Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
231691 7.8 危険 VMware - VMware Workstation におけるゲスト OS がサービス運用妨害 (DoS) 状態となる脆弱性 - CVE-2007-1877 2012-12-20 18:19 2007-05-2 Show GitHub Exploit DB Packet Storm
231692 7.2 危険 VMware - VMware Workstation における "仮想マシンに登録されたコンテキストが破損" する脆弱性 - CVE-2007-1876 2012-12-20 18:19 2007-05-2 Show GitHub Exploit DB Packet Storm
231693 4.3 警告 toenda software development - toendaCMS におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-1872 2012-12-20 18:19 2007-04-13 Show GitHub Exploit DB Packet Storm
231694 7.5 危険 webasyst llc - Shop-Script FREE の smarty/smarty_class.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-1855 2012-12-20 18:19 2007-04-3 Show GitHub Exploit DB Packet Storm
231695 7.5 危険 really simple php and ajax - RSPA におけるディレクトリトラバーサルの脆弱性 - CVE-2007-1851 2012-12-20 18:19 2007-04-3 Show GitHub Exploit DB Packet Storm
231696 7.5 危険 XOOPS - XOOPS 用の Repository モジュールにおける SQL インジェクションの脆弱性 - CVE-2007-1847 2012-12-20 18:19 2007-04-3 Show GitHub Exploit DB Packet Storm
231697 7.5 危険 XOOPS - Xoops 用の MyAds モジュールにおける SQL インジェクションの脆弱性 - CVE-2007-1846 2012-12-20 18:19 2007-04-3 Show GitHub Exploit DB Packet Storm
231698 7.5 危険 XOOPS - Xoops 用の Friendfinder モジュールにおける SQL インジェクションの脆弱性 - CVE-2007-1838 2012-12-20 18:19 2007-04-2 Show GitHub Exploit DB Packet Storm
231699 5 警告 web-app.org - web-app.org WebAPP における特定のファイルをアップロードされる脆弱性 - CVE-2007-1832 2012-12-20 18:19 2007-04-2 Show GitHub Exploit DB Packet Storm
231700 6 警告 web-app.org - web-app.org WebAPP におけるファイルを開かれる脆弱性 - CVE-2007-1831 2012-12-20 18:19 2007-04-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211981 7.8 HIGH
Local
iobit iobit_unlocker The driver in IOBit Unlocker 1.1.2 allows a low-privileged user to delete, move, or copy arbitrary files via IOCTL code 0x222124. NVD-CWE-noinfo
CVE-2020-14975 2024-11-21 14:04 2020-06-24 Show GitHub Exploit DB Packet Storm
211982 7.1 HIGH
Local
iobit iobit_unlocker The driver in IOBit Unlocker 1.1.2 allows a low-privileged user to unlock a file and kill processes (even ones running as SYSTEM) that hold a handle, via IOCTL code 0x222124. NVD-CWE-noinfo
CVE-2020-14974 2024-11-21 14:04 2020-06-24 Show GitHub Exploit DB Packet Storm
211983 7.8 HIGH
Local
pi-hole pi-hole Pi-hole through 5.0 allows code injection in piholedhcp (the Static DHCP Leases section) by modifying Teleporter backup files and then restoring them. This occurs in settings.php. To exploit this, an… CWE-862
 Missing Authorization
CVE-2020-14971 2024-11-21 14:04 2020-06-23 Show GitHub Exploit DB Packet Storm
211984 4.8 MEDIUM
Network
tp-link tl-wr740n_firmware
tl-wr740nd_firmware
On TP-Link TL-WR740N v4 and TL-WR740ND v4 devices, an attacker with access to the admin panel can inject HTML code and change the HTML context of the target pages and stations in the access-control s… CWE-79
Cross-site Scripting
CVE-2020-14965 2024-11-21 14:04 2020-06-23 Show GitHub Exploit DB Packet Storm
211985 9.8 CRITICAL
Network
draytek vigor300b_firmware
vigor2960_firmware
vigor3900_firmware
A stack-based buffer overflow on DrayTek Vigor2960, Vigor3900, and Vigor300B devices before 1.5.1.1 allows remote attackers to execute arbitrary code via the formuserphonenumber parameter in an authu… CWE-787
 Out-of-bounds Write
CVE-2020-14993 2024-11-21 14:04 2020-06-23 Show GitHub Exploit DB Packet Storm
211986 7.5 HIGH
Network
herac tuxguitar An issue was discovered in io/gpx/GPXDocumentReader.java in TuxGuitar 1.5.4. It uses misconfigured XML parsers, leading to XXE while loading GP6 (.gpx) and GP7 (.gp) tablature files. CWE-611
XXE
CVE-2020-14940 2024-11-21 14:04 2020-06-23 Show GitHub Exploit DB Packet Storm
211987 7.8 HIGH
Local
freedroid freedroidrpg An issue was discovered in savestruct_internal.c in FreedroidRPG 1.0rc2. Saved game files are composed of Lua scripts that recover a game's state. A file can be modified to put any Lua code inside, l… CWE-20
 Improper Input Validation 
CVE-2020-14939 2024-11-21 14:04 2020-06-23 Show GitHub Exploit DB Packet Storm
211988 9.8 CRITICAL
Network
freedroid freedroidrpg An issue was discovered in map.c in FreedroidRPG 1.0rc2. It assumes lengths of data sets read from saved game files. It copies data from a file into a fixed-size heap-allocated buffer without size ve… CWE-787
 Out-of-bounds Write
CVE-2020-14938 2024-11-21 14:04 2020-06-23 Show GitHub Exploit DB Packet Storm
211989 4.3 MEDIUM
Network
globalradar bsa_radar downloadFile.ashx in the Administrator section of the Surveillance module in Global RADAR BSA Radar 1.6.7234.24750 and earlier allows users to download transaction files. When downloading the files, … CWE-22
Path Traversal
CVE-2020-14946 2024-11-21 14:04 2020-06-23 Show GitHub Exploit DB Packet Storm
211990 8.8 HIGH
Network
globalradar bsa_radar A privilege escalation vulnerability exists within Global RADAR BSA Radar 1.6.7234.24750 and earlier that allows an authenticated, low-privileged user to escalate their privileges to administrator ri… NVD-CWE-noinfo
CVE-2020-14945 2024-11-21 14:04 2020-06-23 Show GitHub Exploit DB Packet Storm