Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230961 6.8 警告 super link exchange script - Super Link Exchange Script におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-7033 2012-12-20 18:18 2007-02-22 Show GitHub Exploit DB Packet Storm
230962 10 危険 tufat - FlashBB の phpbb/getmsg.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-7032 2012-12-20 18:18 2007-02-22 Show GitHub Exploit DB Packet Storm
230963 7.8 危険 サン・マイクロシステムズ - Netra など Solaris が稼動しているシングル CPU Sun システムにおけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-7028 2012-12-20 18:18 2007-02-22 Show GitHub Exploit DB Packet Storm
230964 7.5 危険 sangwan kim - Bookmark4U の admin/config.php における SQL インジェクションの脆弱性 - CVE-2006-7025 2012-12-20 18:18 2007-02-22 Show GitHub Exploit DB Packet Storm
230965 7.5 危険 Plume CMS - Plume CMS の manager/tools/link/dbinstall.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2006-7021 2012-12-20 18:18 2007-02-14 Show GitHub Exploit DB Packet Storm
230966 7.5 危険 phpwcms - phpwcms における任意のコードを実行される脆弱性 - CVE-2006-7019 2012-12-20 18:18 2007-02-14 Show GitHub Exploit DB Packet Storm
230967 7.5 危険 phpjobboard - phpjobboard における認証を回避される脆弱性 - CVE-2006-7016 2012-12-20 18:18 2007-02-14 Show GitHub Exploit DB Packet Storm
230968 10 危険 scart - SCart の scart.cgi における任意のコマンドを実行される脆弱性 - CVE-2006-7012 2012-12-20 18:18 2007-02-14 Show GitHub Exploit DB Packet Storm
230969 4.3 警告 wheatblog - wB の add_comment.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-7002 2012-12-20 18:18 2007-02-12 Show GitHub Exploit DB Packet Storm
230970 7.1 危険 phpmychat plus - PhpMyChat Plus の avatar.php におけるディレクトリトラバーサルの脆弱性 - CVE-2006-7001 2012-12-20 18:18 2007-02-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 18, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
199011 7.8 HIGH
Local
checkpoint zonealarm Check Point ZoneAlarm before version 15.8.139.18543 allows a local actor to escalate privileges while restoring files in Anti-Ransomware. NVD-CWE-noinfo
CVE-2020-6023 2024-11-21 14:35 2020-10-27 Show GitHub Exploit DB Packet Storm
199012 4.8 MEDIUM
Network
sap netweaver_design_time_repository SAP NetWeaver Design Time Repository (DTR), versions - 7.11, 7.30, 7.31, 7.40, 7.50, does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability. CWE-79
Cross-site Scripting
CVE-2020-6370 2024-11-21 14:35 2020-10-20 Show GitHub Exploit DB Packet Storm
199013 5.9 MEDIUM
Network
sap solution_manager
focused_run
SAP Solution Manager and SAP Focused Run (update provided in WILY_INTRO_ENTERPRISE 9.7, 10.1, 10.5, 10.7), allows an unauthenticated attackers to bypass the authentication if the default passwords fo… NVD-CWE-Other
CVE-2020-6369 2024-11-21 14:35 2020-10-20 Show GitHub Exploit DB Packet Storm
199014 6.1 MEDIUM
Network
sap netweaver_composite_application_framework There is a reflected cross site scripting vulnerability in SAP NetWeaver Composite Application Framework, versions - 7.20, 7.30, 7.31, 7.40, 7.50. An unauthenticated attacker can trick an unsuspectin… CWE-79
Cross-site Scripting
CVE-2020-6367 2024-11-21 14:35 2020-10-20 Show GitHub Exploit DB Packet Storm
199015 6.5 MEDIUM
Network
sap netweaver_compare_systems SAP NetWeaver (Compare Systems) versions - 7.20, 7.30, 7.40, 7.50, does not sufficiently validate uploaded XML documents. An attacker with administrative privileges can retrieve arbitrary files inclu… CWE-20
 Improper Input Validation 
CVE-2020-6366 2024-11-21 14:35 2020-10-20 Show GitHub Exploit DB Packet Storm
199016 6.5 MEDIUM
Network
sap banking_services SAP Banking Services version 500, use an incorrect authorization object in some of its reports. Although the affected reports are protected with otherauthorization objects, exploitation of the vulner… CWE-863
 Incorrect Authorization
CVE-2020-6362 2024-11-21 14:35 2020-10-20 Show GitHub Exploit DB Packet Storm
199017 5.5 MEDIUM
Local
sap 3d_visual_enterprise_viewer SAP 3D Visual Enterprise Viewer, version 9, allows an attacker to send certain manipulated file to the victim, which can lead to leakage of sensitive information when the victim loads the malicious f… NVD-CWE-noinfo
CVE-2020-6315 2024-11-21 14:35 2020-10-20 Show GitHub Exploit DB Packet Storm
199018 7.5 HIGH
Network
rockwellautomation flex_i\/o_1794-aent An exploitable denial of service vulnerability exists in the ENIP Request Path Logical Segment functionality of Allen-Bradley Flex IO 1794-AENT/B 4.003. A specially crafted network request can cause … CWE-120
Classic Buffer Overflow
CVE-2020-6085 2024-11-21 14:35 2020-10-20 Show GitHub Exploit DB Packet Storm
199019 7.5 HIGH
Network
rockwellautomation flex_i\/o_1794-aent An exploitable denial of service vulnerability exists in the ENIP Request Path Logical Segment functionality of Allen-Bradley Flex IO 1794-AENT/B 4.003. A specially crafted network request can cause … CWE-120
Classic Buffer Overflow
CVE-2020-6084 2024-11-21 14:35 2020-10-20 Show GitHub Exploit DB Packet Storm
199020 5.3 MEDIUM
Network
sap businessobjects_business_intelligence_platform SAP BusinessObjects Business Intelligence Platform (Web Services) versions - 410, 420, 430, allows an unauthenticated attacker to inject arbitrary values as CMS parameters to perform lookups on the i… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2020-6308 2024-11-21 14:35 2020-10-20 Show GitHub Exploit DB Packet Storm