Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 12, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227911 5 警告 シスコシステムズ - Cisco Hosted Collaboration Solution におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2013-1174 2013-04-8 14:28 2013-04-4 Show GitHub Exploit DB Packet Storm
227912 5 警告 IBM - IBM IMS Enterprise Suite の SOAP Gateway における重要な情報を取得される脆弱性 CWE-310
暗号の問題
CVE-2013-0483 2013-04-8 14:28 2013-03-29 Show GitHub Exploit DB Packet Storm
227913 4 警告 IBM - IBM Netezza Performance Portal の HTTPD におけるディレクトリトラバーサルの脆弱性 CWE-16
環境設定
CVE-2013-0470 2013-04-8 14:27 2013-03-22 Show GitHub Exploit DB Packet Storm
227914 2.1 注意 Katello Project - Katello の katello-configure における Candlepin CA 証明書を改ざんされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-6116 2013-04-5 18:51 2013-03-1 Show GitHub Exploit DB Packet Storm
227915 4 警告 Opera Software ASA - Opera における識別攻撃およびプレーンテキストリカバリ攻撃を誘発される脆弱性 CWE-310
暗号の問題
CVE-2013-1618 2013-04-5 17:23 2013-01-30 Show GitHub Exploit DB Packet Storm
227916 9.3 危険 Invensys - Invensys Wonderware Win-XML Exporter における任意のファイルを読まれる脆弱性 CWE-20
不適切な入力確認
CVE-2012-4710 2013-04-5 15:57 2013-03-21 Show GitHub Exploit DB Packet Storm
227917 4 警告 Schneider Electric - Schneider Electric Modicon M340 の PLC モジュールにおけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2013-2761 2013-04-5 15:56 2013-01-23 Show GitHub Exploit DB Packet Storm
227918 8.5 危険 Schneider Electric - 複数の Schneider Electric Modicon 製品上の FactoryCast サービスにおける任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2013-0664 2013-04-5 15:55 2013-01-23 Show GitHub Exploit DB Packet Storm
227919 6.8 警告 Schneider Electric - 複数の Schneider Electric Modicon 製品におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-0663 2013-04-5 15:55 2013-01-23 Show GitHub Exploit DB Packet Storm
227920 5.8 警告 マイクロソフト - Microsoft Windows モダン メールにおける他の Web サイトのリンクになりすまされる脆弱性 CWE-noinfo
情報不足
CVE-2013-1299 2013-04-5 14:58 2013-03-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 12, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
220371 9.8 CRITICAL
Network
netkit_telnet_project
fedoraproject
debian
arista
oracle
juniper
netkit_telnet
fedora
debian_linux
eos
communications_performance_intelligence_center
junos
utility.c in telnetd in netkit telnet through 0.17 allows remote attackers to execute arbitrary code via short writes or urgent data, because of a buffer overflow involving the netclear and nextitem … CWE-120
Classic Buffer Overflow
CVE-2020-10188 2024-11-21 13:54 2020-03-7 Show GitHub Exploit DB Packet Storm
220372 8.6 HIGH
Network
yubico yubikey_one_time_password_validation_server The sync endpoint in YubiKey Validation Server before 2.40 allows remote attackers to replay an OTP. NOTE: this issue is potentially relevant to persons outside Yubico who operate a self-hosted OTP v… CWE-294
Authentication Bypass by Capture-replay 
CVE-2020-10185 2024-11-21 13:54 2020-03-6 Show GitHub Exploit DB Packet Storm
220373 7.5 HIGH
Network
yubico yubikey_one_time_password_validation_server The verify endpoint in YubiKey Validation Server before 2.40 does not check the length of SQL queries, which allows remote attackers to cause a denial of service, aka SQL injection. NOTE: this issue … CWE-89
SQL Injection
CVE-2020-10184 2024-11-21 13:54 2020-03-6 Show GitHub Exploit DB Packet Storm
220374 9.8 CRITICAL
Network
eset nod32_antivirus
smart_security
mobile_security
smart_tv_security
cyber_security
The ESET AV parsing engine allows virus-detection bypass via a crafted BZ2 Checksum field in an archive. This affects versions before 1294 of Smart Security Premium, Internet Security, NOD32 Antiviru… CWE-436
 Interpretation Conflict
CVE-2020-10180 2024-11-21 13:54 2020-03-6 Show GitHub Exploit DB Packet Storm
220375 7.0 HIGH
Local
timeshift_project
fedoraproject
canonical
timeshift
fedora
ubuntu_linux
init_tmp in TeeJee.FileSystem.vala in Timeshift before 20.03 unsafely reuses a preexisting temporary directory in the predictable location /tmp/timeshift. It follows symlinks in this location or uses… CWE-362
CWE-59
Race Condition
Link Following
CVE-2020-10174 2024-11-21 13:54 2020-03-6 Show GitHub Exploit DB Packet Storm
220376 8.8 HIGH
Network
comtrend vr-3033_firmware Comtrend VR-3033 DE11-416SSG-C01_R02.A2pvI042j1.d26m devices have Multiple Authenticated Command Injection vulnerabilities via the ping and traceroute diagnostic pages, as demonstrated by shell metac… CWE-78
OS Command 
CVE-2020-10173 2024-11-21 13:54 2020-03-6 Show GitHub Exploit DB Packet Storm
220377 5.4 MEDIUM
Network
phpgurukul daily_expense_tracker_system PHPGurukul Daily Expense Tracker System 1.0 is vulnerable to stored XSS, as demonstrated by the ExpenseItem or ExpenseCost parameter in manage-expense.php. CWE-79
Cross-site Scripting
CVE-2020-10107 2024-11-21 13:54 2020-03-5 Show GitHub Exploit DB Packet Storm
220378 9.8 CRITICAL
Network
phpgurukul daily_expense_tracker_system PHPGurukul Daily Expense Tracker System 1.0 is vulnerable to SQL injection, as demonstrated by the email parameter in index.php or register.php. The SQL injection allows to dump the MySQL database an… CWE-89
SQL Injection
CVE-2020-10106 2024-11-21 13:54 2020-03-5 Show GitHub Exploit DB Packet Storm
220379 5.3 MEDIUM
Network
zammad zammad An issue was discovered in Zammad 3.0 through 3.2. It returns source code of static resources when submitting an OPTIONS request, rather than a GET request. Disclosure of source code allows for an at… CWE-552
 Files or Directories Accessible to External Parties
CVE-2020-10105 2024-11-21 13:54 2020-03-5 Show GitHub Exploit DB Packet Storm
220380 4.3 MEDIUM
Network
zammad zammad An issue was discovered in Zammad 3.0 through 3.2. After authentication, it transmits sensitive information to the user that may be compromised and used by an attacker to gain unauthorized access. Ha… CWE-200
Information Exposure
CVE-2020-10104 2024-11-21 13:54 2020-03-5 Show GitHub Exploit DB Packet Storm