Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225751 7.5 危険 Michael Staatz - TYPO3 用 sofortueberweisung2commerce エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-4681 2013-06-27 16:43 2013-01-28 Show GitHub Exploit DB Packet Storm
225752 6.4 警告 Urs Maag - TYPO3 用 Maag Form Captcha エクステンションにおけるオープンリダイレクトの脆弱性 CWE-noinfo
情報不足
CVE-2013-4680 2013-06-27 16:42 2013-06-3 Show GitHub Exploit DB Packet Storm
225753 4.9 警告 Xen プロジェクト
Linux
- Linux Kernel 用 Xen におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2013-0231 2013-06-27 16:40 2013-02-5 Show GitHub Exploit DB Packet Storm
225754 5.2 警告 Linux - Linux Kernel の Xen netback 機能におけるサービス運用妨害 (ループ) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-0216 2013-06-27 16:36 2013-02-14 Show GitHub Exploit DB Packet Storm
225755 4.3 警告 Kristof De Jaeger - Drupal 用 Display Suite モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-2177 2013-06-27 16:33 2013-06-12 Show GitHub Exploit DB Packet Storm
225756 4.3 警告 Alejandro Garza - Drupal 用 Apache Solr Autocomplete モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-6573 2013-06-27 16:32 2012-08-29 Show GitHub Exploit DB Packet Storm
225757 7.2 危険 Mozilla Foundation - Windows 上で稼働する Mozilla Firefox の Mozilla Maintenance Service における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-1700 2013-06-27 16:20 2013-06-25 Show GitHub Exploit DB Packet Storm
225758 2.1 注意 Linux - Linux Kernel におけるキーストロークのタイミングに関する重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-0160 2013-06-27 16:20 2013-02-18 Show GitHub Exploit DB Packet Storm
225759 6.5 警告 フォーティネット - Fortinet FortiGate デバイス上で稼働する FortiOS における任意のユーザのレコードを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-4604 2013-06-27 13:35 2013-06-13 Show GitHub Exploit DB Packet Storm
225760 9.3 危険 ジャストシステム - 一太郎シリーズにおいて任意のコードが実行される脆弱性 CWE-noinfo
情報不足
CVE-2013-3644 2013-06-26 14:48 2013-06-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 5, 2026, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209761 8.1 HIGH
Network
bbraun datamodule_compactplus
spacecom
A session fixation vulnerability in the B. Braun Melsungen AG SpaceCom administrative interface Version L81/U61 and earlier, and the Data module compactplus Versions A10 and A11 allows remote attacke… - CVE-2020-25152 2024-11-21 14:17 2022-04-15 Show GitHub Exploit DB Packet Storm
209762 8.8 HIGH
Network
bbraun datamodule_compactplus
spacecom
A relative path traversal attack in the B. Braun Melsungen AG SpaceCom Version L81/U61 and earlier, and the Data module compactplus Versions A10 and A11 allows attackers with service user privileges … CWE-22
Path Traversal
CVE-2020-25150 2024-11-21 14:17 2022-04-15 Show GitHub Exploit DB Packet Storm
209763 8.8 HIGH
Network
ge rt430_firmware
rt431_firmware
rt434_firmware
A code injection vulnerability exists in one of the webpages in GE Reason RT430, RT431 & RT434 GNSS clocks in firmware versions prior to version 08A06 that could allow an authenticated remote attacke… CWE-94
Code Injection
CVE-2020-25197 2024-11-21 14:17 2022-03-19 Show GitHub Exploit DB Packet Storm
209764 5.3 MEDIUM
Network
ge rt430_firmware
rt431_firmware
rt434_firmware
By having access to the hard-coded cryptographic key for GE Reason RT430, RT431 & RT434 GNSS clocks in firmware versions prior to version 08A06, attackers would be able to intercept and decrypt encry… CWE-798
