Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 26, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
246271 10 危険 SUSE
centre for speech technology research
- Gentoo Linux などの CSTR Festival のディフォルト設定における任意のコマンドを実行される脆弱性 CWE-16
環境設定
CVE-2007-4074 2012-06-26 15:54 2007-07-30 Show GitHub Exploit DB Packet Storm
246272 9.3 危険 clever components - Clever Internet ActiveX Suite の CLINETSUITEX6.OCX の clInetSuiteX6.clWebDav ActiveX コントロールにおける絶対パストラバーサルの脆弱性 - CVE-2007-4067 2012-06-26 15:54 2007-07-30 Show GitHub Exploit DB Packet Storm
246273 4.3 警告 Drupal - Drupal におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-4064 2012-06-26 15:54 2007-07-26 Show GitHub Exploit DB Packet Storm
246274 4.3 警告 Drupal - Drupal におけるクロスサイトリクエストフォージェリの脆弱性 - CVE-2007-4063 2012-06-26 15:54 2007-07-26 Show GitHub Exploit DB Packet Storm
246275 9 危険 frank yaul - Frank Yaul corehttp の http.c の HttpSprockMake 関数におけるバッファオーバーフローの脆弱性 - CVE-2007-4060 2012-06-26 15:54 2007-07-30 Show GitHub Exploit DB Packet Storm
246276 4.3 警告 DELL EMC (旧 EMC Corporation) - EMC VMware の vielib.dll の特定の ActiveX コントロール における絶対パストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-4058 2012-06-26 15:54 2007-07-30 Show GitHub Exploit DB Packet Storm
246277 7.5 危険 adult directory - Prozilla Adult Directory の Directory.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-4056 2012-06-26 15:54 2007-07-30 Show GitHub Exploit DB Packet Storm
246278 7.5 危険 8pixel - SimpleBlog の comments_get.asp における SQL インジェクションの脆弱性 - CVE-2007-4055 2012-06-26 15:54 2007-07-30 Show GitHub Exploit DB Packet Storm
246279 10 危険 adempiere - ADempiere Bazaar の WebUI におけるシステムレベルのウインドウにアクセスされる脆弱性 - CVE-2007-4050 2012-06-26 15:54 2007-07-30 Show GitHub Exploit DB Packet Storm
246280 6.4 警告 geoblog - geoBlog における任意のブログを削除される脆弱性 - CVE-2007-4047 2012-06-26 15:54 2007-07-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
219151 6.8 MEDIUM
Physics
lenovo 20f1_firmware
20f2_firmware
20jq_firmware
20jr_firmware
20g9_firmware
20gb_firmware
20g8_firmware
20ga_firmware
20ht_firmware
20hv_firmware
20hs_firmware
20hu_firmwar…
A vulnerability was reported in various BIOS versions of older ThinkPad systems that could allow a user with administrative privileges or physical access the ability to update the Embedded Controller… NVD-CWE-noinfo
CVE-2019-6171 2024-11-21 13:46 2019-08-20 Show GitHub Exploit DB Packet Storm
219152 7.8 HIGH
Local
lenovo yoga_700-11isk_firmware
yoga_700-14isk_firmware
A DLL search path vulnerability was reported in PaperDisplay Hotkey Service version 1.2.0.8 that could allow privilege escalation. Lenovo has ended support for PaperDisplay Hotkey software as the Nig… CWE-426
 Untrusted Search Path
CVE-2019-6165 2024-11-21 13:46 2019-08-20 Show GitHub Exploit DB Packet Storm
219153 6.1 MEDIUM
Network
lenovo bladecenter_hs22_firmware
bladecenter_hs22v_firmware
bladecenter_hx5_firmware
system_x_idataplex_dx360_m2_firmware
system_x_idataplex_dx360_m3_firmware
system_x3400_m3_firmware
syst…
A stored cross-site scripting (XSS) vulnerability exists in various firmware versions of the legacy IBM System x IMM (IMM v1) embedded Baseboard Management Controller (BMC). This vulnerability could … CWE-79
Cross-site Scripting
CVE-2019-6159 2024-11-21 13:46 2019-08-20 Show GitHub Exploit DB Packet Storm
