Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226821 5 警告 PreProject.com - PreProjects Pre Courier and Cargo Business におけるパスワードを取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-6054 2012-12-20 19:10 2009-02-4 Show GitHub Exploit DB Packet Storm
226822 5 警告 PreProject.com - PreProjects Pre Resume Submitter におけるパスワードを取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-6053 2012-12-20 19:10 2009-02-4 Show GitHub Exploit DB Packet Storm
226823 5 警告 PreProject.com - PreProjects Pre E-Learning Portal におけるパスワードを取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-6052 2012-12-20 19:10 2009-02-4 Show GitHub Exploit DB Packet Storm
226824 6.8 警告 xt:Commerce - xt:Commerce の shopping_cart.php におけるセッションをハイジャックされる脆弱性 CWE-287
不適切な認証
CVE-2008-6045 2012-12-20 19:10 2009-02-3 Show GitHub Exploit DB Packet Storm
226825 4.3 警告 xt:Commerce - xt:Commerce の advanced_search_result.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-6044 2012-12-20 19:10 2009-02-3 Show GitHub Exploit DB Packet Storm
226826 7.5 危険 phpprobid - PPB における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6043 2012-12-20 19:10 2009-02-3 Show GitHub Exploit DB Packet Storm
226827 7.5 危険 wsnlinks - WSN Links の comments.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6033 2012-12-20 19:10 2009-02-3 Show GitHub Exploit DB Packet Storm
226828 7.5 危険 wsnlinks - WSN Links Free の comments.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6032 2012-12-20 19:10 2009-02-3 Show GitHub Exploit DB Packet Storm
226829 7.5 危険 wsnlinks - WSN Links の vote.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6031 2012-12-20 19:10 2009-02-3 Show GitHub Exploit DB Packet Storm
226830 7.5 危険 university of queensland - University of Queensland Library Fez の list.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6028 2012-12-20 19:10 2009-02-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 11, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
210421 5.5 MEDIUM
Local
vivo frame_touch_module The frame touch module does not make validity judgments on parameter lengths when processing specific parameters,which caused out of the boundary when memory access.The vulnerability eventually leads… CWE-125
Out-of-bounds Read
CVE-2020-12485 2024-11-21 13:59 2020-11-11 Show GitHub Exploit DB Packet Storm
210422 8.8 HIGH
Network
silver-peak unity_orchestrator In Silver Peak Unity Orchestrator versions prior to 8.9.11+, 8.10.11+, or 9.0.1+, an authenticated user can make unauthorized MySQL queries against the Orchestrator database using the /sqlExecution R… CWE-22
Path Traversal
CVE-2020-12147 2024-11-21 13:59 2020-11-6 Show GitHub Exploit DB Packet Storm
210423 8.8 HIGH
Network
silver-peak unity_orchestrator In Silver Peak Unity Orchestrator versions prior to 8.9.11+, 8.10.11+, or 9.0.1+, an authenticated user can access, modify, and delete restricted files on the Orchestrator server using the/debugFiles… CWE-22
Path Traversal
CVE-2020-12146 2024-11-21 13:59 2020-11-6 Show GitHub Exploit DB Packet Storm
210424 9.8 CRITICAL
Network
