Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 21, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230861 5 警告 SAP - EnjoySAP SAP GUI の ActiveX コントロールにおけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-3607 2012-12-20 18:33 2007-07-6 Show GitHub Exploit DB Packet Storm
230862 7.6 危険 SAP - EnjoySAP SAP GUI の rfcguisink.rfcguisink.1 ActiveX コントロールにおけるヒープベースのバッファオーバーフローの脆弱性 - CVE-2007-3606 2012-12-20 18:33 2007-07-6 Show GitHub Exploit DB Packet Storm
230863 7.6 危険 SAP - EnjoySAP SAP GUI の FrontEnd\SapGui\kwedit.dll におけるスタックベースのバッファオーバーフローの脆弱性 - CVE-2007-3605 2012-12-20 18:33 2007-07-6 Show GitHub Exploit DB Packet Storm
230864 4 警告 Vtiger - vtiger CRM におけるデータ制限を回避される脆弱性 - CVE-2007-3604 2012-12-20 18:33 2007-03-7 Show GitHub Exploit DB Packet Storm
230865 6.5 警告 Vtiger - vtiger CRM の dashboard における SQL インジェクションの脆弱性 - CVE-2007-3603 2012-12-20 18:33 2007-03-7 Show GitHub Exploit DB Packet Storm
230866 5.5 警告 Vtiger - vtiger CRM の SOAP Web サービスにおけるデータをアクセスされる脆弱性 - CVE-2007-3602 2012-12-20 18:33 2007-02-26 Show GitHub Exploit DB Packet Storm
230867 2.1 注意 Vtiger - vtiger CRM における特定ユーザのカレンダー項目を読まれる脆弱性 - CVE-2007-3601 2012-12-20 18:33 2007-05-31 Show GitHub Exploit DB Packet Storm
230868 4 警告 Vtiger - vtiger CRM の wordintegration コンポーネントにおけるフィールドレベルのセキュリティパーミッションを回避される脆弱性 - CVE-2007-3600 2012-12-20 18:33 2007-05-9 Show GitHub Exploit DB Packet Storm
230869 8.5 危険 Vtiger - vtiger CRM における連絡先情報をインポートされるなどの脆弱性 - CVE-2007-3599 2012-12-20 18:33 2007-02-9 Show GitHub Exploit DB Packet Storm
230870 5.5 警告 Vtiger - index.php の vtiger CRM における全ユーザ名などを取得される脆弱性 - CVE-2007-3598 2012-12-20 18:33 2007-02-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
199871 5.4 MEDIUM
Network
sap erp The view FIMENAV_COMPCERT in SAP ERP (MENA Certificate Management), EAPPGLO version 607, SAP_FIN versions- 618, 730 and SAP S/4HANA (MENA Certificate Management), S4CORE versions- 100, 101, 102, 103,… CWE-862
 Missing Authorization
CVE-2020-6199 2024-11-21 14:35 2020-03-11 Show GitHub Exploit DB Packet Storm
199872 9.8 CRITICAL
Network
sap solution_manager SAP Solution Manager (Diagnostics Agent), version 720, allows unencrypted connections from unauthenticated sources. This allows an attacker to control all remote functions on the Agent due to Missing… CWE-306
CWE-319
Missing Authentication for Critical Function
Cleartext Transmission of Sensitive Information
CVE-2020-6198 2024-11-21 14:35 2020-03-11 Show GitHub Exploit DB Packet Storm
199873 3.3 LOW
Local
sap enable_now SAP Enable Now, before version 1908, does not invalidate session tokens in a timely manner. The Insufficient Session Expiration may allow attackers with local access, for instance, to still download … CWE-613
 Insufficient Session Expiration
CVE-2020-6197 2024-11-21 14:35 2020-03-11 Show GitHub Exploit DB Packet Storm
199874 7.5 HIGH
Network
sap businessobjects_mobile SAP BusinessObjects Mobile (MobileBIService), version 4.2, allows an attacker to generate multiple requests, using which he can block all the threads resulting in a Denial of Service. NVD-CWE-noinfo
CVE-2020-6196 2024-11-21 14:35 2020-03-11 Show GitHub Exploit DB Packet Storm
199875 5.4 MEDIUM
Network
sap enable_now SAP Enable Now, before version 1911, sends the Session ID cookie value in URL. This might be stolen from the browser history or log files, leading to Information Disclosure. CWE-200
Information Exposure
CVE-2020-6178 2024-11-21 14:35 2020-03-11 Show GitHub Exploit DB Packet Storm
199876 8.8 HIGH
Network
google
fedoraproject
redhat
debian
chrome
fedora
enterprise_linux_desktop
enterprise_linux_server
enterprise_linux_workstation
debian_linux
Type confusion in V8 in Google Chrome prior to 80.0.3987.122 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. CWE-843
Type Confusion
CVE-2020-6418 2024-11-21 14:35 2020-02-28 Show GitHub Exploit DB Packet Storm
199877 8.8 HIGH
Network
google chrome Out of bounds memory access in streams in Google Chrome prior to 80.0.3987.122 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. CWE-787
 Out-of-bounds Write
CVE-2020-6407 2024-11-21 14:35 2020-02-28 Show GitHub Exploit DB Packet Storm
199878 8.8 HIGH
Network
google
fedoraproject
redhat
debian
chrome
fedora
enterprise_linux_desktop
enterprise_linux_server
enterprise_linux_workstation
debian_linux
Use after free in speech in Google Chrome prior to 80.0.3987.116 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. CWE-416
 Use After Free
CVE-2020-6386 2024-11-21 14:35 2020-02-28 Show GitHub Exploit DB Packet Storm
199879 8.8 HIGH
Network
google
fedoraproject
redhat
debian
chrome
fedora
enterprise_linux_desktop
enterprise_linux_server
enterprise_linux_workstation
debian_linux
Use after free in WebAudio in Google Chrome prior to 80.0.3987.116 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. CWE-416
 Use After Free
CVE-2020-6384 2024-11-21 14:35 2020-02-28 Show GitHub Exploit DB Packet Storm
199880 8.8 HIGH
Network
google
fedoraproject
redhat
debian
chrome
fedora
enterprise_linux_desktop
enterprise_linux_server
enterprise_linux_workstation
debian_linux
Type confusion in V8 in Google Chrome prior to 80.0.3987.116 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. CWE-843
Type Confusion
CVE-2020-6383 2024-11-21 14:35 2020-02-28 Show GitHub Exploit DB Packet Storm