Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224591 7.1 危険 アップル - Apple Mac OS X のカーネルにおけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2013-5172 2013-10-31 18:03 2013-10-22 Show GitHub Exploit DB Packet Storm
224592 4.3 警告 アップル - Apple Mac OS X の Smart Card Services におけるサービス運用妨害 (DoS) の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-5190 2013-10-31 18:03 2013-10-22 Show GitHub Exploit DB Packet Storm
224593 2.1 注意 アップル - Apple Mac OS X の syslog の実装における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-5191 2013-10-31 18:02 2013-10-22 Show GitHub Exploit DB Packet Storm
224594 5 警告 アップル - Apple Mac OS X の CFNetwork におけるリモートの Web サーバを追跡される脆弱性 CWE-16
環境設定
CVE-2013-5167 2013-10-31 18:02 2013-10-22 Show GitHub Exploit DB Packet Storm
224595 4.9 警告 アップル - Apple Mac OS X の USB ハブコントローラにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-5192 2013-10-31 18:02 2013-10-22 Show GitHub Exploit DB Packet Storm
224596 4.9 警告 アップル - Apple Mac OS X の Bluetooth USB ホストコントローラにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2013-5166 2013-10-31 18:02 2013-10-22 Show GitHub Exploit DB Packet Storm
224597 5 警告 Wireshark - Wireshark の GTPv2 解析機能におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-3555 2013-10-31 18:02 2013-03-17 Show GitHub Exploit DB Packet Storm
224598 4.3 警告 アップル - Apple Mac OS X のメールの自動設定機能における重要な情報を取得される脆弱性 CWE-310
暗号の問題
CVE-2013-5181 2013-10-31 18:02 2013-10-22 Show GitHub Exploit DB Packet Storm
224599 4.3 警告 アップル - Apple Mac OS X の OpenLDAP の ldapsearch コマンドラインプログラムにおける重要な情報を取得される脆弱性 CWE-310
暗号の問題
CVE-2013-5185 2013-10-31 18:01 2013-10-22 Show GitHub Exploit DB Packet Storm
224600 6.8 警告 アップル - Apple Mac OS X の Console における任意のアプリケーションを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2013-5168 2013-10-31 18:01 2013-10-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211921 9.8 CRITICAL
Network
oscommerce oscommerce oscommerce v2.3.4.1 has a functional problem in user registration and password rechecking, where a non-identical password can bypass the checks in /catalog/admin/administrators.php and /catalog/passw… CWE-697
 Incorrect Comparison
CVE-2020-23360 2024-11-21 14:13 2021-01-28 Show GitHub Exploit DB Packet Storm
211922 9.8 CRITICAL
Network
webidsupport webid WeBid 1.2.2 admin/newuser.php has an issue with password rechecking during registration because it uses a loose comparison to check the identicalness of two passwords. Two non-identical passwords can… CWE-697
 Incorrect Comparison
CVE-2020-23359 2024-11-21 14:13 2021-01-28 Show GitHub Exploit DB Packet Storm
211923 7.5 HIGH
Network
nibbleblog nibbleblog dmin/kernel/api/login.class.phpin in nibbleblog v3.7.1c allows type juggling for login bypass because == is used instead of === for password hashes, which mishandles hashes that begin with 0e followe… NVD-CWE-noinfo
CVE-2020-23356 2024-11-21 14:13 2021-01-28 Show GitHub Exploit DB Packet Storm
211924 7.5 HIGH
Network
codiad codiad ** PRODUCT NOT SUPPORTED WHEN ASSIGNED ** Codiad 2.8.4 /componetns/user/class.user.php:Authenticate() is vulnerable in magic hash authentication bypass. If encrypted or hash value for the passwords f… NVD-CWE-noinfo
CVE-2020-23355 2024-11-21 14:13 2021-01-28 Show GitHub Exploit DB Packet Storm
211925 7.5 HIGH
Network
zblogcn z-blogphp Z-BlogPHP 1.6.0 Valyria is affected by incorrect access control. PHP loose comparison and a magic hash can be used to bypass authentication. zb_user/plugin/passwordvisit/include.php:passwordvisit_inp… NVD-CWE-Other
CVE-2020-23352 2024-11-21 14:13 2021-01-28 Show GitHub Exploit DB Packet Storm
211926 7.5 HIGH
Network
newbee-mall_project newbee-mall newbee-mall all versions are affected by incorrect access control to remotely gain privileges through NewBeeMallIndexConfigServiceImpl.java. Unauthorized changes can be made to any user information t… CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2020-23449 2024-11-21 14:13 2021-01-27 Show GitHub Exploit DB Packet Storm
211927 9.8 CRITICAL
Network
newbee-mall_project newbee-mall newbee-mall all versions are affected by incorrect access control to remotely gain privileges through AdminLoginInterceptor.java. The authentication logic of the system's background /admin is in code… CWE-306
CWE-706
Missing Authentication for Critical Function
 Use of Incorrectly-Resolved Name or Reference
CVE-2020-23448 2024-11-21 14:13 2021-01-27 Show GitHub Exploit DB Packet Storm
211928 6.1 MEDIUM
Network
newbee-mall_project newbee-mall newbee-mall 1.0 is affected by cross-site scripting in shop-cart/settle. Users only need to write xss payload in their address information when buying goods, which is triggered when viewing the "View… CWE-79
Cross-site Scripting
CVE-2020-23447 2024-11-21 14:13 2021-01-27 Show GitHub Exploit DB Packet Storm
211929 9.8 CRITICAL
Network
mingsoft mcms An issue was discovered in ming-soft MCMS v5.0, where a malicious user can exploit SQL injection without logging in through /mcms/view.do. CWE-89
SQL Injection
CVE-2020-23262 2024-11-21 14:13 2021-01-27 Show GitHub Exploit DB Packet Storm
211930 7.5 HIGH
Network
pyres termod4_firmware Sensitive information disclosure and weak encryption in Pyrescom Termod4 time management devices before 10.04k allows remote attackers to read a session-file and obtain plain-text user credentials. CWE-327
 Use of a Broken or Risky Cryptographic Algorithm
CVE-2020-23162 2024-11-21 14:13 2021-01-27 Show GitHub Exploit DB Packet Storm