Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 28, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227061 5 警告 シトリックス・システムズ - Citrix XenDesktop Virtual Desktop Agent における USB デバイスへのアクセス権を保持される脆弱性 CWE-noinfo
情報不足
CVE-2012-6314 2012-12-28 11:20 2012-12-11 Show GitHub Exploit DB Packet Storm
227062 9.3 危険 シトリックス・システムズ - Citrix XenApp の XML Service インターフェースにおける任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2012-5161 2012-12-28 11:08 2012-12-11 Show GitHub Exploit DB Packet Storm
227063 10 危険 CA Technologies - CA IdentityMinder におけるアクセス制限を回避される脆弱性 CWE-noinfo
情報不足
CVE-2012-6299 2012-12-28 10:58 2012-12-20 Show GitHub Exploit DB Packet Storm
227064 10 危険 CA Technologies - CA IdentityMinder における任意のコマンドを実行される脆弱性 CWE-noinfo
情報不足
CVE-2012-6298 2012-12-28 10:57 2012-12-20 Show GitHub Exploit DB Packet Storm
227065 5 警告 DELL EMC (旧 EMC Corporation) - EMC Data Protection Advisor におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-4616 2012-12-28 10:40 2012-12-26 Show GitHub Exploit DB Packet Storm
227066 7.2 危険 IBM - IBM z/OS 上で稼働する Tivoli NetView における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-5951 2012-12-28 10:38 2012-12-21 Show GitHub Exploit DB Packet Storm
227067 4.3 警告 CA Technologies - CA SiteMinder にクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-4054 2012-12-27 16:36 2011-12-8 Show GitHub Exploit DB Packet Storm
227068 10 危険 NetIQ - NetIQ eDirectory の Novell NCP の実装におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-0432 2012-12-27 14:20 2012-12-26 Show GitHub Exploit DB Packet Storm
227069 6.4 警告 NetIQ - Windows 上で稼働する NetIQ eDirectory における認証チェックを回避される脆弱性 CWE-noinfo
情報不足
CVE-2012-0430 2012-12-27 14:20 2012-12-18 Show GitHub Exploit DB Packet Storm
227070 4 警告 NetIQ - Windows 上で稼働する NetIQ eDirectory におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2012-0429 2012-12-27 14:15 2012-12-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
214771 5.5 MEDIUM
Local
canonical whoopsie In whoopsie, parse_report() from whoopsie.c allows a local attacker to cause a denial of service via a crafted file. The DoS is caused by resource exhaustion due to a memory leak. Fixed in 0.2.52.5ub… CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2020-11937 2024-11-21 13:58 2020-08-7 Show GitHub Exploit DB Packet Storm
214772 6.1 MEDIUM
Network
plesk onyx A GET-based XSS reflected vulnerability in Plesk Onyx 17.8.11 allows remote unauthenticated users to inject arbitrary JavaScript, HTML, or CSS via a GET parameter. CWE-79
Cross-site Scripting
CVE-2020-11584 2024-11-21 13:58 2020-08-4 Show GitHub Exploit DB Packet Storm
214773 6.1 MEDIUM
Network
plesk obsidian A GET-based XSS reflected vulnerability in Plesk Obsidian 18.0.17 allows remote unauthenticated users to inject arbitrary JavaScript, HTML, or CSS via a GET parameter. CWE-79
Cross-site Scripting
CVE-2020-11583 2024-11-21 13:58 2020-08-4 Show GitHub Exploit DB Packet Storm
214774 5.9 MEDIUM
Local
canonical ubuntu_linux It was discovered that snapctl user-open allowed altering the $XDG_DATA_DIRS environment variable when calling the system xdg-open. OpenURL() in usersession/userd/launcher.go would alter $XDG_DATA_DI… CWE-668
 Exposure of Resource to Wrong Sphere
CVE-2020-11934 2024-11-21 13:58 2020-07-30 Show GitHub Exploit DB Packet Storm
214775 6.8 MEDIUM
Physics
canonical ubuntu_linux
snapd
cloud-init as managed by snapd on Ubuntu Core 16 and Ubuntu Core 18 devices was run without restrictions on every boot, which a physical attacker could exploit by crafting cloud-init user-data/meta-d… NVD-CWE-Other
CVE-2020-11933 2024-11-21 13:58 2020-07-30 Show GitHub Exploit DB Packet Storm
214776 5.3 MEDIUM
Network
avertx hd838_firmware
hd438_firmware
An issue was discovered in AvertX Auto focus Night Vision HD Indoor/Outdoor IP Dome Camera HD838 and Night Vision HD Indoor/Outdoor Mini IP Bullet Camera HD438. Failed web UI login attempts elicit di… CWE-203
 Information Exposure Through Discrepancy
CVE-2020-11625 2024-11-21 13:58 2020-07-24 Show GitHub Exploit DB Packet Storm
214777 9.8 CRITICAL
Network
avertx hd838_firmware
hd438_firmware
An issue was discovered in AvertX Auto focus Night Vision HD Indoor/Outdoor IP Dome Camera HD838 and Night Vision HD Indoor/Outdoor Mini IP Bullet Camera HD438. They do not require users to change th… CWE-521
Weak Password Requirements 
CVE-2020-11624 2024-11-21 13:58 2020-07-24 Show GitHub Exploit DB Packet Storm
214778 6.8 MEDIUM
Physics
avertx hd838_firmware
hd438_firmware
An issue was discovered in AvertX Auto focus Night Vision HD Indoor/Outdoor IP Dome Camera HD838 and Night Vision HD Indoor/Outdoor Mini IP Bullet Camera HD438. An attacker with physical access to th… NVD-CWE-noinfo
CVE-2020-11623 2024-11-21 13:58 2020-07-24 Show GitHub Exploit DB Packet Storm
214779 9.8 CRITICAL
Network
superwebmailer superwebmailer SuperWebMailer 7.21.0.01526 is susceptible to a remote code execution vulnerability in the Language parameter of mailingupgrade.php. An unauthenticated remote attacker can exploit this behavior to ex… CWE-94
Code Injection
CVE-2020-11546 2024-11-21 13:58 2020-07-15 Show GitHub Exploit DB Packet Storm
214780 7.8 HIGH
Local
gog galaxy In GOG Galaxy 1.2.67, there is a service that is vulnerable to weak file/service permissions: GalaxyClientService.exe. An attacker can put malicious code in a Trojan horse GalaxyClientService.exe. Af… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2020-11827 2024-11-21 13:58 2020-07-15 Show GitHub Exploit DB Packet Storm