Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227051 4.3 警告 viart - ViArt Shop における重要な情報を取得される脆弱性 CWE-59
リンク解釈の問題
CVE-2008-6759 2012-12-20 19:10 2009-04-28 Show GitHub Exploit DB Packet Storm
227052 6.8 警告 viart - ViArt Shop の cart_save.php におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2008-6758 2012-12-20 19:10 2009-04-28 Show GitHub Exploit DB Packet Storm
227053 4.3 警告 viart - ViArt Shop の manuals_search.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-6757 2012-12-20 19:10 2009-04-28 Show GitHub Exploit DB Packet Storm
227054 5 警告 Canonical - Ubuntu の system-tools-backends におけるパスワードの総当たり攻撃を実行される脆弱性 CWE-310
暗号の問題
CVE-2008-6792 2012-12-20 19:10 2008-11-5 Show GitHub Exploit DB Packet Storm
227055 5 警告 ZoneMinder - Fedora 上で稼動する ZoneMinder における /etc/zm.conf を変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-6755 2012-12-20 19:10 2009-01-7 Show GitHub Exploit DB Packet Storm
227056 7.5 危険 revou - ReVou Micro Blogging 用の TClone プラグインにおける管理者のパスワードを変更される脆弱性 CWE-20
不適切な入力確認
CVE-2008-6752 2012-12-20 19:10 2009-04-24 Show GitHub Exploit DB Packet Storm
227057 6.8 警告 revou - ReVou Micro Blogging 用の TClone プラグインにおける任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-6751 2012-12-20 19:10 2009-04-24 Show GitHub Exploit DB Packet Storm
227058 7.5 危険 shock-therapy - RSMScript における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2008-6743 2012-12-20 19:10 2009-04-22 Show GitHub Exploit DB Packet Storm
227059 7.5 危険 Simple Machines - SMF の Load.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6741 2012-12-20 19:10 2009-04-21 Show GitHub Exploit DB Packet Storm
227060 7.5 危険 toddwoolums - Todd Woolums ASP Download 管理スクリプトにおける管理者権限を取得される脆弱性 CWE-287
不適切な認証
CVE-2008-6739 2012-12-20 19:10 2009-04-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 13, 2026, 5:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
196261 8.8 HIGH
Network
testlink testlink An unrestricted file upload vulnerability in keywordsImport.php in TestLink 1.9.20 allows remote attackers to execute arbitrary code by uploading a file with an executable extension. This allows an a… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-8639 2024-11-21 14:39 2020-04-4 Show GitHub Exploit DB Packet Storm
196262 9.8 CRITICAL
Network
testlink testlink A SQL injection vulnerability in TestLink 1.9.20 allows attackers to execute arbitrary SQL commands in planUrgency.php via the urgency parameter. CWE-89
SQL Injection
CVE-2020-8638 2024-11-21 14:39 2020-04-4 Show GitHub Exploit DB Packet Storm
196263 9.8 CRITICAL
Network
testlink testlink A SQL injection vulnerability in TestLink 1.9.20 allows attackers to execute arbitrary SQL commands in dragdroptreenodes.php via the node_id parameter. CWE-89
SQL Injection
CVE-2020-8637 2024-11-21 14:39 2020-04-4 Show GitHub Exploit DB Packet Storm
196264 8.0 HIGH
Adjacent
huawei smartax_ma5600t_firmware
smartax_ma5800_firmware
smartax_ea5800_firmware
There is a buffer overflow vulnerability in some Huawei products. The vulnerability can be exploited by an attacker to perform remote code execution on the affected products when the affected product… CWE-120
Classic Buffer Overflow
CVE-2020-9067 2024-11-21 14:39 2020-04-3 Show GitHub Exploit DB Packet Storm
196265 7.8 HIGH
Local
linux
fedoraproject
canonical
netapp
linux_kernel
fedora
ubuntu_linux
cloud_backup
steelstore_cloud_integrated_storage
solidfire
hci_management_node
a700s_firmware
8300_firmware
8700_firmware
a400_firmware<…
In the Linux kernel 5.5.0 and newer, the bpf verifier (kernel/bpf/verifier.c) did not properly restrict the register bounds for 32-bit operations, leading to out-of-bounds reads and writes in kernel … CWE-125
CWE-787
Out-of-bounds Read
 Out-of-bounds Write
CVE-2020-8835 2024-11-21 14:39 2020-04-3 Show GitHub Exploit DB Packet Storm
196266 6.1 MEDIUM
Network
tiki tikiwiki_cms\/groupware There is an Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in php webpages of Tiki-Wiki Groupware. Tiki-Wiki CMS all versions through 20.0 allows maliciou… CWE-79
Cross-site Scripting
CVE-2020-8966 2024-11-21 14:39 2020-04-2 Show GitHub Exploit DB Packet Storm
196267 5.4 MEDIUM
Network
versiant lynx_customer_service_portal Versiant LYNX Customer Service Portal (CSP), version 3.5.2, is vulnerable to stored cross-site scripting, which could allow a local, authenticated attacker to insert malicious JavaScript that is stor… CWE-79
Cross-site Scripting
CVE-2020-9055 2024-11-21 14:39 2020-03-31 Show GitHub Exploit DB Packet Storm
196268 4.3 MEDIUM
Network
kubernetes
fedoraproject
kubernetes
fedora
The Kubernetes API server component in versions prior to 1.15.9, 1.16.0-1.16.6, and 1.17.0-1.17.2 has been found to be vulnerable to a denial of service attack via successful API requests. CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2020-8552 2024-11-21 14:39 2020-03-28 Show GitHub Exploit DB Packet Storm
196269 6.5 MEDIUM
Adjacent
kubernetes
fedoraproject
kubernetes
fedora
The Kubelet component in versions 1.15.0-1.15.9, 1.16.0-1.16.6, and 1.17.0-1.17.2 has been found to be vulnerable to a denial of service attack via the kubelet API, including the unauthenticated HTTP… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2020-8551 2024-11-21 14:39 2020-03-28 Show GitHub Exploit DB Packet Storm
196270 7.8 HIGH
Local
huawei oxfordp-an10b_firmware Huawei smartphones OxfordP-AN10B with versions earlier than 10.0.1.169(C00E166R4P1) have an improper authentication vulnerability. The Application doesn't perform proper authentication when user perf… CWE-287
Improper Authentication
CVE-2020-9066 2024-11-21 14:39 2020-03-27 Show GitHub Exploit DB Packet Storm