Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230961 7.5 危険 proxy anket - Proxy Anket の anket.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-4837 2012-12-20 18:33 2007-09-12 Show GitHub Exploit DB Packet Storm
230962 4.3 警告 phpmyquote - phpMyQuote の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-4836 2012-12-20 18:33 2007-09-12 Show GitHub Exploit DB Packet Storm
230963 7.5 危険 phpmyquote - phpMyQuote の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-4835 2012-12-20 18:33 2007-09-12 Show GitHub Exploit DB Packet Storm
230964 7.5 危険 phprealty - phpRealty における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-4834 2012-12-20 18:33 2007-09-12 Show GitHub Exploit DB Packet Storm
230965 2.6 注意 torrenttrader - TorrentTrader の account_settings.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-4831 2012-12-20 18:33 2007-09-12 Show GitHub Exploit DB Packet Storm
230966 7.5 危険 sisfo kampus - Sisfo Kampus 2006 の blanko.preview.php における絶対パストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-4820 2012-12-20 18:33 2007-09-11 Show GitHub Exploit DB Packet Storm
230967 4.3 警告 txx cms - Txx CMS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-4819 2012-12-20 18:33 2007-09-11 Show GitHub Exploit DB Packet Storm
230968 7.5 危険 txx cms - Txx CMS における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-4818 2012-12-20 18:33 2007-09-11 Show GitHub Exploit DB Packet Storm
230969 7.5 危険 tlm cms - TLM CMS における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-4808 2012-12-20 18:33 2007-09-11 Show GitHub Exploit DB Packet Storm
230970 5 警告 ソフォス - Sophos Anti-Virus のウィルス検出エンジンにおけるマルウェアの検出を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2007-4787 2012-12-20 18:33 2007-09-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
213231 8.8 HIGH
Network
rainbowfishsoftware pacsone_server RainbowFish PacsOne Server 6.8.4 has Incorrect Access Control. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-12715 2024-11-21 14:00 2020-10-1 Show GitHub Exploit DB Packet Storm
213232 8.8 HIGH
Network
gitlab gitlab An issue has been discovered in GitLab affecting versions >=10.7 <13.0.14, >=13.1.0 <13.1.8, >=13.2.0 <13.2.6. Improper Access Control for Deploy Tokens CWE-862
 Missing Authorization
CVE-2020-13296 2024-11-21 14:00 2020-10-1 Show GitHub Exploit DB Packet Storm
213233 7.5 HIGH
Network
pexip pexip_infinity Pexip Infinity 23.x before 23.3 has improper input validation, leading to a temporary software abort via RTP. CWE-20
 Improper Input Validation 
CVE-2020-12824 2024-11-21 14:00 2020-09-25 Show GitHub Exploit DB Packet Storm
213234 5.4 MEDIUM
Network
fortinet fortitester
fortianalyzer
An improper neutralization of input vulnerability in FortiTester before 3.9.0 may allow a remote authenticated attacker to inject script related HTML tags via IPv4/IPv6 address fields. CWE-79
Cross-site Scripting
CVE-2020-12815 2024-11-21 14:00 2020-09-25 Show GitHub Exploit DB Packet Storm
213235 6.1 MEDIUM
Network
fortinet fortianalyzer
fortimanager
An improper neutralization of script-related HTML tags in a web page in FortiManager 6.2.0, 6.2.1, 6.2.2, and 6.2.3and FortiAnalyzer 6.2.0, 6.2.1, 6.2.2, and 6.2.3 may allow an attacker to execute a … CWE-79
Cross-site Scripting
CVE-2020-12811 2024-11-21 14:00 2020-09-25 Show GitHub Exploit DB Packet Storm
213236 8.1 HIGH
Network
gogogate ismartgate_pro_firmware ismartgate PRO 1.5.9 is vulnerable to clickjacking. CWE-1021
 Improper Restriction of Rendered UI Layers or Frames
CVE-2020-13119 2024-11-21 14:00 2020-09-25 Show GitHub Exploit DB Packet Storm
213237 9.8 CRITICAL
Network
gogogate ismartgate_pro_firmware ismartgate PRO 1.5.9 is vulnerable to malicious file uploads via the form for uploading sounds to garage doors. The magic bytes for WAV must be used. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-12843 2024-11-21 14:00 2020-09-25 Show GitHub Exploit DB Packet Storm
213238 9.8 CRITICAL
Network
gogogate ismartgate_pro_firmware ismartgate PRO 1.5.9 is vulnerable to privilege escalation by appending PHP code to /cron/checkUserExpirationDate.php. CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2020-12842 2024-11-21 14:00 2020-09-25 Show GitHub Exploit DB Packet Storm
213239 6.5 MEDIUM
Network
gogogate ismartgate_pro_firmware ismartgate PRO 1.5.9 is vulnerable to CSRF that allows remote attackers to upload imae files via /index.php CWE-352
 Origin Validation Error
CVE-2020-12841 2024-11-21 14:00 2020-09-25 Show GitHub Exploit DB Packet Storm
213240 6.5 MEDIUM
Network
gogogate ismartgate_pro_firmware ismartgate PRO 1.5.9 is vulnerable to CSRF that allows remote attackers to upload sound files via /index.php CWE-352
 Origin Validation Error
CVE-2020-12840 2024-11-21 14:00 2020-09-25 Show GitHub Exploit DB Packet Storm