Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228111 9.3 危険 visicommedia - AceFTP Freeware および AceFTP Pro の FTP クライアントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-5175 2012-12-20 18:52 2008-11-19 Show GitHub Exploit DB Packet Storm
228112 9 危険 testmaker - testMaker における任意の PHP コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2008-5173 2012-12-20 18:52 2008-11-19 Show GitHub Exploit DB Packet Storm
228113 9.3 危険 phpblaster - phpBLASTER CMS の admin/minibb/index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-5171 2012-12-20 18:52 2008-11-19 Show GitHub Exploit DB Packet Storm
228114 4.3 警告 theratstudios - The Rat CMS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-5164 2012-12-20 18:52 2008-11-19 Show GitHub Exploit DB Packet Storm
228115 7.5 危険 theratstudios - The Rat CMS における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5163 2012-12-20 18:52 2008-11-19 Show GitHub Exploit DB Packet Storm
228116 6.9 警告 uoregon - tau における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2008-5157 2012-12-20 18:52 2008-11-18 Show GitHub Exploit DB Packet Storm
228117 9.3 危険 smsclient - smsclient の mail2sms.sh における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2008-5155 2012-12-20 18:52 2008-11-18 Show GitHub Exploit DB Packet Storm
228118 6.9 警告 tkman - tkman の tkman における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2008-5137 2012-12-20 18:52 2008-11-18 Show GitHub Exploit DB Packet Storm
228119 4.3 警告 scripts4profit - Scripts4Profit DXShopCart の search.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-5119 2012-12-20 18:52 2008-11-17 Show GitHub Exploit DB Packet Storm
228120 4 警告 WordPress.org - WordPress におけるクロスサイトリクエストフォージェリ (CSRF) 攻撃を実行される脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2008-5113 2012-12-20 18:52 2008-11-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 17, 2026, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
201671 7.8 HIGH
Local
cisco webex_network_recording_player
webex_meetings_server
webex_meetings_online
webex_meetings
A vulnerability in Cisco Webex Network Recording Player for Microsoft Windows and Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system. The… CWE-20
 Improper Input Validation 
CVE-2020-3194 2024-11-21 14:30 2020-04-16 Show GitHub Exploit DB Packet Storm
201672 7.5 HIGH
Network
cisco unified_communications_manager
unified_contact_center_express
A vulnerability in the Tool for Auto-Registered Phones Support (TAPS) of Cisco Unified Communications Manager (UCM) and Cisco Unified Communications Manager Session Management Edition (SME) could all… CWE-22
Path Traversal
CVE-2020-3177 2024-11-21 14:30 2020-04-16 Show GitHub Exploit DB Packet Storm
201673 7.5 HIGH
Network
cisco iot_field_network_director A vulnerability in the Constrained Application Protocol (CoAP) implementation of Cisco IoT Field Network Director could allow an unauthenticated remote attacker to cause a denial of service (DoS) con… CWE-20
 Improper Input Validation 
CVE-2020-3162 2024-11-21 14:30 2020-04-16 Show GitHub Exploit DB Packet Storm
201674 9.8 CRITICAL
Network
cisco ip_phone_8865_firmware
ip_phone_8851_firmware
ip_phone_7841_firmware
ip_phone_7821_firmware
ip_phone_8811_firmware
ip_phone_8861_firmware
ip_phone_8845_firmware
ip_phone_7861_fir…
A vulnerability in the web server for Cisco IP Phones could allow an unauthenticated, remote attacker to execute code with root privileges or cause a reload of an affected IP phone, resulting in a de… CWE-20
 Improper Input Validation 
CVE-2020-3161 2024-11-21 14:30 2020-04-16 Show GitHub Exploit DB Packet Storm
201675 3.5 LOW
Network
cisco webex_meetings_server vulnerability within the Multimedia Viewer feature of Cisco Webex Meetings could allow an authenticated, remote attacker to bypass security protections. The vulnerability is due to missing security w… CWE-20
 Improper Input Validation 
CVE-2020-3126 2024-11-21 14:30 2020-04-14 Show GitHub Exploit DB Packet Storm
201676 7.8 HIGH
Local
cisco sd-wan_firmware A vulnerability in the CLI of Cisco SD-WAN Solution software could allow an authenticated, local attacker to inject arbitrary commands that are executed with root privileges. The vulnerability is due… CWE-78
OS Command 
CVE-2020-3266 2024-11-21 14:30 2020-03-20 Show GitHub Exploit DB Packet Storm
201677 7.8 HIGH
Local
cisco sd-wan_firmware A vulnerability in Cisco SD-WAN Solution software could allow an authenticated, local attacker to elevate privileges to root on the underlying operating system. The vulnerability is due to insufficie… CWE-269
 Improper Privilege Management
CVE-2020-3265 2024-11-21 14:30 2020-03-20 Show GitHub Exploit DB Packet Storm
201678 7.1 HIGH
Local
cisco sd-wan_firmware A vulnerability in Cisco SD-WAN Solution software could allow an authenticated, local attacker to cause a buffer overflow on an affected device. The vulnerability is due to insufficient input validat… CWE-120
Classic Buffer Overflow
CVE-2020-3264 2024-11-21 14:30 2020-03-20 Show GitHub Exploit DB Packet Storm
201679 5.3 MEDIUM
Network
cisco prime_collaboration_provisioning A vulnerability in the web-based management interface of Cisco Prime Collaboration Provisioning could allow an unauthenticated, remote attacker to obtain sensitive information about an affected devic… CWE-200
Information Exposure
CVE-2020-3193 2024-11-21 14:30 2020-03-5 Show GitHub Exploit DB Packet Storm
201680 6.1 MEDIUM
Network
cisco prime_collaboration_provisioning A vulnerability in the web-based management interface of Cisco Prime Collaboration Provisioning could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against … CWE-79
Cross-site Scripting
CVE-2020-3192 2024-11-21 14:30 2020-03-5 Show GitHub Exploit DB Packet Storm