Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227401 9 危険 VMware - VMware vCenter Server Appliance における任意のファイルを作成または上書きされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-3080 2013-05-2 14:49 2013-04-25 Show GitHub Exploit DB Packet Storm
227402 9 危険 VMware - VMware vCenter Server Appliance における任意のプログラムを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2013-3079 2013-05-2 14:47 2013-04-25 Show GitHub Exploit DB Packet Storm
227403 6 警告 SAP - SAP BASIS Communication Services における任意のコマンドを実行される脆弱性 CWE-noinfo
情報不足
CVE-2013-3063 2013-05-2 14:40 2013-04-16 Show GitHub Exploit DB Packet Storm
227404 6.5 警告 SAP - SAP Production Planning and Control の Engineering Workbench コンポーネントにおけるトランザクションの制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-3062 2013-05-2 14:38 2013-04-16 Show GitHub Exploit DB Packet Storm
227405 6.5 警告 SAP - SAP industry solution for healthcare および SAP ERP Central Component におけるトランザクションの制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-3061 2013-05-2 14:37 2013-04-16 Show GitHub Exploit DB Packet Storm
227406 7.1 危険 Galil - Galil RIO-47100 Pocket PLC におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-0699 2013-05-2 14:34 2013-04-26 Show GitHub Exploit DB Packet Storm
227407 9.4 危険 MatrikonOPC - MatrikonOPC A&E Historian の Health Monitor サービスにおけるディレクトリトラバーサルの脆弱性 - CVE-2013-0673 2013-05-2 14:33 2013-04-26 Show GitHub Exploit DB Packet Storm
227408 5 警告 MatrikonOPC - MatrikonOPC Security Gateway の設定ユーティリティにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2013-0666 2013-05-2 14:31 2013-04-26 Show GitHub Exploit DB Packet Storm
227409 4.3 警告 IBM - IBM Lotus Notes におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0538 2013-05-2 14:20 2013-04-30 Show GitHub Exploit DB Packet Storm
227410 5.8 警告 IBM - IBM Lotus Notes における Java コードの実行および X-Confirm-Reading-To 機能の制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-0127 2013-05-2 14:19 2013-04-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 10, 2026, 5 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
214541 9.1 CRITICAL
Network
bludit bludit Bludit v3.8.1 is affected by directory traversal. Remote attackers are able to delete arbitrary files via /admin/ajax/upload-profile-picture. CWE-22
Path Traversal
CVE-2020-18190 2024-11-21 14:08 2020-10-2 Show GitHub Exploit DB Packet Storm
214542 9.8 CRITICAL
Network
pluxml pluxml class.plx.admin.php in PluXml 5.7 allows attackers to execute arbitrary PHP code by modify the configuration file in a linux environment. CWE-94
Code Injection
CVE-2020-18185 2024-11-21 14:08 2020-10-2 Show GitHub Exploit DB Packet Storm
214543 7.2 HIGH
Network
pluxxml pluxxml In PluxXml V5.7,the theme edit function /PluXml/core/admin/parametres_edittpl.php allows remote attackers to execute arbitrary PHP code by placing this code into a template. NVD-CWE-noinfo
CVE-2020-18184 2024-11-21 14:08 2020-10-2 Show GitHub Exploit DB Packet Storm
214544 4.3 MEDIUM
Network
powerdns authoritative An issue has been found in PowerDNS Authoritative Server before 4.3.1 where an authorized user with the ability to insert crafted records into a zone might be able to leak the content of uninitialize… CWE-908
 Use of Uninitialized Resource
CVE-2020-17482 2024-11-21 14:08 2020-10-2 Show GitHub Exploit DB Packet Storm
214545 7.5 HIGH
Network
nec expresscluster_x This vulnerability allows remote attackers to disclose sensitive information on affected installations of NEC ExpressCluster 4.1. Authentication is not required to exploit this vulnerability. The spe… - CVE-2020-17408 2024-11-21 14:08 2020-09-11 Show GitHub Exploit DB Packet Storm
214546 5.4 MEDIUM
Network
fabbricadigitale multiux A post-authenticated stored XSS was found in MultiUx v.3.1.12.0 via the /multiux/SaveMailbox LastName field. CWE-79
Cross-site Scripting
CVE-2020-17458 2024-11-21 14:08 2020-09-2 Show GitHub Exploit DB Packet Storm
214547 8.8 HIGH
Adjacent
senstar symphony This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Senstar Symphony 7.3.2.2. Authentication is not required to exploit this vulnerability. The… - CVE-2020-17405 2024-11-21 14:08 2020-09-2 Show GitHub Exploit DB Packet Storm
214548 6.1 MEDIUM
Network
forgerock identity_manager Dashboards and progressiveProfileForms in ForgeRock Identity Manager before 7.0.0 are vulnerable to stored XSS. The vulnerability affects versions 6.5.0.4, 6.0.0.6. CWE-79
Cross-site Scripting
CVE-2020-17465 2024-11-21 14:08 2020-09-1 Show GitHub Exploit DB Packet Storm
214549 5.4 MEDIUM
Network
halo halo Halo blog 1.2.0 allows users to submit comments on blog posts via /api/content/posts/comments. The javascript code supplied by the attacker will then execute in the victim user's browser. CWE-79
Cross-site Scripting
CVE-2020-19007 2024-11-21 14:08 2020-08-26 Show GitHub Exploit DB Packet Storm
214550 5.7 MEDIUM
Network
zrlog zrlog zrlog v2.1.0 has a vulnerability with the permission check. If admin account is logged in, other unauthorized users can download the database backup file directly. CWE-863
 Incorrect Authorization
CVE-2020-19005 2024-11-21 14:08 2020-08-26 Show GitHub Exploit DB Packet Storm