Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
231791 4.3 警告 PHPNUKE - PHP-Nuke の modules.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-1519 2012-12-20 18:19 2007-03-20 Show GitHub Exploit DB Packet Storm
231792 7.5 危険 woltlab - wBB の usergroups.php における SQL インジェクションの脆弱性 - CVE-2007-1518 2012-12-20 18:19 2007-03-20 Show GitHub Exploit DB Packet Storm
231793 6.8 警告 viperweb - ViperWeb Portal の index.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-1514 2012-12-20 18:19 2007-03-20 Show GitHub Exploit DB Packet Storm
231794 7.5 危険 rhapsody irc - Rhapsody IRC の comm.c におけるフォーマットストリングの脆弱性 - CVE-2007-1503 2012-12-20 18:19 2007-03-19 Show GitHub Exploit DB Packet Storm
231795 6.8 警告 rhapsody irc - Rhapsody IRC におけるバッファオーバーフローの脆弱性 - CVE-2007-1502 2012-12-20 18:19 2007-03-19 Show GitHub Exploit DB Packet Storm
231796 4.9 警告 シマンテック - Symantec Norton Personal Firewall などの \Device\SymEvent ドライバにおけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-1495 2012-12-20 18:19 2007-03-16 Show GitHub Exploit DB Packet Storm
231797 6.8 警告 web-app.org - web-app.org WebAPP における管理アクセス権限を取得される脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2007-1489 2012-12-20 18:19 2007-03-16 Show GitHub Exploit DB Packet Storm
231798 7.5 危険 wbblog - WBBlog の index.php における SQL インジェクションの脆弱性 - CVE-2007-1481 2012-12-20 18:19 2007-03-16 Show GitHub Exploit DB Packet Storm
231799 1.9 注意 シマンテック - Symantec Norton Personal Firewall などの SYMTDI.SYS におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2007-1476 2012-12-20 18:19 2007-03-16 Show GitHub Exploit DB Packet Storm
231800 6.8 警告 t-systems solutions for research gmbh - Groupit の groupit/base/groupit.start.inc におけるリモートファイルインクルージョン攻撃を実行される脆弱性 CWE-94
コード・インジェクション
CVE-2007-1472 2012-12-20 18:19 2007-03-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211651 5.3 MEDIUM
Network
openvpn openvpn_access_server OpenVPN Access Server 2.8.7 and earlier versions allows a remote attackers to bypass authentication and access control channel data on servers configured with deferred authentication, which can be us… CWE-287
Improper Authentication
CVE-2020-15077 2024-11-21 14:04 2021-06-4 Show GitHub Exploit DB Packet Storm
211652 7.8 HIGH
Local
openvpn private_tunnel Private Tunnel installer for macOS version 3.0.1 and older versions may corrupt system critical files it should not have access via symlinks in /tmp. CWE-59
Link Following
CVE-2020-15076 2024-11-21 14:04 2021-05-27 Show GitHub Exploit DB Packet Storm
211653 9.8 CRITICAL
Network
ampache ampache Ampache before version 4.2.2 allows unauthenticated users to perform SQL injection. Refer to the referenced GitHub Security Advisory for details and a workaround. This is fixed in version 4.2.2 and t… - CVE-2020-15153 2024-11-21 14:04 2021-05-1 Show GitHub Exploit DB Packet Storm
211654 7.5 HIGH
Network
openvpn
fedoraproject
canonical
debian
openvpn
fedora
ubuntu_linux
debian_linux
OpenVPN 2.5.1 and earlier versions allows a remote attackers to bypass authentication and access control channel data on servers configured with deferred authentication, which can be used to potentia… CWE-306
Missing Authentication for Critical Function
CVE-2020-15078 2024-11-21 14:04 2021-04-26 Show GitHub Exploit DB Packet Storm
211655 7.1 HIGH
Local
openvpn connect OpenVPN Connect installer for macOS version 3.2.6 and older may corrupt system critical files it should not have access via symlinks in /tmp. CWE-59
Link Following
CVE-2020-15075 2024-11-21 14:04 2021-03-30 Show GitHub Exploit DB Packet Storm
211656 6.5 MEDIUM
Network
bloomreach experience_manager An issue was discovered in Bloomreach Experience Manager (brXM) 4.1.0 through 14.2.2. It allows CSRF if the attacker uses GET where POST was intended. CWE-352
 Origin Validation Error
CVE-2020-14989 2024-11-21 14:04 2021-03-12 Show GitHub Exploit DB Packet Storm
211657 5.4 MEDIUM
Network
bloomreach experience_manager An issue was discovered in Bloomreach Experience Manager (brXM) 4.1.0 through 14.2.2. It allows XSS in the login page via the loginmessage parameter, the text editor via the src attribute of HTML ele… CWE-79
Cross-site Scripting
CVE-2020-14988 2024-11-21 14:04 2021-03-12 Show GitHub Exploit DB Packet Storm
211658 7.2 HIGH
Network
bloomreach experience_manager An issue was discovered in Bloomreach Experience Manager (brXM) 4.1.0 through 14.2.2. It allows remote attackers to execute arbitrary code because there is a mishandling of the capability for adminis… CWE-74
CWE-862
Injection
 Missing Authorization
CVE-2020-14987 2024-11-21 14:04 2021-03-12 Show GitHub Exploit DB Packet Storm
211659 9.1 CRITICAL
Network
loklak_project loklak loklak is an open-source server application which is able to collect messages from various sources, including twitter. The server contains a search index and a peer-to-peer index sharing interface. A… - CVE-2020-15097 2024-11-21 14:04 2021-02-3 Show GitHub Exploit DB Packet Storm
211660 9.8 CRITICAL
Network
oracle utilities_framework
coherence
Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core Components). Supported versions that are affected are 3.7.1.0, 12.1.3.0.0, 12.2.1.3.0, 12.2.1.4.0 and 14.1.1… NVD-CWE-noinfo
CVE-2020-14756 2024-11-21 14:04 2021-01-21 Show GitHub Exploit DB Packet Storm