Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 6, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226381 7.5 危険 uniwin - Uniwin eCart Professional における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4746 2012-12-20 18:52 2008-10-27 Show GitHub Exploit DB Packet Storm
226382 4.3 警告 uniwin - Uniwin eCart Professional の emailFriend.asp におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4745 2012-12-20 18:52 2008-10-27 Show GitHub Exploit DB Packet Storm
226383 7.5 危険 quidascript - QuidaScript FAQ Management Script の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4743 2012-12-20 18:52 2008-10-27 Show GitHub Exploit DB Packet Storm
226384 4.3 警告 timetrex - TimeTrex の interface/Login.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4742 2012-12-20 18:52 2008-10-27 Show GitHub Exploit DB Packet Storm
226385 5.1 警告 tinycms - TinyCMS 内の ZZ_Templater モジュール内におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-4740 2012-12-20 18:52 2008-10-27 Show GitHub Exploit DB Packet Storm
226386 6.8 警告 plugspace - PlugSpace の index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-4739 2012-12-20 18:52 2008-10-24 Show GitHub Exploit DB Packet Storm
226387 7.5 危険 tufat - MyCard の gallery.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4738 2012-12-20 18:52 2008-10-24 Show GitHub Exploit DB Packet Storm
226388 7.5 危険 pressography - WordPress 用の WP Comment Remix プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2008-4734 2012-12-20 18:52 2008-10-24 Show GitHub Exploit DB Packet Storm
226389 4.3 警告 pressography - WordPress 用の WP Comment Remix プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4733 2012-12-20 18:52 2008-10-24 Show GitHub Exploit DB Packet Storm
226390 7.5 危険 pressography - WordPress 用の WP Comment Remix プラグインにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4732 2012-12-20 18:52 2008-10-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 6, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
197991 5.4 MEDIUM
Network
cisco sd-wan_firmware A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to conduct SQL injection attacks on an affected system. The vulner… CWE-89
SQL Injection
CVE-2020-3468 2024-11-21 14:31 2020-07-17 Show GitHub Exploit DB Packet Storm
197992 4.9 MEDIUM
Network
cisco vision_dynamic_signage_director A vulnerability in the web-based management interface of Cisco Vision Dynamic Signage Director could allow an authenticated, remote attacker with administrative credentials to conduct SQL injection a… CWE-89
SQL Injection
CVE-2020-3450 2024-11-21 14:31 2020-07-17 Show GitHub Exploit DB Packet Storm
197993 6.5 MEDIUM
Network
cisco sd-wan_firmware A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to read arbitrary files on the underlying filesystem of the device… - CVE-2020-3437 2024-11-21 14:31 2020-07-17 Show GitHub Exploit DB Packet Storm
197994 9.8 CRITICAL
Network
geovision gv-as210_firmware
gv-as410_firmware
gv-as810_firmware
gv-gf1921_firmware
gv-as1010_firmware
gv-gf1922_firmware
Buffer overflow exists in Geovision Door Access Control device family, an unauthenticated remote attacker can execute arbitrary command. CWE-120
Classic Buffer Overflow
CVE-2020-3931 2024-11-21 14:31 2020-07-8 Show GitHub Exploit DB Packet Storm
197995 5.5 MEDIUM
Local
adobe after_effects Adobe After Effects versions 17.0.1 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure . CWE-125
Out-of-bounds Read
CVE-2020-3809 2024-11-21 14:31 2020-06-27 Show GitHub Exploit DB Packet Storm
197996 6.5 MEDIUM
Network
adobe digital_editions Adobe Digital Editions versions 4.5.11.187212 and below have a file enumeration (host or local network) vulnerability. Successful exploitation could lead to information disclosure. NVD-CWE-noinfo
CVE-2020-3798 2024-11-21 14:31 2020-06-27 Show GitHub Exploit DB Packet Storm
197997 6.5 MEDIUM
Network
adobe coldfusion ColdFusion versions ColdFusion 2016, and ColdFusion 2018 have an improper access control vulnerability. Successful exploitation could lead to system file structure disclosure. NVD-CWE-noinfo
CVE-2020-3796 2024-11-21 14:31 2020-06-27 Show GitHub Exploit DB Packet Storm
197998 7.8 HIGH
Local
adobe coldfusion ColdFusion versions ColdFusion 2016, and ColdFusion 2018 have a dll search-order hijacking vulnerability. Successful exploitation could lead to privilege escalation. CWE-426
 Untrusted Search Path
CVE-2020-3768 2024-11-21 14:31 2020-06-27 Show GitHub Exploit DB Packet Storm
197999 6.5 MEDIUM
Network
adobe coldfusion ColdFusion versions ColdFusion 2016, and ColdFusion 2018 have an insufficient input validation vulnerability. Successful exploitation could lead to application-level denial-of-service (dos). CWE-20
 Improper Input Validation 
CVE-2020-3767 2024-11-21 14:31 2020-06-27 Show GitHub Exploit DB Packet Storm
198000 7.8 HIGH
Local
qualcomm apq8096au_firmware
apq8098_firmware
kamorta_firmware
msm8917_firmware
msm8920_firmware
msm8937_firmware
msm8940_firmware
msm8953_firmware
msm8998_firmware
nicobar_firmware<…
Possible memory corruption in perfservice due to improper validation array length taken from user application. in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobil… CWE-20
CWE-787
 Improper Input Validation 
 Out-of-bounds Write
CVE-2020-3676 2024-11-21 14:31 2020-06-22 Show GitHub Exploit DB Packet Storm