Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230981 7.5 危険 XOOPS - XOOPS 用の Flashgames モジュールにおける SQL インジェクションの脆弱性 - CVE-2007-2543 2012-12-20 18:19 2007-05-8 Show GitHub Exploit DB Packet Storm
230982 7.5 危険 workbench survival guide - workbench survival guide の header.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2542 2012-12-20 18:19 2007-05-8 Show GitHub Exploit DB Packet Storm
230983 7.5 危険 versado cms - Versado CMS の includes/ajax_listado.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2541 2012-12-20 18:19 2007-05-8 Show GitHub Exploit DB Packet Storm
230984 7.5 危険 pmecms - PMECMS における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2540 2012-12-20 18:19 2007-05-8 Show GitHub Exploit DB Packet Storm
230985 7.8 危険 runcms - RunCms の show_files 関数における重要な情報 (ファイルの存在およびファイルメタデータ) を取得される脆弱性 - CVE-2007-2539 2012-12-20 18:19 2007-05-8 Show GitHub Exploit DB Packet Storm
230986 7.5 危険 runcms - RunCms の class/debug/debug_show.php における SQL インジェクションの脆弱性 - CVE-2007-2538 2012-12-20 18:19 2007-05-8 Show GitHub Exploit DB Packet Storm
230987 7.8 危険 picozip - PicoZip におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-2536 2012-12-20 18:19 2007-05-8 Show GitHub Exploit DB Packet Storm
230988 7.8 危険 e-merge GmbH - WinAce におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-2535 2012-12-20 18:19 2007-05-8 Show GitHub Exploit DB Packet Storm
230989 10 危険 トレンドマイクロ - Trend Micro ServerProtect におけるバッファオーバーフローの脆弱性 - CVE-2007-2533 2012-12-20 18:19 2007-04-3 Show GitHub Exploit DB Packet Storm
230990 7.5 危険 tropicalm - Tropicalm Crowell Resource における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2530 2012-12-20 18:19 2007-05-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
210881 7.8 HIGH
Local
arswp windows_cleanup_assistant In Windows cleaning assistant 3.2, the driver file (AtpKrnl.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input value… CWE-20
 Improper Input Validation 
CVE-2020-14957 2024-11-21 14:04 2020-07-1 Show GitHub Exploit DB Packet Storm
210882 7.8 HIGH
Local
arswp windows_cleanup_assistant In Windows cleaning assistant 3.2, the driver file (AtpKrnl.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input value… CWE-20
 Improper Input Validation 
CVE-2020-14956 2024-11-21 14:04 2020-07-1 Show GitHub Exploit DB Packet Storm
210883 9.8 CRITICAL
Network
sophos xg_firewall_firmware Sophos XG Firewall 17.x through v17.5 MR12 allows a Buffer Overflow and remote code execution via the HTTP/S Bookmarks feature for clientless access. Hotfix HF062020.1 was published for all firewalls… CWE-120
Classic Buffer Overflow
CVE-2020-15069 2024-11-21 14:04 2020-06-30 Show GitHub Exploit DB Packet Storm
210884 6.5 MEDIUM
Network
iball wrb303n_firmware iBall WRB303N devices allow CSRF attacks, as demonstrated by enabling remote management, enabling DHCP, or modifying the subnet range for IP addresses. CWE-352
 Origin Validation Error
CVE-2020-15043 2024-11-21 14:04 2020-06-30 Show GitHub Exploit DB Packet Storm
210885 5.5 MEDIUM
Local
jiangmin jiangmin_antivirus In Jiangmin Antivirus 16.0.13.129, the driver file (KVFG.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values f… CWE-20
 Improper Input Validation 
CVE-2020-14955 2024-11-21 14:04 2020-06-27 Show GitHub Exploit DB Packet Storm
210886 6.1 MEDIUM
Network
nedi nedi NeDi 1.9C is vulnerable to reflected cross-site scripting. The Devices-Config.php file improperly validates user input. An attacker can exploit this vulnerability by crafting arbitrary JavaScript in … CWE-79
Cross-site Scripting
CVE-2020-15017 2024-11-21 14:04 2020-06-26 Show GitHub Exploit DB Packet Storm
210887 6.1 MEDIUM
Network
nedi nedi NeDi 1.9C is vulnerable to reflected cross-site scripting. The Other-Converter.php file improperly validates user input. An attacker can exploit this vulnerability by crafting arbitrary JavaScript in… CWE-79
Cross-site Scripting
CVE-2020-15016 2024-11-21 14:04 2020-06-26 Show GitHub Exploit DB Packet Storm
210888 5.9 MEDIUM
Network
trojita_project trojita MSA/SMTP.cpp in Trojita before 0.8 ignores certificate-verification errors, which allows man-in-the-middle attackers to spoof SMTP servers. CWE-295
Improper Certificate Validation 
CVE-2020-15047 2024-11-21 14:04 2020-06-25 Show GitHub Exploit DB Packet Storm
210889 8.8 HIGH
Network
supermicro x10drh-it_bios
x10drh-it_firmware
The web interface on Supermicro X10DRH-iT motherboards with BIOS 2.0a and IPMI firmware 03.40 allows remote attackers to exploit a cgi/config_user.cgi CSRF issue to add new admin users. The fixed ver… CWE-352
 Origin Validation Error
CVE-2020-15046 2024-11-21 14:04 2020-06-25 Show GitHub Exploit DB Packet Storm
210890 3.1 LOW
Network
mediawiki
fedoraproject
debian
mediawiki
fedora
debian_linux
In MediaWiki before 1.31.8, 1.32.x and 1.33.x before 1.33.4, and 1.34.x before 1.34.2, private wikis behind a caching server using the img_auth.php image authorization security feature may have had t… NVD-CWE-noinfo
CVE-2020-15005 2024-11-21 14:04 2020-06-25 Show GitHub Exploit DB Packet Storm