Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230931 4.9 警告 WordPress.org - WordPress の xmlrpc におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-1893 2012-12-20 18:19 2007-04-9 Show GitHub Exploit DB Packet Storm
230932 7.8 危険 VMware - VMware Workstation におけるゲスト OS がサービス運用妨害 (DoS) 状態となる脆弱性 - CVE-2007-1877 2012-12-20 18:19 2007-05-2 Show GitHub Exploit DB Packet Storm
230933 7.2 危険 VMware - VMware Workstation における "仮想マシンに登録されたコンテキストが破損" する脆弱性 - CVE-2007-1876 2012-12-20 18:19 2007-05-2 Show GitHub Exploit DB Packet Storm
230934 4.3 警告 toenda software development - toendaCMS におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-1872 2012-12-20 18:19 2007-04-13 Show GitHub Exploit DB Packet Storm
230935 7.5 危険 webasyst llc - Shop-Script FREE の smarty/smarty_class.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-1855 2012-12-20 18:19 2007-04-3 Show GitHub Exploit DB Packet Storm
230936 7.5 危険 really simple php and ajax - RSPA におけるディレクトリトラバーサルの脆弱性 - CVE-2007-1851 2012-12-20 18:19 2007-04-3 Show GitHub Exploit DB Packet Storm
230937 7.5 危険 XOOPS - XOOPS 用の Repository モジュールにおける SQL インジェクションの脆弱性 - CVE-2007-1847 2012-12-20 18:19 2007-04-3 Show GitHub Exploit DB Packet Storm
230938 7.5 危険 XOOPS - Xoops 用の MyAds モジュールにおける SQL インジェクションの脆弱性 - CVE-2007-1846 2012-12-20 18:19 2007-04-3 Show GitHub Exploit DB Packet Storm
230939 7.5 危険 XOOPS - Xoops 用の Friendfinder モジュールにおける SQL インジェクションの脆弱性 - CVE-2007-1838 2012-12-20 18:19 2007-04-2 Show GitHub Exploit DB Packet Storm
230940 5 警告 web-app.org - web-app.org WebAPP における特定のファイルをアップロードされる脆弱性 - CVE-2007-1832 2012-12-20 18:19 2007-04-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 18, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
212311 5.5 MEDIUM
Local
vivo frame_touch_module The frame touch module does not make validity judgments on parameter lengths when processing specific parameters,which caused out of the boundary when memory access.The vulnerability eventually leads… CWE-125
Out-of-bounds Read
CVE-2020-12485 2024-11-21 13:59 2020-11-11 Show GitHub Exploit DB Packet Storm
212312 8.8 HIGH
Network
silver-peak unity_orchestrator In Silver Peak Unity Orchestrator versions prior to 8.9.11+, 8.10.11+, or 9.0.1+, an authenticated user can make unauthorized MySQL queries against the Orchestrator database using the /sqlExecution R… CWE-22
Path Traversal
CVE-2020-12147 2024-11-21 13:59 2020-11-6 Show GitHub Exploit DB Packet Storm
212313 8.8 HIGH
Network
silver-peak unity_orchestrator In Silver Peak Unity Orchestrator versions prior to 8.9.11+, 8.10.11+, or 9.0.1+, an authenticated user can access, modify, and delete restricted files on the Orchestrator server using the/debugFiles… CWE-22
Path Traversal
CVE-2020-12146 2024-11-21 13:59 2020-11-6 Show GitHub Exploit DB Packet Storm
212314 9.8 CRITICAL
Network
silver-peak unity_orchestrator Silver Peak Unity Orchestrator versions prior to 8.9.11+, 8.10.11+, or 9.0.1+ uses HTTP headers to authenticate REST API calls from localhost. This makes it possible to log in to Orchestrator by intr… CWE-287
