Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
231531 9.3 危険 smartcode - SmartCode VNC Manager の VNC Viewer ActiveX コントロールにおけるヒープベースのバッファオーバーフローの脆弱性 - CVE-2007-2526 2012-12-20 18:19 2007-05-8 Show GitHub Exploit DB Packet Storm
231532 10 危険 トレンドマイクロ - Trend Micro ServerProtect におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-2508 2012-12-20 18:19 2007-04-3 Show GitHub Exploit DB Packet Storm
231533 7.8 危険 treble designs - Treble Designs 1024 CMS の includes/download.php におけるディレクトリトラバーサルの脆弱性 - CVE-2007-2507 2012-12-20 18:19 2007-05-3 Show GitHub Exploit DB Packet Storm
231534 7.8 危険 Progress Software Corporation - Progress Software Progress の OpenEdge におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-2506 2012-12-20 18:19 2007-05-3 Show GitHub Exploit DB Packet Storm
231535 7.8 危険 リアルネットワークス - RealNetworks RealPlayer におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-2497 2012-12-20 18:19 2007-05-3 Show GitHub Exploit DB Packet Storm
231536 7.5 危険 postnuke software foundation - PostNuke 用の v4bJournal モジュールにおける SQL インジェクションの脆弱性 - CVE-2007-2492 2012-12-20 18:19 2007-05-3 Show GitHub Exploit DB Packet Storm
231537 7.2 危険 VMware - EMC VMware Workstation などの PIIX4 電源管理サブシステムにおける任意のメモリ領域に書き込まれる脆弱性 - CVE-2007-2491 2012-12-20 18:19 2007-05-3 Show GitHub Exploit DB Packet Storm
231538 7.5 危険 ruben boelinger - WordPress 用の myflash プラグインにおける PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2485 2012-12-20 18:19 2007-05-3 Show GitHub Exploit DB Packet Storm
231539 6.8 警告 ruben boelinger - WordPress 用の wp-Table プラグインにおける PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2484 2012-12-20 18:19 2007-05-3 Show GitHub Exploit DB Packet Storm
231540 6.8 警告 ruben boelinger - WordPress 用の wp-Table プラグインにおけるディレクトリトラバーサルの脆弱性 - CVE-2007-2483 2012-12-20 18:19 2007-05-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
297801 - mediawiki mediawiki MediaWiki 1.17.x before 1.17.3 and 1.18.x before 1.18.2 uses weak random numbers for password reset tokens, which makes it easier for remote attackers to change the passwords of arbitrary users. CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-1581 2024-11-21 10:37 2012-09-10 Show GitHub Exploit DB Packet Storm
297802 - mediawiki mediawiki Cross-site request forgery (CSRF) vulnerability in Special:Upload in MediaWiki 1.17.x before 1.17.3 and 1.18.x before 1.18.2 allows remote attackers to hijack the authentication of unspecified victim… CWE-352
 Origin Validation Error
CVE-2012-1580 2024-11-21 10:37 2012-09-10 Show GitHub Exploit DB Packet Storm
297803 - mediawiki mediawiki The resource loader in MediaWiki 1.17.x before 1.17.3 and 1.18.x before 1.18.2 includes private data such as CSRF tokens in a JavaScript file, which allows remote attackers to obtain sensitive inform… CWE-200
Information Exposure
CVE-2012-1579 2024-11-21 10:37 2012-09-10 Show GitHub Exploit DB Packet Storm
297804 - mediawiki mediawiki Multiple cross-site request forgery (CSRF) vulnerabilities in MediaWiki 1.17.x before 1.17.3 and 1.18.x before 1.18.2 allow remote attackers to hijack the authentication of users with the block permi… CWE-352
 Origin Validation Error
CVE-2012-1578 2024-11-21 10:37 2012-09-10 Show GitHub Exploit DB Packet Storm
297805 - vmware workstation
player
fusion
view
esx
Untrusted search path vulnerability in VMware Tools in VMware Workstation before 8.0.4, VMware Player before 4.0.4, VMware Fusion before 4.1.2, VMware View before 5.1, and VMware ESX 4.1 before U3 an… NVD-CWE-Other
CVE-2012-1666 2024-11-21 10:37 2012-09-8 Show GitHub Exploit DB Packet Storm
297806 - joomla joomla\! Cross-site scripting (XSS) vulnerability in the update manager in Joomla! 2.5.x before 2.5.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2012-1612 2024-11-21 10:37 2012-09-7 Show GitHub Exploit DB Packet Storm
297807 - joomla joomla\! Joomla! 2.5.x before 2.5.4 does not properly check permissions, which allows attackers to obtain sensitive "administrative back end" information via unknown attack vectors. NOTE: this might be a dup… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-1611 2024-11-21 10:37 2012-09-7 Show GitHub Exploit DB Packet Storm
297808 - pkp open_journal_systems Multiple cross-site scripting (XSS) vulnerabilities in Open Journal Systems before 2.3.7 allow remote attackers and remote authenticated users to inject arbitrary web script or HTML via the (1) edito… CWE-79
Cross-site Scripting
CVE-2012-1469 2024-11-21 10:37 2012-09-7 Show GitHub Exploit DB Packet Storm
297809 - pkp open_journal_systems Incomplete blacklist vulnerability in Open Journal Systems before 2.3.7 allows remote authenticated users with the Author Role permission to execute arbitrary code by uploading a file with an executa… NVD-CWE-Other
CVE-2012-1468 2024-11-21 10:37 2012-09-7 Show GitHub Exploit DB Packet Storm
297810 - pkp open_journal_systems Multiple directory traversal vulnerabilities in the iBrowser plugin library, as used in Open Journal Systems before 2.3.7, allow remote authenticated users to (1) delete or (2) rename arbitrary files… CWE-22
Path Traversal
CVE-2012-1467 2024-11-21 10:37 2012-09-7 Show GitHub Exploit DB Packet Storm