Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
231141 5 警告 SAP - SAP RFC Library の RFC_SET_REG_SERVER_PROPERTY 関数におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-1918 2012-12-20 18:19 2007-04-10 Show GitHub Exploit DB Packet Storm
231142 10 危険 SAP - SAP RFC Library の SYSTEM_CREATE_INSTANCE 関数におけるバッファオーバーフローの脆弱性 - CVE-2007-1917 2012-12-20 18:19 2007-04-10 Show GitHub Exploit DB Packet Storm
231143 10 危険 SAP - SAP RFC Library の RFC_START_GUI 関数におけるバッファオーバーフローの脆弱性 - CVE-2007-1916 2012-12-20 18:19 2007-04-10 Show GitHub Exploit DB Packet Storm
231144 7.5 危険 SAP - SAP RFC Library の RFC_START_PROGRAM 関数におけるバッファオーバーフローの脆弱性 - CVE-2007-1915 2012-12-20 18:19 2007-04-10 Show GitHub Exploit DB Packet Storm
231145 7.8 危険 SAP - SAP RFC Library の RFC_START_PROGRAM 関数における重要な情報を取得される脆弱性 - CVE-2007-1914 2012-12-20 18:19 2007-04-10 Show GitHub Exploit DB Packet Storm
231146 5 警告 SAP - SAP RFC Library の TRUSTED_SYSTEM_SECURITY 関数におけるシステムおよびドメイン上のユーザーとグループの存在を確認される脆弱性 - CVE-2007-1913 2012-12-20 18:19 2007-04-10 Show GitHub Exploit DB Packet Storm
231147 7.5 危険 ryan haudenschilt - PHP の Ryan Haudenschilt Battle.net Clan Script における SQL インジェクションの脆弱性 - CVE-2007-1909 2012-12-20 18:19 2007-04-10 Show GitHub Exploit DB Packet Storm
231148 4.3 警告 pineapple technologies - Pineapple Technologies QuizShock の auth.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-1905 2012-12-20 18:19 2007-04-10 Show GitHub Exploit DB Packet Storm
231149 2.6 注意 sonicbb - SonicBB の search.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-1903 2012-12-20 18:19 2007-05-14 Show GitHub Exploit DB Packet Storm
231150 6.8 警告 sonicbb - SonicBB における SQL インジェクションの脆弱性 - CVE-2007-1902 2012-12-20 18:19 2007-05-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293821 - moodle moodle lib/formslib.php in Moodle 2.2.x before 2.2.6 and 2.3.x before 2.3.3 allows remote authenticated users to bypass intended access restrictions via a modified value of a frozen form field. CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-5472 2024-11-21 10:44 2012-11-21 Show GitHub Exploit DB Packet Storm
293822 - moodle moodle The Dropbox Repository File Picker in Moodle 2.1.x before 2.1.9, 2.2.x before 2.2.6, and 2.3.x before 2.3.3 allows remote authenticated users to access the Dropbox of a different user by leveraging a… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-5471 2024-11-21 10:44 2012-11-21 Show GitHub Exploit DB Packet Storm
293823 - firebirdsql firebird TraceManager in Firebird 2.5.0 and 2.5.1, when trace is enabled, allows remote authenticated users to cause a denial of service (NULL pointer dereference and crash) by preparing an empty dynamic SQL … CWE-399
 Resource Management Errors
CVE-2012-5529 2024-11-21 10:44 2012-11-20 Show GitHub Exploit DB Packet Storm
293824 - apple cups CUPS 1.4.4, when running in certain Linux distributions such as Debian GNU/Linux, stores the web interface administrator key in /var/run/cups/certs/0 using certain permissions, which allows local use… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-5519 2024-11-21 10:44 2012-11-20 Show GitHub Exploit DB Packet Storm
293825 - asial monaca_debugger The Asial Monaca Debugger application before 1.4.2 for Android allows remote attackers to obtain sensitive (1) account or (2) session ID information in a system log file via a crafted application. CWE-200
Information Exposure
CVE-2012-5172 2024-11-21 10:44 2012-11-17 Show GitHub Exploit DB Packet Storm
293826 - mantisbt mantisbt core/email_api.php in MantisBT before 1.2.12 does not properly manage the sending of e-mail notifications about restricted bugs, which might allow remote authenticated users to obtain sensitive infor… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-5523 2024-11-21 10:44 2012-11-16 Show GitHub Exploit DB Packet Storm
293827 - mantisbt mantisbt MantisBT before 1.2.12 does not use an expected default value during decisions about whether a user may modify the status of a bug, which allows remote authenticated users to bypass intended access r… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-5522 2024-11-21 10:44 2012-11-16 Show GitHub Exploit DB Packet Storm
293828 - vmware player
workstation
Untrusted search path vulnerability in VMware Workstation 8.x before 8.0.5 and VMware Player 4.x before 4.0.5 on Windows allows host OS users to gain host OS privileges via a Trojan horse DLL in a "s… NVD-CWE-Other
CVE-2012-5459 2024-11-21 10:44 2012-11-14 Show GitHub Exploit DB Packet Storm
293829 - vmware player
workstation
VMware Workstation 8.x before 8.0.5 and VMware Player 4.x before 4.0.5 on Windows use weak permissions for unspecified process threads, which allows host OS users to gain host OS privileges via a cra… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-5458 2024-11-21 10:44 2012-11-14 Show GitHub Exploit DB Packet Storm
293830 - adobe flash_player
flash_player_for_android
adobe_air
adobe_air_sdk
Buffer overflow in Adobe Flash Player before 10.3.183.29 and 11.x before 11.4.402.287 on Windows and Mac OS X, before 10.3.183.29 and 11.x before 11.2.202.243 on Linux, before 11.1.111.19 on Android … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-5287 2024-11-21 10:44 2012-11-13 Show GitHub Exploit DB Packet Storm