silver-peak unity_orchestrator Silver Peak Unity Orchestrator versions prior to 8.9.11+, 8.10.11+, or 9.0.1+ uses HTTP headers to authenticate REST API calls from localhost. This makes it possible to log in to Orchestrator by intr… CWE-287
Improper Authentication
CVE-2020-12145 2024-11-21 13:59 2020-11-6 Show GitHub Exploit DB Packet Storm
210425 9.8 CRITICAL
Network
pepperl-fuchs
korenix
westermo
es7510-xt_firmware
es8509-xt_firmware
es8510-xt_firmware
es9528-xtv2_firmware
es7506_firmware
es7510_firmware
es7528_firmware
es8508_firmware
es8508f_firmware
es8510_firmwa…
Improper Authorization vulnerability of Pepperl+Fuchs P+F Comtrol RocketLinx ES7510-XT, ES8509-XT, ES8510-XT, ES9528-XTv2, ES7506, ES7510, ES7528, ES8508, ES8508F, ES8510, ES8510-XTE, ES9528/ES9528-X… - CVE-2020-12504 2024-11-21 13:59 2020-10-16 Show GitHub Exploit DB Packet Storm
210426 7.2 HIGH
Network
pepperl-fuchs
korenix
es7510-xt_firmware
es8509-xt_firmware
es8510-xt_firmware
es9528-xtv2_firmware
es7506_firmware
es7510_firmware
es7528_firmware
es8508_firmware
es8508f_firmware
es8510_firmwa…
Improper Authorization vulnerability of Pepperl+Fuchs P+F Comtrol RocketLinx ES7510-XT, ES8509-XT, ES8510-XT, ES9528-XTv2, ES7506, ES7510, ES7528, ES8508, ES8508F, ES8510, ES8510-XTE, ES9528/ES9528-X… - CVE-2020-12503 2024-11-21 13:59 2020-10-16 Show GitHub Exploit DB Packet Storm
210427 8.8 HIGH
Network
pepperl-fuchs
korenix
es7510-xt_firmware
es8509-xt_firmware
es8510-xt_firmware
es9528-xtv2_firmware
es7506_firmware
es7510_firmware
es7528_firmware
es8508_firmware
es8508f_firmware
es8510_firmwa…
Improper Authorization vulnerability of Pepperl+Fuchs P+F Comtrol RocketLinx ES7510-XT, ES8509-XT, ES8510-XT, ES9528-XTv2, ES7506, ES7510, ES7528, ES8508, ES8508F, ES8510, ES8510-XTE, ES9528/ES9528-X… - CVE-2020-12502 2024-11-21 13:59 2020-10-16 Show GitHub Exploit DB Packet Storm
210428 9.8 CRITICAL
Network
pepperl-fuchs
korenix
es7510-xt_firmware
es8509-xt_firmware
es8510-xt_firmware
es9528-xtv2_firmware
es7506_firmware
es7510_firmware
es7528_firmware
es8508_firmware
es8508f_firmware
es8510_firmwa…
Improper Authorization vulnerability of Pepperl+Fuchs P+F Comtrol RocketLinx ES7510-XT, ES8509-XT, ES8510-XT, ES9528-XTv2, ES7506, ES7510, ES7528, ES8508, ES8508F, ES8510, ES8510-XTE, ES9528/ES9528-X… - CVE-2020-12501 2024-11-21 13:59 2020-10-16 Show GitHub Exploit DB Packet Storm
210429 9.8 CRITICAL
Network
pepperl-fuchs es7510-xt_firmware
es8509-xt_firmware
es8510-xt_firmware
es9528-xtv2_firmware
es7506_firmware
es7510_firmware
es7528_firmware
es8508_firmware
es8508f_firmware
es8510_firmwa…
Improper Authorization vulnerability of Pepperl+Fuchs P+F Comtrol RocketLinx ES7510-XT, ES8509-XT, ES8510-XT, ES9528-XTv2, ES7506, ES7510, ES7528, ES8508, ES8508F, ES8510, ES8510-XTE, ES9528/ES9528-X… - CVE-2020-12500 2024-11-21 13:59 2020-10-16 Show GitHub Exploit DB Packet Storm
210430 4.7 MEDIUM
Local
mozilla firefox During ECDSA signature generation, padding applied in the nonce designed to ensure constant-time scalar multiplication was removed, resulting in variable-time execution dependent on secret data. This… CWE-203
 Information Exposure Through Discrepancy
CVE-2020-12401 2024-11-21 13:59 2020-10-8 Show GitHub Exploit DB Packet Storm