219154 7.5 HIGH
Network
lenovo px12-350r_firmware
ix12-300r_firmware
home_media_network_hard_drive_firmware
storcenter_ix2-200_firmware
storcenter_ix4-200d_firmware
storcenter_ix4-200rl_firmware
A vulnerability in various versions of Iomega and LenovoEMC NAS products could allow an unauthenticated user to access files on NAS shares via the API. NVD-CWE-noinfo
CVE-2019-6160 2024-11-21 13:46 2019-07-17 Show GitHub Exploit DB Packet Storm
219155 4.8 MEDIUM
Network
f5 big-ip_advanced_firewall_manager
big-ip_policy_enforcement_manager
On BIG-IP (AFM, PEM) 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.0.0-13.1.1.4, 12.1.0-12.1.4, 11.6.1-11.6.3.4, and 11.5.1-11.5.8, an undisclosed TMUI pages for AFM and PEM Subscriber management are vulnerab… CWE-79
Cross-site Scripting
CVE-2019-6639 2024-11-21 13:46 2019-07-4 Show GitHub Exploit DB Packet Storm
219156 8.4 HIGH
Network
f5 big-ip_advanced_firewall_manager
big-ip_application_security_manager
On BIG-IP (AFM, ASM) 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.0.0-13.1.1.4, 12.1.0-12.1.4, and 11.5.1-11.6.4, a stored cross-site scripting vulnerability in AFM feed list. In the worst case, an attacker … CWE-352
CWE-79
 Origin Validation Error
Cross-site Scripting
CVE-2019-6636 2024-11-21 13:46 2019-07-4 Show GitHub Exploit DB Packet Storm
219157 6.5 MEDIUM
Network
f5 big-ip_local_traffic_manager
big-ip_application_acceleration_manager
big-ip_advanced_firewall_manager
big-ip_application_security_manager
big-ip_domain_name_system
big-ip_edge_gateway<…
On BIG-IP 12.1.0-12.1.4.1, undisclosed requests can cause iControl REST processes to crash. The attack can only come from an authenticated user; all roles are capable of performing the attack. Unauth… NVD-CWE-noinfo
CVE-2019-6641 2024-11-21 13:46 2019-07-4 Show GitHub Exploit DB Packet Storm
219158 5.3 MEDIUM
Network
f5 big-ip_local_traffic_manager
big-ip_application_acceleration_manager
big-ip_advanced_firewall_manager
big-ip_analytics
big-ip_access_policy_manager
big-ip_application_security_manager<…
On BIG-IP 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.0.0-13.1.1.4, 12.1.0-12.1.4, 11.6.1-11.6.3.4, and 11.5.1-11.5.8, SNMP exposes sensitive configuration objects over insecure transmission channels. This … CWE-319
Cleartext Transmission of Sensitive Information
CVE-2019-6640 2024-11-21 13:46 2019-07-4 Show GitHub Exploit DB Packet Storm
219159 6.5 MEDIUM
Network
f5 big-ip_local_traffic_manager
big-ip_application_acceleration_manager
big-ip_advanced_firewall_manager
big-ip_analytics
big-ip_access_policy_manager
big-ip_application_security_manager<…
On BIG-IP 14.1.0-14.1.0.5 and 14.0.0-14.0.0.4, Malformed http requests made to an undisclosed iControl REST endpoint can lead to infinite loop of the restjavad process. CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2019-6638 2024-11-21 13:46 2019-07-4 Show GitHub Exploit DB Packet Storm
219160 6.5 MEDIUM
Network
f5 big-ip_application_security_manager On BIG-IP (ASM) 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.0.0-13.1.1.4, and 12.1.0-12.1.4, Application logic abuse of ASM REST endpoints can lead to instability of BIG-IP system. Exploitation of this issu… NVD-CWE-noinfo
CVE-2019-6637 2024-11-21 13:46 2019-07-4 Show GitHub Exploit DB Packet Storm