Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 22, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227181 5.1 警告 tomatocms - TomatoCMS におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2010-2282 2012-12-20 19:29 2010-06-15 Show GitHub Exploit DB Packet Storm
227182 4.3 警告 tomatocms - TomatoCMS の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-2281 2012-12-20 19:29 2010-06-15 Show GitHub Exploit DB Packet Storm
227183 7.5 危険 Tamlyn Creative Pty - Joomla! 用の bfsurvey コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-2259 2012-12-20 19:29 2010-06-9 Show GitHub Exploit DB Packet Storm
227184 7.5 危険 Tamlyn Creative Pty - Joomla! 用の bfsurvey_pro コンポーネントなどにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-2255 2012-12-20 19:29 2010-06-9 Show GitHub Exploit DB Packet Storm
227185 7.5 危険 shape5 - Joomla! 用の Shape5 Bridge of Hope template における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-2254 2012-12-20 19:29 2010-06-9 Show GitHub Exploit DB Packet Storm
227186 6.8 警告 Gisle Aas - libwww-perl の lwp-download におけるファイルを作成される脆弱性 CWE-20
不適切な入力確認
CVE-2010-2253 2012-12-20 19:29 2010-07-6 Show GitHub Exploit DB Packet Storm
227187 2.1 注意 レッドハット - Red Hat Directory Server 用の setup-ds.pl および setup-ds-admin.pl における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-2241 2012-12-20 19:29 2010-08-3 Show GitHub Exploit DB Packet Storm
227188 2.1 注意 レッドハット - Red Hat Enterprise Virtualization Manager のスナップショットマージ機能における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-2224 2012-12-20 19:29 2010-06-22 Show GitHub Exploit DB Packet Storm
227189 2.1 注意 レッドハット - Red Hat Enterprise Virtualization Hypervisor の VDSM における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-2223 2012-12-20 19:29 2010-06-22 Show GitHub Exploit DB Packet Storm
227190 7.2 危険 RPM - RPM の lib/fsm.c におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-2199 2012-12-20 19:29 2010-06-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 22, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209131 7.8 HIGH
Local
aida64 aida64 Buffer overflow in FinalWire Ltd AIDA64 Engineer 6.00.5100 allows attackers to execute arbitrary code by creating a crafted input that will overwrite the SEH handler. CWE-787
 Out-of-bounds Write
CVE-2020-19513 2024-11-21 14:09 2021-02-19 Show GitHub Exploit DB Packet Storm
209132 8.8 HIGH
Network
open-emr openemr OpenEMR 5.0.1 allows an authenticated attacker to upload and execute malicious PHP scripts through /controller.php. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-19364 2024-11-21 14:09 2021-01-20 Show GitHub Exploit DB Packet Storm
209133 6.5 MEDIUM
Network
vtiger vtiger_crm Vtiger CRM v7.2.0 allows an attacker to display hidden files, list directories by using /libraries and /layout directories. CWE-200
Information Exposure
CVE-2020-19363 2024-11-21 14:09 2021-01-20 Show GitHub Exploit DB Packet Storm
209134 6.1 MEDIUM
Network
vtiger vtiger_crm Reflected XSS in Vtiger CRM v7.2.0 in vtigercrm/index.php? through the view parameter can result in an attacker performing malicious actions to users who open a maliciously crafted link or third-part… CWE-79
Cross-site Scripting
CVE-2020-19362 2024-11-21 14:09 2021-01-20 Show GitHub Exploit DB Packet Storm
209135 6.1 MEDIUM
Network
medintux medintux Reflected XSS in Medintux v2.16.000 CCAM.php by manipulating the mot1 parameter can result in an attacker performing malicious actions to users who open a maliciously crafted link or third-party web … CWE-79
Cross-site Scripting
CVE-2020-19361 2024-11-21 14:09 2021-01-20 Show GitHub Exploit DB Packet Storm
209136 7.5 HIGH
Network
fhem fhem Local file inclusion in FHEM 6.0 allows in fhem/FileLog_logWrapper file parameter can allow an attacker to include a file, which can lead to sensitive information disclosure. CWE-22
Path Traversal
CVE-2020-19360 2024-11-21 14:09 2021-01-20 Show GitHub Exploit DB Packet Storm
209137 8.8 HIGH
Network
draytek vigor2960_firmware DrayTek Vigor2960 1.5.1 allows remote command execution via shell metacharacters in a toLogin2FA action to mainfunction.cgi. CWE-78
OS Command 
CVE-2020-19664 2024-11-21 14:09 2020-12-31 Show GitHub Exploit DB Packet Storm
209138 9.8 CRITICAL
Network
phpshe phpshe PHPSHE 1.7 has SQL injection via the admin.php?mod=user&userlevel_id=1 userlevel_id[] parameter. CWE-89
SQL Injection
CVE-2020-19165 2024-11-21 14:09 2020-12-12 Show GitHub Exploit DB Packet Storm
209139 9.8 CRITICAL
Network
idreamsoft icms iCMS 7.0.14 attackers to execute arbitrary OS commands via shell metacharacters in the DB_NAME parameter to install/install.php. CWE-78
OS Command 
CVE-2020-19527 2024-11-21 14:09 2020-12-11 Show GitHub Exploit DB Packet Storm
209140 7.8 HIGH
Local
imagemagick
debian
imagemagick
debian_linux
Stack-based buffer overflow and unconditional jump in ReadXPMImage in coders/xpm.c in ImageMagick 7.0.10-7. CWE-787
 Out-of-bounds Write
CVE-2020-19667 2024-11-21 14:09 2020-11-21 Show GitHub Exploit DB Packet Storm