Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230961 7.5 危険 proxy anket - Proxy Anket の anket.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-4837 2012-12-20 18:33 2007-09-12 Show GitHub Exploit DB Packet Storm
230962 4.3 警告 phpmyquote - phpMyQuote の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-4836 2012-12-20 18:33 2007-09-12 Show GitHub Exploit DB Packet Storm
230963 7.5 危険 phpmyquote - phpMyQuote の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-4835 2012-12-20 18:33 2007-09-12 Show GitHub Exploit DB Packet Storm
230964 7.5 危険 phprealty - phpRealty における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-4834 2012-12-20 18:33 2007-09-12 Show GitHub Exploit DB Packet Storm
230965 2.6 注意 torrenttrader - TorrentTrader の account_settings.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-4831 2012-12-20 18:33 2007-09-12 Show GitHub Exploit DB Packet Storm
230966 7.5 危険 sisfo kampus - Sisfo Kampus 2006 の blanko.preview.php における絶対パストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-4820 2012-12-20 18:33 2007-09-11 Show GitHub Exploit DB Packet Storm
230967 4.3 警告 txx cms - Txx CMS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-4819 2012-12-20 18:33 2007-09-11 Show GitHub Exploit DB Packet Storm
230968 7.5 危険 txx cms - Txx CMS における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-4818 2012-12-20 18:33 2007-09-11 Show GitHub Exploit DB Packet Storm
230969 7.5 危険 tlm cms - TLM CMS における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-4808 2012-12-20 18:33 2007-09-11 Show GitHub Exploit DB Packet Storm
230970 5 警告 ソフォス - Sophos Anti-Virus のウィルス検出エンジンにおけるマルウェアの検出を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2007-4787 2012-12-20 18:33 2007-09-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
200381 9.8 CRITICAL
Network
php.js_project php.js All versions of phpjs are vulnerable to Prototype Pollution via parse_str. CWE-1321
 Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
CVE-2020-7700 2024-11-21 14:37 2020-08-15 Show GitHub Exploit DB Packet Storm
200382 7.3 HIGH
Local
philips smartcontrol An Uncontrolled Search Path Element (CWE-427) vulnerability in SmartControl version 4.3.15 and versions released before April 15, 2020 may allow an authenticated user to escalate privileges by placin… CWE-427
 Uncontrolled Search Path Element
CVE-2020-7360 2024-11-21 14:37 2020-08-14 Show GitHub Exploit DB Packet Storm
200383 5.2 MEDIUM
Local
mcafee data_loss_prevention Unprotected Storage of Credentials vulnerability in McAfee Data Loss Prevention (DLP) for Mac prior to 11.5.2 allows local users to gain access to the RiskDB username and password via unprotected log… CWE-522
 Insufficiently Protected Credentials
CVE-2020-7307 2024-11-21 14:37 2020-08-13 Show GitHub Exploit DB Packet Storm
200384 5.2 MEDIUM
Local
mcafee data_loss_prevention Unprotected Storage of Credentials vulnerability in McAfee Data Loss Prevention (DLP) for Mac prior to 11.5.2 allows local users to gain access to the ADRMS username and password via unprotected log … CWE-522
 Insufficiently Protected Credentials
CVE-2020-7306 2024-11-21 14:37 2020-08-13 Show GitHub Exploit DB Packet Storm
200385 6.5 MEDIUM
Network
mcafee data_loss_prevention Privilege escalation vulnerability in McAfee Data Loss Prevention (DLP) ePO extension prior to 11.5.3 allows a low privileged remote attacker to create new rule sets via incorrect validation of user … CWE-269
 Improper Privilege Management
CVE-2020-7305 2024-11-21 14:37 2020-08-13 Show GitHub Exploit DB Packet Storm
200386 7.6 HIGH
Adjacent
mcafee data_loss_prevention Cross site request forgery vulnerability in McAfee Data Loss Prevention (DLP) ePO extension prior to 11.5.3 allows authenticated remote attacker to embed a CRSF script via adding a new label. CWE-352
 Origin Validation Error
CVE-2020-7304 2024-11-21 14:37 2020-08-13 Show GitHub Exploit DB Packet Storm
200387 4.1 MEDIUM
Adjacent
mcafee data_loss_prevention Cross Site scripting vulnerability in McAfee Data Loss Prevention (DLP) ePO extension prior to 11.5.3 allows authenticated remote user to trigger scripts to run in a user's browser via adding a new l… CWE-79
Cross-site Scripting
CVE-2020-7303 2024-11-21 14:37 2020-08-13 Show GitHub Exploit DB Packet Storm
200388 6.4 MEDIUM
Network
mcafee data_loss_prevention Unrestricted Upload of File with Dangerous Type in McAfee Data Loss Prevention (DLP) ePO extension prior to 11.5.3 allows authenticated attackers to upload malicious files to the DLP case management … CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-7302 2024-11-21 14:37 2020-08-13 Show GitHub Exploit DB Packet Storm
200389 4.6 MEDIUM
Network
mcafee data_loss_prevention Cross Site scripting vulnerability in McAfee Data Loss Prevention (DLP) ePO extension prior to 11.5.3 allows authenticated attackers to trigger alerts via the file upload tab in the DLP case manageme… CWE-79
Cross-site Scripting
CVE-2020-7301 2024-11-21 14:37 2020-08-13 Show GitHub Exploit DB Packet Storm
200390 6.3 MEDIUM
Network
mcafee data_loss_prevention Improper Authorization vulnerability in McAfee Data Loss Prevention (DLP) ePO extension prior to 11.5.3 allows authenticated remote attackers to change the configuration when logged in with view only… CWE-863
 Incorrect Authorization
CVE-2020-7300 2024-11-21 14:37 2020-08-13 Show GitHub Exploit DB Packet Storm