|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 22, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 231501 | 7.5 | 危険 | SAP | - | SAP RFC Library の RFC_START_PROGRAM 関数におけるバッファオーバーフローの脆弱性 | - | CVE-2007-1915 | 2012-12-20 18:19 | 2007-04-10 | Show | GitHub Exploit DB Packet Storm |
| 231502 | 7.8 | 危険 | SAP | - | SAP RFC Library の RFC_START_PROGRAM 関数における重要な情報を取得される脆弱性 | - | CVE-2007-1914 | 2012-12-20 18:19 | 2007-04-10 | Show | GitHub Exploit DB Packet Storm |
| 231503 | 5 | 警告 | SAP | - | SAP RFC Library の TRUSTED_SYSTEM_SECURITY 関数におけるシステムおよびドメイン上のユーザーとグループの存在を確認される脆弱性 | - | CVE-2007-1913 | 2012-12-20 18:19 | 2007-04-10 | Show | GitHub Exploit DB Packet Storm |
| 231504 | 7.5 | 危険 | ryan haudenschilt | - | PHP の Ryan Haudenschilt Battle.net Clan Script における SQL インジェクションの脆弱性 | - | CVE-2007-1909 | 2012-12-20 18:19 | 2007-04-10 | Show | GitHub Exploit DB Packet Storm |
| 231505 | 4.3 | 警告 | pineapple technologies | - | Pineapple Technologies QuizShock の auth.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2007-1905 | 2012-12-20 18:19 | 2007-04-10 | Show | GitHub Exploit DB Packet Storm |
| 231506 | 2.6 | 注意 | sonicbb | - | SonicBB の search.php におけるクロスサイトスクリプティングの脆弱性 | - | CVE-2007-1903 | 2012-12-20 18:19 | 2007-05-14 | Show | GitHub Exploit DB Packet Storm |
| 231507 | 6.8 | 警告 | sonicbb | - | SonicBB における SQL インジェクションの脆弱性 | - | CVE-2007-1902 | 2012-12-20 18:19 | 2007-05-14 | Show | GitHub Exploit DB Packet Storm |
| 231508 | 4.3 | 警告 | sonicbb | - | SonicBB における重要な情報を取得される脆弱性 | - | CVE-2007-1901 | 2012-12-20 18:19 | 2007-05-14 | Show | GitHub Exploit DB Packet Storm |
| 231509 | 6.5 | 警告 | WordPress.org | - | WordPress の xmlrpc における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2007-1897 | 2012-12-20 18:19 | 2007-04-9 | Show | GitHub Exploit DB Packet Storm |
| 231510 | 5.8 | 警告 | sky gunning | - | Sky GUNNING MySpeach の chat.php におけるディレクトリトラバーサルの脆弱性 | - | CVE-2007-1896 | 2012-12-20 18:19 | 2007-04-9 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 22, 2026, 4:08 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 211711 | 7.5 |
HIGH
Network |
libvncserver_project debian opensuse canonical |
libvncserver debian_linux leap ubuntu_linux |
An issue was discovered in LibVNCServer before 0.9.13. Byte-aligned data is accessed through uint32_t pointers in libvncclient/rfbproto.c. NOTE: there is reportedly "no trust boundary crossed. |
NVD-CWE-Other
|
CVE-2020-14399 | 2024-11-21 14:03 | 2020-06-18 | Show | GitHub Exploit DB Packet Storm |
| 211712 | 7.5 |
HIGH
Network |
libvnc_project canonical debian siemens opensuse |
libvncserver ubuntu_linux debian_linux simatic_itc1500_firmware simatic_itc1500_pro_firmware simatic_itc1900_firmware simatic_itc1900_pro_firmware simatic_itc2200_firmware sim… |
An issue was discovered in LibVNCServer before 0.9.13. An improperly closed TCP connection causes an infinite loop in libvncclient/sockets.c. |
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop') |
