Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 24, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225721 5 警告 マイクロソフト - 複数の Microsoft Active Directory のコンポーネントにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-1282 2013-04-16 16:57 2013-04-9 Show GitHub Exploit DB Packet Storm
225722 6.2 警告 Motorola Solutions, Inc
クアルコム
- Qualcomm MSM8960 を使用する複数の Motorola 製 Android の TrustZone カーネルにおけるブートローダのロックを解除される脆弱性 CWE-16
環境設定
CVE-2013-3051 2013-04-16 16:55 2013-04-13 Show GitHub Exploit DB Packet Storm
225723 4.9 警告 マイクロソフト - 複数の Microsoft Windows 製品のカーネルにおける権限昇格の脆弱性 CWE-362
競合状態
CVE-2013-1284 2013-04-16 16:53 2013-04-9 Show GitHub Exploit DB Packet Storm
225724 3.5 注意 マイクロソフト - Microsoft SharePoint Server 2013 におけるリスト項目の読み取り制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-1290 2013-04-16 16:52 2013-04-9 Show GitHub Exploit DB Packet Storm
225725 9.3 危険 マイクロソフト - Microsoft リモートデスクトップ接続クライアントにおける任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2013-1296 2013-04-16 16:49 2013-04-9 Show GitHub Exploit DB Packet Storm
225726 5 警告 レッドハット - JBoss Enterprise Portal Platform における任意のファイルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-0315 2013-04-16 16:28 2013-03-7 Show GitHub Exploit DB Packet Storm
225727 7.5 危険 レッドハット - JBoss Enterprise Portal Platform におけるサイトコンテンツを変更される脆弱性 CWE-287
不適切な認証
CVE-2013-0314 2013-04-16 16:27 2013-03-7 Show GitHub Exploit DB Packet Storm
225728 6.8 警告 レッドハット - JBoss Enterprise Portal Platform の GateIn Portal コンポーネントにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-3532 2013-04-16 16:20 2012-08-23 Show GitHub Exploit DB Packet Storm
225729 9.3 危険 IBM - IBM Cognos Disclosure Management およびその他の製品における任意のファイルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-0501 2013-04-16 16:15 2013-04-5 Show GitHub Exploit DB Packet Storm
225730 9.3 危険 IBM - 複数の IBM 製品における任意のコマンドを実行される脆弱性 CWE-noinfo
情報不足
CVE-2012-5937 2013-04-16 15:56 2013-04-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 25, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
200471 6.1 MEDIUM
Network
kujirahand konawiki Cross-site scripting vulnerability in KonaWiki 2.2.0 and earlier allows remote attackers to execute an arbitrary script via a specially crafted URL. CWE-79
Cross-site Scripting
CVE-2020-5612 2024-11-21 14:34 2020-07-29 Show GitHub Exploit DB Packet Storm
200472 9.1 CRITICAL
Network
dell emc_openmanage_server_administrator Dell EMC OpenManage Server Administrator (OMSA) versions 9.4 and prior contain multiple path traversal vulnerabilities. An unauthenticated remote attacker could potentially exploit these vulnerabilit… CWE-22
Path Traversal
CVE-2020-5377 2024-11-21 14:34 2020-07-29 Show GitHub Exploit DB Packet Storm
200473 8.8 HIGH
Network
wpsocialrocket social_sharing Cross-site request forgery (CSRF) vulnerability in Social Sharing Plugin versions prior to 1.2.10 allows remote attackers to hijack the authentication of administrators via unspecified vectors. CWE-352
 Origin Validation Error
CVE-2020-5611 2024-11-21 14:34 2020-07-27 Show GitHub Exploit DB Packet Storm
200474 5.4 MEDIUM
Network
teltonika-networks gateway_trb245_firmware Insufficient output sanitization in Teltonika firmware TRB2_R_00.02.02 allows a remote, authenticated attacker to conduct persistent cross-site scripting (XSS) attacks by injecting malicious client-s… CWE-79
Cross-site Scripting
CVE-2020-5769 2024-11-21 14:34 2020-07-18 Show GitHub Exploit DB Packet Storm
200475 4.9 MEDIUM
Network
icegram email_subscribers_\&_newsletters Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') in Icegram Email Subscribers & Newsletters Plugin for WordPress v4.4.8 allows a remote, authenticated attacker to … CWE-89
SQL Injection
CVE-2020-5768 2024-11-21 14:34 2020-07-18 Show GitHub Exploit DB Packet Storm
200476 6.5 MEDIUM
Network
icegram email_subscribers_\&_newsletters Cross-site request forgery in Icegram Email Subscribers & Newsletters Plugin for WordPress v4.4.8 allows a remote attacker to send forged emails by tricking legitimate users into clicking a crafted l… CWE-352
 Origin Validation Error
CVE-2020-5767 2024-11-21 14:34 2020-07-18 Show GitHub Exploit DB Packet Storm
200477 9.8 CRITICAL
Network
grandstream ucm6202_firmware
ucm6204_firmware
ucm6208_firmware
Grandstream UCM6200 series firmware version 1.0.20.23 and below is vulnerable to OS command injection via SSH. An authenticated remote attacker can execute commands as the root user by issuing a spec… CWE-78
OS Command 
CVE-2020-5759 2024-11-21 14:34 2020-07-18 Show GitHub Exploit DB Packet Storm
200478 8.8 HIGH
Network
grandstream ucm6202_firmware
ucm6204_firmware
ucm6208_firmware
Grandstream UCM6200 series firmware version 1.0.20.23 and below is vulnerable to OS command injection via HTTP. An authenticated remote attacker can execute commands as the root user by sending a cra… CWE-78
OS Command 
CVE-2020-5758 2024-11-21 14:34 2020-07-18 Show GitHub Exploit DB Packet Storm
200479 9.8 CRITICAL
Network
grandstream ucm6202_firmware
ucm6204_firmware
ucm6208_firmware
Grandstream UCM6200 series firmware version 1.0.20.23 and below is vulnerable to OS command injection via HTTP. An authenticated remote attacker can bypass command injection mitigations and execute c… CWE-78
OS Command 
CVE-2020-5757 2024-11-21 14:34 2020-07-18 Show GitHub Exploit DB Packet Storm
200480 8.8 HIGH
Network
grandstream gwn7000_firmware Grandstream GWN7000 firmware version 1.0.9.4 and below allows authenticated remote users to modify the system's crontab via undocumented API. An attacker can use this functionality to execute arbitra… CWE-78
OS Command 
CVE-2020-5756 2024-11-21 14:34 2020-07-18 Show GitHub Exploit DB Packet Storm