Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225931 7.5 危険 Carlo Gavazzi - Carlo Gavazzi EOS-Box のファームウェアにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-6427 2012-12-25 16:33 2012-12-19 Show GitHub Exploit DB Packet Storm
225932 4.3 警告 シーメンス - 複数の Siemens 製品におけるサーバを偽装される脆弱性 CWE-200
情報漏えい
CVE-2012-4698 2012-12-25 16:32 2012-12-12 Show GitHub Exploit DB Packet Storm
225933 4.3 警告 VMware - VMware vCenter Server Appliance における任意のファイルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2012-6325 2012-12-25 15:19 2012-12-20 Show GitHub Exploit DB Packet Storm
225934 4 警告 VMware - VMware vCenter Server Appliance におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-6324 2012-12-25 15:19 2012-12-20 Show GitHub Exploit DB Packet Storm
225935 6.4 警告 IBM - IBM Tivoli Storage Manager for Space Management におけるファイルシステムオブジェクトを読まれる脆弱性 CWE-noinfo
情報不足
CVE-2012-5954 2012-12-25 15:17 2012-12-18 Show GitHub Exploit DB Packet Storm
225936 7.2 危険 IBM - IBM Tivoli Storage Manager for Space Management におけるファイルシステムオブジェクトを読まれる脆弱性 CWE-noinfo
情報不足
CVE-2012-4859 2012-12-25 15:03 2012-12-18 Show GitHub Exploit DB Packet Storm
225937 4 警告 Linux - Linux Kernel の mm/memory_hotplug.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2012-5517 2012-12-25 15:02 2012-07-31 Show GitHub Exploit DB Packet Storm
225938 4.7 警告 Linux - Linux Kernel の net/ipv4/tcp_illinois.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2012-4565 2012-12-25 14:30 2012-11-17 Show GitHub Exploit DB Packet Storm
225939 5 警告 Linux - Linux Kernel の net/ipv6/reassembly.c におけるネットワーク制限を回避される脆弱性 CWE-noinfo
情報不足
CVE-2012-4444 2012-12-25 14:25 2012-10-20 Show GitHub Exploit DB Packet Storm
225940 5.8 警告 Fetchmail Project - Fetchmail におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2012-3482 2012-12-25 14:11 2012-08-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
213031 9.1 CRITICAL
Network
osmand osmand Osmand through 2.0.0 allow XXE because of binary/BinaryMapIndexReader.java. CWE-611
XXE
CVE-2020-10993 2024-11-21 13:56 2020-03-27 Show GitHub Exploit DB Packet Storm
213032 9.8 CRITICAL
Network
azkaban_project azkaban Azkaban through 3.84.0 allows XXE, related to validator/XmlValidatorManager.java and user/XmlUserManager.java. CWE-611
XXE
CVE-2020-10992 2024-11-21 13:56 2020-03-27 Show GitHub Exploit DB Packet Storm
213033 9.8 CRITICAL
Network
mulesoft aplkit Mulesoft APIkit through 1.3.0 allows XXE because of validation/RestXmlSchemaValidator.java CWE-611
XXE
CVE-2020-10991 2024-11-21 13:56 2020-03-27 Show GitHub Exploit DB Packet Storm
213034 9.8 CRITICAL
Network
accenture mercury An XXE issue exists in Accenture Mercury before 1.12.28 because of the platformlambda/core/serializers/SimpleXmlParser.java component. CWE-611
XXE
CVE-2020-10990 2024-11-21 13:56 2020-03-27 Show GitHub Exploit DB Packet Storm
213035 9.8 CRITICAL
Network
draytek vigor300b_firmware
vigor3900_firmware
vigor2960_firmware
A stack-based buffer overflow in cvmd on Draytek Vigor3900, Vigor2960, and Vigor300B devices before 1.5.1 allows remote attackers to achieve code execution via a remote HTTP request. CWE-787
 Out-of-bounds Write
CVE-2020-10828 2024-11-21 13:56 2020-03-27 Show GitHub Exploit DB Packet Storm
213036 9.8 CRITICAL
Network
draytek vigor300b_firmware
vigor3900_firmware
vigor2960_firmware
A stack-based buffer overflow in apmd on Draytek Vigor3900, Vigor2960, and Vigor300B devices before 1.5.1 allows remote attackers to achieve code execution via a remote HTTP request. CWE-787
 Out-of-bounds Write
CVE-2020-10827 2024-11-21 13:56 2020-03-27 Show GitHub Exploit DB Packet Storm
213037 9.8 CRITICAL
Network
draytek vigor300b_firmware
vigor3900_firmware
vigor2960_firmware
/cgi-bin/activate.cgi on Draytek Vigor3900, Vigor2960, and Vigor300B devices before 1.5.1 allows remote attackers to achieve command injection via a remote HTTP request in DEBUG mode. CWE-77
Command Injection
CVE-2020-10826 2024-11-21 13:56 2020-03-27 Show GitHub Exploit DB Packet Storm
213038 9.8 CRITICAL
Network
draytek vigor300b_firmware
vigor3900_firmware
vigor2960_firmware
A stack-based buffer overflow in /cgi-bin/activate.cgi while base64 decoding ticket parameter on Draytek Vigor3900, Vigor2960, and Vigor300B devices before 1.5.1 allows remote attackers to achieve co… CWE-787
 Out-of-bounds Write
CVE-2020-10825 2024-11-21 13:56 2020-03-27 Show GitHub Exploit DB Packet Storm
213039 9.8 CRITICAL
Network
draytek vigor300b_firmware
vigor3900_firmware
vigor2960_firmware
A stack-based buffer overflow in /cgi-bin/activate.cgi through ticket parameter on Draytek Vigor3900, Vigor2960, and Vigor300B devices before 1.5.1 allows remote attackers to achieve code execution v… CWE-787
 Out-of-bounds Write
CVE-2020-10824 2024-11-21 13:56 2020-03-27 Show GitHub Exploit DB Packet Storm
213040 9.8 CRITICAL
Network
draytek vigor300b_firmware
vigor3900_firmware
vigor2960_firmware
A stack-based buffer overflow in /cgi-bin/activate.cgi through var parameter on Draytek Vigor3900, Vigor2960, and Vigor300B devices before 1.5.1 allows remote attackers to achieve code execution via … CWE-787
 Out-of-bounds Write
CVE-2020-10823 2024-11-21 13:56 2020-03-27 Show GitHub Exploit DB Packet Storm