CVE-2020-14398 | 2024-11-21 14:03 | 2020-06-18 | Show | GitHub Exploit DB Packet Storm |
| 211713 | 7.5 |
HIGH
Network |
libvnc_project canonical debian siemens opensuse |
libvncserver ubuntu_linux debian_linux simatic_itc1500_firmware simatic_itc1500_pro_firmware simatic_itc1900_firmware simatic_itc1900_pro_firmware simatic_itc2200_firmware sim… |
An issue was discovered in LibVNCServer before 0.9.13. libvncserver/rfbregion.c has a NULL pointer dereference. |
CWE-476
NULL Pointer Dereference |
CVE-2020-14397 | 2024-11-21 14:03 | 2020-06-18 | Show | GitHub Exploit DB Packet Storm |
| 211714 | 7.5 |
HIGH
Network |
libvnc_project canonical debian siemens |
libvncserver ubuntu_linux debian_linux simatic_itc1500_firmware simatic_itc1500_pro_firmware simatic_itc1900_firmware simatic_itc1900_pro_firmware simatic_itc2200_firmware sim… |
An issue was discovered in LibVNCServer before 0.9.13. libvncclient/tls_openssl.c has a NULL pointer dereference. |
CWE-476
NULL Pointer Dereference |
CVE-2020-14396 | 2024-11-21 14:03 | 2020-06-18 | Show | GitHub Exploit DB Packet Storm |
| 211715 | 9.8 |
CRITICAL
Network |
irfanview | b3d | IrfanView B3D PlugIns before version 4.56 has a B3d.dll!+1cbf heap-based out-of-bounds write. |
CWE-787
Out-of-bounds Write |
CVE-2020-13880 | 2024-11-21 14:02 | 2024-01-5 | Show | GitHub Exploit DB Packet Storm |
| 211716 | 9.8 |
CRITICAL
Network |
irfanview | b3d | IrfanView B3D PlugIns before version 4.56 has a B3d.dll!+214f heap-based out-of-bounds write. |
CWE-787
Out-of-bounds Write |
CVE-2020-13879 | 2024-11-21 14:02 | 2024-01-5 | Show | GitHub Exploit DB Packet Storm |
| 211717 | 9.8 |
CRITICAL
Network |
irfanview | b3d | IrfanView B3D PlugIns before version 4.56 has a B3d.dll!+27ef heap-based out-of-bounds write. |
CWE-787
Out-of-bounds Write |
CVE-2020-13878 | 2024-11-21 14:02 | 2024-01-5 | Show | GitHub Exploit DB Packet Storm |
| 211718 | 7.5 |
HIGH
Network |
mi | xiaomi_router_firmware | When Xiaomi router firmware is updated in 2020, there is an unauthenticated API that can reveal WIFI password vulnerability. This vulnerability is caused by the lack of access control policies on som… |
CWE-306
Missing Authentication for Critical Function |
CVE-2020-14140 | 2024-11-21 14:02 | 2023-03-30 | Show | GitHub Exploit DB Packet Storm |
| 211719 | 9.8 |
CRITICAL
Network |
mi | xiaomi | The Xiaomi Security Center expresses heartfelt thanks to ADLab of VenusTech ! At the same time, we also welcome more outstanding and professional security experts and security teams to join the Mi Se… |
NVD-CWE-noinfo
|
CVE-2020-14131 | 2024-11-21 14:02 | 2022-10-12 | Show | GitHub Exploit DB Packet Storm |
| 211720 | 9.8 |
CRITICAL
Network |
mi | xiaomi | A logic vulnerability exists in a Xiaomi product. The vulnerability is caused by an identity verification failure, which can be exploited by an attacker who can obtain a brief elevation of privilege. |
NVD-CWE-noinfo
|
CVE-2020-14129 | 2024-11-21 14:02 | 2022-10-12 | Show | GitHub Exploit DB Packet Storm |