Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 6, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224871 5.8 警告 The JForum Team - JForum におけるオープンリダイレクトの脆弱性 CWE-20
不適切な入力確認
CVE-2012-5338 2013-09-26 10:25 2013-09-23 Show GitHub Exploit DB Packet Storm
224872 4.3 警告 KnowledgeView - KnowledgeView 製品にクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-3616 2013-09-25 15:25 2013-09-23 Show GitHub Exploit DB Packet Storm
224873 4.3 警告 デル - iDRAC にクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-3589 2013-09-25 12:23 2013-09-23 Show GitHub Exploit DB Packet Storm
224874 4.3 警告 Platinum Seo - WordPress 用 Platinum SEO プラグインの platinum_seo_pack.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-5918 2013-09-25 11:57 2013-09-12 Show GitHub Exploit DB Packet Storm
224875 7.5 危険 Rodrigo Coimbra - WordPress 用 NOSpam PTI プラグインの wp-comments-post.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-5917 2013-09-25 11:57 2013-09-20 Show GitHub Exploit DB Packet Storm
224876 5 警告 シスコシステムズ - Cisco MediaSense の Web インターフェイスにおける重要なクエリ文字列または Cookie の情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-5502 2013-09-25 11:53 2013-09-23 Show GitHub Exploit DB Packet Storm
224877 7.8 危険 シスコシステムズ - Cisco Prime Data Center Network Manager における任意のテキストファイルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2013-5490 2013-09-25 11:52 2013-09-18 Show GitHub Exploit DB Packet Storm
224878 7.8 危険 シスコシステムズ - Cisco Prime Data Center Network Manager の DCNM-SAN サーバにおける任意のファイルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2013-5487 2013-09-25 11:51 2013-09-18 Show GitHub Exploit DB Packet Storm
224879 7.8 危険 シスコシステムズ - Cisco Prime Central for Hosted Collaboration Solution Assurance の Web フレームワークにおけるユーザ名およびパスワードを取得される脆弱性 CWE-287
不適切な認証
CVE-2013-3473 2013-09-25 11:49 2013-09-18 Show GitHub Exploit DB Packet Storm
224880 6.8 警告 シスコシステムズ - Cisco Unified Computing System の Cisco Management Controller における権限を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2012-4082 2013-09-25 11:45 2013-09-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 6, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211661 6.5 MEDIUM
Network
sysax multi_server When uploading a file in Sysax Multi Server 6.90, an authenticated user can modify the filename="" parameter in the uploadfile_name1.htm form to a length of 368 or more bytes. This will create a buff… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2020-23574 2024-11-21 14:13 2020-08-20 Show GitHub Exploit DB Packet Storm
211662 7.8 HIGH
Local
pnotes.net_project pnotes.net A File Upload Vulnerability in PNotes - Andrey Gruber PNotes.NET v3.8.1.2 allows a local attacker to execute arbitrary code via the Miscellaneous " External Programs by uploading the malicious .exe f… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-22721 2024-11-21 14:13 2020-08-15 Show GitHub Exploit DB Packet Storm
211663 7.8 HIGH
Local
rapidscada rapid_scada Rapid Software LLC Rapid SCADA 5.8.0 is affected by a local privilege escalation vulnerability in the ScadaAgentSvc.exe executable file. An attacker can obtain admin privileges by placing a malicious… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-22722 2024-11-21 14:13 2020-08-15 Show GitHub Exploit DB Packet Storm
211664 7.8 HIGH
Local
ogg_video_tools_project ogg_video_tools Buffer Overflow vulnerability in ExtractorInformation function in streamExtractor.cpp in oggvideotools 0.9.1 allows remaote attackers to run arbitrary code via opening of crafted ogg file. CWE-787
 Out-of-bounds Write
CVE-2020-21724 2024-11-21 14:12 2023-08-23 Show GitHub Exploit DB Packet Storm
211665 7.8 HIGH
Local
freeimage_project freeimage Buffer Overflow vulnerability in function LoadPixelDataRLE8 in PluginBMP.cpp in FreeImage 3.18.0 allows remote attackers to run arbitrary code and cause other impacts via crafted image file. CWE-120
Classic Buffer Overflow
CVE-2020-21427 2024-11-21 14:12 2023-08-23 Show GitHub Exploit DB Packet Storm
211666 7.5 HIGH
Network
openvpn openvpn Control Channel in OpenVPN 2.4.7 and earlier allows remote attackers to cause a denial of service via crafted reset packet. NVD-CWE-noinfo
CVE-2020-20813 2024-11-21 14:12 2023-08-23 Show GitHub Exploit DB Packet Storm
211667 7.5 HIGH
Network
phpok phpok SQL injection vulnerability in PHPOK v.5.4. allows a remote attacker to obtain sensitive information via the _userlist function in framerwork/phpok_call.php file. CWE-89
SQL Injection
CVE-2020-21486 2024-11-21 14:12 2023-06-21 Show GitHub Exploit DB Packet Storm
211668 6.1 MEDIUM
Network
taogogo taocms Cross Site Scripting vulnerability in taogogo taoCMS v.2.5 beta5.1 allows remote attacker to execute arbitrary code via the name field in admin.php. CWE-79
Cross-site Scripting
CVE-2020-20725 2024-11-21 14:12 2023-06-21 Show GitHub Exploit DB Packet Storm
211669 4.8 MEDIUM
Network
nodcms nodcms Cross Site Scripting vulnerability in khodakhah NodCMS v.3.0 allows a remote attacker to execute arbitrary code and gain access to senstivie information via a crafted script to the address parameter. CWE-79
Cross-site Scripting
CVE-2020-20697 2024-11-21 14:12 2023-06-21 Show GitHub Exploit DB Packet Storm
211670 7.5 HIGH
Network
portfoliocms_project portfoliocms Westbrookadmin portfolioCMS v1.05 allows attackers to bypass password validation and access sensitive information via session fixation. CWE-287
Improper Authentication
CVE-2020-20402 2024-11-21 14:12 2023-02-1 Show GitHub Exploit DB Packet Storm