Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 24, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225221 9.3 危険 アップル - Apple QuickTime におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-0988 2013-06-7 13:54 2013-05-22 Show GitHub Exploit DB Packet Storm
225222 9.3 危険 アップル - Apple QuickTime における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2013-0987 2013-06-7 13:48 2013-05-22 Show GitHub Exploit DB Packet Storm
225223 9.3 危険 アップル - Apple QuickTime におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-0986 2013-06-7 13:42 2013-05-22 Show GitHub Exploit DB Packet Storm
225224 9.3 危険 アップル - Apple QuickTime におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-0989 2013-06-7 13:38 2013-05-22 Show GitHub Exploit DB Packet Storm
225225 7.5 危険 アップル
Ruby on Rails project
- Ruby on Rails における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2013-0333 2013-06-7 12:18 2013-01-28 Show GitHub Exploit DB Packet Storm
225226 10 危険 アップル
Ruby on Rails project
- Ruby on Rails の ActiveRecord におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2013-0277 2013-06-7 12:09 2013-02-11 Show GitHub Exploit DB Packet Storm
225227 4.3 警告 アップル
Ruby on Rails project
- Ruby on Rails の ActiveRecord における attr_protected 保護メカニズムを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-0276 2013-06-7 12:07 2013-02-11 Show GitHub Exploit DB Packet Storm
225228 2.6 注意 日本ケンタッキー・フライド・チキン株式会社 - Android 版 ピザハット公式アプリ 宅配ピザのPizzaHut における SSL サーバ証明書の検証不備の脆弱性 CWE-Other
その他
CVE-2013-3641 2013-06-7 12:01 2013-06-7 Show GitHub Exploit DB Packet Storm
225229 2.6 注意 マイクロソフト - Internet Explorer における情報漏えいの脆弱性 CWE-Other
その他
- 2013-06-7 12:00 2013-06-7 Show GitHub Exploit DB Packet Storm
225230 6.4 警告 アップル
Ruby on Rails project
- Ruby on Rails におけるデータベースのクエリ制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-0155 2013-06-7 11:58 2013-01-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 24, 2026, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
200061 5.4 MEDIUM
Network
sap businessobjects_business_intelligence_platform SAP Business Objects Business Intelligence Platform (CMC and BI Launchpad) 4.2 does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting vulnerability. CWE-79
Cross-site Scripting
CVE-2020-6257 2024-11-21 14:35 2020-05-13 Show GitHub Exploit DB Packet Storm
200062 4.3 MEDIUM
Network
sap master_data_governance SAP Master Data Governance, versions - 748, 749, 750, 751, 752, 800, 801, 802, 803, 804, allows users to display change request details without having required authorizations, due to Missing Authoriz… CWE-862
 Missing Authorization
CVE-2020-6256 2024-11-21 14:35 2020-05-13 Show GitHub Exploit DB Packet Storm
200063 6.1 MEDIUM
Network
sap enterprise_threat_detection SAP Enterprise Threat Detection, versions 1.0, 2.0, does not sufficiently encode error response pages in case of errors, allowing XSS payload reflecting in the response, leading to reflected Cross Si… CWE-79
Cross-site Scripting
CVE-2020-6254 2024-11-21 14:35 2020-05-13 Show GitHub Exploit DB Packet Storm
200064 7.2 HIGH
Network
sap adaptive_server_enterprise Under certain conditions, SAP Adaptive Server Enterprise (Web Services), versions 15.7, 16.0, allows an authenticated user to execute crafted database queries to elevate their privileges, modify data… CWE-89
SQL Injection
CVE-2020-6253 2024-11-21 14:35 2020-05-13 Show GitHub Exploit DB Packet Storm
200065 8.0 HIGH
Adjacent
sap adaptive_server_enterprise_cockpit Under certain conditions SAP Adaptive Server Enterprise (Cockpit), version 16.0, allows an attacker with access to local network, to get sensitive and confidential information, leading to Information… NVD-CWE-noinfo
CVE-2020-6252 2024-11-21 14:35 2020-05-13 Show GitHub Exploit DB Packet Storm
200066 6.5 MEDIUM
Network
sap businessobjects_business_intelligence_platform Under certain conditions or error scenarios SAP Business Objects Business Intelligence Platform, version 4.2, allows an attacker to access information which would otherwise be restricted. NVD-CWE-noinfo
CVE-2020-6251 2024-11-21 14:35 2020-05-13 Show GitHub Exploit DB Packet Storm
200067 6.8 MEDIUM
Adjacent
sap adaptive_server_enterprise SAP Adaptive Server Enterprise, version 16.0, allows an authenticated attacker to exploit certain misconfigured endpoints exposed over the adjacent network, to read system administrator password lead… NVD-CWE-noinfo
CVE-2020-6250 2024-11-21 14:35 2020-05-13 Show GitHub Exploit DB Packet Storm
200068 8.8 HIGH
Network
sap master_data_governance_\(s4fnd\)
master_data_governance_\(sap_bs_fnd\)
master_data_governance_\(s4core\)
The use of an admin backend report within SAP Master Data Governance, versions - S4CORE 101, S4FND 102, 103, 104, SAP_BS_FND 748; allows an attacker to execute crafted database queries, exposing the … CWE-89
SQL Injection
CVE-2020-6249 2024-11-21 14:35 2020-05-13 Show GitHub Exploit DB Packet Storm
200069 7.2 HIGH
Network
sap adaptive_server_enterprise_backup_server SAP Adaptive Server Enterprise (Backup Server), version 16.0, does not perform the necessary validation checks for an authenticated user while executing DUMP or LOAD command allowing arbitrary code e… CWE-94
CWE-20
Code Injection
 Improper Input Validation 
CVE-2020-6248 2024-11-21 14:35 2020-05-13 Show GitHub Exploit DB Packet Storm
200070 7.5 HIGH
Network
sap businessobjects_business_intelligence_platform SAP Business Objects Business Intelligence Platform, version 4.2, allows an unauthenticated attacker to prevent legitimate users from accessing a service. Using a specially crafted request, the attac… NVD-CWE-noinfo
CVE-2020-6247 2024-11-21 14:35 2020-05-13 Show GitHub Exploit DB Packet Storm