Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 14, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
248081 10 危険 extremail - eXtremail における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2007-5467 2012-06-26 15:54 2007-10-15 Show GitHub Exploit DB Packet Storm
248082 10 危険 extremail - eXtremail におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-5466 2012-06-26 15:54 2007-10-15 Show GitHub Exploit DB Packet Storm
248083 6.8 警告 alorys-hebergement - KwsPHP の newsletter モジュールの index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-5458 2012-06-26 15:54 2007-10-14 Show GitHub Exploit DB Packet Storm
248084 6.8 警告 com colorlab
Joomla!
- Joomla! の colorlab コンポーネントの admin.color.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-5451 2012-06-26 15:54 2007-10-14 Show GitHub Exploit DB Packet Storm
248085 9.3 危険 アップル - Apple iPod touch および iPhone の Safari におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2007-5450 2012-06-26 15:54 2007-10-14 Show GitHub Exploit DB Packet Storm
248086 6.8 警告 db software laboratory - VImpX.ocx の DB Software Laboratory VImpX ActiveX コントロールにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-5445 2012-06-26 15:54 2007-10-14 Show GitHub Exploit DB Packet Storm
248087 5 警告 CMS Made Simple - CMS Made Simple におけるフルパスを取得される脆弱性 CWE-200
情報漏えい
CVE-2007-5444 2012-06-26 15:54 2007-10-14 Show GitHub Exploit DB Packet Storm
248088 4.3 警告 CMS Made Simple - CMS Made Simple におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-5443 2012-06-26 15:54 2007-10-7 Show GitHub Exploit DB Packet Storm
248089 3.5 注意 CMS Made Simple - CMS Made Simple における不特定のファイルをアップロードされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-5442 2012-06-26 15:54 2007-10-14 Show GitHub Exploit DB Packet Storm
248090 6.5 警告 CMS Made Simple - CMS Made Simple における一部の管理者操作を実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-5441 2012-06-26 15:54 2007-10-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 14, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211241 5.4 MEDIUM
Adjacent
bluetooth
fedoraproject
intel
bluetooth_core_specification
fedora
ax210_firmware
ax201_firmware
ax200_firmware
ac_9560_firmware
ac_9462_firmware
ac_9461_firmware
ac_9260_firmware
ac_8265_firmware
ac_…
Bluetooth legacy BR/EDR PIN code pairing in Bluetooth Core Specification 1.0B through 5.2 may permit an unauthenticated nearby device to spoof the BD_ADDR of the peer device to complete pairing witho… CWE-863
 Incorrect Authorization
CVE-2020-26555 2024-11-21 14:20 2021-05-25 Show GitHub Exploit DB Packet Storm
211242 5.7 MEDIUM
Physics
nordicsemi nrf52840_firmware Nordic Semiconductor nRF52840 devices through 2020-10-19 have improper protection against physical side channels. The flash read-out protection (APPROTECT) can be bypassed by injecting a fault during… CWE-203
 Information Exposure Through Discrepancy
CVE-2020-27211 2024-11-21 14:20 2021-05-21 Show GitHub Exploit DB Packet Storm
211243 7.0 HIGH
Local
st stm32cubel4_firmware STMicroelectronics STM32L4 devices through 2020-10-19 have incorrect access control. The flash read-out protection (RDP) can be degraded from RDP level 2 (no access via debug interface) to level 1 (l… CWE-74
Injection
CVE-2020-27212 2024-11-21 14:20 2021-05-21 Show GitHub Exploit DB Packet Storm
211244 6.8 MEDIUM
Physics
solokeys
nitrokey
solo_firmware
somu_firmware
fido2_firmware
The flash read-out protection (RDP) level is not enforced during the device initialization phase of the SoloKeys Solo 4.0.0 & Somu and the Nitrokey FIDO2 token. This allows an adversary to downgrade … CWE-326
Inadequate Encryption Strength
CVE-2020-27208 2024-11-21 14:20 2021-05-21 Show GitHub Exploit DB Packet Storm
211245 7.5 HIGH
Network
micro-ecc_project micro-ecc The ECDSA operation of the micro-ecc library 1.0 is vulnerable to simple power analysis attacks which allows an adversary to extract the private ECC key. NVD-CWE-noinfo
CVE-2020-27209 2024-11-21 14:20 2021-05-21 Show GitHub Exploit DB Packet Storm
211246 7.5 HIGH
Network
moxa nport_ia5150a_firmware
nport_ia5250a_firmware
nport_ia5450a_firmware
Cleartext transmission of sensitive information via Moxa Service in NPort IA5000A series serial devices. Successfully exploiting the vulnerability could enable attackers to read authentication data, … CWE-319
Cleartext Transmission of Sensitive Information
CVE-2020-27185 2024-11-21 14:20 2021-05-14 Show GitHub Exploit DB Packet Storm
211247 5.9 MEDIUM
Network
moxa nport_ia5150a_firmware
nport_ia5250a_firmware
nport_ia5450a_firmware
The NPort IA5000A Series devices use Telnet as one of the network device management services. Telnet does not support the encryption of client-server communications, making it vulnerable to Man-in-th… CWE-319
Cleartext Transmission of Sensitive Information
CVE-2020-27184 2024-11-21 14:20 2021-05-14 Show GitHub Exploit DB Packet Storm
211248 7.5 HIGH
Network
moxa nport_ia5150a_firmware
nport_ia5250a_firmware
nport_ia5450a_firmware
In multiple versions of NPort IA5000A Series, the result of exporting a device’s configuration contains the passwords of all users on the system and other sensitive data in the original form if “Pre-… NVD-CWE-noinfo
CVE-2020-27150 2024-11-21 14:20 2021-05-14 Show GitHub Exploit DB Packet Storm
211249 6.5 MEDIUM
Network
moxa nport_ia5150a_firmware
nport_ia5250a_firmware
nport_ia5450a_firmware
By exploiting a vulnerability in NPort IA5150A/IA5250A Series before version 1.5, a user with “Read Only” privilege level can send requests via the web console to have the device’s configuration chan… NVD-CWE-noinfo
CVE-2020-27149 2024-11-21 14:20 2021-05-14 Show GitHub Exploit DB Packet Storm
211250 7.5 HIGH
Network
kaspersky password_manager Password generator feature in Kaspersky Password Manager was not completely cryptographically strong and potentially allowed an attacker to predict generated passwords in some cases. An attacker woul… CWE-326
Inadequate Encryption Strength
CVE-2020-27020 2024-11-21 14:20 2021-05-14 Show GitHub Exploit DB Packet Storm