Improper Authentication
CVE-2020-12145 2024-11-21 13:59 2020-11-6 Show GitHub Exploit DB Packet Storm
212315 9.8 CRITICAL
Network
pepperl-fuchs
korenix
westermo
es7510-xt_firmware
es8509-xt_firmware
es8510-xt_firmware
es9528-xtv2_firmware
es7506_firmware
es7510_firmware
es7528_firmware
es8508_firmware
es8508f_firmware
es8510_firmwa…
Improper Authorization vulnerability of Pepperl+Fuchs P+F Comtrol RocketLinx ES7510-XT, ES8509-XT, ES8510-XT, ES9528-XTv2, ES7506, ES7510, ES7528, ES8508, ES8508F, ES8510, ES8510-XTE, ES9528/ES9528-X… - CVE-2020-12504 2024-11-21 13:59 2020-10-16 Show GitHub Exploit DB Packet Storm
212316 7.2 HIGH
Network
pepperl-fuchs
korenix
es7510-xt_firmware
es8509-xt_firmware
es8510-xt_firmware
es9528-xtv2_firmware
es7506_firmware
es7510_firmware
es7528_firmware
es8508_firmware
es8508f_firmware
es8510_firmwa…
Improper Authorization vulnerability of Pepperl+Fuchs P+F Comtrol RocketLinx ES7510-XT, ES8509-XT, ES8510-XT, ES9528-XTv2, ES7506, ES7510, ES7528, ES8508, ES8508F, ES8510, ES8510-XTE, ES9528/ES9528-X… - CVE-2020-12503 2024-11-21 13:59 2020-10-16 Show GitHub Exploit DB Packet Storm
212317 8.8 HIGH
Network
pepperl-fuchs
korenix
es7510-xt_firmware
es8509-xt_firmware
es8510-xt_firmware
es9528-xtv2_firmware
es7506_firmware
es7510_firmware
es7528_firmware
es8508_firmware
es8508f_firmware
es8510_firmwa…
Improper Authorization vulnerability of Pepperl+Fuchs P+F Comtrol RocketLinx ES7510-XT, ES8509-XT, ES8510-XT, ES9528-XTv2, ES7506, ES7510, ES7528, ES8508, ES8508F, ES8510, ES8510-XTE, ES9528/ES9528-X… - CVE-2020-12502 2024-11-21 13:59 2020-10-16 Show GitHub Exploit DB Packet Storm
212318 9.8 CRITICAL
Network
pepperl-fuchs
korenix
es7510-xt_firmware
es8509-xt_firmware
es8510-xt_firmware
es9528-xtv2_firmware
es7506_firmware
es7510_firmware
es7528_firmware
es8508_firmware
es8508f_firmware
es8510_firmwa…
Improper Authorization vulnerability of Pepperl+Fuchs P+F Comtrol RocketLinx ES7510-XT, ES8509-XT, ES8510-XT, ES9528-XTv2, ES7506, ES7510, ES7528, ES8508, ES8508F, ES8510, ES8510-XTE, ES9528/ES9528-X… - CVE-2020-12501 2024-11-21 13:59 2020-10-16 Show GitHub Exploit DB Packet Storm
212319 9.8 CRITICAL
Network
pepperl-fuchs es7510-xt_firmware
es8509-xt_firmware
es8510-xt_firmware
es9528-xtv2_firmware
es7506_firmware
es7510_firmware
es7528_firmware
es8508_firmware
es8508f_firmware
es8510_firmwa…
Improper Authorization vulnerability of Pepperl+Fuchs P+F Comtrol RocketLinx ES7510-XT, ES8509-XT, ES8510-XT, ES9528-XTv2, ES7506, ES7510, ES7528, ES8508, ES8508F, ES8510, ES8510-XTE, ES9528/ES9528-X… - CVE-2020-12500 2024-11-21 13:59 2020-10-16 Show GitHub Exploit DB Packet Storm
212320 4.7 MEDIUM
Local
mozilla firefox During ECDSA signature generation, padding applied in the nonce designed to ensure constant-time scalar multiplication was removed, resulting in variable-time execution dependent on secret data. This… CWE-203
 Information Exposure Through Discrepancy
CVE-2020-12401 2024-11-21 13:59 2020-10-8 Show GitHub Exploit DB Packet Storm