Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
231221 5 警告 skadate - SkaDate におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-5299 2012-12-20 18:33 2007-10-9 Show GitHub Exploit DB Packet Storm
231222 4.3 警告 wikepage - Wikepage Opus および TipiWiki の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
CWE-94
CVE-2007-5295 2012-12-20 18:33 2007-10-9 Show GitHub Exploit DB Packet Storm
231223 6.8 警告 sitesys - SiteSys における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-5166 2012-12-20 18:33 2007-10-1 Show GitHub Exploit DB Packet Storm
231224 6.8 警告 Restaurant Management System project - Thierry Leriche ReMaSys における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-5160 2012-12-20 18:33 2007-10-1 Show GitHub Exploit DB Packet Storm
231225 6.8 警告 サン・マイクロシステムズ - Sun Java System Access Manager における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2007-5153 2012-12-20 18:33 2007-09-27 Show GitHub Exploit DB Packet Storm
231226 7.5 危険 サン・マイクロシステムズ - Sun Java System Access Manager における管理者タスクを実行される脆弱性 CWE-287
不適切な認証
CVE-2007-5152 2012-12-20 18:33 2007-09-27 Show GitHub Exploit DB Packet Storm
231227 6.8 警告 puzzle apps cms - Puzzle Apps CMS における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-5147 2012-12-20 18:33 2007-09-14 Show GitHub Exploit DB Packet Storm
231228 4.3 警告 solidweb - Solidweb Novus の buscar.asp におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-5142 2012-12-20 18:33 2007-09-28 Show GitHub Exploit DB Packet Storm
231229 6.8 警告 sitex - SiteX CMS の search.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-5141 2012-12-20 18:33 2007-09-28 Show GitHub Exploit DB Packet Storm
231230 4.3 警告 simpgb - SimpGB におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-5127 2012-12-20 18:33 2007-09-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
210461 6.1 MEDIUM
Network
halo halo Cross Site Scripting (XSS) vulnerability in Halo 1.1.3 via post publish components in the manage panel, which lets a remote malicious user execute arbitrary code. CWE-79
Cross-site Scripting
CVE-2020-21345 2024-11-21 14:12 2021-05-21 Show GitHub Exploit DB Packet Storm
210462 8.1 HIGH
Network
fusionpbx fusionpbx Directory Traversal vulnerability in FusionPBX 4.5.7, which allows a remote malicious user to delete folders on the system via the folder variable to app/edit/folderdelete.php. CWE-22
Path Traversal
CVE-2020-21057 2024-11-21 14:12 2021-05-21 Show GitHub Exploit DB Packet Storm
210463 4.3 MEDIUM
Network
fusionpbx fusionpbx Directory Traversal vulnerability exists in FusionPBX 4.5.7, which allows a remote malicious user to create folders via the folder variale to app\edit\foldernew.php. CWE-22
Path Traversal
CVE-2020-21056 2024-11-21 14:12 2021-05-21 Show GitHub Exploit DB Packet Storm
210464 6.5 MEDIUM
Network
fusionpbx fusionpbx A Directory Traversal vulnerability exists in FusionPBX 4.5.7 allows malicoius users to rename any file of the system.via the (1) folder, (2) filename, and (3) newfilename variables in app\edit\filer… CWE-22
Path Traversal
CVE-2020-21055 2024-11-21 14:12 2021-05-21 Show GitHub Exploit DB Packet Storm
210465 6.1 MEDIUM
Network
fusionpbx fusionpbx Cross Site Scripting (XSS) vulnerability in FusionPBX 4.5.7 allows remote malicious users to inject arbitrary web script or HTML via an unsanitized "f" variable in app\vars\vars_textarea.php. CWE-79
Cross-site Scripting
CVE-2020-21054 2024-11-21 14:12 2021-05-21 Show GitHub Exploit DB Packet Storm
210466 6.1 MEDIUM
Network
fusionpbx fusionpbx Cross Site Scriptiong (XSS) vulnerability exists in FusionPBX 4.5.7 allows remote malicious users to inject arbitrary web script or HTML via an unsanitized "query_string" variable in app\devices\devi… CWE-79
Cross-site Scripting
CVE-2020-21053 2024-11-21 14:12 2021-05-21 Show GitHub Exploit DB Packet Storm
210467 9.8 CRITICAL
Network
pluck-cms pluck In Pluck-4.7.10-dev2 admin background, a remote command execution vulnerability exists when uploading files. CWE-77
Command Injection
CVE-2020-20951 2024-11-21 14:12 2021-05-19 Show GitHub Exploit DB Packet Storm
210468 8.8 HIGH
Network
gnu libredwg GNU LibreDWG 0.10 is affected by: memcpy-param-overlap. The impact is: execute arbitrary code (remote). The component is: read_2004_section_header ../../src/decode.c:2580. NVD-CWE-Other
CVE-2020-21844 2024-11-21 14:12 2021-05-18 Show GitHub Exploit DB Packet Storm
210469 8.8 HIGH
Network
gnu libredwg A heap based buffer overflow vulnerability exits in GNU LibreDWG 0.10 via bit_read_RC ../../src/bits.c:318. CWE-787
 Out-of-bounds Write
CVE-2020-21843 2024-11-21 14:12 2021-05-18 Show GitHub Exploit DB Packet Storm
210470 8.8 HIGH
Network
gnu libredwg A heap based buffer overflow vulnerability exists in GNU LibreDWG 0.10 via read_2004_section_revhistory ../../src/decode.c:3051. CWE-787
 Out-of-bounds Write
CVE-2020-21842 2024-11-21 14:12 2021-05-18 Show GitHub Exploit DB Packet Storm