Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227431 6.8 警告 simplog - Simplog の user.php におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2009-4092 2012-12-20 19:28 2009-11-29 Show GitHub Exploit DB Packet Storm
227432 5 警告 simplog - Simplog の comments.php におけるコメントを編集される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-4091 2012-12-20 19:28 2009-11-29 Show GitHub Exploit DB Packet Storm
227433 7.5 危険 telepark - telepark.wiki の ajax/addComment.php における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2009-4090 2012-12-20 19:28 2009-11-29 Show GitHub Exploit DB Packet Storm
227434 5 警告 telepark - telepark.wiki における認可を回避される脆弱性 CWE-287
不適切な認証
CVE-2009-4089 2012-12-20 19:28 2009-11-29 Show GitHub Exploit DB Packet Storm
227435 6.8 警告 telepark - telepark.wiki におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-4088 2012-12-20 19:28 2009-11-29 Show GitHub Exploit DB Packet Storm
227436 4.3 警告 telepark - telepark.wiki の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4087 2012-12-20 19:28 2009-11-29 Show GitHub Exploit DB Packet Storm
227437 4.3 警告 puntolatinoclub - Drupal 用の Gallery Assist モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4064 2012-12-20 19:28 2009-11-18 Show GitHub Exploit DB Packet Storm
227438 4.3 警告 yuriy babenko - Drupal 用の Agreement モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4061 2012-12-20 19:28 2009-11-18 Show GitHub Exploit DB Packet Storm
227439 7.5 危険 telebidauctionscript - Telebid Auction Script の allauctions.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4058 2012-12-20 19:28 2009-11-23 Show GitHub Exploit DB Packet Storm
227440 7.5 危険 PowerDNS - PowerDNS Recursor における DNS データを偽装される脆弱性 CWE-noinfo
情報不足
CVE-2009-4010 2012-12-20 19:28 2010-01-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
201981 8.8 HIGH
Network
cisco unified_communications_manager A vulnerability in the web-based management interface of Cisco Unified Communications Manager (UCM) could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) atta… CWE-352
 Origin Validation Error
CVE-2020-3135 2024-11-21 14:30 2020-09-23 Show GitHub Exploit DB Packet Storm
201982 7.5 HIGH
Network
cisco email_security_appliance A vulnerability in the email message scanning of Cisco AsyncOS Software for Cisco Email Security Appliance (ESA) could allow an unauthenticated, remote attacker to bypass configured filters on the de… CWE-20
 Improper Input Validation 
CVE-2020-3133 2024-11-21 14:30 2020-09-23 Show GitHub Exploit DB Packet Storm
201983 6.5 MEDIUM
Network
cisco unity_connection A vulnerability in the web management interface of Cisco Unity Connection could allow an authenticated remote attacker to overwrite files on the underlying filesystem. The vulnerability is due to ins… CWE-20
 Improper Input Validation 
CVE-2020-3130 2024-11-21 14:30 2020-09-23 Show GitHub Exploit DB Packet Storm
201984 6.5 MEDIUM
Network
cisco hosted_collaboration_mediation_fulfillment A vulnerability in the web-based interface of Cisco Hosted Collaboration Mediation Fulfillment (HCM-F) could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) a… CWE-352
 Origin Validation Error
CVE-2020-3124 2024-11-21 14:30 2020-09-23 Show GitHub Exploit DB Packet Storm
201985 4.7 MEDIUM
Network
cisco web_security_appliance
content_security_management_appliance
A vulnerability in the API Framework of Cisco AsyncOS for Cisco Web Security Appliance (WSA) and Cisco Content Security Management Appliance (SMA) could allow an unauthenticated, remote attacker to i… NVD-CWE-Other
CVE-2020-3117 2024-11-21 14:30 2020-09-23 Show GitHub Exploit DB Packet Storm
201986 5.5 MEDIUM
Local
cisco webex_meetings_server
webex_meetings_online
A vulnerability in the way Cisco Webex applications process Universal Communications Format (UCF) files could allow an attacker to cause a denial of service (DoS) condition. The vulnerability is due … CWE-20
 Improper Input Validation 
CVE-2020-3116 2024-11-21 14:30 2020-09-23 Show GitHub Exploit DB Packet Storm
201987 6.5 MEDIUM
Network
cisco enterprise_network_function_virtualization_infrastructure A vulnerability in the directory permissions of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, remote attacker to perform a directory traversal attack on a limited… CWE-22
Path Traversal
CVE-2020-3365 2024-11-21 14:30 2020-09-4 Show GitHub Exploit DB Packet Storm
201988 8.8 HIGH
Adjacent
cisco nx-os A vulnerability in the Data Management Engine (DME) of Cisco NX-OS Software could allow an unauthenticated, adjacent attacker to execute arbitrary code with administrative privileges or cause a denia… CWE-787
 Out-of-bounds Write
CVE-2020-3415 2024-11-21 14:30 2020-08-28 Show GitHub Exploit DB Packet Storm
201989 8.6 HIGH
Network
cisco nx-os A vulnerability in the Border Gateway Protocol (BGP) Multicast VPN (MVPN) implementation of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause a BGP session to repeatedly r… CWE-20
 Improper Input Validation 
CVE-2020-3398 2024-11-21 14:30 2020-08-28 Show GitHub Exploit DB Packet Storm
201990 8.6 HIGH
Network
cisco nx-os A vulnerability in the Border Gateway Protocol (BGP) Multicast VPN (MVPN) implementation of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause an affected device to unexpec… CWE-20
 Improper Input Validation 
CVE-2020-3397 2024-11-21 14:30 2020-08-28 Show GitHub Exploit DB Packet Storm