
CVE-2020-8233 2024-11-21 14:38 2020-08-18 Show GitHub Exploit DB Packet Storm
198178 6.5 MEDIUM
Network
ui edgeswitch_firmware An information disclosure vulnerability exists in EdgeMax EdgeSwitch firmware v1.9.0 that allowed read only users could obtain unauthorized information through SNMP community pages. CWE-200
Information Exposure
CVE-2020-8232 2024-11-21 14:38 2020-08-18 Show GitHub Exploit DB Packet Storm
198179 5.5 MEDIUM
Local
nextcloud desktop A memory corruption vulnerability exists in NextCloud Desktop Client v2.6.4 where missing ASLR and DEP protections in for windows allowed to corrupt memory. CWE-787
 Out-of-bounds Write
CVE-2020-8230 2024-11-21 14:38 2020-08-18 Show GitHub Exploit DB Packet Storm
198180 5.8 MEDIUM
Network
phpbb phpbb A vulnerability exists in phpBB <v3.2.10 and <v3.3.1 which allowed remote image dimensions check to be used to SSRF. CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2020-8226 2024-11-21 14:38 2020-08-18 Show GitHub Exploit DB Packet Storm