Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 21, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230861 5 警告 SAP - EnjoySAP SAP GUI の ActiveX コントロールにおけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-3607 2012-12-20 18:33 2007-07-6 Show GitHub Exploit DB Packet Storm
230862 7.6 危険 SAP - EnjoySAP SAP GUI の rfcguisink.rfcguisink.1 ActiveX コントロールにおけるヒープベースのバッファオーバーフローの脆弱性 - CVE-2007-3606 2012-12-20 18:33 2007-07-6 Show GitHub Exploit DB Packet Storm
230863 7.6 危険 SAP - EnjoySAP SAP GUI の FrontEnd\SapGui\kwedit.dll におけるスタックベースのバッファオーバーフローの脆弱性 - CVE-2007-3605 2012-12-20 18:33 2007-07-6 Show GitHub Exploit DB Packet Storm
230864 4 警告 Vtiger - vtiger CRM におけるデータ制限を回避される脆弱性 - CVE-2007-3604 2012-12-20 18:33 2007-03-7 Show GitHub Exploit DB Packet Storm
230865 6.5 警告 Vtiger - vtiger CRM の dashboard における SQL インジェクションの脆弱性 - CVE-2007-3603 2012-12-20 18:33 2007-03-7 Show GitHub Exploit DB Packet Storm
230866 5.5 警告 Vtiger - vtiger CRM の SOAP Web サービスにおけるデータをアクセスされる脆弱性 - CVE-2007-3602 2012-12-20 18:33 2007-02-26 Show GitHub Exploit DB Packet Storm
230867 2.1 注意 Vtiger - vtiger CRM における特定ユーザのカレンダー項目を読まれる脆弱性 - CVE-2007-3601 2012-12-20 18:33 2007-05-31 Show GitHub Exploit DB Packet Storm
230868 4 警告 Vtiger - vtiger CRM の wordintegration コンポーネントにおけるフィールドレベルのセキュリティパーミッションを回避される脆弱性 - CVE-2007-3600 2012-12-20 18:33 2007-05-9 Show GitHub Exploit DB Packet Storm
230869 8.5 危険 Vtiger - vtiger CRM における連絡先情報をインポートされるなどの脆弱性 - CVE-2007-3599 2012-12-20 18:33 2007-02-9 Show GitHub Exploit DB Packet Storm
230870 5.5 警告 Vtiger - index.php の vtiger CRM における全ユーザ名などを取得される脆弱性 - CVE-2007-3598 2012-12-20 18:33 2007-02-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
212991 6.5 MEDIUM
Network
intelliants subrion admin/blocks.php in Subrion CMS through 4.2.1 allows PHP Object Injection (with resultant file deletion) via serialized data in the subpages value within a block to blocks/edit. CWE-502
 Deserialization of Untrusted Data
CVE-2020-12469 2024-11-21 13:59 2020-04-30 Show GitHub Exploit DB Packet Storm
212992 7.8 HIGH
Local
intelliants subrion Subrion CMS 4.2.1 allows CSV injection via a phrase value within a language. This is related to phrases/add/ and languages/download/. NVD-CWE-Other
CVE-2020-12468 2024-11-21 13:59 2020-04-30 Show GitHub Exploit DB Packet Storm
212993 6.5 MEDIUM
Network
intelliants subrion Subrion CMS 4.2.1 allows session fixation via an alphanumeric value in a session cookie. CWE-384
 Session Fixation
CVE-2020-12467 2024-11-21 13:59 2020-04-30 Show GitHub Exploit DB Packet Storm
212994 7.2 HIGH
Network
mono monox MonoX through 5.1.40.5152 allows admins to execute arbitrary programs by reconfiguring the Converter Executable setting from ffmpeg.exe to a different program. NVD-CWE-noinfo
CVE-2020-12473 2024-11-21 13:59 2020-04-30 Show GitHub Exploit DB Packet Storm
212995 5.4 MEDIUM
Network
mono monox MonoX through 5.1.40.5152 allows stored XSS via User Status, Blog Comments, or Blog Description. CWE-79
Cross-site Scripting
CVE-2020-12472 2024-11-21 13:59 2020-04-30 Show GitHub Exploit DB Packet Storm
212996 6.7 MEDIUM
Local
linux
netapp
linux_kernel
cloud_backup
steelstore_cloud_integrated_storage
hci_storage_nodes
aff_a700s
active_iq_unified_manager
hci_compute_node
solidfire_\&_hci_storage_node
solidfir…
usb_sg_cancel in drivers/usb/core/message.c in the Linux kernel before 5.6.8 has a use-after-free because a transfer occurs without a reference, aka CID-056ad39ee925. CWE-416
 Use After Free
CVE-2020-12464 2024-11-21 13:59 2020-04-30 Show GitHub Exploit DB Packet Storm
212997 6.7 MEDIUM
Local
linux
netapp
linux_kernel
cloud_backup
steelstore_cloud_integrated_storage
solidfire_\&_hci_management_node
active_iq_unified_manager
hci_compute_node
solidfire_baseboard_management_controll…
An array overflow was discovered in mt76_add_fragment in drivers/net/wireless/mediatek/mt76/dma.c in the Linux kernel before 5.5.10, aka CID-b102f0c522cf. An oversized packet with too many rx fragmen… CWE-120
Classic Buffer Overflow
CVE-2020-12465 2024-11-21 13:59 2020-04-30 Show GitHub Exploit DB Packet Storm
212998 6.1 MEDIUM
Network
ninjaforms ninja_forms The ninja-forms plugin before 3.4.24.2 for WordPress allows CSRF with resultant XSS. CWE-352
 Origin Validation Error
CVE-2020-12462 2024-11-21 13:59 2020-04-30 Show GitHub Exploit DB Packet Storm
212999 8.8 HIGH
Network
php-fusion php-fusion PHP-Fusion 9.03.50 allows SQL Injection because maincore.php has an insufficient protection mechanism. An attacker can develop a crafted payload that can be inserted into the sort_order GET parameter… CWE-89
SQL Injection
CVE-2020-12461 2024-11-21 13:59 2020-04-30 Show GitHub Exploit DB Packet Storm
213000 5.3 MEDIUM
Network
gitlab gitlab GitLab 10.8 through 12.9 has a vulnerability that allows someone to mirror a repository even if the feature is not activated. CWE-276
Incorrect Default Permissions 
CVE-2020-12277 2024-11-21 13:59 2020-04-30 Show GitHub Exploit DB Packet Storm