Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 10, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225571 6.8 警告 GLPI-PROJECT.ORG - GLPI の inc/central.class.php におけるクロスサイトリクエストフォージェリ攻撃を実行される脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-5696 2013-09-25 10:41 2013-09-12 Show GitHub Exploit DB Packet Storm
225572 10 危険 アドビシステムズ - Adobe ColdFusion の認証プロセスにおける管理者権限を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2010-5290 2013-09-24 16:41 2010-08-13 Show GitHub Exploit DB Packet Storm
225573 6.8 警告 IBM - IBM WebSphere Application Server および WAS Feature Pack for Web Services における特権的アクセス権を取得される CWE-20
不適切な入力確認
CVE-2013-4053 2013-09-24 16:27 2013-09-9 Show GitHub Exploit DB Packet Storm
225574 4.3 警告 IBM - IBM WebSphere Application Server の UDDI 管理コンソールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4052 2013-09-24 16:25 2013-09-9 Show GitHub Exploit DB Packet Storm
225575 4.3 警告 IBM - IBM WebSphere Application Server の管理コンソールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0596 2013-09-24 16:24 2013-09-9 Show GitHub Exploit DB Packet Storm
225576 7.1 危険 IBM - IBM Domino の iNotes におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-4068 2013-09-24 16:20 2013-09-17 Show GitHub Exploit DB Packet Storm
225577 4.3 警告 アップル - Apple iOS などの製品で使用される WebKit における同一生成元ポリシーを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-5159 2013-09-24 15:28 2013-09-18 Show GitHub Exploit DB Packet Storm
225578 4.3 警告 アップル - Apple iOS の Telephony サブシステムにおける通話の制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-5156 2013-09-24 15:23 2013-09-18 Show GitHub Exploit DB Packet Storm
225579 7.1 危険 アップル - Apple iOS の Sandbox サブシステムにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-5155 2013-09-24 15:19 2013-09-18 Show GitHub Exploit DB Packet Storm
225580 2.1 注意 アップル - Apple iOS の Springboard における通知を読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-5153 2013-09-24 15:16 2013-09-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 10, 2026, 5 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
210311 8.8 HIGH
Network
openclinic_ga_project openclinic_ga An exploitable SQL injection vulnerability exists in ‘listImmoLabels.jsp’ page of OpenClinic GA 5.173.3 application. The immoComment parameter in the ‘listImmoLabels.jsp’ page is vulnerable to authen… CWE-89
SQL Injection
CVE-2020-27246 2024-11-21 14:20 2021-05-11 Show GitHub Exploit DB Packet Storm
210312 8.8 HIGH
Network
openclinic_ga_project openclinic_ga An exploitable SQL injection vulnerability exists in ‘listImmoLabels.jsp’ page of OpenClinic GA 5.173.3 application. The immoBuyer parameter in the ‘listImmoLabels.jsp’ page is vulnerable to authenti… CWE-89
SQL Injection
CVE-2020-27245 2024-11-21 14:20 2021-05-11 Show GitHub Exploit DB Packet Storm
210313 8.8 HIGH
Network
openclinic_ga_project openclinic_ga An exploitable SQL injection vulnerability exists in ‘listImmoLabels.jsp’ page of OpenClinic GA 5.173.3 application. The immoCode parameter in the ‘listImmoLabels.jsp’ page is vulnerable to authentic… CWE-89
SQL Injection
CVE-2020-27244 2024-11-21 14:20 2021-05-11 Show GitHub Exploit DB Packet Storm
210314 8.8 HIGH
Network
openclinic_ga_project openclinic_ga An exploitable SQL injection vulnerability exists in ‘listImmoLabels.jsp’ page of OpenClinic GA 5.173.3 application. The immoService parameter in the ‘listImmoLabels.jsp’ page is vulnerable to authen… CWE-89
SQL Injection
CVE-2020-27243 2024-11-21 14:20 2021-05-11 Show GitHub Exploit DB Packet Storm
210315 8.8 HIGH
Network
openclinic_ga_project openclinic_ga An exploitable SQL injection vulnerability exists in ‘listImmoLabels.jsp’ page of OpenClinic GA 5.173.3 application. The immoLocation parameter in the ‘listImmoLabels.jsp’ page is vulnerable to authe… CWE-89
SQL Injection
CVE-2020-27242 2024-11-21 14:20 2021-05-11 Show GitHub Exploit DB Packet Storm
210316 8.8 HIGH
Network
openclinic_ga_project openclinic_ga An exploitable SQL injection vulnerability exists in ‘manageServiceStocks.jsp’ page of OpenClinic GA 5.173.3. A specially crafted HTTP request can lead to SQL injection. An attacker can make an authe… CWE-89
SQL Injection
CVE-2020-27232 2024-11-21 14:20 2021-05-11 Show GitHub Exploit DB Packet Storm
210317 8.8 HIGH
Network
openclinic_ga_project openclinic_ga A number of exploitable SQL injection vulnerabilities exists in ‘patientslist.do’ page of OpenClinic GA 5.173.3 application. The findDistrict parameter in ‘‘patientslist.do’ page is vulnerable to aut… CWE-89
SQL Injection
CVE-2020-27231 2024-11-21 14:20 2021-05-11 Show GitHub Exploit DB Packet Storm
210318 8.8 HIGH
Network
openclinic_ga_project openclinic_ga A number of exploitable SQL injection vulnerabilities exists in ‘patientslist.do’ page of OpenClinic GA 5.173.3 application. The findSector parameter in ‘‘patientslist.do’ page is vulnerable to authe… CWE-89
SQL Injection
CVE-2020-27230 2024-11-21 14:20 2021-05-11 Show GitHub Exploit DB Packet Storm
210319 8.8 HIGH
Network
openclinic_ga_project openclinic_ga A number of exploitable SQL injection vulnerabilities exists in ‘patientslist.do’ page of OpenClinic GA 5.173.3 application. The findPersonID parameter in ‘‘patientslist.do’ page is vulnerable to aut… CWE-89
SQL Injection
CVE-2020-27229 2024-11-21 14:20 2021-05-11 Show GitHub Exploit DB Packet Storm
210320 8.8 HIGH
Network
openclinic_ga_project openclinic_ga An exploitable SQL injection vulnerability exists in ‘quickFile.jsp’ page of OpenClinic GA 5.173.3. A specially crafted HTTP request can lead to SQL injection. An attacker can make an authenticated H… CWE-89
SQL Injection
CVE-2020-27226 2024-11-21 14:20 2021-05-11 Show GitHub Exploit DB Packet Storm