Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 21, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224961 1.9 注意 Linux - Linux Kernel の net/bluetooth/hidp/core.c における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-0349 2013-06-12 16:42 2013-02-3 Show GitHub Exploit DB Packet Storm
224962 6.2 警告 Linux - 32-bit Xen paravirt_ops プラットフォーム上で稼働する Linux Kernel における権限を取得される脆弱性 CWE-189
数値処理の問題
CVE-2013-0228 2013-06-12 16:41 2013-02-17 Show GitHub Exploit DB Packet Storm
224963 6 警告 OpenStack
Canonical
- 複数の OpenStack 製品における VM へのアクセス権を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-0335 2013-06-12 16:39 2013-02-16 Show GitHub Exploit DB Packet Storm
224964 6.8 警告 QNAP Systems - QNAP VioStor NVR のファームウェア上で稼働する cgi-bin/create_user.cgi におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-0144 2013-06-12 15:11 2013-06-5 Show GitHub Exploit DB Packet Storm
224965 6.5 警告 QNAP Systems - QNAP VioStor NVR のファームウェア上で稼働する cgi-bin/pingping.cgi および QNAP 製 NAS 製品の Surveillance Station Pro における任意のコマンドを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2013-0143 2013-06-12 15:10 2013-06-5 Show GitHub Exploit DB Packet Storm
224966 5 警告 QNAP Systems - QNAP VioStor NVR のファームウェアおよび QNAP 製 NAS 製品の Surveillance Station Pro における Web サーバにログインされる脆弱性 CWE-255
証明書・パスワード管理
CVE-2013-0142 2013-06-12 15:10 2013-06-5 Show GitHub Exploit DB Packet Storm
224967 9.3 危険 Mozilla Foundation - 複数の Mozilla 製品の Web コンソールにおけるクローム特権で任意の JavaScript コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2012-3980 2013-06-11 18:07 2012-08-28 Show GitHub Exploit DB Packet Storm
224968 6.8 警告 Mozilla Foundation - 複数の Mozilla 製品の nsLocation::CheckURL 関数におけるコンテンツのロードの制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3978 2013-06-11 18:04 2012-08-28 Show GitHub Exploit DB Packet Storm
224969 5.8 警告 Mozilla Foundation - 複数の Mozilla 製品におけるアドレスバー内の X.509 証明書情報を偽造される脆弱性 CWE-DesignError
CVE-2012-3976 2013-06-11 18:00 2012-08-28 Show GitHub Exploit DB Packet Storm
224970 6.9 警告 Mozilla Foundation - Windows 上で稼働する複数の Mozilla 製品のインストーラにおける権限を取得される脆弱性 CWE-399
リソース管理の問題
CVE-2012-3974 2013-06-11 17:58 2012-08-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
199041 9.8 CRITICAL
Network
hp storeserv_management_console SSMC3.7.0.0 is vulnerable to remote authentication bypass. HPE StoreServ Management Console (SSMC) 3.7.0.0 is an off node multiarray manager web application and remains isolated from data on the mana… CWE-287
Improper Authentication
CVE-2020-7197 2024-11-21 14:36 2020-10-27 Show GitHub Exploit DB Packet Storm
199042 6.5 MEDIUM
Network
hp ezmeral_container_platform
bluedata_epic
The HPE BlueData EPIC Software Platform version 4.0 and HPE Ezmeral Container Platform 5.0 use an insecure method of handling sensitive Kerberos passwords that is susceptible to unauthorized intercep… CWE-200
CWE-522
Information Exposure
 Insufficiently Protected Credentials
CVE-2020-7196 2024-11-21 14:36 2020-10-27 Show GitHub Exploit DB Packet Storm
199043 9.8 CRITICAL
Network
arubanetworks airwave_glass A remote unauthenticated arbitrary code execution vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2. NVD-CWE-noinfo
CVE-2020-7127 2024-11-21 14:36 2020-10-27 Show GitHub Exploit DB Packet Storm
199044 5.8 MEDIUM
Network
arubanetworks airwave_glass A remote server-side request forgery (ssrf) vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2. CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2020-7126 2024-11-21 14:36 2020-10-27 Show GitHub Exploit DB Packet Storm
199045 8.8 HIGH
Network
arubanetworks airwave_glass A remote escalation of privilege vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2. CWE-269
 Improper Privilege Management
CVE-2020-7125 2024-11-21 14:36 2020-10-27 Show GitHub Exploit DB Packet Storm
199046 9.8 CRITICAL
Network
arubanetworks airwave_glass A remote unauthorized access vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2. NVD-CWE-noinfo
CVE-2020-7124 2024-11-21 14:36 2020-10-27 Show GitHub Exploit DB Packet Storm
199047 5.4 MEDIUM
Network
zte evdc A ZTE product is impacted by an XSS vulnerability. The vulnerability is caused by the lack of correct verification of client data in the WEB module. By inserting malicious scripts into the web module… CWE-79
Cross-site Scripting
CVE-2020-6876 2024-11-21 14:36 2020-10-27 Show GitHub Exploit DB Packet Storm
199048 3.1 LOW
Network
elastic elasticsearch Elasticsearch versions before 6.8.13 and 7.9.2 contain a document disclosure flaw when Document or Field Level Security is used. Search queries do not properly preserve security permissions when exec… CWE-269
 Improper Privilege Management
CVE-2020-7020 2024-11-21 14:36 2020-10-23 Show GitHub Exploit DB Packet Storm
199049 6.5 MEDIUM
Network
fortinet fortios
fortiproxy
A cleartext storage of sensitive information vulnerability in FortiOS command line interface in versions 6.2.4 and earlier and FortiProxy 2.0.0, 1.2.9 and earlier may allow an authenticated attacker … CWE-312
 Cleartext Storage of Sensitive Information
CVE-2020-6648 2024-11-21 14:36 2020-10-21 Show GitHub Exploit DB Packet Storm
199050 8.8 HIGH
Network
hp intelligent_management_center A iccselectrules expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07). CWE-917
 Improper Neutralization of Special Elements used in an Expression Language Statement ('Expression Language Injection')
CVE-2020-7195 2024-11-21 14:36 2020-10-20 Show GitHub Exploit DB Packet Storm