Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 24, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
231761 7.5 危険 phpcc - phpCC の nickpage.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-0985 2012-12-20 18:19 2007-02-16 Show GitHub Exploit DB Packet Storm
231762 4.3 警告 taskfreak - TaskFreak! の error.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-0982 2012-12-20 18:19 2007-02-16 Show GitHub Exploit DB Packet Storm
231763 7.5 危険 webtester - WebTester における SQL インジェクションの脆弱性 - CVE-2007-0970 2012-12-20 18:19 2007-02-15 Show GitHub Exploit DB Packet Storm
231764 6.8 警告 webtester - WebTester におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-0969 2012-12-20 18:19 2007-02-15 Show GitHub Exploit DB Packet Storm
231765 6.8 警告 scriptsez.net - Scriptsez.net Virtual Calendar におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-0952 2012-12-20 18:19 2007-02-14 Show GitHub Exploit DB Packet Storm
231766 5 警告 virtual calendar - Virtual Calendar におけるエンコードされたパスワードをダウンロードされる脆弱性 - CVE-2007-0928 2012-12-20 18:19 2007-02-14 Show GitHub Exploit DB Packet Storm
231767 7.5 危険 BitTorrent, Inc. - uTorrent におけるヒープベースのバッファオーバーフローの脆弱性 - CVE-2007-0927 2012-12-20 18:19 2007-02-14 Show GitHub Exploit DB Packet Storm
231768 7.5 危険 till gerken - Till Gerken phpPolls における認証を回避される脆弱性 - CVE-2007-0924 2012-12-20 18:19 2007-02-14 Show GitHub Exploit DB Packet Storm
231769 7.8 危険 radical technologies - Portal Search の buscador/buscador.htm における重要な情報を取得される脆弱性 - CVE-2007-0923 2012-12-20 18:19 2007-02-14 Show GitHub Exploit DB Packet Storm
231770 4.3 警告 radical technologies - Portal Search の buscador/buscador.htm におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-0922 2012-12-20 18:19 2007-02-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 24, 2026, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
294021 - lincolnloop
zen-cart
authorize.net_echeck_module
zen_cart
The Authorize.Net eCheck module in Zen Cart does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which al… CWE-20
 Improper Input Validation 
CVE-2012-5807 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm
294022 - paypal
zen-cart
payments_pro
zen_cart
The PayPal Payments Pro module in Zen Cart does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which all… CWE-20
 Improper Input Validation 
CVE-2012-5806 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm
294023 - paypal
zen-cart
instant_payment_notification
zen_cart
The PayPal IPN functionality in Zen Cart does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allow… CWE-20
 Improper Input Validation 
CVE-2012-5805 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm
294024 - ubercart
cybersource_module_project
ubercart
cybersource
The CyberSource module in Ubercart does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-… CWE-20
 Improper Input Validation 
CVE-2012-5804 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm
294025 - irata
ubercart
authorize.net_module
ubercart
The Authorize.Net module in Ubercart does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows ma… CWE-20
 Improper Input Validation 
CVE-2012-5803 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm
294026 - ubercart
paypal
ubercart
paypal
The PayPal module in Ubercart does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-th… CWE-20
 Improper Input Validation 
CVE-2012-5802 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm
294027 - prestashop prestashop
ebay
The PayPal module in PrestaShop does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-… CWE-20
 Improper Input Validation 
CVE-2012-5801 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm
294028 - prestashop prestashop
ebay_module
The eBay module in PrestaShop does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-th… CWE-20
 Improper Input Validation 
CVE-2012-5800 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm
294029 - prestashop
presto-changeo
prestashop
canadapost
The Canada Post (aka CanadaPost) module in PrestaShop does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate… CWE-20
 Improper Input Validation 
CVE-2012-5799 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm
294030 - paypal
oscommerce
payflow_pro_express_checkout
oscommerce
The PayPal Pro PayFlow EC module in osCommerce does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which… CWE-20
 Improper Input Validation 
CVE-2012-5798 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm