Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
251181 5 警告 OTRS プロジェクト - OTRS の S/MIME 機能における電子メールメッセージを解読される脆弱性 CWE-20
不適切な入力確認
CVE-2008-7278 2012-03-27 18:42 2011-03-18 Show GitHub Exploit DB Packet Storm
251182 6.5 警告 OTRS プロジェクト - OTRS におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-7277 2012-03-27 18:42 2011-03-18 Show GitHub Exploit DB Packet Storm
251183 4.6 警告 OTRS プロジェクト - OTRS の Kernel/System/Web/Request.pm におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-7276 2012-03-27 18:42 2011-03-18 Show GitHub Exploit DB Packet Storm
251184 4.3 警告 OTRS プロジェクト - OTRS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-7275 2012-03-27 18:42 2011-03-18 Show GitHub Exploit DB Packet Storm
251185 5.8 警告 boka - SiteEngine の api.php におけるオープンリダイレクトの脆弱性 CWE-20
不適切な入力確認
CVE-2008-7269 2012-03-27 18:42 2010-12-1 Show GitHub Exploit DB Packet Storm
251186 4 警告 IBM - IBM TDS におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2007-6743 2012-03-27 18:42 2011-04-10 Show GitHub Exploit DB Packet Storm
251187 6.8 警告 IBM - IBM TDS の get_filter_list 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2007-6742 2012-03-27 18:42 2011-04-10 Show GitHub Exploit DB Packet Storm
251188 4.3 警告 monkeysaudio - Monkey's Audio におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2006-7245 2012-03-27 18:42 2011-05-20 Show GitHub Exploit DB Packet Storm
251189 5 警告 PNG Development Group - libpng の pngwutil.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2006-7244 2012-03-27 18:42 2011-08-31 Show GitHub Exploit DB Packet Storm
251190 5 警告 boka - SiteEngine の phpinfo 関数におけるシステム情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2008-7268 2012-03-27 18:42 2010-12-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
223771 9.8 CRITICAL
Network
br-automation industrial_automation_aprol An issue was discovered in B&R Industrial Automation APROL before R4.2 V7.08. An EnMon PHP script was vulnerable to SQL injection, a different vulnerability than CVE-2019-10006. CWE-89
SQL Injection
CVE-2019-19876 2024-11-21 13:35 2020-11-28 Show GitHub Exploit DB Packet Storm
223772 9.8 CRITICAL
Network
br-automation industrial_automation_aprol An issue was discovered in B&R Industrial Automation APROL before R4.2 V7.08. Arbitrary commands could be injected (using Python scripts) via the AprolCluster script that is invoked via sudo and thus… CWE-77
Command Injection
CVE-2019-19875 2024-11-21 13:35 2020-11-28 Show GitHub Exploit DB Packet Storm
223773 9.8 CRITICAL
Network
br-automation industrial_automation_aprol An issue was discovered in B&R Industrial Automation APROL before R4.2 V7.08. Some web scripts in the web interface allowed injection and execution of arbitrary unintended commands on the web server,… CWE-77
Command Injection
CVE-2019-19874 2024-11-21 13:35 2020-11-28 Show GitHub Exploit DB Packet Storm
223774 7.5 HIGH
Network
br-automation industrial_automation_aprol An issue was discovered in B&R Industrial Automation APROL before R4.2 V7.08. An attacker can get information from the AprolSqlServer DBMS by bypassing authentication, a different vulnerability than … NVD-CWE-noinfo
CVE-2019-19873 2024-11-21 13:35 2020-11-28 Show GitHub Exploit DB Packet Storm
223775 9.8 CRITICAL
Network
br-automation industrial_automation_aprol An issue was discovered in B&R Industrial Automation APROL before R4.2 V7.08. The AprolLoader could be used to inject and execute arbitrary unintended commands via an unspecified attack scenario, a d… CWE-77
Command Injection
CVE-2019-19872 2024-11-21 13:35 2020-11-28 Show GitHub Exploit DB Packet Storm
223776 7.5 HIGH
Network
br-automation industrial_automation_aprol An issue was discovered in B&R Industrial Automation APROL before R4.2 V7.08. PVs could be changed (unencrypted) by using the IosHttp service and the JSON interface. NVD-CWE-noinfo
CVE-2019-19869 2024-11-21 13:35 2020-11-28 Show GitHub Exploit DB Packet Storm
223777 9.1 CRITICAL
Network
bender com465ip_firmware
com465dp_firmware
com465id_firmware
cp700_firmware
cp907_firmware
cp915_firmware
In Bender COMTRAXX, user authorization is validated for most, but not all, routes in the system. A user with knowledge about the routes can read and write configuration data without prior authorizati… CWE-862
 Missing Authorization
CVE-2019-19885 2024-11-21 13:35 2020-10-16 Show GitHub Exploit DB Packet Storm
223778 7.5 HIGH
Network
ise smart_connect_knx_vaillant ise smart connect KNX Vaillant 1.2.839 contain a Denial of Service. CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2019-19643 2024-11-21 13:35 2020-08-15 Show GitHub Exploit DB Packet Storm
223779 7.5 HIGH
Network
jetbrains upsource In JetBrains Upsource before 2020.1, information disclosure is possible because of an incorrect user matching algorithm. NVD-CWE-noinfo
CVE-2019-19704 2024-11-21 13:35 2020-08-9 Show GitHub Exploit DB Packet Storm
223780 6.1 MEDIUM
Network
froala froala_editor Froala Editor before 3.2.3 allows XSS. CWE-79
Cross-site Scripting
CVE-2019-19935 2024-11-21 13:35 2020-07-8 Show GitHub Exploit DB Packet Storm