Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 22, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227201 7.5 危険 Symphony CMS - Symphony CMS の index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-2143 2012-12-20 19:29 2010-06-3 Show GitHub Exploit DB Packet Storm
227202 7.5 危険 snipegallery - Snipe Gallery における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2010-2126 2012-12-20 19:29 2010-06-1 Show GitHub Exploit DB Packet Storm
227203 2.1 注意 systemseed - Drupal 用の Rotor Banner モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-2125 2012-12-20 19:29 2010-05-20 Show GitHub Exploit DB Packet Storm
227204 2.1 注意 speedtech - Drupal 用の Storm モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-2123 2012-12-20 19:29 2010-05-19 Show GitHub Exploit DB Packet Storm
227205 5 警告 SolarWinds - SolarWinds TFTP Server におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2010-2115 2012-12-20 19:29 2010-05-28 Show GitHub Exploit DB Packet Storm
227206 3.5 注意 uniformserver - The Uniform Server におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2010-2113 2012-12-20 19:29 2010-05-28 Show GitHub Exploit DB Packet Storm
227207 10 危険 timo gaik - Webby Webserver におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-2102 2012-12-20 19:29 2010-05-27 Show GitHub Exploit DB Packet Storm
227208 7.5 危険 UnrealIRCd - UnrealIRCd における任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2010-2075 2012-12-20 19:29 2010-06-15 Show GitHub Exploit DB Packet Storm
227209 5 警告 radovan garabik - Pyftpd の auth_db_config.py における FTP サーバから任意のファイルを読まれる脆弱性 CWE-255
証明書・パスワード管理
CVE-2010-2073 2012-12-20 19:29 2010-06-13 Show GitHub Exploit DB Packet Storm
227210 3.6 注意 radovan garabik - Pyftpd におけるサービス運用妨害 (DoS) の脆弱性 CWE-310
暗号の問題
CVE-2010-2072 2012-12-20 19:29 2010-06-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 22, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209131 7.8 HIGH
Local
aida64 aida64 Buffer overflow in FinalWire Ltd AIDA64 Engineer 6.00.5100 allows attackers to execute arbitrary code by creating a crafted input that will overwrite the SEH handler. CWE-787
 Out-of-bounds Write
CVE-2020-19513 2024-11-21 14:09 2021-02-19 Show GitHub Exploit DB Packet Storm
209132 8.8 HIGH
Network
open-emr openemr OpenEMR 5.0.1 allows an authenticated attacker to upload and execute malicious PHP scripts through /controller.php. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-19364 2024-11-21 14:09 2021-01-20 Show GitHub Exploit DB Packet Storm
209133 6.5 MEDIUM
Network
vtiger vtiger_crm Vtiger CRM v7.2.0 allows an attacker to display hidden files, list directories by using /libraries and /layout directories. CWE-200
Information Exposure
CVE-2020-19363 2024-11-21 14:09 2021-01-20 Show GitHub Exploit DB Packet Storm
209134 6.1 MEDIUM
Network
vtiger vtiger_crm Reflected XSS in Vtiger CRM v7.2.0 in vtigercrm/index.php? through the view parameter can result in an attacker performing malicious actions to users who open a maliciously crafted link or third-part… CWE-79
Cross-site Scripting
CVE-2020-19362 2024-11-21 14:09 2021-01-20 Show GitHub Exploit DB Packet Storm
209135 6.1 MEDIUM
Network
medintux medintux Reflected XSS in Medintux v2.16.000 CCAM.php by manipulating the mot1 parameter can result in an attacker performing malicious actions to users who open a maliciously crafted link or third-party web … CWE-79
Cross-site Scripting
CVE-2020-19361 2024-11-21 14:09 2021-01-20 Show GitHub Exploit DB Packet Storm
209136 7.5 HIGH
Network
fhem fhem Local file inclusion in FHEM 6.0 allows in fhem/FileLog_logWrapper file parameter can allow an attacker to include a file, which can lead to sensitive information disclosure. CWE-22
Path Traversal
CVE-2020-19360 2024-11-21 14:09 2021-01-20 Show GitHub Exploit DB Packet Storm
209137 8.8 HIGH
Network
draytek vigor2960_firmware DrayTek Vigor2960 1.5.1 allows remote command execution via shell metacharacters in a toLogin2FA action to mainfunction.cgi. CWE-78
OS Command 
CVE-2020-19664 2024-11-21 14:09 2020-12-31 Show GitHub Exploit DB Packet Storm
209138 9.8 CRITICAL
Network
phpshe phpshe PHPSHE 1.7 has SQL injection via the admin.php?mod=user&userlevel_id=1 userlevel_id[] parameter. CWE-89
SQL Injection
CVE-2020-19165 2024-11-21 14:09 2020-12-12 Show GitHub Exploit DB Packet Storm
209139 9.8 CRITICAL
Network
idreamsoft icms iCMS 7.0.14 attackers to execute arbitrary OS commands via shell metacharacters in the DB_NAME parameter to install/install.php. CWE-78
OS Command 
CVE-2020-19527 2024-11-21 14:09 2020-12-11 Show GitHub Exploit DB Packet Storm
209140 7.8 HIGH
Local
imagemagick
debian
imagemagick
debian_linux
Stack-based buffer overflow and unconditional jump in ReadXPMImage in coders/xpm.c in ImageMagick 7.0.10-7. CWE-787
 Out-of-bounds Write
CVE-2020-19667 2024-11-21 14:09 2020-11-21 Show GitHub Exploit DB Packet Storm