Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225891 9.3 危険 マイクロソフト - Microsoft Office および Word 製品における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2013-3851 2013-09-13 10:46 2013-09-10 Show GitHub Exploit DB Packet Storm
225892 9.3 危険 マイクロソフト - Microsoft Word 製品および Office 互換機能パックにおける任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2013-3850 2013-09-13 10:43 2013-09-10 Show GitHub Exploit DB Packet Storm
225893 5 警告 マイクロソフト - Microsoft Office および Word 製品における任意のファイルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2013-3160 2013-09-13 10:42 2013-09-10 Show GitHub Exploit DB Packet Storm
225894 9.3 危険 マイクロソフト - 複数の Windows 製品における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2013-0810 2013-09-12 19:49 2013-09-10 Show GitHub Exploit DB Packet Storm
225895 9.3 危険 マイクロソフト - Windows XP および Windows Server 2003 における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2013-3863 2013-09-12 19:48 2013-09-10 Show GitHub Exploit DB Packet Storm
225896 9.3 危険 マイクロソフト - Microsoft Internet Explorer 8 および 9 における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2013-3845 2013-09-12 19:47 2013-09-10 Show GitHub Exploit DB Packet Storm
225897 9.3 危険 マイクロソフト - Microsoft Internet Explorer 9 および 10 における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2013-3209 2013-09-12 19:46 2013-09-10 Show GitHub Exploit DB Packet Storm
225898 9.3 危険 マイクロソフト - Microsoft Internet Explorer 8 から 10 における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2013-3208 2013-09-12 19:46 2013-09-10 Show GitHub Exploit DB Packet Storm
225899 9.3 危険 マイクロソフト - Microsoft Internet Explorer 9 および 10 における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2013-3207 2013-09-12 19:45 2013-09-10 Show GitHub Exploit DB Packet Storm
225900 9.3 危険 マイクロソフト - Microsoft Internet Explorer 9 および 10 における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2013-3206 2013-09-12 19:44 2013-09-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 10, 2026, 5 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209321 5.3 MEDIUM
Network
secomea gatemanager_4250_firmware
gatemanager_4260_firmware
gatemanager_9250_firmware
gatemanager_8250_firmware
Sensitive Cookie in HTTPS Session Without 'Secure' Attribute vulnerability in (GTA) GoToAppliance of Secomea GateManager could allow an attacker to gain access to sensitive cookies. This issue affect… CWE-311
Missing Encryption of Sensitive Data
CVE-2020-29024 2024-11-21 14:23 2021-02-17 Show GitHub Exploit DB Packet Storm
209322 3.5 LOW
Network
secomea gatemanager_4250_firmware
gatemanager_4260_firmware
gatemanager_9250_firmware
gatemanager_8250_firmware
Improper Encoding or Escaping of Output from CSV Report Generator of Secomea GateManager allows an authenticated administrator to generate a CSV file that may run arbitrary commands on a victim's com… CWE-116
 Improper Encoding or Escaping of Output
CVE-2020-29023 2024-11-21 14:23 2021-02-17 Show GitHub Exploit DB Packet Storm
209323 5.3 MEDIUM
Network
secomea gatemanager_4250_firmware
gatemanager_4260_firmware
gatemanager_9250_firmware
gatemanager_8250_firmware
Failure to Sanitize host header value on output in the GateManager Web server could allow an attacker to conduct web cache poisoning attacks. This issue affects Secomea GateManager all versions prior… NVD-CWE-noinfo
CVE-2020-29022 2024-11-21 14:23 2021-02-17 Show GitHub Exploit DB Packet Storm
209324 7.2 HIGH
Network
open-emr openemr A SQL injection vulnerability in interface/reports/non_reported.php in OpenEMR before 5.0.2.5 allows a remote authenticated attacker to execute arbitrary SQL commands via the form_code parameter. CWE-89
SQL Injection
CVE-2020-29143 2024-11-21 14:23 2021-02-16 Show GitHub Exploit DB Packet Storm
209325 7.2 HIGH
Network
open-emr openemr A SQL injection vulnerability in interface/reports/immunization_report.php in OpenEMR before 5.0.2.5 allows a remote authenticated attacker to execute arbitrary SQL commands via the form_code paramet… CWE-89
SQL Injection
CVE-2020-29140 2024-11-21 14:23 2021-02-16 Show GitHub Exploit DB Packet Storm
209326 7.2 HIGH
Network
open-emr openemr A SQL injection vulnerability in interface/main/finder/patient_select.php from library/patient.inc in OpenEMR before 5.0.2.5 allows a remote authenticated attacker to execute arbitrary SQL commands v… CWE-89
SQL Injection
CVE-2020-29139 2024-11-21 14:23 2021-02-16 Show GitHub Exploit DB Packet Storm
209327 7.2 HIGH
Network
open-emr openemr A SQL injection vulnerability in interface/usergroup/usergroup_admin.php in OpenEMR before 5.0.2.5 allows a remote authenticated attacker to execute arbitrary SQL commands via the schedule_facility p… CWE-89
SQL Injection
CVE-2020-29142 2024-11-21 14:23 2021-02-16 Show GitHub Exploit DB Packet Storm
209328 8.1 HIGH
Network
secomea gatemanager_8250_firmware
gatemanager_4250_firmware
gatemanager_4260_firmware
gatemanager_9250_firmware
An Insecure Direct Object Reference vulnerability exists in the web UI of the GateManager which allows an authenticated attacker to reset the password of any user in its domain or any sub-domain, via… CWE-269
 Improper Privilege Management
CVE-2020-29031 2024-11-21 14:23 2021-02-16 Show GitHub Exploit DB Packet Storm
209329 6.5 MEDIUM
Network
secomea gatemanager_8250_firmware
gatemanager_4250_firmware
gatemanager_4260_firmware
gatemanager_9250_firmware
A directory traversal vulnerability exists in the file upload function of the GateManager that allows an authenticated attacker with administrative permissions to read and write arbitrary files in th… CWE-22
Path Traversal
CVE-2020-29026 2024-11-21 14:23 2021-02-16 Show GitHub Exploit DB Packet Storm
209330 6.1 MEDIUM
Network
tipsandtricks-hq wp_security_\&_firewall Cross-site scripting (XSS) vulnerability in admin/wp-security-blacklist-menu.php in the Tips and Tricks HQ All In One WP Security & Firewall (all-in-one-wp-security-and-firewall) plugin before 4.4.6 … CWE-79
Cross-site Scripting
CVE-2020-29171 2024-11-21 14:23 2021-02-11 Show GitHub Exploit DB Packet Storm