Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 14, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227281 7.2 危険 Mozilla Foundation - Windows 上で稼働する Mozilla Firefox の Mozilla Maintenance Service における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-1700 2013-06-27 16:20 2013-06-25 Show GitHub Exploit DB Packet Storm
227282 2.1 注意 Linux - Linux Kernel におけるキーストロークのタイミングに関する重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-0160 2013-06-27 16:20 2013-02-18 Show GitHub Exploit DB Packet Storm
227283 6.5 警告 フォーティネット - Fortinet FortiGate デバイス上で稼働する FortiOS における任意のユーザのレコードを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-4604 2013-06-27 13:35 2013-06-13 Show GitHub Exploit DB Packet Storm
227284 9.3 危険 ジャストシステム - 一太郎シリーズにおいて任意のコードが実行される脆弱性 CWE-noinfo
情報不足
CVE-2013-3644 2013-06-26 14:48 2013-06-18 Show GitHub Exploit DB Packet Storm
227285 10 危険 Korenix Technology - Korenix Jetport およびその他の製品で使用されるファームウェアにおける管理アクセス権を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2012-4577 2013-06-26 14:38 2012-08-21 Show GitHub Exploit DB Packet Storm
227286 9.3 危険 Sielco Sistemi - Sielco Sistemi Winlog の RunTime.exe におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-3815 2013-06-26 14:36 2012-06-27 Show GitHub Exploit DB Packet Storm
227287 10 危険 デジタル - Pro-face WinGP PC ランタイムおよび Pro-Server EX におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2012-3797 2013-06-26 14:33 2012-06-11 Show GitHub Exploit DB Packet Storm
227288 5 警告 デジタル - Pro-face WinGP PC ランタイムおよび Pro-Server EX における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2012-3796 2013-06-26 14:32 2012-06-11 Show GitHub Exploit DB Packet Storm
227289 5 警告 デジタル - Pro-face WinGP PC ランタイムおよび Pro-Server EX におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2012-3795 2013-06-26 14:30 2012-06-11 Show GitHub Exploit DB Packet Storm
227290 5 警告 デジタル - Pro-face WinGP PC ランタイムおよび Pro-Server EX におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2012-3794 2013-06-26 14:28 2012-06-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 14, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
203171 7.8 HIGH
Local
zohocorp manageengine_desktop_central The MPS Agent in Zoho ManageEngine Desktop Central MSP build MSP build 10.0.486 is vulnerable to DLL Hijacking: dcinventory.exe and dcconfig.exe try to load CSUNSAPI.dll without supplying the complet… CWE-427
 Uncontrolled Search Path Element
CVE-2020-9367 2024-11-21 14:40 2021-03-19 Show GitHub Exploit DB Packet Storm
203172 5.5 MEDIUM
Local
apache asterixdb When loading a UDF, a specially crafted zip file could allow files to be placed outside of the UDF deployment directory. This issue affected Apache AsterixDB unreleased builds between commits 580b81a… CWE-22
Path Traversal
CVE-2020-9479 2024-11-21 14:40 2021-03-2 Show GitHub Exploit DB Packet Storm
203173 8.8 HIGH
Adjacent
tesla solarcity_solar_monitoring_gateway Tesla SolarCity Solar Monitoring Gateway through 5.46.43 has a "Use of Hard-coded Credentials" issue because Digi ConnectPort X2e uses a .pyc file to store the cleartext password for the python user … CWE-798
CWE-522
 Use of Hard-coded Credentials
 Insufficiently Protected Credentials
CVE-2020-9306 2024-11-21 14:40 2021-02-18 Show GitHub Exploit DB Packet Storm
203174 6.5 MEDIUM
Adjacent
belden hirschmann_hios Hirschmann OS2, RSP, and RSPE devices before HiOS 08.3.00 allow a denial of service. An unauthenticated, adjacent attacker can cause an infinite loop on one of the HSR ring ports of the device. This … CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2020-9307 2024-11-21 14:40 2021-02-12 Show GitHub Exploit DB Packet Storm
203175 4.9 MEDIUM
Network
huawei manageone There has a CSV injection vulnerability in ManageOne 8.0.1. An attacker with common privilege may exploit this vulnerability through some operations to inject the CSV files. Due to insufficient input… CWE-1236
 Improper Neutralization of Formula Elements in a CSV File
CVE-2020-9205 2024-11-21 14:40 2021-02-6 Show GitHub Exploit DB Packet Storm
203176 6.8 MEDIUM
Physics
huawei ais-bw80h-00_firmware There is an insufficient integrity check vulnerability in Huawei Sound X Product. The system does not check certain software package's integrity sufficiently. Successful exploit could allow an attack… CWE-354
 Improper Validation of Integrity Check Value
CVE-2020-9118 2024-11-21 14:40 2021-02-6 Show GitHub Exploit DB Packet Storm
203177 5.5 MEDIUM
Local
epson iprojection In Epson iProjection v2.30, the driver file EMP_MPAU.sys allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from I… CWE-476
 NULL Pointer Dereference
CVE-2020-9453 2024-11-21 14:40 2021-02-6 Show GitHub Exploit DB Packet Storm
203178 5.4 MEDIUM
Network
squaredup squaredup SquaredUp allowed Stored XSS before version 4.6.0. A user was able to create a dashboard that executed malicious content in iframe or by uploading an SVG that contained a script. CWE-79
Cross-site Scripting
CVE-2020-9390 2024-11-21 14:40 2021-02-4 Show GitHub Exploit DB Packet Storm
203179 3.7 LOW
Network
squaredup squaredup A username enumeration issue was discovered in SquaredUp before version 4.6.0. The login functionality was implemented in a way that would enable a malicious user to guess valid username due to a dif… CWE-203
 Information Exposure Through Discrepancy
CVE-2020-9389 2024-11-21 14:40 2021-02-4 Show GitHub Exploit DB Packet Storm
203180 6.5 MEDIUM
Network
squaredup squaredup CSRF protection was not present in SquaredUp before version 4.6.0. A CSRF attack could have been possible by an administrator executing arbitrary code in a HTML dashboard tile via a crafted HTML page… CWE-352
 Origin Validation Error
CVE-2020-9388 2024-11-21 14:40 2021-02-4 Show GitHub Exploit DB Packet Storm