Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 6, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227161 4.3 警告 snews - SNewsCMS Rus の search.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1413 2012-12-20 18:52 2008-03-20 Show GitHub Exploit DB Packet Storm
227162 7.5 危険 phpbp - phpBP の includes/functions/banners-external.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1408 2012-12-20 18:52 2008-03-20 Show GitHub Exploit DB Packet Storm
227163 4.3 警告 Plone Foundation - Plone CMS におけるアカウントへの永久アクセス権を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2008-1396 2012-12-20 18:52 2008-03-19 Show GitHub Exploit DB Packet Storm
227164 7.5 危険 Plone Foundation - Plone CMS におけるログアウトしたセッションを再利用される脆弱性 CWE-287
不適切な認証
CVE-2008-1395 2012-12-20 18:52 2008-03-19 Show GitHub Exploit DB Packet Storm
227165 7.5 危険 Plone Foundation - Plone CMS におけるアクセス権を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2008-1394 2012-12-20 18:52 2008-03-19 Show GitHub Exploit DB Packet Storm
227166 10 危険 Plone Foundation - Plone CMS における管理権限を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2008-1393 2012-12-20 18:52 2008-03-19 Show GitHub Exploit DB Packet Storm
227167 4.3 警告 s9y - S9Y のインストーラにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1386 2012-12-20 18:52 2008-04-22 Show GitHub Exploit DB Packet Storm
227168 4.3 警告 s9y - S9Y の Top Referrers プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1385 2012-12-20 18:52 2008-04-22 Show GitHub Exploit DB Packet Storm
227169 7.5 危険 ZoneMinder - ZoneMinder における任意のコマンドを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2008-1381 2012-12-20 18:52 2008-05-1 Show GitHub Exploit DB Packet Storm
227170 6.8 警告 wildmary - wildmary Yap Blog の index.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-1370 2012-12-20 18:52 2008-03-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
210501 9.8 CRITICAL
Network
sorcery_project sorcery In Sorcery before 0.15.0, there is a brute force vulnerability when using password authentication via Sorcery. The brute force protection submodule will prevent a brute force attack for the defined l… CWE-307
mproper Restriction of Excessive Authentication Attempts
CVE-2020-11052 2024-11-21 13:56 2020-05-8 Show GitHub Exploit DB Packet Storm
210502 2.2 LOW
Network
freerdp
canonical
debian
freerdp
ubuntu_linux
debian_linux
In FreeRDP after 1.1 and before 2.0.0, there is an out-of-bound read of client memory that is then passed on to the protocol parser. This has been patched in 2.0.0. - CVE-2020-11049 2024-11-21 13:56 2020-05-8 Show GitHub Exploit DB Packet Storm
210503 2.2 LOW
Network
freerdp
canonical
debian
freerdp
ubuntu_linux
debian_linux
In FreeRDP after 1.0 and before 2.0.0, there is an out-of-bounds read. It only allows to abort a session. No data extraction is possible. This has been fixed in 2.0.0. - CVE-2020-11048 2024-11-21 13:56 2020-05-8 Show GitHub Exploit DB Packet Storm
210504 5.9 MEDIUM
Network
freerdp
canonical
debian
freerdp
ubuntu_linux
debian_linux
In FreeRDP after 1.1 and before 2.0.0, there is an out-of-bounds read in autodetect_recv_bandwidth_measure_results. A malicious server can extract up to 8 bytes of client memory with a manipulated me… - CVE-2020-11047 2024-11-21 13:56 2020-05-8 Show GitHub Exploit DB Packet Storm
210505 2.2 LOW
Network
freerdp
canonical
debian
freerdp
ubuntu_linux
debian_linux
In FreeRDP after 1.0 and before 2.0.0, there is a stream out-of-bounds seek in update_read_synchronize that could lead to a later out-of-bounds read. - CVE-2020-11046 2024-11-21 13:56 2020-05-8 Show GitHub Exploit DB Packet Storm
210506 3.3 LOW
Network
freerdp
debian
canonical
freerdp
debian_linux
ubuntu_linux
In FreeRDP after 1.0 and before 2.0.0, there is an out-of-bound read in in update_read_bitmap_data that allows client memory to be read to an image buffer. The result displayed on screen as colour. - CVE-2020-11045 2024-11-21 13:56 2020-05-8 Show GitHub Exploit DB Packet Storm
210507 2.2 LOW
Network
freerdp
canonical
debian
freerdp
ubuntu_linux
debian_linux
In FreeRDP greater than 1.2 and before 2.0.0, a double free in update_read_cache_bitmap_v3_order crashes the client application if corrupted data from a manipulated server is parsed. This has been pa… - CVE-2020-11044 2024-11-21 13:56 2020-05-8 Show GitHub Exploit DB Packet Storm
210508 5.9 MEDIUM
Network
freerdp
debian
canonical
freerdp
debian_linux
ubuntu_linux
In FreeRDP greater than 1.1 and before 2.0.0, there is an out-of-bounds read in update_read_icon_info. It allows reading a attacker-defined amount of client memory (32bit unsigned -> 4GB) to an inter… - CVE-2020-11042 2024-11-21 13:56 2020-05-8 Show GitHub Exploit DB Packet Storm
210509 7.5 HIGH
Network
wavlink wl-wn575a3_firmware
wl-wn579g3_firmware
wn531a6_firmware
wn535g3_firmware
wn530h4_firmware
wn57x93_firmware
wn572hg3_firmware
wn575a4_firmware
wn578a2_firmware
wn579g3_firm…
An issue was discovered affecting a backup feature where a crafted POST request returns the current configuration of the device in cleartext, including the administrator password. No authentication i… CWE-306
Missing Authentication for Critical Function
CVE-2020-10974 2024-11-21 13:56 2020-05-8 Show GitHub Exploit DB Packet Storm
210510 7.5 HIGH
Network
wavlink wn530hg4_firmware
wn531g3_firmware
wn533a8_firmware
wn551k1_firmware
An issue was discovered in Wavlink WN530HG4, Wavlink WN531G3, Wavlink WN533A8, and Wavlink WN551K1 affecting /cgi-bin/ExportAllSettings.sh where a crafted POST request returns the current configurati… CWE-306
Missing Authentication for Critical Function
CVE-2020-10973 2024-11-21 13:56 2020-05-8 Show GitHub Exploit DB Packet Storm