Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227431 6.8 警告 xrms - XRMS CRM の activities/workflow-activities.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-3399 2012-12-20 18:52 2008-07-31 Show GitHub Exploit DB Packet Storm
227432 2.6 注意 xrms - XRMS CRM におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-3398 2012-12-20 18:52 2008-07-31 Show GitHub Exploit DB Packet Storm
227433 4.3 警告 runesoft - Runesoft Cerberus CMS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-3397 2012-12-20 18:52 2008-07-31 Show GitHub Exploit DB Packet Storm
227434 5.8 警告 webwizguide - Web Wiz Forum におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2008-3392 2012-12-20 18:52 2008-07-31 Show GitHub Exploit DB Packet Storm
227435 4.3 警告 webwizguide - Web Wiz Forum におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-3391 2012-12-20 18:52 2008-07-31 Show GitHub Exploit DB Packet Storm
227436 7.5 危険 phpfootball - PHPFootball の show.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3387 2012-12-20 18:52 2008-07-30 Show GitHub Exploit DB Packet Storm
227437 4.3 警告 snarky - Snark VisualPic におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-3379 2012-12-20 18:52 2008-07-30 Show GitHub Exploit DB Packet Storm
227438 7.5 危険 talkback - TalkBack の install/help.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-3371 2012-12-20 18:52 2008-07-30 Show GitHub Exploit DB Packet Storm
227439 7.5 危険 viart - ViArt Shop の products_rss.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3369 2012-12-20 18:52 2008-07-30 Show GitHub Exploit DB Packet Storm
227440 4.3 警告 webwizguide - Web Wiz RTE の RTE_popup_link.asp におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-3367 2012-12-20 18:52 2008-07-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
210181 4.4 MEDIUM
Local
intel
netapp
active_management_technology_firmware
cloud_backup
Out-of-bounds read in subsystem in Intel(R) AMT versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70 and 14.0.45 may allow a privileged user to potentially enable information disclosure via local acc… CWE-125
Out-of-bounds Read
CVE-2020-12356 2024-11-21 13:59 2020-11-13 Show GitHub Exploit DB Packet Storm
210182 6.8 MEDIUM
Physics
intel trusted_execution_engine Authentication bypass by capture-replay in RPMB protocol message authentication subsystem in Intel(R) TXE versions before 4.0.30 may allow an unauthenticated user to potentially enable escalation of … CWE-294
Authentication Bypass by Capture-replay 
CVE-2020-12355 2024-11-21 13:59 2020-11-13 Show GitHub Exploit DB Packet Storm
210183 7.8 HIGH
Local
intel active_management_technology_software_development_kit Incorrect default permissions in Windows(R) installer in Intel(R) AMT SDK versions before 14.0.0.1 may allow an authenticated user to potentially enable escalation of privilege via local access. CWE-276
Incorrect Default Permissions 
CVE-2020-12354 2024-11-21 13:59 2020-11-13 Show GitHub Exploit DB Packet Storm
210184 6.5 MEDIUM
Adjacent
intel dual_band_wireless-ac_3168_firmware
dual_band_wireless-ac_8260_firmware
dual_band_wireless-ac_8265_firmware
wi-fi_6_ax200_firmware
wi-fi_6_ax201_firmware
wireless-ac_9260_firmware
w…
Improper input validation in some Intel(R) Wireless Bluetooth(R) products before version 21.110 may allow an unauthenticated user to potentially enable denial of service via adjacent access. CWE-20
 Improper Input Validation 
CVE-2020-12322 2024-11-21 13:59 2020-11-13 Show GitHub Exploit DB Packet Storm
210185 8.8 HIGH
Adjacent
intel dual_band_wireless-ac_3168_firmware
dual_band_wireless-ac_8260_firmware
dual_band_wireless-ac_8265_firmware
wi-fi_6_ax200_firmware
wi-fi_6_ax201_firmware
wireless-ac_9260_firmware
w…
Improper buffer restriction in some Intel(R) Wireless Bluetooth(R) products before version 21.110 may allow an unauthenticated user to potentially enable escalation of privilege via adjacent access. NVD-CWE-noinfo
CVE-2020-12321 2024-11-21 13:59 2020-11-13 Show GitHub Exploit DB Packet Storm
210186 6.5 MEDIUM
Adjacent
intel proset\/wireless_wifi Insufficient control flow management in some Intel(R) PROSet/Wireless WiFi products before version 21.110 may allow an unauthenticated user to potentially enable denial of service via adjacent access. NVD-CWE-Other
CVE-2020-12319 2024-11-21 13:59 2020-11-13 Show GitHub Exploit DB Packet Storm
210187 7.8 HIGH
Local
intel proset\/wireless_wifi Protection mechanism failure in some Intel(R) PROSet/Wireless WiFi products before version 21.110 may allow an authenticated user to potentially enable escalation of privilege via local access. NVD-CWE-noinfo
CVE-2020-12318 2024-11-21 13:59 2020-11-13 Show GitHub Exploit DB Packet Storm
210188 6.5 MEDIUM
Adjacent
intel proset\/wireless_wifi Improper buffer restriction in some Intel(R) PROSet/Wireless WiFi products before version 21.110 may allow an unauthenticated user to potentially enable denial of service via adjacent access. NVD-CWE-noinfo
CVE-2020-12317 2024-11-21 13:59 2020-11-13 Show GitHub Exploit DB Packet Storm
210189 6.5 MEDIUM
Adjacent
intel proset\/wireless_wifi Improper input validation in some Intel(R) PROSet/Wireless WiFi products before version 21.110 may allow an unauthenticated user to potentially enable denial of service via adjacent access. CWE-20
 Improper Input Validation 
CVE-2020-12314 2024-11-21 13:59 2020-11-13 Show GitHub Exploit DB Packet Storm
210190 6.8 MEDIUM
Physics
intel quartus_prime_pro
stratix_10_fpga_firmware
Improper buffer restrictions in the Intel(R) Stratix(R) 10 FPGA firmware provided with the Intel(R) Quartus(R) Prime Pro software before version 20.2 may allow an unauthenticated user to potentially … NVD-CWE-noinfo
CVE-2020-12312 2024-11-21 13:59 2020-11-13 Show GitHub Exploit DB Packet Storm