Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 14, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226171 5 警告 tuxfamily - Chrony の chronyd のクライアント記録機能におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2010-0293 2012-12-20 19:28 2010-02-8 Show GitHub Exploit DB Packet Storm
226172 5 警告 tuxfamily - Chrony の chronyd におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2010-0292 2012-12-20 19:28 2010-02-8 Show GitHub Exploit DB Packet Storm
226173 5.1 警告 TYPO3 Association - TYPO3 用の OpenID Identity Authentication エクステンションにおける認証を回避される脆弱性 CWE-noinfo
情報不足
CVE-2010-0286 2012-12-20 19:28 2010-02-22 Show GitHub Exploit DB Packet Storm
226174 4.6 警告 サン・マイクロシステムズ - Sun OpenSolaris の hald における HAL 仕様をサポートする接続デバイスへの変更の検出を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-0271 2012-12-20 19:28 2010-01-4 Show GitHub Exploit DB Packet Storm
226175 7.5 危険 SUSE - SUSE Linux Enterprise および openSUSE におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-0230 2012-12-20 19:28 2010-01-22 Show GitHub Exploit DB Packet Storm
226176 4.6 警告 verbatim - Verbatim Corporate Secure および Corporate Secure FIPS Edition USB フラッシュドライブにおける平文のデータコンテンツにアクセスされる脆弱性 CWE-255
証明書・パスワード管理
CVE-2010-0229 2012-12-20 19:28 2010-01-7 Show GitHub Exploit DB Packet Storm
226177 4.6 警告 verbatim - Verbatim Corporate Secure および Corporate Secure FIPS Edition USB フラッシュドライブにおけるデータを変更される脆弱性 CWE-310
暗号の問題
CVE-2010-0228 2012-12-20 19:28 2010-01-7 Show GitHub Exploit DB Packet Storm
226178 4.6 警告 verbatim - Verbatim Corporate Secure および Corporate Secure FIPS Edition USB フラッシュドライブにおける平文のドライブコンテンツにアクセスされる脆弱性 CWE-255
証明書・パスワード管理
CVE-2010-0227 2012-12-20 19:28 2010-01-7 Show GitHub Exploit DB Packet Storm
226179 4.6 警告 SanDisk - SanDisk Cruzer Enterprise USB フラッシュドライブにおける平文のドライブコンテンツへアクセスされる脆弱性 CWE-255
証明書・パスワード管理
CVE-2010-0226 2012-12-20 19:28 2010-01-7 Show GitHub Exploit DB Packet Storm
226180 4.6 警告 scandisk - SanDisk Cruzer Enterprise USB フラッシュドライブにおけるデータを読み込まれる脆弱性 CWE-310
暗号の問題
CVE-2010-0225 2012-12-20 19:28 2010-01-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
210831 5.3 MEDIUM
Network
maipu mp1800x-50_firmware The web interface of Maipu MP1800X-50 7.5.3.14(R) devices allows remote attackers to obtain sensitive information via the form/formDeviceVerGet URI, such as system id, hardware model, hardware versio… NVD-CWE-noinfo
CVE-2020-13896 2024-11-21 14:02 2020-06-30 Show GitHub Exploit DB Packet Storm
210832 5.9 MEDIUM
Network
openbsd
netapp
openssh
aff_a700s_firmware
steelstore_cloud_integrated_storage
ontap_select_deploy_administration_utility
active_iq_unified_manager
solidfire
hci_management_node
hci_storage_node…
The client side in OpenSSH 5.7 through 8.4 has an Observable Discrepancy leading to an information leak in the algorithm negotiation. This allows man-in-the-middle attackers to target initial connect… CWE-203
 Information Exposure Through Discrepancy
CVE-2020-14145 2024-11-21 14:02 2020-06-30 Show GitHub Exploit DB Packet Storm
210833 9.8 CRITICAL
Network
mk-auth mk-auth An issue was discovered in MK-AUTH 19.01. It allows command execution as root via shell metacharacters to /auth admin scripts. CWE-78
OS Command 
CVE-2020-14072 2024-11-21 14:02 2020-06-30 Show GitHub Exploit DB Packet Storm
210834 6.1 MEDIUM
Network
mk-auth mk-auth An issue was discovered in MK-AUTH 19.01. XSS vulnerabilities in admin and client scripts allow an attacker to execute arbitrary JavaScript code. CWE-79
Cross-site Scripting
CVE-2020-14071 2024-11-21 14:02 2020-06-30 Show GitHub Exploit DB Packet Storm
210835 9.8 CRITICAL
Network
mk-auth mk-auth An issue was discovered in MK-AUTH 19.01. There is authentication bypass in the web login functionality because guessable credentials to admin/executar_login.php result in admin access. CWE-287
Improper Authentication
CVE-2020-14070 2024-11-21 14:02 2020-06-30 Show GitHub Exploit DB Packet Storm
210836 6.8 MEDIUM
Physics
mk-auth mk-auth An issue was discovered in MK-AUTH 19.01. There are SQL injection issues in mkt/ PHP scripts, as demonstrated by arp.php, dhcp.php, hotspot.php, ip.php, pgaviso.php, pgcorte.php, pppoe.php, queues.ph… CWE-89
SQL Injection
CVE-2020-14069 2024-11-21 14:02 2020-06-30 Show GitHub Exploit DB Packet Storm
210837 9.8 CRITICAL
Network
mk-auth mk-auth An issue was discovered in MK-AUTH 19.01. The web login functionality allows an attacker to bypass authentication and gain client privileges via SQL injection in central/executar_login.php. CWE-89
SQL Injection
CVE-2020-14068 2024-11-21 14:02 2020-06-30 Show GitHub Exploit DB Packet Storm
210838 7.5 HIGH
Network
mattermost mattermost An issue was discovered in Mattermost Mobile Apps before 1.31.2 on iOS. Unintended third-party servers could sometimes obtain authorization tokens, aka MMSA-2020-0022. NVD-CWE-noinfo
CVE-2020-13891 2024-11-21 14:02 2020-06-27 Show GitHub Exploit DB Packet Storm
210839 9.8 CRITICAL
Network
mi xiaomi_r3600_firmware In Xiaomi router R3600, ROM version<1.0.20, a connect service suffers from an injection vulnerability through the web interface, leading to a stack overflow or remote code execution. CWE-787
 Out-of-bounds Write
CVE-2020-14095 2024-11-21 14:02 2020-06-25 Show GitHub Exploit DB Packet Storm
210840 9.8 CRITICAL
Network
mi xiaomi_r3600_firmware In Xiaomi router R3600, ROM version<1.0.20, the connection service can be injected through the web interface, resulting in stack overflow or remote code execution. CWE-787
 Out-of-bounds Write
CVE-2020-14094 2024-11-21 14:02 2020-06-25 Show GitHub Exploit DB Packet Storm