Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 17, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230851 7.1 危険 total commander - Total Commander における任意のファイルを削除される脆弱性 - CVE-2007-0263 2012-12-20 18:19 2007-01-16 Show GitHub Exploit DB Packet Storm
230852 7.8 危険 WordPress.org - WordPress における重要な情報を取得される脆弱性 - CVE-2007-0262 2012-12-20 18:19 2007-01-16 Show GitHub Exploit DB Packet Storm
230853 10 危険 snews - sNews の snews.php における許可されていない管理者操作を実行される脆弱性 - CVE-2007-0261 2012-12-20 18:19 2007-01-16 Show GitHub Exploit DB Packet Storm
230854 7.8 危険 VideoLAN - VideoLAN VLC におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-0256 2012-12-20 18:19 2007-01-16 Show GitHub Exploit DB Packet Storm
230855 9.3 危険 Xine - XINE におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-0255 2012-12-20 18:19 2007-01-16 Show GitHub Exploit DB Packet Storm
230856 10 危険 Xine - xine-ui の errors.c におけるフォーマットストリングの脆弱性 - CVE-2007-0254 2012-12-20 18:19 2007-01-16 Show GitHub Exploit DB Packet Storm
230857 7.8 危険 Snort.org - Snort の src/decode.c における特定のメモリ領域のデリファレンスを誘発される脆弱性 - CVE-2007-0251 2012-12-20 18:19 2007-01-16 Show GitHub Exploit DB Packet Storm
230858 5 警告 poptop - PoPToP pptpd の pptpgre.c におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-0244 2012-12-20 18:19 2007-05-8 Show GitHub Exploit DB Packet Storm
230859 4.3 警告 Zope Foundation - Zope におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-0240 2012-12-20 18:19 2007-03-22 Show GitHub Exploit DB Packet Storm
230860 7.5 危険 WordPress.org - WordPress の wp-trackback.php における任意の SQL コマンドを実行される脆弱性 - CVE-2007-0233 2012-12-20 18:19 2007-01-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 17, 2026, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
199271 6.1 MEDIUM
Network
sap netweaver_as_abap_business_server_pages SAP NetWeaver AS ABAP Business Server Pages Test Application IT00, versions 700, 701, 702, 730, 731, 740, 750, 751, 752, 753, 754, does not sufficiently encode user-controlled inputs, resulting in re… CWE-79
Cross-site Scripting
CVE-2020-6217 2024-11-21 14:35 2020-04-15 Show GitHub Exploit DB Packet Storm
199272 6.1 MEDIUM
Network
sap netweaver_as_abap_business_server_pages SAP NetWeaver AS ABAP Business Server Pages Test Application IT00, versions 700, 701, 702, 730, 731, 740, 750, 751, 752, 753, 754, allows an attacker to redirect users to a malicious site due to insu… CWE-601
Open Redirect
CVE-2020-6215 2024-11-21 14:35 2020-04-15 Show GitHub Exploit DB Packet Storm
199273 6.1 MEDIUM
Network
sap businessobjects_business_intelligence_platform SAP Business Objects Business Intelligence Platform (AdminTools), versions 4.1, 4.2, allows an attacker to redirect users to a malicious site due to insufficient URL validation and steal credentials … CWE-601
Open Redirect
CVE-2020-6211 2024-11-21 14:35 2020-04-15 Show GitHub Exploit DB Packet Storm
199274 9.8 CRITICAL
Network
sap businessobjects_business_intelligence_platform SAP Business Objects Business Intelligence Platform (CMC), version 4.1, 4.2, shows cleartext password in the response, leading to Information Disclosure. It involves social engineering in order to ga… CWE-319
CWE-522
Cleartext Transmission of Sensitive Information
 Insufficiently Protected Credentials
CVE-2020-6195 2024-11-21 14:35 2020-04-15 Show GitHub Exploit DB Packet Storm
199275 9.3 CRITICAL
Network
sap commerce_cloud SAP Commerce, versions - 6.6, 6.7, 1808, 1811, 1905, does not process XML input securely in the Rest API from Servlet xyformsweb, leading to Missing XML Validation. This affects confidentiality and a… CWE-611
XXE
CVE-2020-6238 2024-11-21 14:35 2020-04-15 Show GitHub Exploit DB Packet Storm
199276 7.5 HIGH
Network
sap businessobjects_business_intelligence_platform Under certain conditions, SAP Business Objects Business Intelligence Platform, version 4.1, 4.2, dswsbobje web application allows an attacker to access information which would otherwise be restricted… NVD-CWE-noinfo
CVE-2020-6237 2024-11-21 14:35 2020-04-15 Show GitHub Exploit DB Packet Storm
199277 7.2 HIGH
Network
sap landscape_management
adaptive_extensions
SAP Landscape Management, version 3.0, and SAP Adaptive Extensions, version 1.0, allows an attacker with admin_group privileges to change ownership and permissions (including S-user ID bit s-bit) of … CWE-269
 Improper Privilege Management
CVE-2020-6236 2024-11-21 14:35 2020-04-15 Show GitHub Exploit DB Packet Storm
199278 8.6 HIGH
Network
sap solution_manager SAP Solution Manager (Diagnostics Agent), version 7.2, does not perform the authentication check for the functionalities of the Collector Simulator, leading to Missing Authentication. CWE-306
Missing Authentication for Critical Function
CVE-2020-6235 2024-11-21 14:35 2020-04-15 Show GitHub Exploit DB Packet Storm
199279 7.2 HIGH
Network
sap host_agent SAP Host Agent, version 7.21, allows an attacker with admin privileges to use the operation framework to gain root privileges over the underlying operating system, leading to Privilege Escalation. NVD-CWE-noinfo
CVE-2020-6234 2024-11-21 14:35 2020-04-15 Show GitHub Exploit DB Packet Storm
199280 4.3 MEDIUM
Network
sap s\/4hana_financial_products_subledger
banking_services_from_sap
SAP S/4 HANA (Financial Products Subledger and Banking Services), versions - FSAPPL 400, 450, 500 and S4FPSL 100, allows an authenticated user to run an analysis report due to Missing Authorization C… CWE-862
 Missing Authorization
CVE-2020-6233 2024-11-21 14:35 2020-04-15 Show GitHub Exploit DB Packet Storm