Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 6, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224761 4.3 警告 IBM - IBM Rational ClearQuest の Web クライアントにおける重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2013-3041 2013-10-3 14:59 2013-09-16 Show GitHub Exploit DB Packet Storm
224762 6.2 警告 シスコシステムズ - Cisco Unified Computing System の Baseboard Management Controller における権限を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2012-4096 2013-10-3 14:52 2013-10-1 Show GitHub Exploit DB Packet Storm
224763 4.3 警告 X2Engine - X2Engine X2CRM におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-5693 2013-10-3 14:45 2013-09-10 Show GitHub Exploit DB Packet Storm
224764 8.5 危険 X2Engine - X2Engine X2CRM におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-5692 2013-10-3 14:42 2013-09-10 Show GitHub Exploit DB Packet Storm
224765 6.8 警告 FreeSWITCH - FreeSWITCH の switch_regex.c の switch_perform_substitution 関数におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-2238 2013-10-3 14:39 2013-07-2 Show GitHub Exploit DB Packet Storm
224766 7.8 危険 Squid-cache.org - Squid の errorpage.cc の strHdrAcptLangGetItem 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-1839 2013-10-3 14:08 2013-03-14 Show GitHub Exploit DB Packet Storm
224767 10 危険 IBM - IBM SPSS Collaboration and Deployment Services における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2013-5370 2013-10-3 11:11 2013-09-26 Show GitHub Exploit DB Packet Storm
224768 10 危険 IBM - IBM SPSS Collaboration and Deployment Services における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2013-4042 2013-10-3 11:05 2013-09-26 Show GitHub Exploit DB Packet Storm
224769 8.3 危険 日立 - JP1/Base における任意のコマンドを実行される脆弱性 CWE-noinfo
情報不足
- 2013-10-3 10:56 2013-09-30 Show GitHub Exploit DB Packet Storm
224770 8.3 危険 日立 - JP1/Automatic Job Management System 3 および JP1/Automatic Job Management System 2 における任意のコマンドを実行される脆弱性 CWE-noinfo
情報不足
- 2013-10-3 10:51 2013-09-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 6, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211661 6.5 MEDIUM
Network
sysax multi_server When uploading a file in Sysax Multi Server 6.90, an authenticated user can modify the filename="" parameter in the uploadfile_name1.htm form to a length of 368 or more bytes. This will create a buff… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2020-23574 2024-11-21 14:13 2020-08-20 Show GitHub Exploit DB Packet Storm
211662 7.8 HIGH
Local
pnotes.net_project pnotes.net A File Upload Vulnerability in PNotes - Andrey Gruber PNotes.NET v3.8.1.2 allows a local attacker to execute arbitrary code via the Miscellaneous " External Programs by uploading the malicious .exe f… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-22721 2024-11-21 14:13 2020-08-15 Show GitHub Exploit DB Packet Storm
211663 7.8 HIGH
Local
rapidscada rapid_scada Rapid Software LLC Rapid SCADA 5.8.0 is affected by a local privilege escalation vulnerability in the ScadaAgentSvc.exe executable file. An attacker can obtain admin privileges by placing a malicious… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-22722 2024-11-21 14:13 2020-08-15 Show GitHub Exploit DB Packet Storm
211664 7.8 HIGH
Local
ogg_video_tools_project ogg_video_tools Buffer Overflow vulnerability in ExtractorInformation function in streamExtractor.cpp in oggvideotools 0.9.1 allows remaote attackers to run arbitrary code via opening of crafted ogg file. CWE-787
 Out-of-bounds Write
CVE-2020-21724 2024-11-21 14:12 2023-08-23 Show GitHub Exploit DB Packet Storm
211665 7.8 HIGH
Local
freeimage_project freeimage Buffer Overflow vulnerability in function LoadPixelDataRLE8 in PluginBMP.cpp in FreeImage 3.18.0 allows remote attackers to run arbitrary code and cause other impacts via crafted image file. CWE-120
Classic Buffer Overflow
CVE-2020-21427 2024-11-21 14:12 2023-08-23 Show GitHub Exploit DB Packet Storm
211666 7.5 HIGH
Network
openvpn openvpn Control Channel in OpenVPN 2.4.7 and earlier allows remote attackers to cause a denial of service via crafted reset packet. NVD-CWE-noinfo
CVE-2020-20813 2024-11-21 14:12 2023-08-23 Show GitHub Exploit DB Packet Storm
211667 7.5 HIGH
Network
phpok phpok SQL injection vulnerability in PHPOK v.5.4. allows a remote attacker to obtain sensitive information via the _userlist function in framerwork/phpok_call.php file. CWE-89
SQL Injection
CVE-2020-21486 2024-11-21 14:12 2023-06-21 Show GitHub Exploit DB Packet Storm
211668 6.1 MEDIUM
Network
taogogo taocms Cross Site Scripting vulnerability in taogogo taoCMS v.2.5 beta5.1 allows remote attacker to execute arbitrary code via the name field in admin.php. CWE-79
Cross-site Scripting
CVE-2020-20725 2024-11-21 14:12 2023-06-21 Show GitHub Exploit DB Packet Storm
211669 4.8 MEDIUM
Network
nodcms nodcms Cross Site Scripting vulnerability in khodakhah NodCMS v.3.0 allows a remote attacker to execute arbitrary code and gain access to senstivie information via a crafted script to the address parameter. CWE-79
Cross-site Scripting
CVE-2020-20697 2024-11-21 14:12 2023-06-21 Show GitHub Exploit DB Packet Storm
211670 7.5 HIGH
Network
portfoliocms_project portfoliocms Westbrookadmin portfolioCMS v1.05 allows attackers to bypass password validation and access sensitive information via session fixation. CWE-287
Improper Authentication
CVE-2020-20402 2024-11-21 14:12 2023-02-1 Show GitHub Exploit DB Packet Storm