|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 27, 2026, 4 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 231141 | 4.3 | 警告 | Tincan | - | Webbler CMS の uploader/index.php におけるクロスサイトスクリプティングの脆弱性 | - | CVE-2007-4071 | 2012-12-20 18:33 | 2007-07-30 | Show | GitHub Exploit DB Packet Storm |
| 231142 | 5.8 | 警告 | webyapar | - | Webyapar における SQL インジェクションの脆弱性 | - | CVE-2007-4068 | 2012-12-20 18:33 | 2007-07-30 | Show | GitHub Exploit DB Packet Storm |
| 231143 | 5.8 | 警告 | VMware | - | EMC VMware の IntraProcessLogging.dll における絶対パストラバーサルの脆弱性 | - | CVE-2007-4059 | 2012-12-20 18:33 | 2007-07-30 | Show | GitHub Exploit DB Packet Storm |
| 231144 | 4.6 | 警告 | ultradefrag | - | UltraDefrag の FindFiles 関数におけるヒープベースのバッファオーバーフローの脆弱性 | - | CVE-2007-4051 | 2012-12-20 18:33 | 2007-07-30 | Show | GitHub Exploit DB Packet Storm |
| 231145 | 4.3 | 警告 | phpsysinfo | - | phpSysInfo の index.php におけるクロスサイトスクリプティングの脆弱性 | - | CVE-2007-4048 | 2012-12-20 18:33 | 2007-07-30 | Show | GitHub Exploit DB Packet Storm |
| 231146 | 5 | 警告 | securecomputing | - | Secure Computing SecurityReporter の file.cgi における認証を回避される脆弱性 |
CWE-287
不適切な認証 |
CVE-2007-4043 | 2012-12-20 18:33 | 2007-07-27 | Show | GitHub Exploit DB Packet Storm |
| 231147 | 9.3 | 危険 | Yahoo! | - | Yahoo! Widgets の YDPCTL.dll におけるスタックベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2007-4034 | 2012-12-20 18:33 | 2007-07-27 | Show | GitHub Exploit DB Packet Storm |
| 231148 | 7.5 | 危険 | webSPELL | - | Webspell の index.php における絶対パストラバーサルの脆弱性 | - | CVE-2007-4028 | 2012-12-20 18:33 | 2007-07-26 | Show | GitHub Exploit DB Packet Storm |
| 231149 | 6.8 | 警告 | Telaxus LLC | - | epesi framework における任意の PHP コードを実行される脆弱性 | - | CVE-2007-4026 | 2012-12-20 18:33 | 2007-07-26 | Show | GitHub Exploit DB Packet Storm |
| 231150 | 4.3 | 警告 | サン・マイクロシステムズ | - | Windows 用の SJS Application Server における JSP ソースコードを取得される脆弱性 | - | CVE-2007-4025 | 2012-12-20 18:33 | 2007-07-24 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 27, 2026, 4:52 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 212401 | 7.5 |
HIGH
Network |
libvnc_project canonical debian siemens opensuse |
libvncserver ubuntu_linux debian_linux simatic_itc1500_firmware simatic_itc1500_pro_firmware simatic_itc1900_firmware simatic_itc1900_pro_firmware simatic_itc2200_firmware sim… |
An issue was discovered in LibVNCServer before 0.9.13. An improperly closed TCP connection causes an infinite loop in libvncclient/sockets.c. |
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop') |
CVE-2020-14398 | 2024-11-21 14:03 | 2020-06-18 | Show | GitHub Exploit DB Packet Storm |
| 212402 | 7.5 |
HIGH
Network |
libvnc_project canonical debian siemens opensuse |
libvncserver ubuntu_linux debian_linux simatic_itc1500_firmware simatic_itc1500_pro_firmware simatic_itc1900_firmware simatic_itc1900_pro_firmware simatic_itc2200_firmware sim… |
An issue was discovered in LibVNCServer before 0.9.13. libvncserver/rfbregion.c has a NULL pointer dereference. |
CWE-476
NULL Pointer Dereference |
CVE-2020-14397 | 2024-11-21 14:03 | 2020-06-18 | Show | GitHub Exploit DB Packet Storm |
| 212403 | 7.5 |
HIGH
Network |
libvnc_project canonical debian siemens |
libvncserver ubuntu_linux debian_linux simatic_itc1500_firmware simatic_itc1500_pro_firmware simatic_itc1900_firmware simatic_itc1900_pro_firmware simatic_itc2200_firmware sim… |
An issue was discovered in LibVNCServer before 0.9.13. libvncclient/tls_openssl.c has a NULL pointer dereference. |
CWE-476
NULL Pointer Dereference |
CVE-2020-14396 | 2024-11-21 14:03 | 2020-06-18 | Show | GitHub Exploit DB Packet Storm |
| 212404 | 9.8 |
CRITICAL
Network |
irfanview | b3d | IrfanView B3D PlugIns before version 4.56 has a B3d.dll!+1cbf heap-based out-of-bounds write. |
CWE-787
Out-of-bounds Write |
CVE-2020-13880 | 2024-11-21 14:02 | 2024-01-5 | Show | GitHub Exploit DB Packet Storm |
| 212405 | 9.8 |
CRITICAL
Network |
irfanview | b3d | IrfanView B3D PlugIns before version 4.56 has a B3d.dll!+214f heap-based out-of-bounds write. |
CWE-787
Out-of-bounds Write |
CVE-2020-13879 | 2024-11-21 14:02 | 2024-01-5 | Show | GitHub Exploit DB Packet Storm |
| 212406 | 9.8 |
CRITICAL
Network |
irfanview | b3d | IrfanView B3D PlugIns before version 4.56 has a B3d.dll!+27ef heap-based out-of-bounds write. |
CWE-787
Out-of-bounds Write |
CVE-2020-13878 | 2024-11-21 14:02 | 2024-01-5 | Show | GitHub Exploit DB Packet Storm |
| 212407 | 7.5 |
HIGH
Network |
mi | xiaomi_router_firmware | When Xiaomi router firmware is updated in 2020, there is an unauthenticated API that can reveal WIFI password vulnerability. This vulnerability is caused by the lack of access control policies on som… |
CWE-306
Missing Authentication for Critical Function |
CVE-2020-14140 | 2024-11-21 14:02 | 2023-03-30 | Show | GitHub Exploit DB Packet Storm |
| 212408 | 9.8 |
CRITICAL
Network |
mi | xiaomi | The Xiaomi Security Center expresses heartfelt thanks to ADLab of VenusTech ! At the same time, we also welcome more outstanding and professional security experts and security teams to join the Mi Se… |
NVD-CWE-noinfo
|
CVE-2020-14131 | 2024-11-21 14:02 | 2022-10-12 | Show | GitHub Exploit DB Packet Storm |
| 212409 | 9.8 |
CRITICAL
Network |
mi | xiaomi | A logic vulnerability exists in a Xiaomi product. The vulnerability is caused by an identity verification failure, which can be exploited by an attacker who can obtain a brief elevation of privilege. |
NVD-CWE-noinfo
|
CVE-2020-14129 | 2024-11-21 14:02 | 2022-10-12 | Show | GitHub Exploit DB Packet Storm |
| 212410 | 7.5 |
HIGH
Network |
mi | sound | Information leakage vulnerability exists in the Mi Sound APP. This vulnerability is caused by illegal calls of some sensitive JS interfaces, which can be exploited by attackers to leak sensitive info… |
NVD-CWE-noinfo
|
CVE-2020-14126 | 2024-11-21 14:02 | 2022-07-23 | Show | GitHub Exploit DB Packet Storm |