Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 31, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226671 7.5 危険 ヒューレット・パッカード - HP Intelligent Management Center および Intelligent Management Center for Automated Network Manager における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2012-5204 2013-03-19 18:42 2013-03-7 Show GitHub Exploit DB Packet Storm
226672 7.5 危険 ヒューレット・パッカード - HP Intelligent Management Center および Intelligent Management Center for Automated Network Manager における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2012-5205 2013-03-19 18:41 2013-03-7 Show GitHub Exploit DB Packet Storm
226673 7.5 危険 ヒューレット・パッカード - HP Intelligent Management Center および Intelligent Management Center for Automated Network Manager における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2012-5206 2013-03-19 18:39 2013-03-7 Show GitHub Exploit DB Packet Storm
226674 9 危険 ヒューレット・パッカード - HP Intelligent Management Center および Intelligent Management Center for Automated Network Manager における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2012-5207 2013-03-19 18:37 2013-03-7 Show GitHub Exploit DB Packet Storm
226675 7.5 危険 ヒューレット・パッカード - HP Intelligent Management Center および Intelligent Management Center for Automated Network Manager における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2012-5208 2013-03-19 18:36 2013-03-7 Show GitHub Exploit DB Packet Storm
226676 4 警告 Spree Commerce - Spree における任意のロールを割り当てられる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-2506 2013-03-19 18:34 2013-02-21 Show GitHub Exploit DB Packet Storm
226677 10 危険 ヒューレット・パッカード - HP Intelligent Management Center および Intelligent Management Center for Automated Network Manager における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2012-5209 2013-03-19 18:27 2013-03-7 Show GitHub Exploit DB Packet Storm
226678 7.5 危険 ヒューレット・パッカード - HP Intelligent Management Center TACACS+ Authentication Manager における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2012-5210 2013-03-19 18:25 2013-03-7 Show GitHub Exploit DB Packet Storm
226679 7.5 危険 ヒューレット・パッカード - HP Intelligent Management Center User Access Manager における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2012-5211 2013-03-19 18:24 2013-03-7 Show GitHub Exploit DB Packet Storm
226680 6.8 警告 ヒューレット・パッカード - HP Intelligent Management Center および Intelligent Management Center for Automated Network Manager における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2012-5212 2013-03-19 18:23 2013-03-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 31, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209251 7.5 HIGH
Network
hpe utility_computing_service_meter Unathenticated directory traversal in the DownloadServlet class execute() method can lead to arbitrary file reads in HPE Pay Per Use (PPU) Utility Computing Service (UCS) Meter version 1.9. CWE-22
Path Traversal
CVE-2020-24624 2024-11-21 14:15 2020-09-23 Show GitHub Exploit DB Packet Storm
209252 5.9 MEDIUM
Network
meltytech shotcut In mainwindow.cpp in Shotcut before 20.09.13, the upgrade check misuses TLS because of setPeerVerifyMode(QSslSocket::VerifyNone). A man-in-the-middle attacker could offer a spoofed download resource. CWE-295
Improper Certificate Validation 
CVE-2020-24619 2024-11-21 14:15 2020-09-22 Show GitHub Exploit DB Packet Storm
209253 6.5 MEDIUM
Adjacent
hpe universal_api_framework A potential security vulnerability has been identified in Hewlett Packard Enterprise Universal API Framework. The vulnerability could be remotely exploited to allow SQL injection in HPE Universal API… CWE-89
SQL Injection
CVE-2020-24623 2024-11-21 14:15 2020-09-19 Show GitHub Exploit DB Packet Storm
209254 9.8 CRITICAL
Network
lemonldap-ng
debian
lemonldap\
debian_linux
An issue was discovered in LemonLDAP::NG through 2.0.8, when NGINX is used. An attacker may bypass URL-based access control to protected Virtual Hosts by submitting a non-normalized URI. This also af… CWE-425
 Direct Request ('Forced Browsing')
CVE-2020-24660 2024-11-21 14:15 2020-09-14 Show GitHub Exploit DB Packet Storm
209255 6.1 MEDIUM
Network
zulipchat zulip_desktop Zulip Desktop before 5.4.3 allows XSS because string escaping is mishandled during composition of the HTML for the user interface. CWE-79
Cross-site Scripting
CVE-2020-24582 2024-11-21 14:15 2020-09-11 Show GitHub Exploit DB Packet Storm
209256 6.5 MEDIUM
Network
idreamsoft icms A CSRF vulnerability was found in iCMS v7.0.0 in the background deletion administrator account. When missing the CSRF_TOKEN and can still request normally, all administrators except the initial admin… CWE-352
 Origin Validation Error
CVE-2020-24739 2024-11-21 14:15 2020-09-10 Show GitHub Exploit DB Packet Storm
209257 5.1 MEDIUM
Local
twilio authy_2-factor_authentication A race condition in the Twilio Authy 2-Factor Authentication application before 24.3.7 for Android allows a user to potentially approve/deny an access request prior to unlocking the application with … CWE-362
Race Condition
CVE-2020-24655 2024-11-21 14:15 2020-09-10 Show GitHub Exploit DB Packet Storm
209258 7.5 HIGH
Network
octopus octopus_deploy In Octopus Deploy 2020.3.x before 2020.3.4 and 2020.4.x before 2020.4.1, if an authenticated user creates a deployment or runbook process using Azure steps and sets the step's execution location to r… CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2020-24566 2024-11-21 14:15 2020-09-10 Show GitHub Exploit DB Packet Storm
209259 7.5 HIGH
Network
gnu
fedoraproject
opensuse
canonical
gnutls
fedora
leap
ubuntu_linux
An issue was discovered in GnuTLS before 3.6.15. A server can trigger a NULL pointer dereference in a TLS 1.3 client if a no_renegotiation alert is sent with unexpected timing, and then an invalid se… CWE-787
CWE-476
 Out-of-bounds Write
 NULL Pointer Dereference
CVE-2020-24659 2024-11-21 14:15 2020-09-5 Show GitHub Exploit DB Packet Storm
209260 3.3 LOW
Local
kde
canonical
debian
opensuse
fedoraproject
ark
ubuntu_linux
debian_linux
leap
fedora
In KDE Ark before 20.08.1, a crafted TAR archive with symlinks can install files outside the extraction directory, as demonstrated by a write operation to a user's home directory. CWE-59
Link Following
CVE-2020-24654 2024-11-21 14:15 2020-09-3 Show GitHub Exploit DB Packet Storm