|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 24, 2026, 2 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 231161 | 7.1 | 危険 | winpt | - | WinPT における間違ったユーザ ID 鍵をインストールされる脆弱性 | - | CVE-2007-3201 | 2012-12-20 18:19 | 2007-06-12 | Show | GitHub Exploit DB Packet Storm |
| 231162 | 10 | 危険 | phpmyinventory | - | phpMyInventory の Includes/global.inc.php における PHP リモートファイルインクルージョンの脆弱性 | - | CVE-2007-3270 | 2012-12-20 18:19 | 2007-06-19 | Show | GitHub Exploit DB Packet Storm |
| 231163 | 5 | 警告 | vincent hor | - | Calendarix における重要な情報を取得される脆弱性 | - | CVE-2007-3259 | 2012-12-20 18:19 | 2007-06-26 | Show | GitHub Exploit DB Packet Storm |
| 231164 | 5 | 警告 | vincent hor | - | Calendarix の calendar.php における重要な情報を取得される脆弱性 | - | CVE-2007-3258 | 2012-12-20 18:19 | 2007-06-27 | Show | GitHub Exploit DB Packet Storm |
| 231165 | 4 | 警告 | xythos | - | XEDM などにおけるマルウェアを配布するドキュメントと任意の Content-Type HTTP ヘッダを関連づけられる脆弱性 | - | CVE-2007-3256 | 2012-12-20 18:19 | 2007-06-27 | Show | GitHub Exploit DB Packet Storm |
| 231166 | 6.5 | 警告 | xythos | - | XEDM におけるクロスサイトリクエストフォージェリの脆弱性 | - | CVE-2007-3255 | 2012-12-20 18:19 | 2007-06-27 | Show | GitHub Exploit DB Packet Storm |
| 231167 | 3.5 | 注意 | xythos | - | XEDM におけるクロスサイトスクリプティングの脆弱性 | - | CVE-2007-3254 | 2012-12-20 18:19 | 2007-06-27 | Show | GitHub Exploit DB Packet Storm |
| 231168 | 7.8 | 危険 | portalapp | - | PortalApp におけるデータベースをダウンロードされる脆弱性 | - | CVE-2007-3252 | 2012-12-20 18:19 | 2007-06-18 | Show | GitHub Exploit DB Packet Storm |
| 231169 | 6.8 | 警告 | VirtueMart | - | VirtueMart における SQL インジェクションの脆弱性 | - | CVE-2007-3247 | 2012-12-20 18:19 | 2007-06-18 | Show | GitHub Exploit DB Packet Storm |
| 231170 | 7.5 | 危険 | web-app.org web-app.net |
- | web-app.net WebAPP などの Menu Manager Mod における任意のコマンドを実行される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2007-3242 | 2012-12-20 18:19 | 2007-06-14 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 24, 2026, 4:05 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 199241 | 6.5 |
MEDIUM
Adjacent |
gradle | plugin_publishing | All versions of com.gradle.plugin-publish before 0.11.0 are vulnerable to Insertion of Sensitive Information into Log File. When a plugin author publishes a Gradle plugin while running Gradle with th… |
CWE-532
Inclusion of Sensitive Information in Log Files |
CVE-2020-7599 | 2024-11-21 14:37 | 2020-03-31 | Show | GitHub Exploit DB Packet Storm |
| 199242 | 6.1 |
MEDIUM
Network |
schneider-electric |
andover_continuum_9680_firmware andover_continuum_5740_firmware andover_continuum_5720_firmware andover_continuum_bcx4040_firmware andover_continuum_bcx9640_firmware andover_continuum_… |
A CWE-79:Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability exists Andover Continuum (All versions), which could cause a Reflective Cross-site Scriptin… |
CWE-79
Cross-site Scripting |
CVE-2020-7482 | 2024-11-21 14:37 | 2020-03-24 | Show | GitHub Exploit DB Packet Storm |
| 199243 | 6.1 |
MEDIUM
Network |
schneider-electric |
andover_continuum_9680_firmware andover_continuum_5740_firmware andover_continuum_5720_firmware andover_continuum_bcx4040_firmware andover_continuum_bcx9640_firmware andover_continuum_… |
A CWE-79:Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability exists Andover Continuum (All versions), which could enable a successful Cross-site Scripti… |
