Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 3, 2026, 6:08 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
231491 7.5 危険 zomplog - Zomplog の admin/upload_files.php における管理アクションを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-5230 2012-12-20 18:33 2007-10-5 Show GitHub Exploit DB Packet Storm
231492 6.8 警告 poppawid - Poppawid の mail/childwindow.inc.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-5221 2012-12-20 18:33 2007-10-4 Show GitHub Exploit DB Packet Storm
231493 9.3 危険 アクシスコミュニケーションズ - AXIX 2100 Network Camera におけるクロスサイトスクリプティングの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2007-5213 2012-12-20 18:33 2007-10-4 Show GitHub Exploit DB Packet Storm
231494 4.3 警告 アクシスコミュニケーションズ - AXIX 2100 Network Camera におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-5212 2012-12-20 18:33 2007-10-4 Show GitHub Exploit DB Packet Storm
231495 7.5 危険 SUSE - SUSE Linux Enterprise Desktop の novell-groupwise-client パッケージにおける資格情報を取得される脆弱性 CWE-200
CWE-310
CVE-2007-5196 2012-12-20 18:33 2007-10-12 Show GitHub Exploit DB Packet Storm
231496 6.8 警告 SUSE - SUSE Linux Enterprise Desktop の novell-groupwise-client パッケージにおける資格情報を取得される脆弱性 CWE-200
CWE-310
CVE-2007-5195 2012-12-20 18:33 2007-10-12 Show GitHub Exploit DB Packet Storm
231497 6.9 警告 rPath, Inc - rMake の Chroot サーバにおけるルート権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-5194 2012-12-20 18:33 2007-10-2 Show GitHub Exploit DB Packet Storm
231498 5 警告 TWiki - Debian GNU/Linux などの OS 上で稼動する twiki 用の初期設定における重要な情報を取得される脆弱性 CWE-DesignError
CVE-2007-5193 2012-12-20 18:33 2007-10-2 Show GitHub Exploit DB Packet Storm
231499 7.5 危険 x-script - x-script GuestBook の mes_add.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-5189 2012-12-20 18:33 2007-10-3 Show GitHub Exploit DB Packet Storm
231500 7.5 危険 XOOPS - Xoops の XOOPS アップローダークラスにおける任意のファイルをアップロードされる脆弱性 CWE-noinfo
情報不足
CVE-2007-5188 2012-12-20 18:33 2007-10-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 3, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
210621 7.2 HIGH
Network
nagios nagios_xi NagiosXI 5.6.11 is affected by a remote code execution (RCE) vulnerability. An authenticated nagiosadmin user can inject additional commands into a request. NOTE: the vendor disputes whether the CVE … NVD-CWE-noinfo
CVE-2020-22427 2024-11-21 14:13 2021-02-16 Show GitHub Exploit DB Packet Storm
210622 8.8 HIGH
Network
centreon centreon Centreon 19.10-3.el7 is affected by a SQL injection vulnerability, where an authorized user is able to inject additional SQL queries to perform remote command execution. CWE-89
SQL Injection
CVE-2020-22425 2024-11-21 14:13 2021-02-16 Show GitHub Exploit DB Packet Storm
210623 6.1 MEDIUM
Network
b2evolution b2evolution_cms Reflected cross-site scripting vulnerability (XSS) in the evoadm.php file in b2evolution cms version 6.11.6-stable allows remote attackers to inject arbitrary webscript or HTML code via the tab3 para… CWE-79
Cross-site Scripting
CVE-2020-22839 2024-11-21 14:13 2021-02-10 Show GitHub Exploit DB Packet Storm
210624 4.8 MEDIUM
Network
b2evolution b2evolution Stored XSS in b2evolution CMS version 6.11.6 and prior allows an attacker to perform malicious JavaScript code execution via the plugin name input field in the plugin module. CWE-79
Cross-site Scripting
CVE-2020-22841 2024-11-21 14:13 2021-02-9 Show GitHub Exploit DB Packet Storm
210625 6.1 MEDIUM
Network
b2evolution b2evolution Open redirect vulnerability in b2evolution CMS version prior to 6.11.6 allows an attacker to perform malicious open redirects to an attacker controlled resource via redirect_to parameter in email_pas… CWE-601
Open Redirect
CVE-2020-22840 2024-11-21 14:13 2021-02-9 Show GitHub Exploit DB Packet Storm
210626 9.8 CRITICAL
Network
phplist phplist phpList 3.5.3 allows type juggling for login bypass because == is used instead of === for password hashes, which mishandles hashes that begin with 0e followed by exclusively numerical characters. NVD-CWE-noinfo
CVE-2020-23361 2024-11-21 14:13 2021-01-28 Show GitHub Exploit DB Packet Storm
210627 9.8 CRITICAL
Network
oscommerce oscommerce oscommerce v2.3.4.1 has a functional problem in user registration and password rechecking, where a non-identical password can bypass the checks in /catalog/admin/administrators.php and /catalog/passw… CWE-697
 Incorrect Comparison
CVE-2020-23360 2024-11-21 14:13 2021-01-28 Show GitHub Exploit DB Packet Storm
210628 9.8 CRITICAL
Network
webidsupport webid WeBid 1.2.2 admin/newuser.php has an issue with password rechecking during registration because it uses a loose comparison to check the identicalness of two passwords. Two non-identical passwords can… CWE-697
 Incorrect Comparison
CVE-2020-23359 2024-11-21 14:13 2021-01-28 Show GitHub Exploit DB Packet Storm
210629 7.5 HIGH
Network
nibbleblog nibbleblog dmin/kernel/api/login.class.phpin in nibbleblog v3.7.1c allows type juggling for login bypass because == is used instead of === for password hashes, which mishandles hashes that begin with 0e followe… NVD-CWE-noinfo
CVE-2020-23356 2024-11-21 14:13 2021-01-28 Show GitHub Exploit DB Packet Storm
210630 7.5 HIGH
Network
codiad codiad ** PRODUCT NOT SUPPORTED WHEN ASSIGNED ** Codiad 2.8.4 /componetns/user/class.user.php:Authenticate() is vulnerable in magic hash authentication bypass. If encrypted or hash value for the passwords f… NVD-CWE-noinfo
CVE-2020-23355 2024-11-21 14:13 2021-01-28 Show GitHub Exploit DB Packet Storm