Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 12:09 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226971 7.5 危険 TYPO3 Association - TYPO3 用の Address Directory エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3038 2012-12-20 18:52 2008-07-7 Show GitHub Exploit DB Packet Storm
226972 4.3 警告 TYPO3 Association - TYPO3 用の Address Directory エクステンションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-3037 2012-12-20 18:52 2008-07-7 Show GitHub Exploit DB Packet Storm
226973 6.5 警告 xchangeboard - XchangeBoard の newThread.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3035 2012-12-20 18:52 2008-07-7 Show GitHub Exploit DB Packet Storm
226974 7.5 危険 rss aggregator - RSS-aggregator における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3034 2012-12-20 18:52 2008-07-7 Show GitHub Exploit DB Packet Storm
226975 9.3 危険 rss aggregator - RSS-aggregator における admin 関数へアクセスされ脆弱性 CWE-287
不適切な認証
CVE-2008-3033 2012-12-20 18:52 2008-07-7 Show GitHub Exploit DB Packet Storm
226976 4.3 警告 The phpMyAdmin Project - TYPO3 用の phpMyAdmin エクステンションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-3032 2012-12-20 18:52 2008-07-7 Show GitHub Exploit DB Packet Storm
226977 7.5 危険 Thomas Abeel - Simple PHP Agenda の index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-3031 2012-12-20 18:52 2008-07-7 Show GitHub Exploit DB Packet Storm
226978 4.3 警告 Web-Empowered Church Team - TYPO3 用の WEC Discussion Forum エクステンションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-3029 2012-12-20 18:52 2008-07-7 Show GitHub Exploit DB Packet Storm
226979 4.3 警告 TYPO3 Association - TYPO3 用の Send-A-Card エクステンションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-3028 2012-12-20 18:52 2008-07-7 Show GitHub Exploit DB Packet Storm
226980 7.5 危険 vangogh web cms - VanGogh Web CMS の get_article.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3027 2012-12-20 18:52 2008-07-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
196861 7.5 HIGH
Network
dell emc_omimssc_for_scvmm
emc_omimssc_for_sccm
Dell EMC OpenManage Integration for Microsoft System Center (OMIMSSC) for SCCM and SCVMM versions prior to 7.2.1 contain a hard-coded cryptographic key vulnerability. A remote unauthenticated attacke… CWE-798
 Use of Hard-coded Credentials
CVE-2020-5374 2024-11-21 14:34 2020-07-15 Show GitHub Exploit DB Packet Storm
196862 7.5 HIGH
Network
dell emc_omimssc_for_scvmm
emc_omimssc_for_sccm
Dell EMC OpenManage Integration for Microsoft System Center (OMIMSSC) for SCCM and SCVMM versions prior to 7.2.1 contain an improper authentication vulnerability. A remote unauthenticated attacker ma… CWE-306
Missing Authentication for Critical Function
CVE-2020-5373 2024-11-21 14:34 2020-07-15 Show GitHub Exploit DB Packet Storm
196863 7.5 HIGH
Network
srs_simple_hits_counter_project srs_simple_hits_counter Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') in SRS Simple Hits Counter Plugin for WordPress 1.0.3 and 1.0.4 allows a remote, unauthenticated attacker to deter… CWE-89
SQL Injection
CVE-2020-5766 2024-11-21 14:34 2020-07-14 Show GitHub Exploit DB Packet Storm
196864 6.1 MEDIUM
Network
ss-proj shirasagi Open redirect vulnerability in SHIRASAGI v1.13.1 and earlier allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors. CWE-601
Open Redirect
CVE-2020-5607 2024-11-21 14:34 2020-07-10 Show GitHub Exploit DB Packet Storm
196865 6.5 MEDIUM
Network
dell idrac9_firmware Dell EMC iDRAC9 versions prior to 4.20.20.20 contain a Path Traversal Vulnerability. A remote authenticated malicious user with low privileges could potentially exploit this vulnerability by manipula… CWE-22
Path Traversal
CVE-2020-5366 2024-11-21 14:34 2020-07-9 Show GitHub Exploit DB Packet Storm
196866 8.1 HIGH
Network
mercari mercari Android App 'Mercari' (Japan version) prior to version 3.52.0 allows arbitrary method execution of a Java object by a remote attacker via a Man-In-The-Middle attack by using Java Reflection API of Ja… NVD-CWE-noinfo
CVE-2020-5604 2024-11-21 14:34 2020-07-9 Show GitHub Exploit DB Packet Storm
196867 7.8 HIGH
Local
nvidia jetpack_software_development_kit NVIDIA JetPack SDK, version 4.2 and 4.3, contains a vulnerability in its installation scripts in which permissions are incorrectly set on certain directories, which can lead to escalation of privileg… CWE-276
Incorrect Default Permissions 
CVE-2020-5974 2024-11-21 14:34 2020-07-9 Show GitHub Exploit DB Packet Storm
196868 7.5 HIGH
Network
symantec endpoint_detection_and_response Symantec Endpoint Detection And Response, prior to 4.4, may be susceptible to an information disclosure issue, which is a type of vulnerability that could potentially allow unauthorized access to dat… NVD-CWE-noinfo
CVE-2020-5839 2024-11-21 14:34 2020-07-9 Show GitHub Exploit DB Packet Storm
196869 8.8 HIGH
Adjacent
mxplayer mx_player MX Player Android App versions prior to v1.24.5, are vulnerable to a directory traversal vulnerability when user is using the MX Transfer feature in "Receive" mode. An attacker can exploit this by co… CWE-22
Path Traversal
CVE-2020-5764 2024-11-21 14:34 2020-07-8 Show GitHub Exploit DB Packet Storm
196870 7.5 HIGH
Network
mitsubishielectric coreos TCP/IP function included in the firmware of Mitsubishi Electric GOT2000 series (CoreOS with version -Y and earlier installed in GT27 Model, GT25 Model, and GT23 Model) contains a resource management … NVD-CWE-noinfo
CVE-2020-5600 2024-11-21 14:34 2020-07-7 Show GitHub Exploit DB Packet Storm