|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 1, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 231201 | 7.5 | 危険 | zomplog | - | Zomplog の admin/upload_files.php における管理アクションを実行される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2007-5230 | 2012-12-20 18:33 | 2007-10-5 | Show | GitHub Exploit DB Packet Storm |
| 231202 | 6.8 | 警告 | poppawid | - | Poppawid の mail/childwindow.inc.php における PHP リモートファイルインクルージョンの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2007-5221 | 2012-12-20 18:33 | 2007-10-4 | Show | GitHub Exploit DB Packet Storm |
| 231203 | 9.3 | 危険 | アクシスコミュニケーションズ | - | AXIX 2100 Network Camera におけるクロスサイトスクリプティングの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2007-5213 | 2012-12-20 18:33 | 2007-10-4 | Show | GitHub Exploit DB Packet Storm |
| 231204 | 4.3 | 警告 | アクシスコミュニケーションズ | - | AXIX 2100 Network Camera におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2007-5212 | 2012-12-20 18:33 | 2007-10-4 | Show | GitHub Exploit DB Packet Storm |
| 231205 | 7.5 | 危険 | SUSE | - | SUSE Linux Enterprise Desktop の novell-groupwise-client パッケージにおける資格情報を取得される脆弱性 |
CWE-200 CWE-310 |
CVE-2007-5196 | 2012-12-20 18:33 | 2007-10-12 | Show | GitHub Exploit DB Packet Storm |
| 231206 | 6.8 | 警告 | SUSE | - | SUSE Linux Enterprise Desktop の novell-groupwise-client パッケージにおける資格情報を取得される脆弱性 |
CWE-200 CWE-310 |
CVE-2007-5195 | 2012-12-20 18:33 | 2007-10-12 | Show | GitHub Exploit DB Packet Storm |
| 231207 | 6.9 | 警告 | rPath, Inc | - | rMake の Chroot サーバにおけるルート権限を取得される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2007-5194 | 2012-12-20 18:33 | 2007-10-2 | Show | GitHub Exploit DB Packet Storm |
| 231208 | 5 | 警告 | TWiki | - | Debian GNU/Linux などの OS 上で稼動する twiki 用の初期設定における重要な情報を取得される脆弱性 |
CWE-DesignError
|
CVE-2007-5193 | 2012-12-20 18:33 | 2007-10-2 | Show | GitHub Exploit DB Packet Storm |
| 231209 | 7.5 | 危険 | x-script | - | x-script GuestBook の mes_add.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2007-5189 | 2012-12-20 18:33 | 2007-10-3 | Show | GitHub Exploit DB Packet Storm |
| 231210 | 7.5 | 危険 | XOOPS | - | Xoops の XOOPS アップローダークラスにおける任意のファイルをアップロードされる脆弱性 |
CWE-noinfo
情報不足 |
CVE-2007-5188 | 2012-12-20 18:33 | 2007-10-1 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 1, 2026, 4:12 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 197391 | 5.4 |
MEDIUM
Network |
ibm |
rational_doors_next_generation rational_quality_manager collaborative_lifecycle_management engineering_test_management rational_engineering_lifecycle_manager engineering_lifecycle_mana… |
IBM Jazz Foundation and IBM Engineering products are vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentia… |
CWE-918
Server-Side Request Forgery (SSRF) |
CVE-2021-20348 | 2024-11-21 14:46 | 2021-06-3 | Show | GitHub Exploit DB Packet Storm |
| 197392 | 5.4 |
MEDIUM
Network |
ibm |
rational_doors_next_generation rational_quality_manager collaborative_lifecycle_management engineering_test_management rational_engineering_lifecycle_manager engineering_lifecycle_mana… |
IBM Jazz Foundation and IBM Engineering products are vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentia… |
CWE-918
Server-Side Request Forgery (SSRF) |
CVE-2021-20347 | 2024-11-21 14:46 | 2021-06-3 | Show | GitHub Exploit DB Packet Storm |
| 197393 | 5.4 |
MEDIUM
Network |
ibm |
rational_doors_next_generation rational_quality_manager collaborative_lifecycle_management engineering_test_management rational_engineering_lifecycle_manager engineering_lifecycle_mana… |
IBM Jazz Foundation and IBM Engineering products are vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentia… |
CWE-918
Server-Side Request Forgery (SSRF) |
CVE-2021-20346 | 2024-11-21 14:46 | 2021-06-3 | Show | GitHub Exploit DB Packet Storm |
| 197394 | 5.4 |
MEDIUM
Network |
ibm |
rational_doors_next_generation rational_quality_manager collaborative_lifecycle_management engineering_test_management rational_engineering_lifecycle_manager engineering_lifecycle_mana… |
IBM Jazz Foundation and IBM Engineering products are vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentia… |
CWE-918
Server-Side Request Forgery (SSRF) |
CVE-2021-20345 | 2024-11-21 14:46 | 2021-06-3 | Show | GitHub Exploit DB Packet Storm |
| 197395 | 5.4 |
MEDIUM
Network |
ibm |
rational_doors_next_generation rational_quality_manager collaborative_lifecycle_management engineering_test_management rational_engineering_lifecycle_manager engineering_lifecycle_mana… |
IBM Jazz Foundation and IBM Engineering products are vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentia… |
CWE-918
Server-Side Request Forgery (SSRF) |
CVE-2021-20343 | 2024-11-21 14:46 | 2021-06-3 | Show | GitHub Exploit DB Packet Storm |
| 197396 | 5.4 |
MEDIUM
Network |
ibm |
rational_doors_next_generation rational_quality_manager collaborative_lifecycle_management engineering_test_management rational_engineering_lifecycle_manager engineering_lifecycle_mana… |
IBM Jazz Foundation and IBM Engineering products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended fu… |
CWE-79
Cross-site Scripting |
CVE-2021-20338 | 2024-11-21 14:46 | 2021-06-3 | Show | GitHub Exploit DB Packet Storm |
| 197397 | 5.3 |
MEDIUM
Network |
ibm | security_verify_access | IBM Security Verify Access 20.07 could disclose sensitive information in HTTP server headers that could be used in further attacks against the system. IBM X-Force ID: 199398. |
CWE-200
Information Exposure |
CVE-2021-20585 | 2024-11-21 14:46 | 2021-06-1 | Show | GitHub Exploit DB Packet Storm |
| 197398 | 7.5 |
HIGH
Network |
ibm |
application_gateway security_verify_access |
IBM Security Verify Access 20.07 could allow a remote attacker to send a specially crafted HTTP GET request that could cause the application to crash. |
NVD-CWE-noinfo
|
CVE-2021-20576 | 2024-11-21 14:46 | 2021-06-1 | Show | GitHub Exploit DB Packet Storm |
| 197399 | 3.3 |
LOW
Local |
ibm |
application_gateway security_verify_access |
IBM Security Verify Access 20.07 allows web pages to be stored locally which can be read by another user on the system. X-Force ID: 199278. |
CWE-922
Insecure Storage of Sensitive Information |
CVE-2021-20575 | 2024-11-21 14:46 | 2021-06-1 | Show | GitHub Exploit DB Packet Storm |
| 197400 | 4.3 |
MEDIUM
Network |
redhat |
process_automation descision_manager jbpm |
A flaw was found in the BPMN editor in version jBPM 7.51.0.Final. Any authenticated user from any project can see the name of Ruleflow Groups from other projects, despite the user not having access t… |
NVD-CWE-noinfo
|
CVE-2021-20306 | 2024-11-21 14:46 | 2021-06-1 | Show | GitHub Exploit DB Packet Storm |