Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226831 7.5 危険 xnova - Xnova の includes/todofleetcontrol.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-6023 2012-12-20 19:10 2009-02-2 Show GitHub Exploit DB Packet Storm
226832 7.5 危険 xnova - Xnova の includes/todofleetcontrol.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-6022 2012-12-20 19:10 2009-02-2 Show GitHub Exploit DB Packet Storm
226833 7.5 危険 rianxosencabos cms - Rianxosencabos CMS の scripts/links.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6014 2012-12-20 19:10 2009-01-30 Show GitHub Exploit DB Packet Storm
226834 7.5 危険 sg real estate portal - SG Real Estate Portal の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6011 2012-12-20 19:10 2009-01-30 Show GitHub Exploit DB Packet Storm
226835 5 警告 sg real estate portal - SG Real Estate Portal におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-6010 2012-12-20 19:10 2009-01-30 Show GitHub Exploit DB Packet Storm
226836 7.5 危険 sg real estate portal - SG Real Estate Portal における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2008-6009 2012-12-20 19:10 2009-01-30 Show GitHub Exploit DB Packet Storm
226837 7.5 危険 quidascript - APB の view_group.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6007 2012-12-20 19:10 2009-01-30 Show GitHub Exploit DB Packet Storm
226838 10 危険 W3C - W3C Amaya Web Browser の CheckUniqueName 関数におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-6005 2012-12-20 19:10 2009-01-28 Show GitHub Exploit DB Packet Storm
226839 7.1 危険 web-cp - web-cp の sendfile.php における絶対パストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-6002 2012-12-20 19:10 2009-01-28 Show GitHub Exploit DB Packet Storm
226840 4.3 警告 TYPO3 Association - TYPO3 用の freeCap CAPTCHA エクステンションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-5995 2012-12-20 19:10 2009-01-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 11, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
210421 5.5 MEDIUM
Local
vivo frame_touch_module The frame touch module does not make validity judgments on parameter lengths when processing specific parameters,which caused out of the boundary when memory access.The vulnerability eventually leads… CWE-125
Out-of-bounds Read
CVE-2020-12485 2024-11-21 13:59 2020-11-11 Show GitHub Exploit DB Packet Storm
210422 8.8 HIGH
Network
silver-peak unity_orchestrator In Silver Peak Unity Orchestrator versions prior to 8.9.11+, 8.10.11+, or 9.0.1+, an authenticated user can make unauthorized MySQL queries against the Orchestrator database using the /sqlExecution R… CWE-22
Path Traversal
CVE-2020-12147 2024-11-21 13:59 2020-11-6 Show GitHub Exploit DB Packet Storm
210423 8.8 HIGH
Network
silver-peak unity_orchestrator In Silver Peak Unity Orchestrator versions prior to 8.9.11+, 8.10.11+, or 9.0.1+, an authenticated user can access, modify, and delete restricted files on the Orchestrator server using the/debugFiles… CWE-22
Path Traversal
CVE-2020-12146 2024-11-21 13:59 2020-11-6 Show GitHub Exploit DB Packet Storm
210424 9.8 CRITICAL
Network
silver-peak unity_orchestrator Silver Peak Unity Orchestrator versions prior to 8.9.11+, 8.10.11+, or 9.0.1+ uses HTTP headers to authenticate REST API calls from localhost. This makes it possible to log in to Orchestrator by intr… CWE-287
Improper Authentication
CVE-2020-12145 2024-11-21 13:59 2020-11-6 Show GitHub Exploit DB Packet Storm
210425 9.8 CRITICAL
Network
pepperl-fuchs
korenix
westermo
es7510-xt_firmware
es8509-xt_firmware
es8510-xt_firmware
es9528-xtv2_firmware
es7506_firmware
es7510_firmware
es7528_firmware
es8508_firmware
es8508f_firmware
es8510_firmwa…
Improper Authorization vulnerability of Pepperl+Fuchs P+F Comtrol RocketLinx ES7510-XT, ES8509-XT, ES8510-XT, ES9528-XTv2, ES7506, ES7510, ES7528, ES8508, ES8508F, ES8510, ES8510-XTE, ES9528/ES9528-X… - CVE-2020-12504 2024-11-21 13:59 2020-10-16 Show GitHub Exploit DB Packet Storm
210426 7.2 HIGH
Network
pepperl-fuchs
korenix
es7510-xt_firmware
es8509-xt_firmware
es8510-xt_firmware
es9528-xtv2_firmware
es7506_firmware
es7510_firmware
es7528_firmware
es8508_firmware
es8508f_firmware
es8510_firmwa…
Improper Authorization vulnerability of Pepperl+Fuchs P+F Comtrol RocketLinx ES7510-XT, ES8509-XT, ES8510-XT, ES9528-XTv2, ES7506, ES7510, ES7528, ES8508, ES8508F, ES8510, ES8510-XTE, ES9528/ES9528-X… - CVE-2020-12503 2024-11-21 13:59 2020-10-16 Show GitHub Exploit DB Packet Storm
210427 8.8 HIGH
Network
pepperl-fuchs
korenix
es7510-xt_firmware
es8509-xt_firmware
es8510-xt_firmware
es9528-xtv2_firmware
es7506_firmware
es7510_firmware
es7528_firmware
es8508_firmware
es8508f_firmware
es8510_firmwa…
Improper Authorization vulnerability of Pepperl+Fuchs P+F Comtrol RocketLinx ES7510-XT, ES8509-XT, ES8510-XT, ES9528-XTv2, ES7506, ES7510, ES7528, ES8508, ES8508F, ES8510, ES8510-XTE, ES9528/ES9528-X… - CVE-2020-12502 2024-11-21 13:59 2020-10-16 Show GitHub Exploit DB Packet Storm
210428 9.8 CRITICAL
Network
pepperl-fuchs
korenix
es7510-xt_firmware
es8509-xt_firmware
es8510-xt_firmware
es9528-xtv2_firmware
es7506_firmware
es7510_firmware
es7528_firmware
es8508_firmware
es8508f_firmware
es8510_firmwa…
Improper Authorization vulnerability of Pepperl+Fuchs P+F Comtrol RocketLinx ES7510-XT, ES8509-XT, ES8510-XT, ES9528-XTv2, ES7506, ES7510, ES7528, ES8508, ES8508F, ES8510, ES8510-XTE, ES9528/ES9528-X… - CVE-2020-12501 2024-11-21 13:59 2020-10-16 Show GitHub Exploit DB Packet Storm
210429 9.8 CRITICAL
Network
pepperl-fuchs es7510-xt_firmware
es8509-xt_firmware
es8510-xt_firmware
es9528-xtv2_firmware
es7506_firmware
es7510_firmware
es7528_firmware
es8508_firmware
es8508f_firmware
es8510_firmwa…
Improper Authorization vulnerability of Pepperl+Fuchs P+F Comtrol RocketLinx ES7510-XT, ES8509-XT, ES8510-XT, ES9528-XTv2, ES7506, ES7510, ES7528, ES8508, ES8508F, ES8510, ES8510-XTE, ES9528/ES9528-X… - CVE-2020-12500 2024-11-21 13:59 2020-10-16 Show GitHub Exploit DB Packet Storm
210430 4.7 MEDIUM
Local
mozilla firefox During ECDSA signature generation, padding applied in the nonce designed to ensure constant-time scalar multiplication was removed, resulting in variable-time execution dependent on secret data. This… CWE-203
 Information Exposure Through Discrepancy
CVE-2020-12401 2024-11-21 13:59 2020-10-8 Show GitHub Exploit DB Packet Storm