 Use of Hard-coded Credentials
CVE-2020-25193 2024-11-21 14:17 2022-03-19 Show GitHub Exploit DB Packet Storm
209765 5.5 MEDIUM
Local
schneider-electric
rockwellautomation
xylem
easergy_t300_firmware
easergy_c5_firmware
micom_c264_firmware
pacis_gtw_firmware
saitel_dp_firmware
epas_gtw_firmware
saitel_dr_firmware
scd2200_firmware
isagraf_free_runtime<…
Rockwell Automation ISaGRAF Runtime Versions 4.x and 5.x stores the password in plaintext in a file that is in the same directory as the executable file. ISaGRAF Runtime reads the file and saves the … CWE-522
 Insufficiently Protected Credentials
CVE-2020-25184 2024-11-21 14:17 2022-03-19 Show GitHub Exploit DB Packet Storm
209766 6.7 MEDIUM
Local
schneider-electric
rockwellautomation
xylem
easergy_t300_firmware
easergy_c5_firmware
micom_c264_firmware
pacis_gtw_firmware
saitel_dp_firmware
epas_gtw_firmware
saitel_dr_firmware
scd2200_firmware
isagraf_free_runtime<…
Rockwell Automation ISaGRAF Runtime Versions 4.x and 5.x searches for and loads DLLs as dynamic libraries. Uncontrolled loading of dynamic libraries could allow a local, unauthenticated attacker to e… CWE-427
 Uncontrolled Search Path Element
CVE-2020-25182 2024-11-21 14:17 2022-03-19 Show GitHub Exploit DB Packet Storm
209767 6.5 MEDIUM
Network
schneider-electric
rockwellautomation
xylem
easergy_t300_firmware
easergy_c5_firmware
micom_c264_firmware
pacis_gtw_firmware
saitel_dp_firmware
epas_gtw_firmware
saitel_dr_firmware
scd2200_firmware
isagraf_free_runtime<…
Rockwell Automation ISaGRAF Runtime Versions 4.x and 5.x includes the functionality of setting a password that is required to execute privileged commands. The password value passed to ISaGRAF Runtime… CWE-798
 Use of Hard-coded Credentials
CVE-2020-25180 2024-11-21 14:17 2022-03-19 Show GitHub Exploit DB Packet Storm
209768 8.8 HIGH
Network
schneider-electric
rockwellautomation
xylem
easergy_t300_firmware
easergy_c5_firmware
micom_c264_firmware
pacis_gtw_firmware
saitel_dp_firmware
epas_gtw_firmware
saitel_dr_firmware
scd2200_firmware
isagraf_free_runtime<…
ISaGRAF Workbench communicates with Rockwell Automation ISaGRAF Runtime Versions 4.x and 5.x using TCP/IP. This communication protocol provides various file system operations, as well as the uploadin… CWE-319
Cleartext Transmission of Sensitive Information
CVE-2020-25178 2024-11-21 14:17 2022-03-19 Show GitHub Exploit DB Packet Storm
209769 9.8 CRITICAL
Network
schneider-electric
rockwellautomation
xylem
easergy_t300_firmware
easergy_c5_firmware
micom_c264_firmware
pacis_gtw_firmware
saitel_dp_firmware
epas_gtw_firmware
saitel_dr_firmware
scd2200_firmware
isagraf_free_runtime<…
Some commands used by the Rockwell Automation ISaGRAF Runtime Versions 4.x and 5.x eXchange Layer (IXL) protocol perform various file operations in the file system. Since the parameter pointing to th… CWE-22
Path Traversal
CVE-2020-25176 2024-11-21 14:17 2022-03-19 Show GitHub Exploit DB Packet Storm
209770 5.5 MEDIUM
Local
gpac gpac A Null pointer dereference vulnerability exits in MP4Box - GPAC version 0.8.0-rev177-g51a8ef874-master via the gf_isom_get_track_id function, which causes a denial of service. CWE-476
 NULL Pointer Dereference
CVE-2020-25427 2024-11-21 14:17 2022-01-11 Show GitHub Exploit DB Packet Storm