Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
245711 10 危険 e-commerce solutions - E-Commerce Scripts Shopping Cart Script の admin.aspx における SQL インジェクションの脆弱性 - CVE-2007-4121 2012-06-26 15:54 2007-08-1 Show GitHub Exploit DB Packet Storm
245712 7.5 危険 berthanas ziyaretci - Berthanas Ziyaretci Defteri 2.0 の yonetici.asp における SQL インジェクションの脆弱性 - CVE-2007-4119 2012-06-26 15:54 2007-08-1 Show GitHub Exploit DB Packet Storm
245713 3.5 注意 awbs - AWBS における他の専用サーバの設定データを取得される脆弱性 - CVE-2007-4113 2012-06-26 15:54 2007-07-31 Show GitHub Exploit DB Packet Storm
245714 6.8 警告 awbs - AWBS における SQL インジェクションの脆弱性 - CVE-2007-4112 2012-06-26 15:54 2007-07-31 Show GitHub Exploit DB Packet Storm
245715 6.8 警告 codewidgets - Real Estate listing website アプリケーションテンプレートのログインスクリプトにおける SQL インジェクションの脆弱性 - CVE-2007-4111 2012-06-26 15:54 2007-07-31 Show GitHub Exploit DB Packet Storm
245716 7.5 危険 codewidgets - Message Board / Threaded Discussion Forum Application Template の sign_in.aspx における SQL インジェクションの脆弱性 - CVE-2007-4110 2012-06-26 15:54 2007-07-31 Show GitHub Exploit DB Packet Storm
245717 7.5 危険 codewidgets - Online Store Application Template の sign_in.aspx における SQL インジェクションの脆弱性 - CVE-2007-4109 2012-06-26 15:54 2007-07-31 Show GitHub Exploit DB Packet Storm
245718 7.5 危険 codewidgets - Online Event Registration Template の sign_in.aspx における SQL インジェクションの脆弱性 - CVE-2007-4108 2012-06-26 15:54 2007-07-31 Show GitHub Exploit DB Packet Storm
245719 6.8 警告 codewidgets - CodeWidgets Pay Roll - Time Sheet and Punch Card Application における SQL インジェクションの脆弱性 - CVE-2007-4106 2012-06-26 15:54 2007-07-31 Show GitHub Exploit DB Packet Storm
245720 9.3 危険 Baidu, Inc. - Baidu Soba Search Bar の BaiduBar.dll の特定の ActiveX コントロールにおける任意のコードを実行される脆弱性 - CVE-2007-4105 2012-06-26 15:54 2007-07-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
218951 7.5 HIGH
Network
huawei p30_firmware Huawei Share function in P30 9.1.0.193(C00E190R2P1) smartphone has an insufficient input validation vulnerability. Attackers can exploit this vulnerability by sending crafted packets to the affected … CWE-20
 Improper Input Validation 
CVE-2019-5266 2024-11-21 13:44 2019-12-24 Show GitHub Exploit DB Packet Storm
218952 7.5 HIGH
Network
huawei p30_firmware Huawei Share function in P30 9.1.0.193(C00E190R2P1) smartphone has an improper access control vulnerability. The function incorrectly controls certain access messages, attackers can simulate a sender… NVD-CWE-noinfo
CVE-2019-5265 2024-11-21 13:44 2019-12-24 Show GitHub Exploit DB Packet Storm
218953 6.1 MEDIUM
Network
ibm financial_transaction_manager_for_multiplatform IBM Financial Transaction Manager 3.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality … CWE-79
Cross-site Scripting
CVE-2019-4744 2024-11-21 13:44 2019-12-21 Show GitHub Exploit DB Packet Storm
218954 4.3 MEDIUM
Network
ibm financial_transaction_manager_for_multiplatform IBM Financial Transaction Manager 3.0 does not set the secure attribute on authorization tokens or session cookies. Attackers may be able to get the cookie values by sending a http:// link to a user … CWE-319
Cleartext Transmission of Sensitive Information
CVE-2019-4743 2024-11-21 13:44 2019-12-21 Show GitHub Exploit DB Packet Storm
218955 6.1 MEDIUM
Network
ibm financial_transaction_manager_for_multiplatform IBM Financial Transaction Manager 3.0 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit … CWE-1021
 Improper Restriction of Rendered UI Layers or Frames
CVE-2019-4742 2024-11-21 13:44 2019-12-21 Show GitHub Exploit DB Packet Storm
218956 4.3 MEDIUM
Network
ibm financial_transaction_manager_for_multiplatform IBM Financial Transaction Manager 3.0 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website … CWE-352
 Origin Validation Error
CVE-2019-4736 2024-11-21 13:44 2019-12-21 Show GitHub Exploit DB Packet Storm
218957 6.5 MEDIUM
Network
gitlab gitlab An IDOR vulnerability exists in GitLab <v12.1.2, <v12.0.4, and <v11.11.6 that allowed uploading files from project archive to replace other users files potentially allowing an attacker to replace pro… CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2019-5469 2024-11-21 13:44 2019-12-19 Show GitHub Exploit DB Packet Storm
218958 9.1 CRITICAL
Network
wago pfc_200_firmware
pfc_100_firmware
An exploitable denial-of-service vulnerability exists in the iocheckd service "I/O-Check" functionality of WAGO PFC 200 Firmware versions 03.01.07(13) and 03.00.39(12), and WAGO PFC100 Firmware versi… CWE-306
Missing Authentication for Critical Function
CVE-2019-5080 2024-11-21 13:44 2019-12-19 Show GitHub Exploit DB Packet Storm
218959 9.8 CRITICAL
Network
wago pfc_200_firmware
pfc_100_firmware
An exploitable heap buffer overflow vulnerability exists in the iocheckd service "I/O-Check" functionality of WAGO PFC200 Firmware versions 03.01.07(13) and 03.00.39(12), and WAGO PFC100 Firmware ver… CWE-787
 Out-of-bounds Write
CVE-2019-5079 2024-11-21 13:44 2019-12-19 Show GitHub Exploit DB Packet Storm
218960 9.1 CRITICAL
Network
wago pfc_200_firmware
pfc_100_firmware
An exploitable denial of service vulnerability exists in the iocheckd service "I/O-Check" functionality of WAGO PFC200 Firmware versions 03.01.07(13) and 03.00.39(12), and WAGO PFC100 Firmware versio… CWE-306
Missing Authentication for Critical Function
CVE-2019-5078 2024-11-21 13:44 2019-12-19 Show GitHub Exploit DB Packet Storm