|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 18, 2026, 10 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 230921 | 10 | 危険 | phpBB | - | Brazilian PHPBB の maluinfo における PHP リモートファイルインクルージョンの脆弱性 | - | CVE-2006-7148 | 2012-12-20 18:18 | 2007-03-7 | Show | GitHub Exploit DB Packet Storm |
| 230922 | 6.8 | 警告 | phpBB | - | phpBB Import Tools Mod の includes/functions_mod_user.php における PHP リモートファイルインクルージョンの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2006-7147 | 2012-12-20 18:18 | 2007-03-7 | Show | GitHub Exploit DB Packet Storm |
| 230923 | 4.1 | 警告 | utimaco safeware | - | Utimaco Safeguard の集中管理機能における設定ファイルから暗号鍵を復元される脆弱性 |
CWE-310
暗号の問題 |
CVE-2006-7142 | 2012-12-20 18:18 | 2007-03-7 | Show | GitHub Exploit DB Packet Storm |
| 230924 | 4.3 | 警告 | tinyportal | - | TinyPortal におけるクロスサイトスクリプティングの脆弱性 | - | CVE-2006-7137 | 2012-12-20 18:18 | 2007-03-6 | Show | GitHub Exploit DB Packet Storm |
| 230925 | 10 | 危険 | phppc | - | phpPC における PHP リモートファイルインクルージョンの脆弱性 | - | CVE-2006-7136 | 2012-12-20 18:18 | 2007-03-6 | Show | GitHub Exploit DB Packet Storm |
| 230926 | 7.5 | 危険 | salims softhouse | - | forum/forum.php JAF CMS における PHP リモートファイルインクルージョンの脆弱性 | - | CVE-2006-7128 | 2012-12-20 18:18 | 2007-03-5 | Show | GitHub Exploit DB Packet Storm |
| 230927 | 6.8 | 警告 | salims softhouse | - | JAF CMS における PHP リモートファイルインクルージョンの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2006-7127 | 2012-12-20 18:18 | 2007-03-5 | Show | GitHub Exploit DB Packet Storm |
| 230928 | 7.5 | 危険 | phpgiggle | - | comscripts.com 上で配布されている J. He PHPGiggle における PHP リモートファイルインクルージョンの脆弱性 | - | CVE-2006-7119 | 2012-12-20 18:18 | 2007-03-5 | Show | GitHub Exploit DB Packet Storm |
| 230929 | 7.5 | 危険 | PHPKIT | - | PHPKit における SQL インジェクションの脆弱性 | - | CVE-2006-7115 | 2012-12-20 18:18 | 2007-03-5 | Show | GitHub Exploit DB Packet Storm |
| 230930 | 5 | 警告 | planerd.net | - | P-News における重要な情報を取得される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2006-7114 | 2012-12-20 18:18 | 2007-03-5 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 18, 2026, 4:12 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 211051 | 7.5 |
HIGH
Network |
libvnc_project canonical debian siemens opensuse |
libvncserver ubuntu_linux debian_linux simatic_itc1500_firmware simatic_itc1500_pro_firmware simatic_itc1900_firmware simatic_itc1900_pro_firmware simatic_itc2200_firmware sim… |
An issue was discovered in LibVNCServer before 0.9.13. An improperly closed TCP connection causes an infinite loop in libvncclient/sockets.c. |
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop') |
CVE-2020-14398 | 2024-11-21 14:03 | 2020-06-18 | Show | GitHub Exploit DB Packet Storm |
| 211052 | 7.5 |
HIGH
Network |
libvnc_project canonical debian siemens opensuse |
libvncserver ubuntu_linux debian_linux simatic_itc1500_firmware simatic_itc1500_pro_firmware simatic_itc1900_firmware simatic_itc1900_pro_firmware simatic_itc2200_firmware sim… |
An issue was discovered in LibVNCServer before 0.9.13. libvncserver/rfbregion.c has a NULL pointer dereference. |
CWE-476
NULL Pointer Dereference |
CVE-2020-14397 | 2024-11-21 14:03 | 2020-06-18 | Show | GitHub Exploit DB Packet Storm |
| 211053 | 7.5 |
HIGH
Network |
libvnc_project canonical debian siemens |
libvncserver ubuntu_linux debian_linux simatic_itc1500_firmware simatic_itc1500_pro_firmware simatic_itc1900_firmware simatic_itc1900_pro_firmware simatic_itc2200_firmware sim… |
An issue was discovered in LibVNCServer before 0.9.13. libvncclient/tls_openssl.c has a NULL pointer dereference. |
CWE-476
NULL Pointer Dereference |
CVE-2020-14396 | 2024-11-21 14:03 | 2020-06-18 | Show | GitHub Exploit DB Packet Storm |
| 211054 | 9.8 |
CRITICAL
Network |
irfanview | b3d | IrfanView B3D PlugIns before version 4.56 has a B3d.dll!+1cbf heap-based out-of-bounds write. |
CWE-787
Out-of-bounds Write |
CVE-2020-13880 | 2024-11-21 14:02 | 2024-01-5 | Show | GitHub Exploit DB Packet Storm |
| 211055 | 9.8 |
CRITICAL
Network |
irfanview | b3d | IrfanView B3D PlugIns before version 4.56 has a B3d.dll!+214f heap-based out-of-bounds write. |
CWE-787
Out-of-bounds Write |
CVE-2020-13879 | 2024-11-21 14:02 | 2024-01-5 | Show | GitHub Exploit DB Packet Storm |
| 211056 | 9.8 |
CRITICAL
Network |
irfanview | b3d | IrfanView B3D PlugIns before version 4.56 has a B3d.dll!+27ef heap-based out-of-bounds write. |
CWE-787
Out-of-bounds Write |
CVE-2020-13878 | 2024-11-21 14:02 | 2024-01-5 | Show | GitHub Exploit DB Packet Storm |
| 211057 | 7.5 |
HIGH
Network |
mi | xiaomi_router_firmware | When Xiaomi router firmware is updated in 2020, there is an unauthenticated API that can reveal WIFI password vulnerability. This vulnerability is caused by the lack of access control policies on som… |
CWE-306
Missing Authentication for Critical Function |
CVE-2020-14140 | 2024-11-21 14:02 | 2023-03-30 | Show | GitHub Exploit DB Packet Storm |
| 211058 | 9.8 |
CRITICAL
Network |
mi | xiaomi | The Xiaomi Security Center expresses heartfelt thanks to ADLab of VenusTech ! At the same time, we also welcome more outstanding and professional security experts and security teams to join the Mi Se… |
NVD-CWE-noinfo
|
CVE-2020-14131 | 2024-11-21 14:02 | 2022-10-12 | Show | GitHub Exploit DB Packet Storm |
| 211059 | 9.8 |
CRITICAL
Network |
mi | xiaomi | A logic vulnerability exists in a Xiaomi product. The vulnerability is caused by an identity verification failure, which can be exploited by an attacker who can obtain a brief elevation of privilege. |
NVD-CWE-noinfo
|
CVE-2020-14129 | 2024-11-21 14:02 | 2022-10-12 | Show | GitHub Exploit DB Packet Storm |
| 211060 | 7.5 |
HIGH
Network |
mi | sound | Information leakage vulnerability exists in the Mi Sound APP. This vulnerability is caused by illegal calls of some sensitive JS interfaces, which can be exploited by attackers to leak sensitive info… |
NVD-CWE-noinfo
|
CVE-2020-14126 | 2024-11-21 14:02 | 2022-07-23 | Show | GitHub Exploit DB Packet Storm |