Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225461 4.3 警告 シーメンス - 複数の Siemens 製品におけるサーバを偽装される脆弱性 CWE-200
情報漏えい
CVE-2012-4698 2012-12-25 16:32 2012-12-12 Show GitHub Exploit DB Packet Storm
225462 4.3 警告 VMware - VMware vCenter Server Appliance における任意のファイルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2012-6325 2012-12-25 15:19 2012-12-20 Show GitHub Exploit DB Packet Storm
225463 4 警告 VMware - VMware vCenter Server Appliance におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-6324 2012-12-25 15:19 2012-12-20 Show GitHub Exploit DB Packet Storm
225464 6.4 警告 IBM - IBM Tivoli Storage Manager for Space Management におけるファイルシステムオブジェクトを読まれる脆弱性 CWE-noinfo
情報不足
CVE-2012-5954 2012-12-25 15:17 2012-12-18 Show GitHub Exploit DB Packet Storm
225465 7.2 危険 IBM - IBM Tivoli Storage Manager for Space Management におけるファイルシステムオブジェクトを読まれる脆弱性 CWE-noinfo
情報不足
CVE-2012-4859 2012-12-25 15:03 2012-12-18 Show GitHub Exploit DB Packet Storm
225466 4 警告 Linux - Linux Kernel の mm/memory_hotplug.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2012-5517 2012-12-25 15:02 2012-07-31 Show GitHub Exploit DB Packet Storm
225467 4.7 警告 Linux - Linux Kernel の net/ipv4/tcp_illinois.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2012-4565 2012-12-25 14:30 2012-11-17 Show GitHub Exploit DB Packet Storm
225468 5 警告 Linux - Linux Kernel の net/ipv6/reassembly.c におけるネットワーク制限を回避される脆弱性 CWE-noinfo
情報不足
CVE-2012-4444 2012-12-25 14:25 2012-10-20 Show GitHub Exploit DB Packet Storm
225469 5.8 警告 Fetchmail Project - Fetchmail におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2012-3482 2012-12-25 14:11 2012-08-13 Show GitHub Exploit DB Packet Storm
225470 6.8 警告 オラクル - 複数の Oracle 製品で使用される DataDirect ODBC ドライバにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-3133 2012-12-25 14:09 2012-08-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 13, 2026, 5:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
198841 6.1 MEDIUM
Network
sixapart movable_type Cross-site scripting vulnerability in Movable Type series (Movable Type 7 r.4603 and earlier (Movable Type 7), Movable Type 6.5.2 and earlier (Movable Type 6.5), Movable Type Advanced 7 r.4603 and ea… CWE-79
Cross-site Scripting
CVE-2020-5528 2024-11-21 14:34 2020-02-6 Show GitHub Exploit DB Packet Storm
198842 5.9 MEDIUM
Network
fujixerox apeosware_management_suite The AWMS Mobile App for Android 2.0.0 to 2.0.5 and for iOS 2.0.0 to 2.0.8 does not verify X.509 certificates from servers, which allows man-in-the-middle attackers to spoof servers and obtain sensiti… CWE-295
Improper Certificate Validation 
CVE-2020-5526 2024-11-21 14:34 2020-01-31 Show GitHub Exploit DB Packet Storm
198843 7.4 HIGH
Network
nttdata
ashikagabank
sihd-bk
shikokubank
tohoku-bank
naganobank
77bank
hokkaidobank
hokugin
mypallete
ashigin
ikeda_senshu_bank
shikoku_bank
tougin
nagagin
77_bank
dogin
hokuriku_bank_portal
Android App 'MyPallete' and some of the Android banking applications based on 'MyPallete' do not verify X.509 certificates from servers, and also do not properly validate certificates with host-misma… CWE-295
Improper Certificate Validation 
CVE-2020-5523 2024-11-21 14:34 2020-01-28 Show GitHub Exploit DB Packet Storm
198844 7.4 HIGH
Network
fujixerox easy_netprint The kantan netprint App for Android 2.0.3 and earlier does not verify X.509 certificates from servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a… CWE-295
Improper Certificate Validation 
CVE-2020-5522 2024-11-21 14:34 2020-01-27 Show GitHub Exploit DB Packet Storm
198845 7.4 HIGH
Network
fujixerox easy_netprint The kantan netprint App for iOS 2.0.2 and earlier does not verify X.509 certificates from servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a cra… CWE-295
Improper Certificate Validation 
CVE-2020-5521 2024-11-21 14:34 2020-01-27 Show GitHub Exploit DB Packet Storm
198846 7.4 HIGH
Network
fujixerox netprint The netprint App for iOS 3.2.3 and earlier does not verify X.509 certificates from servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted ce… CWE-295
Improper Certificate Validation 
CVE-2020-5520 2024-11-21 14:34 2020-01-27 Show GitHub Exploit DB Packet Storm
198847 7.9 HIGH
Adjacent
philips hue_bridge_v2_firmware Philips Hue Bridge model 2.X prior to and including version 1935144020 contains a Heap-based Buffer Overflow when handling a long ZCL string during the commissioning phase, resulting in a remote code… CWE-787
 Out-of-bounds Write
CVE-2020-6007 2024-11-21 14:34 2020-01-24 Show GitHub Exploit DB Packet Storm
198848 5.3 MEDIUM
Network
vmware
oracle
spring_framework
flexcube_private_banking
insurance_policy_administration_j2ee
insurance_rules_palette
retail_service_backbone
retail_back_office
weblogic_server
application_test…
Spring Framework, versions 5.2.x prior to 5.2.3 are vulnerable to CSRF attacks through CORS preflight requests that target Spring MVC (spring-webmvc module) or Spring WebFlux (spring-webflux module) … CWE-352
 Origin Validation Error
CVE-2020-5397 2024-11-21 14:34 2020-01-18 Show GitHub Exploit DB Packet Storm
198849 7.5 HIGH
Network
vmware
oracle
netapp
spring_framework
flexcube_private_banking
insurance_policy_administration_j2ee
insurance_rules_palette
retail_service_backbone
retail_back_office
weblogic_server
application_test…
In Spring Framework, versions 5.2.x prior to 5.2.3, versions 5.1.x prior to 5.1.13, and versions 5.0.x prior to 5.0.16, an application is vulnerable to a reflected file download (RFD) attack when it … CWE-494
 Download of Code Without Integrity Check
CVE-2020-5398 2024-11-21 14:34 2020-01-17 Show GitHub Exploit DB Packet Storm
198850 6.5 MEDIUM
Network
phpbb phpbb phpBB 3.2.8 allows a CSRF attack that can approve pending group memberships. CWE-352
 Origin Validation Error
CVE-2020-5502 2024-11-21 14:34 2020-01-15 Show GitHub Exploit DB Packet Storm