Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 21, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
231121 7.8 危険 precisionid barcode - PrecisionID_DataMatrix.DLL の PrecisionID Barcode ActiveX コントロールにおけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-2657 2012-12-20 18:19 2007-05-14 Show GitHub Exploit DB Packet Storm
231122 4.4 警告 SUSE
xfsdump
- xfsdump の xfs_fsr における xfs ファイルシステム上で任意のファイルを上書きされる脆弱性 CWE-362
CWE-Other
CVE-2007-2654 2012-12-20 18:19 2007-05-11 Show GitHub Exploit DB Packet Storm
231123 7.5 危険 voodoo circle - VooDoo cIRCle におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-2651 2012-12-20 18:19 2007-05-14 Show GitHub Exploit DB Packet Storm
231124 7.8 危険 t-com - T-com Speedport W 700v における遅延を回避される脆弱性 - CVE-2007-2649 2012-12-20 18:19 2007-05-14 Show GitHub Exploit DB Packet Storm
231125 6.8 警告 yenc32 - yEnc32 におけるヒープベースのバッファオーバーフローの脆弱性 - CVE-2007-2646 2012-12-20 18:19 2007-05-14 Show GitHub Exploit DB Packet Storm
231126 5 警告 pinkcrow designs - PinkCrow Designs Gallery または maGAZIn の phpThumb.php におけるディレクトリトラバーサルの脆弱性 - CVE-2007-2643 2012-12-20 18:19 2007-05-13 Show GitHub Exploit DB Packet Storm
231127 7.8 危険 r2k - R2K Gallery の galeria.php におけるディレクトリトラバーサルの脆弱性 - CVE-2007-2642 2012-12-20 18:19 2007-05-13 Show GitHub Exploit DB Packet Storm
231128 7.5 危険 w1l3d4 - W1L3D4 Philboard の W1L3D4_bolum.asp における SQL インジェクションの脆弱性 - CVE-2007-2641 2012-12-20 18:19 2007-05-13 Show GitHub Exploit DB Packet Storm
231129 10 危険 prosysinfo - TFTPdWin におけるディレクトリトラバーサルの脆弱性 - CVE-2007-2639 2012-12-20 18:19 2007-05-13 Show GitHub Exploit DB Packet Storm
231130 10 危険 positive software - H-Sphere SiteStudio におけるディレクトリトラバーサルの脆弱性 - CVE-2007-2633 2012-12-20 18:19 2007-05-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211071 9.8 CRITICAL
Network
sophos xg_firewall_firmware Sophos XG Firewall 17.x through v17.5 MR12 allows a Buffer Overflow and remote code execution via the HTTP/S Bookmarks feature for clientless access. Hotfix HF062020.1 was published for all firewalls… CWE-120
Classic Buffer Overflow
CVE-2020-15069 2024-11-21 14:04 2020-06-30 Show GitHub Exploit DB Packet Storm
211072 6.5 MEDIUM
Network
iball wrb303n_firmware iBall WRB303N devices allow CSRF attacks, as demonstrated by enabling remote management, enabling DHCP, or modifying the subnet range for IP addresses. CWE-352
 Origin Validation Error
CVE-2020-15043 2024-11-21 14:04 2020-06-30 Show GitHub Exploit DB Packet Storm
211073 5.5 MEDIUM
Local
jiangmin jiangmin_antivirus In Jiangmin Antivirus 16.0.13.129, the driver file (KVFG.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values f… CWE-20
 Improper Input Validation 
CVE-2020-14955 2024-11-21 14:04 2020-06-27 Show GitHub Exploit DB Packet Storm
211074 6.1 MEDIUM
Network
nedi nedi NeDi 1.9C is vulnerable to reflected cross-site scripting. The Devices-Config.php file improperly validates user input. An attacker can exploit this vulnerability by crafting arbitrary JavaScript in … CWE-79
Cross-site Scripting
CVE-2020-15017 2024-11-21 14:04 2020-06-26 Show GitHub Exploit DB Packet Storm
211075 6.1 MEDIUM
Network
nedi nedi NeDi 1.9C is vulnerable to reflected cross-site scripting. The Other-Converter.php file improperly validates user input. An attacker can exploit this vulnerability by crafting arbitrary JavaScript in… CWE-79
Cross-site Scripting
CVE-2020-15016 2024-11-21 14:04 2020-06-26 Show GitHub Exploit DB Packet Storm
211076 5.9 MEDIUM
Network
trojita_project trojita MSA/SMTP.cpp in Trojita before 0.8 ignores certificate-verification errors, which allows man-in-the-middle attackers to spoof SMTP servers. CWE-295
Improper Certificate Validation 
CVE-2020-15047 2024-11-21 14:04 2020-06-25 Show GitHub Exploit DB Packet Storm
211077 8.8 HIGH
Network
supermicro x10drh-it_bios
x10drh-it_firmware
The web interface on Supermicro X10DRH-iT motherboards with BIOS 2.0a and IPMI firmware 03.40 allows remote attackers to exploit a cgi/config_user.cgi CSRF issue to add new admin users. The fixed ver… CWE-352
 Origin Validation Error
CVE-2020-15046 2024-11-21 14:04 2020-06-25 Show GitHub Exploit DB Packet Storm
211078 3.1 LOW
Network
mediawiki
fedoraproject
debian
mediawiki
fedora
debian_linux
In MediaWiki before 1.31.8, 1.32.x and 1.33.x before 1.33.4, and 1.34.x before 1.34.2, private wikis behind a caching server using the img_auth.php image authorization security feature may have had t… NVD-CWE-noinfo
CVE-2020-15005 2024-11-21 14:04 2020-06-25 Show GitHub Exploit DB Packet Storm
211079 4.8 MEDIUM
Network
php-fusion php-fusion PHP-Fusion 9.03.60 allows XSS via the administration/site_links.php Add Site Link field. CWE-79
Cross-site Scripting
CVE-2020-15041 2024-11-21 14:04 2020-06-25 Show GitHub Exploit DB Packet Storm
211080 5.4 MEDIUM
Network
seedprod coming_soon_page\
_under_construction_\&_maintenance_mode
The SeedProd coming-soon plugin before 5.1.1 for WordPress allows XSS. CWE-79
Cross-site Scripting
CVE-2020-15038 2024-11-21 14:04 2020-06-25 Show GitHub Exploit DB Packet Storm