Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 3, 2026, 4:05 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
231101 7.8 危険 tumusika evolution - TuMusika Evolution における設定ファイルを取得される脆弱性 CWE-200
情報漏えい
CVE-2007-6221 2012-12-20 18:34 2007-12-4 Show GitHub Exploit DB Packet Storm
231102 5 警告 typespeed - typespeed におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2007-6220 2012-12-20 18:34 2007-12-4 Show GitHub Exploit DB Packet Storm
231103 5 警告 web-meetme - Web-MeetMe の play.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-6215 2012-12-20 18:34 2007-12-4 Show GitHub Exploit DB Packet Storm
231104 5 警告 webed - WebED の mod/chat/index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-6213 2012-12-20 18:34 2007-12-4 Show GitHub Exploit DB Packet Storm
231105 7.2 危険 sing - Debian GNU/Linux 上で稼動している sing における任意のファイルを追加される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-6211 2012-12-20 18:34 2007-12-3 Show GitHub Exploit DB Packet Storm
231106 2.1 注意 Zabbix - ZABBIX の zabbix_agentd における権限を取得される脆弱性 CWE-16
環境設定
CVE-2007-6210 2012-12-20 18:34 2007-11-25 Show GitHub Exploit DB Packet Storm
231107 4.6 警告 zsh - zsh の Util/difflog.pl における任意のファイルを上書きされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-6209 2012-12-20 18:34 2007-12-3 Show GitHub Exploit DB Packet Storm
231108 4.3 警告 s9y - S9Y Serendipity のリモート RSS sidebar プラグイン におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-6205 2012-12-20 18:34 2007-12-8 Show GitHub Exploit DB Packet Storm
231109 7.5 危険 wesnoth - Wesnoth におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2007-6201 2012-12-20 18:34 2007-11-27 Show GitHub Exploit DB Packet Storm
231110 6.8 警告 pmapper - Armin Burger p.mapper における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-6191 2012-12-20 18:34 2007-11-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 3, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
210201 8.8 HIGH
Network
sagemcom f\@st_5280_router_firmware Sagemcom F@ST 5280 routers using firmware version 1.150.61 have insecure deserialization that allows any authenticated user to perform a privilege escalation to any other user. By making a request wi… CWE-502
 Deserialization of Untrusted Data
CVE-2020-24034 2024-11-21 14:14 2020-09-2 Show GitHub Exploit DB Packet Storm
210202 8.8 HIGH
Network
oswapp warehouse_inventory_system A Cross-Site Request Forgery (CSRF) vulnerability in edit_user.php in OSWAPP Warehouse Inventory System (aka OSWA-INV) through 2020-08-10 allows remote attackers to change the admin's password after … CWE-352
 Origin Validation Error
CVE-2020-23836 2024-11-21 14:14 2020-09-2 Show GitHub Exploit DB Packet Storm
210203 6.1 MEDIUM
Network
tailor_management_system_project tailor_management_system A Reflected Cross-Site Scripting (XSS) vulnerability in the index.php login-portal webpage of SourceCodester Tailor Management System v1.0 allows remote attackers to harvest keys pressed by an unauth… CWE-79
Cross-site Scripting
CVE-2020-23835 2024-11-21 14:14 2020-09-2 Show GitHub Exploit DB Packet Storm
210204 6.1 MEDIUM
Network
stock_management_system_project stock_management_system A Reflected Cross-Site Scripting (XSS) vulnerability in the index.php login-portal webpage of SourceCodester Stock Management System v1.0 allows remote attackers to harvest login credentials and sess… CWE-79
Cross-site Scripting
CVE-2020-23831 2024-11-21 14:14 2020-09-2 Show GitHub Exploit DB Packet Storm
210205 8.8 HIGH
Network
librehealth librehealth_ehr interface/new/new_comprehensive_save.php in LibreHealth EHR 2.0.0 suffers from an authenticated file upload vulnerability, allowing remote attackers to achieve remote code execution (RCE) on the host… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-23829 2024-11-21 14:14 2020-09-2 Show GitHub Exploit DB Packet Storm
210206 7.5 HIGH
Network
gmapfp gmapfp gmapfp.org Joomla Component GMapFP J3.30pro is affected by Insecure Permissions. An attacker can access the upload function without authenticating to the application and also can upload files due the… CWE-276
Incorrect Default Permissions 
CVE-2020-23971 2024-11-21 14:14 2020-09-2 Show GitHub Exploit DB Packet Storm
210207 7.5 HIGH
Network
liferay liferay_portal The redirect module in Liferay Portal before 7.3.3 does not limit the number of URLs resulting in a 404 error that is recorded, which allows remote attackers to perform a denial of service attack by … CWE-601
Open Redirect
CVE-2020-24554 2024-11-21 14:14 2020-09-1 Show GitHub Exploit DB Packet Storm
210208 8.8 HIGH
Network
zyxel vmg5313-b30b_firmware Zyxel VMG5313-B30B router on firmware 5.13(ABCJ.6)b3_1127, and possibly older versions of firmware are affected by shell injection. CWE-78
OS Command 
CVE-2020-24354 2024-11-21 14:14 2020-09-1 Show GitHub Exploit DB Packet Storm
210209 8.8 HIGH
Adjacent
tp-link tl-wa855re_firmware TP-Link TL-WA855RE V5 20200415-rel37464 devices allow an unauthenticated attacker (on the same network) to submit a TDDP_RESET POST request for a factory reset and reboot. The attacker can then obtai… CWE-306
Missing Authentication for Critical Function
CVE-2020-24363 2024-11-21 14:14 2020-09-1 Show GitHub Exploit DB Packet Storm
210210 9.8 CRITICAL
Network
online_book_store_project online_book_store In projectworlds Online Book Store 1.0 Use of Hard-coded Credentials in source code leads to admin panel access. CWE-798
 Use of Hard-coded Credentials
CVE-2020-24115 2024-11-21 14:14 2020-08-31 Show GitHub Exploit DB Packet Storm