Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 21, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
231011 6.8 警告 PHPMailer project - PHPMailer における任意のシェルコマンドを実行される脆弱性 - CVE-2007-3215 2012-12-20 18:19 2007-06-11 Show GitHub Exploit DB Packet Storm
231012 10 危険 PhpWiki - PhpWiki の lib/WikiUser/LDAP.php における認証を回避される脆弱性 - CVE-2007-3193 2012-12-20 18:19 2007-06-12 Show GitHub Exploit DB Packet Storm
231013 6.8 警告 vincent hor - Calendarix における SQL インジェクションの脆弱性 - CVE-2007-3183 2012-12-20 18:19 2007-06-26 Show GitHub Exploit DB Packet Storm
231014 4.3 警告 vincent hor - Calendarix におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3182 2012-12-20 18:19 2007-06-26 Show GitHub Exploit DB Packet Storm
231015 7.5 危険 zindizayn okul web sistemi - Zindizayn Okul Web Sistemi における SQL インジェクションの脆弱性 - CVE-2007-3178 2012-12-20 18:19 2007-06-11 Show GitHub Exploit DB Packet Storm
231016 7.5 危険 w2b - W2B Online Banking における SQL インジェクションの脆弱性 - CVE-2007-3175 2012-12-20 18:19 2007-06-11 Show GitHub Exploit DB Packet Storm
231017 4.3 警告 w2b - W2B Online Banking の auth.w2b におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3174 2012-12-20 18:19 2007-06-11 Show GitHub Exploit DB Packet Storm
231018 5 警告 uebimiau - Uebimiau Webmail の demo/pop3/error.php におけるディレクトリトラバーサルの脆弱性 - CVE-2007-3172 2012-12-20 18:19 2007-06-11 Show GitHub Exploit DB Packet Storm
231019 5 警告 uebimiau - Uebimiau Webmail における重要な情報を取得される脆弱性 - CVE-2007-3171 2012-12-20 18:19 2007-06-11 Show GitHub Exploit DB Packet Storm
231020 4.3 警告 uebimiau - Uebimiau Webmail におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3170 2012-12-20 18:19 2007-06-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
197861 9.8 CRITICAL
Network
zend zendto lib/NSSDropbox.php in ZendTo prior to 5.22-2 Beta failed to properly check for equality when validating the session cookie, allowing an attacker to gain administrative access with a large number of r… CWE-754
 Improper Check for Unusual or Exceptional Conditions
CVE-2020-8986 2024-11-21 14:39 2020-03-25 Show GitHub Exploit DB Packet Storm
197862 8.8 HIGH
Network
zend zendto ZendTo prior to 5.22-2 Beta allowed reflected XSS and CSRF via the unlock.tpl unlock user functionality. CWE-352
CWE-79
 Origin Validation Error
Cross-site Scripting
CVE-2020-8985 2024-11-21 14:39 2020-03-25 Show GitHub Exploit DB Packet Storm
197863 7.5 HIGH
Network
zend zendto lib/NSSDropbox.php in ZendTo prior to 5.22-2 Beta allowed IP address spoofing via the X-Forwarded-For header. CWE-346
 Origin Validation Error
CVE-2020-8984 2024-11-21 14:39 2020-03-25 Show GitHub Exploit DB Packet Storm
197864 9.8 CRITICAL
Network
quest foglight_evolve This vulnerability allows remote attackers to execute arbitrary code on affected installations of Quest Foglight Evolve 9.0.0. Authentication is not required to exploit this vulnerability. The specif… CWE-798
 Use of Hard-coded Credentials
CVE-2020-8868 2024-11-21 14:39 2020-03-24 Show GitHub Exploit DB Packet Storm
197865 6.5 MEDIUM
Network
horde
debian
groupware
horde_form
debian_linux
This vulnerability allows remote attackers to create arbitrary files on affected installations of Horde Groupware Webmail Edition 5.2.22. Authentication is required to exploit this vulnerability. The… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-8866 2024-11-21 14:39 2020-03-24 Show GitHub Exploit DB Packet Storm
197866 6.3 MEDIUM
Network
horde
debian
groupware
debian_linux
This vulnerability allows remote attackers to execute local PHP files on affected installations of Horde Groupware Webmail Edition 5.2.22. Authentication is required to exploit this vulnerability. Th… CWE-22
Path Traversal
CVE-2020-8865 2024-11-21 14:39 2020-03-24 Show GitHub Exploit DB Packet Storm
197867 7.5 HIGH
Network
psi electronic_logbook This vulnerability allows remote attackers to create a denial-of-service condition on affected installations of ELOG Electronic Logbook 3.1.4-283534d. Authentication is not required to exploit this v… CWE-476
 NULL Pointer Dereference
CVE-2020-8859 2024-11-21 14:39 2020-03-24 Show GitHub Exploit DB Packet Storm
197868 8.8 HIGH
Adjacent
dlink dir-878_firmware
dir-882_firmware
dir-867_firmware
This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of D-Link DIR-867, DIR-878, and DIR-882 routers with firmware 1.10B04. Authentication is not re… CWE-697
 Incorrect Comparison
CVE-2020-8864 2024-11-21 14:39 2020-03-24 Show GitHub Exploit DB Packet Storm
197869 8.8 HIGH
Adjacent
dlink dir-878_firmware
dir-882_firmware
dir-867_firmware
This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of D-Link DIR-867, DIR-878, and DIR-882 routers with firmware 1.10B04. Authentication is not re… CWE-287
Improper Authentication
CVE-2020-8863 2024-11-21 14:39 2020-03-24 Show GitHub Exploit DB Packet Storm
197870 5.5 MEDIUM
Local
parallels parallels_desktop This vulnerability allows local attackers to disclose information on affected installations of Parallels Desktop 15.1.2-47123. An attacker must first obtain the ability to execute low-privileged code… CWE-125
Out-of-bounds Read
CVE-2020-8876 2024-11-21 14:39 2020-03-24 Show GitHub Exploit DB Packet Storm