Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 24, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
252481 7.5 危険 osCommerce - osCommerce における複数のディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2011-4543 2011-12-6 16:33 2011-12-5 Show GitHub Exploit DB Packet Storm
252482 7.5 危険 Zabbix - Zabbix の popup.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2011-4674 2011-12-6 16:27 2011-11-24 Show GitHub Exploit DB Packet Storm
252483 7.5 危険 Automattic Inc. - WordPress 用 Jetpack プラグインにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2011-4673 2011-12-6 16:26 2011-12-2 Show GitHub Exploit DB Packet Storm
252484 7.5 危険 Valid - Valid tiny-erp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2011-4672 2011-12-6 16:25 2011-12-2 Show GitHub Exploit DB Packet Storm
252485 7.5 危険 AdRotate Plugin - WordPress 用 AdRotate プラグインにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2011-4671 2011-12-6 16:24 2011-12-2 Show GitHub Exploit DB Packet Storm
252486 10 危険 Iron Mountain - Iron Mountain Connected Backup の Agent service における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2011-2397 2011-12-6 16:22 2011-12-5 Show GitHub Exploit DB Packet Storm
252487 6.4 警告 Widelands - Widelands の io/filesystem/filesystem.cc におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2011-1932 2011-12-6 16:22 2011-12-5 Show GitHub Exploit DB Packet Storm
252488 4.3 警告 Etomite Project - Etomite におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-4264 2011-12-6 12:01 2011-12-6 Show GitHub Exploit DB Packet Storm
252489 7.5 危険 jonkemp - WordPress 用 WordPress Users プラグインの wp-users.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2011-4669 2011-12-5 16:08 2011-12-2 Show GitHub Exploit DB Packet Storm
252490 7.5 危険 IBM - IBM Tivoli Netcool/Reporter における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2011-4668 2011-12-5 16:07 2011-12-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 24, 2026, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
253861 6.7 MEDIUM
Local
netgear r6400_firmware
r6700_firmware
r6900_firmware
r7000_firmware
r7000p_firmware
r6900p_firmware
r7800_firmware
Certain NETGEAR devices are affected by command injection. This affects R6400 before 1.0.1.24, R6700 before 1.0.1.26, R6900 before 1.0.1.28, R7000 before 1.0.9.10, R7000P before 1.0.1.16, R6900P befo… CWE-74
Injection
CVE-2017-18796 2024-11-21 12:20 2020-04-22 Show GitHub Exploit DB Packet Storm
253862 7.5 HIGH
Network
netgear r6200_firmware
r6250_firmware
r6300_firmware
r6700_firmware
r7000_firmware
r7000p_firmware
r6900p_firmware
r7100lg_firmware
r7900_firmware
r8000_firmware
r8500_firmware<…
Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects R6200v2 before 1.0.3.14, R6250 before 1.0.4.8, R6300v2 before 1.0.4.8, R6700 before 1.1.1.20, R7000 … CWE-20
 Improper Input Validation 
CVE-2017-18799 2024-11-21 12:20 2020-04-22 Show GitHub Exploit DB Packet Storm
253863 6.7 MEDIUM
Local
netgear d6220_firmware
d6100_firmware
Certain NETGEAR devices are affected by command injection. This affects D6220 before 1.0.0.28 and D6100 before 1.0.0.50_0.0.50. CWE-74
Injection
CVE-2017-18795 2024-11-21 12:20 2020-04-22 Show GitHub Exploit DB Packet Storm
253864 8.4 HIGH
Local
netgear r6300_firmware
r6400_firmware
r6700_firmware
r7000_firmware
r7100lg_firmware
r7900_firmware
r8000_firmware
r8500_firmware
d6100_firmware
Certain NETGEAR devices are affected by command injection. This affects R6300v2 before 1.0.4.8_10.0.77, R6400 before 1.0.1.24, R6700 before 1.0.1.26, R7000 before 1.0.9.10, R7100LG before 1.0.0.32, R… CWE-74
Injection
CVE-2017-18794 2024-11-21 12:20 2020-04-22 Show GitHub Exploit DB Packet Storm
253865 6.7 MEDIUM
Local
netgear r7800_firmware NETGEAR R7800 devices before 1.0.2.36 are affected by command injection. CWE-74
Injection
CVE-2017-18793 2024-11-21 12:20 2020-04-22 Show GitHub Exploit DB Packet Storm
253866 8.4 HIGH
Local
netgear d6100_firmware NETGEAR D6100 devices before 1.0.0.50_0.0.50 are affected by command injection. CWE-74
Injection
CVE-2017-18792 2024-11-21 12:20 2020-04-22 Show GitHub Exploit DB Packet Storm
253867 8.8 HIGH
Network
netgear r6050_firmware
jr6150_firmware
pr2000_firmware
r6220_firmware
wndr3700_firmware
jnr1010_firmware
jwnr2010_firmware
wnr1000_firmware
wnr2020_firmware
wnr2050_firmware
wnr…
Certain NETGEAR devices are affected by CSRF. This affects R6050/JR6150 before 1.0.1.7, PR2000 before 1.0.0.17, R6220 before 1.1.0.50, WNDR3700v5 before 1.1.0.48, JNR1010v2 before 1.1.0.40, JWNR2010v… CWE-352
 Origin Validation Error
CVE-2017-18791 2024-11-21 12:20 2020-04-22 Show GitHub Exploit DB Packet Storm
253868 6.2 MEDIUM
Local
netgear r6700_firmware
r7000_firmware
r7100lg_firmware
r7900_firmware
r8000_firmware
r8500_firmware
Certain NETGEAR devices are affected by disclosure of sensitive information. This affects R6700 before 1.0.1.26, R7000 before 1.0.9.10, R7100LG before 1.0.0.32, R7900 before 1.0.1.18, R8000 before 1.… CWE-200
Information Exposure
CVE-2017-18790 2024-11-21 12:20 2020-04-22 Show GitHub Exploit DB Packet Storm
253869 6.7 MEDIUM
Local
netgear r7800_firmware
r9000_firmware
Certain NETGEAR devices are affected by command injection. This affects R7800 before 1.0.2.16 and R9000 before 1.0.2.4. CWE-74
Injection
CVE-2017-18804 2024-11-21 12:20 2020-04-22 Show GitHub Exploit DB Packet Storm
253870 6.2 MEDIUM
Local
netgear r7800_firmware NETGEAR R7800 devices before 1.0.2.30 are affected by incorrect configuration of security settings. CWE-20
 Improper Input Validation 
CVE-2017-18803 2024-11-21 12:20 2020-04-22 Show GitHub Exploit DB Packet Storm