Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225991 7.8 危険 シスコシステムズ - Cisco Unified Customer Voice Portal のログビューアにおける任意のファイルを読まれる脆弱性 CWE-20
不適切な入力確認
CVE-2013-1223 2013-05-10 16:16 2013-05-8 Show GitHub Exploit DB Packet Storm
225992 7.8 危険 シスコシステムズ - Cisco Unified Customer Voice Portal の Tomcat Web Management 機能における任意のカスタム Web アプリケーションを起動される脆弱性 CWE-16
環境設定
CVE-2013-1222 2013-05-10 16:16 2013-05-8 Show GitHub Exploit DB Packet Storm
225993 10 危険 シスコシステムズ - Cisco Unified Customer Voice Portal の Tomcat Web Management 機能における任意のコードを実行される脆弱性 CWE-16
環境設定
CVE-2013-1221 2013-05-10 16:15 2013-05-8 Show GitHub Exploit DB Packet Storm
225994 7.8 危険 シスコシステムズ - Cisco Unified Customer Voice Portal の CallServer コンポーネントにおけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2013-1220 2013-05-10 16:14 2013-05-8 Show GitHub Exploit DB Packet Storm
225995 4.3 警告 ジュニパーネットワークス - Juniper SmartPass WLAN Security Management におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-3498 2013-05-10 14:51 2013-05-8 Show GitHub Exploit DB Packet Storm
225996 4.7 警告 ジュニパーネットワークス - Junos Space JA1500 アプライアンスなどで使用される Juniper Junos Space におけるパスワードを取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2013-3497 2013-05-10 14:51 2013-05-8 Show GitHub Exploit DB Packet Storm
225997 3.5 注意 シマンテック - Symantec Brightmail Gateway におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1611 2013-05-10 14:07 2013-05-8 Show GitHub Exploit DB Packet Storm
225998 4.3 警告 Invensys - Invensys Wonderware Information Server におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0688 2013-05-10 14:07 2013-05-7 Show GitHub Exploit DB Packet Storm
225999 9.3 危険 Invensys - Invensys Wonderware Information Server における任意のファイルを読まれる脆弱性 CWE-20
不適切な入力確認
CVE-2013-0686 2013-05-10 14:06 2013-05-7 Show GitHub Exploit DB Packet Storm
226000 9.3 危険 Invensys - Invensys Wonderware Information Server における任意のコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-0685 2013-05-10 14:06 2013-05-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209861 8.1 HIGH
Network
struktur libheif Buffer overflow vulnerability in function convert_colorspace in heif_colorconversion.cc in libheif v1.6.2, allows attackers to cause a denial of service and disclose sensitive information, via a craf… CWE-120
Classic Buffer Overflow
CVE-2020-23109 2024-11-21 14:13 2021-11-4 Show GitHub Exploit DB Packet Storm
209862 9.8 CRITICAL
Network
tendacn ac10u_firmware
ac9_firmware
Stack-based buffer overflow in Tenda AC-10U AC1200 Router US_AC10UV1.0RTL_V15.03.06.48_multi_TDE01 allows remote attackers to execute arbitrary code via the timeZone parameter to goform/SetSysTimeCfg. CWE-787
 Out-of-bounds Write
CVE-2020-22079 2024-11-21 14:13 2021-10-29 Show GitHub Exploit DB Packet Storm
209863 7.8 HIGH
Local
irfanview irfanview IrfanView 4.54 allows attackers to cause a denial of service or possibly other unspecified impacts via a crafted .cr2 file, related to a "Data from Faulting Address controls Branch Selection starting… NVD-CWE-noinfo
CVE-2020-23549 2024-11-21 14:13 2021-10-29 Show GitHub Exploit DB Packet Storm
209864 7.8 HIGH
Local
irfanview irfanview IrfanView 4.54 allows attackers to cause a denial of service or possibly other unspecified impacts via a crafted XBM file, related to a "Data from Faulting Address is used as one or more arguments in… NVD-CWE-noinfo
CVE-2020-23546 2024-11-21 14:13 2021-10-29 Show GitHub Exploit DB Packet Storm
209865 6.1 MEDIUM
Network
hznuoj_project hznuoj A cross-site scripting (XSS) vulnerability was discovered in the OJ/admin-tool /cal_scores.php function of HZNUOJ v1.0. CWE-79
Cross-site Scripting
CVE-2020-22312 2024-11-21 14:13 2021-10-29 Show GitHub Exploit DB Packet Storm
209866 6.1 MEDIUM
Network
froala froala_editor A cross site scripting (XSS) vulnerability in the Insert Video function of Froala WYSIWYG Editor 3.1.0 allows attackers to execute arbitrary web scripts or HTML. CWE-79
Cross-site Scripting
CVE-2020-22864 2024-11-21 14:13 2021-10-27 Show GitHub Exploit DB Packet Storm
209867 7.5 HIGH
Network
dropouts super_backup Dropouts Technologies LLP Super Backup v2.0.5 was discovered to contain an issue in the path parameter of the `list` and `download` module which allows attackers to perform a directory traversal via … CWE-22
Path Traversal
CVE-2020-23061 2024-11-21 14:13 2021-10-23 Show GitHub Exploit DB Packet Storm
209868 7.1 HIGH
Local
tonec internet_download_manager Internet Download Manager 6.37.11.1 was discovered to contain a stack buffer overflow in the Export/Import function. This vulnerability allows attackers to escalate local process privileges via a cra… CWE-787
 Out-of-bounds Write
CVE-2020-23060 2024-11-21 14:13 2021-10-23 Show GitHub Exploit DB Packet Storm
209869 4.6 MEDIUM
Physics
file_explorer_project file_explorer An issue in the authentication mechanism in Nong Ge File Explorer v1.4 unauthenticated allows to access sensitive data. CWE-287
Improper Authentication
CVE-2020-23058 2024-11-21 14:13 2021-10-23 Show GitHub Exploit DB Packet Storm
209870 5.4 MEDIUM
Network
lancom-systems lcos ANCOM WLAN Controller (Wireless Series & Hotspot) WLC-1000 & WLC-4006 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the /authen/start/ module via the userid and pas… CWE-79
Cross-site Scripting
CVE-2020-23055 2024-11-21 14:13 2021-10-23 Show GitHub Exploit DB Packet Storm