CWE-79
Cross-site Scripting |
CVE-2020-7481 | 2024-11-21 14:37 | 2020-03-24 | Show | GitHub Exploit DB Packet Storm |
| 199244 | 9.8 |
CRITICAL
Network |
schneider-electric |
andover_continuum_9680_firmware andover_continuum_5740_firmware andover_continuum_5720_firmware andover_continuum_bcx4040_firmware andover_continuum_bcx9640_firmware andover_continuum_… |
A CWE-94: Improper Control of Generation of Code ('Code Injection') vulnerability exists in Andover Continuum (All versions), which could cause files on the application server filesystem to be viewab… |
CWE-94
Code Injection |
CVE-2020-7480 | 2024-11-21 14:37 | 2020-03-24 | Show | GitHub Exploit DB Packet Storm |
| 199245 | 7.8 |
HIGH
Local |
schneider-electric | interactive_graphical_scada_system | A CWE-306: Missing Authentication for Critical Function vulnerability exists in IGSS (Versions 14 and prior using the service: IGSSupdate), which could allow a local user to execute processes that ot… |
CWE-306
Missing Authentication for Critical Function |
CVE-2020-7479 | 2024-11-21 14:37 | 2020-03-24 | Show | GitHub Exploit DB Packet Storm |
| 199246 | 7.5 |
HIGH
Network |
schneider-electric | interactive_graphical_scada_system | A CWE-22: Improper Limitation of a Pathname to a Restricted Directory exists in IGSS (Versions 14 and prior using the service: IGSSupdate), which could allow a remote unauthenticated attacker to read… |
CWE-22
Path Traversal |
CVE-2020-7478 | 2024-11-21 14:37 | 2020-03-24 | Show | GitHub Exploit DB Packet Storm |
| 199247 | 7.8 |
HIGH
Local |
schneider-electric | ulti_zigbee_installation_toolkit | A CWE-426: Untrusted Search Path vulnerability exists in ZigBee Installation Kit (Versions prior to 1.0.1), which could cause execution of malicious code when a malicious file is put in the search pa… |
CWE-426
Untrusted Search Path |
CVE-2020-7476 | 2024-11-21 14:37 | 2020-03-24 | Show | GitHub Exploit DB Packet Storm |
| 199248 | 7.5 |
HIGH
Network |
schneider-electric |
140noe77101_firmware 140noe77111_firmware tsxh5744m_firmware tsxh5724m_firmware tsxp576634m_firmware tsxp57554m_firmware tsxp575634m_firmware tsxp57454m_firmware tsxp574634m_f… |
A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in Quantum Ethernet Network module 140NOE771x1 (Versions 7.0 and prior), Quantum processors with integrated Ethern… |
CWE-754
Improper Check for Unusual or Exceptional Conditions |
CVE-2020-7477 | 2024-11-21 14:37 | 2020-03-24 | Show | GitHub Exploit DB Packet Storm |
| 199249 | 9.8 |
CRITICAL
Network |
schneider-electric |
unity_pro ecostruxure_control_expert modicon_m340_firmware modicon_m580_firmware |
A CWE-74: Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection'), reflective DLL, vulnerability exists in EcoStruxure Control Expert (all versions prior to… |
CWE-74
Injection |
CVE-2020-7475 | 2024-11-21 14:37 | 2020-03-24 | Show | GitHub Exploit DB Packet Storm |
| 199250 | 7.8 |
HIGH
Local |
schneider-electric | pmepxm0100_prosoft_configurator | A CWE-427: Uncontrolled Search Path Element vulnerability exists in ProSoft Configurator (v1.002 and prior), for the PMEPXM0100 (H) module, which could cause the execution of untrusted code when usin… |
CWE-427
Uncontrolled Search Path Element |
CVE-2020-7474 | 2024-11-21 14:37 | 2020-03-24 | Show | GitHub Exploit DB Packet Storm |