Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226861 7.5 危険 tigris - WebSVN の utils.inc における任意の PHP コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2008-5920 2012-12-20 19:10 2009-01-20 Show GitHub Exploit DB Packet Storm
226862 6.8 警告 tigris - WebSVN の rss.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-5919 2012-12-20 19:10 2009-01-20 Show GitHub Exploit DB Packet Storm
226863 4.3 警告 tigris - WebSVN の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-5918 2012-12-20 19:10 2009-01-20 Show GitHub Exploit DB Packet Storm
226864 7.5 危険 xrdp - xrdp の rdp/rdp_rdp.c における脆弱性 CWE-20
不適切な入力確認
CVE-2008-5904 2012-12-20 19:10 2009-01-15 Show GitHub Exploit DB Packet Storm
226865 7.5 危険 xrdp - xrdp の xrdp/funcs.c における任意のコードを実行される脆弱性 CWE-189
数値処理の問題
CVE-2008-5903 2012-12-20 19:10 2009-01-15 Show GitHub Exploit DB Packet Storm
226866 7.5 危険 xrdp - xrdp の xrdp/xrdp_bitmap.c におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-5902 2012-12-20 19:10 2009-01-15 Show GitHub Exploit DB Packet Storm
226867 5 警告 Tincan - phplist におけるファイルをインクルードされる脆弱性 CWE-20
不適切な入力確認
CVE-2008-5887 2012-12-20 19:10 2009-01-12 Show GitHub Exploit DB Packet Storm
226868 5 警告 takempis - TAKempis Discussion Web におけるパスワードを含むデータベースファイルをダウンロードされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-5886 2012-12-20 19:10 2009-01-12 Show GitHub Exploit DB Packet Storm
226869 5 警告 the net guys - The Net Guys ASPired2Quote におけるユーザ名などを含むデータベースをダウンロードされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-5885 2012-12-20 19:10 2009-01-12 Show GitHub Exploit DB Packet Storm
226870 4.3 警告 zkesoft - AyeView におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2008-5884 2012-12-20 19:10 2009-01-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 11, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
210361 9.8 CRITICAL
Network
wago pfc_100_firmware
pfc_200_firmware
touch_panel_600_standard_firmware
touch_panel_600_advanced_firmware
touch_panel_600_marine_firmware
The reported vulnerability allows an attacker who has network access to the device to execute code with specially crafted packets in WAGO Series PFC 100 (750-81xx/xxx-xxx), Series PFC 200 (750-82xx/x… CWE-78
OS Command 
CVE-2020-12522 2024-11-21 13:59 2020-12-18 Show GitHub Exploit DB Packet Storm
210362 6.8 MEDIUM
Network
arubanetworks edgeconnect_enterprise The configuration backup/restore function in Silver Peak Unity ECOSTM (ECOS) appliance software was found to directly incorporate the user-controlled config filename in a subsequent shell command, al… CWE-78
OS Command 
CVE-2020-12149 2024-11-21 13:59 2020-12-12 Show GitHub Exploit DB Packet Storm
210363 6.8 MEDIUM
Network
arubanetworks edgeconnect_enterprise A command injection flaw identified in the nslookup API in Silver Peak Unity ECOSTM (ECOS) appliance software could allow an attacker to execute arbitrary commands with the privileges of the web serv… CWE-78
OS Command 
CVE-2020-12148 2024-11-21 13:59 2020-12-12 Show GitHub Exploit DB Packet Storm
210364 4.9 MEDIUM
Network
broadcom symantec_messaging_gateway An information disclosure flaw allows a malicious, authenticated, privileged web UI user to obtain a password for a remote SCP backup server that they might not otherwise be authorized to access. Thi… NVD-CWE-noinfo
CVE-2020-12595 2024-11-21 13:59 2020-12-10 Show GitHub Exploit DB Packet Storm
210365 7.2 HIGH
Network
broadcom symantec_messaging_gateway A privilege escalation flaw allows a malicious, authenticated, privileged CLI user to escalate their privileges on the system and gain full control over the SMG appliance. This affects SMG prior to 1… NVD-CWE-noinfo
CVE-2020-12594 2024-11-21 13:59 2020-12-10 Show GitHub Exploit DB Packet Storm
210366 7.5 HIGH
Network
wago 750-352_firmware
750-831_firmware
750-852_firmware
750-880_firmware
750-881_firmware
750-889_firmware
750-331_firmware
750-829_firmware
750-882_firmware
750-885_firmware
Older firmware versions (FW1 up to FW10) of the WAGO PLC family 750-88x and 750-352 are vulnerable for a special denial of service attack. NVD-CWE-noinfo
CVE-2020-12516 2024-11-21 13:59 2020-12-10 Show GitHub Exploit DB Packet Storm
210367 7.5 HIGH
Network
phoenixcontact btp_2043w_firmware
btp_2070w_firmware
btp_2102w_firmware
Uncontrolled Resource Consumption can be exploited to cause the Phoenix Contact HMIs BTP 2043W, BTP 2070W and BTP 2102W in all versions to become unresponsive and not accurately update the display co… CWE-400
 Uncontrolled Resource Consumption
CVE-2020-12524 2024-11-21 13:59 2020-12-3 Show GitHub Exploit DB Packet Storm
210368 3.3 LOW
Local
apache cordova We have resolved a security issue in the camera plugin that could have affected certain Cordova (Android) applications. An attacker who could install (or lead the victim to install) a specially craft… NVD-CWE-noinfo
CVE-2020-11990 2024-11-21 13:59 2020-12-2 Show GitHub Exploit DB Packet Storm
210369 5.4 MEDIUM
Network
intelbras tip200_firmware
tip200lite_firmware
tip300_firmware
Intelbras TIP200 60.61.75.15, TIP200LITE 60.61.75.15, and TIP300 65.61.75.15 devices allow /cgi-bin/cgiServer.exx?page= XSS. CWE-79
Cross-site Scripting
CVE-2020-12262 2024-11-21 13:59 2020-11-27 Show GitHub Exploit DB Packet Storm
210370 6.5 MEDIUM
Adjacent
linux linux_kernel Improper access control in BlueZ may allow an unauthenticated user to potentially enable information disclosure via adjacent access. CWE-909
 Missing Initialization of Resource
CVE-2020-12352 2024-11-21 13:59 2020-11-24 Show GitHub Exploit DB Packet Storm