Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 6, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228241 7.5 危険 powl - Powl の plugins/widgets/htmledit/htmledit.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-3371 2012-12-20 18:19 2007-06-22 Show GitHub Exploit DB Packet Storm
228242 7.8 危険 Polycom - Polycom SoundPoint IP 601 SIP phone with BootROM におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-3369 2012-12-20 18:19 2007-06-22 Show GitHub Exploit DB Packet Storm
228243 7.8 危険 Polycom - Polycom SoundPoint 上で稼動する IP 601 SIP phone with BootROM の HTTP サーバにおけるバッファオーバーフローの脆弱性 - CVE-2007-3368 2012-12-20 18:19 2007-06-22 Show GitHub Exploit DB Packet Storm
228244 10 危険 scriptdevelopers.net - NetClassifieds Premium Edition における情報を取得される脆弱性 - CVE-2007-3357 2012-12-20 18:19 2007-06-22 Show GitHub Exploit DB Packet Storm
228245 7.8 危険 scriptdevelopers.net - NetClassifieds Premium Edition における重要な情報を取得される脆弱性 - CVE-2007-3356 2012-12-20 18:19 2007-06-22 Show GitHub Exploit DB Packet Storm
228246 4.3 警告 scriptdevelopers.net - NetClassifieds Premium Edition におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3355 2012-12-20 18:19 2007-06-22 Show GitHub Exploit DB Packet Storm
228247 7.5 危険 scriptdevelopers.net - NetClassifieds Premium Edition における SQL インジェクションの脆弱性 - CVE-2007-3354 2012-12-20 18:19 2007-06-22 Show GitHub Exploit DB Packet Storm
228248 4.3 警告 stephen ostermiller - Stephen Ostermiller Contact Form のプレビューフォームにおけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3352 2012-12-20 18:19 2007-06-22 Show GitHub Exploit DB Packet Storm
228249 7.8 危険 sj labs - SJPhone SIP ソフトフォンにおけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-3351 2012-12-20 18:19 2007-06-22 Show GitHub Exploit DB Packet Storm
228250 4.3 警告 シックス・アパート株式会社 - MT におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3342 2012-12-20 18:19 2007-06-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 6, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
196471 7.1 HIGH
Local
tenable nessus Nessus versions 8.11.0 and earlier were found to maintain sessions longer than the permitted period in certain scenarios. The lack of proper session expiration could allow attackers with local access… CWE-613
 Insufficient Session Expiration
CVE-2020-5774 2024-11-21 14:34 2020-08-21 Show GitHub Exploit DB Packet Storm
196472 7.8 HIGH
Local
dell endpoint_security_suite_enterprise
encryption
Dell Encryption versions prior to 10.8 and Dell Endpoint Security Suite versions prior to 2.8 contain a privilege escalation vulnerability because of an incomplete fix for CVE-2020-5358. A local mali… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2020-5385 2024-11-21 14:34 2020-08-19 Show GitHub Exploit DB Packet Storm
196473 10.0 CRITICAL
Network
pivotal_software concourse Concourse, versions prior to 6.3.1 and 6.4.1, in installations which use the GitLab auth connector, is vulnerable to identity spoofing by way of configuring a GitLab account with the same full name a… CWE-290
 Authentication Bypass by Spoofing
CVE-2020-5415 2024-11-21 14:34 2020-08-13 Show GitHub Exploit DB Packet Storm
196474 6.5 MEDIUM
Network
vmware spring_cloud_netflix Spring Cloud Netflix, versions 2.2.x prior to 2.2.4, versions 2.1.x prior to 2.1.6, and older unsupported versions allow applications to use the Hystrix Dashboard proxy.stream endpoint to make reques… CWE-610
Externally Controlled Reference to a Resource in Another Sphere
CVE-2020-5412 2024-11-21 14:34 2020-08-8 Show GitHub Exploit DB Packet Storm
196475 9.8 CRITICAL
Network
yokogawa centum_cs_3000_firmware
centum_vp_firmware
b\/m9000cs_firmware
b\/m9000vp_firmware
Directory traversal vulnerability in CAMS for HIS CENTUM CS 3000 (includes CENTUM CS 3000 Small) R3.08.10 to R3.09.50, CENTUM VP (includes CENTUM VP Small, Basic) R4.01.00 to R6.07.00, B/M9000CS R5.0… CWE-22
Path Traversal
CVE-2020-5609 2024-11-21 14:34 2020-08-5 Show GitHub Exploit DB Packet Storm
196476 9.8 CRITICAL
Network
yokogawa centum_cs_3000_firmware
centum_vp_firmware
b\/m9000cs_firmware
b\/m9000vp_firmware
CAMS for HIS CENTUM CS 3000 (includes CENTUM CS 3000 Small) R3.08.10 to R3.09.50, CENTUM VP (includes CENTUM VP Small, Basic) R4.01.00 to R6.07.00, B/M9000CS R5.04.01 to R5.05.01, and B/M9000 VP R6.0… CWE-287
Improper Authentication
CVE-2020-5608 2024-11-21 14:34 2020-08-5 Show GitHub Exploit DB Packet Storm
196477 7.4 HIGH
Local
checkpoint zonealarm_anti-ransomware ZoneAlarm Anti-Ransomware before version 1.0.713 copies files for the report from a directory with low privileges. A sophisticated timed attacker can replace those files with malicious or linked cont… CWE-59
Link Following
CVE-2020-6012 2024-11-21 14:34 2020-08-4 Show GitHub Exploit DB Packet Storm
196478 7.8 HIGH
Local
skygroup skysea_client_view Privilege escalation vulnerability in SKYSEA Client View Ver.12.200.12n to 15.210.05f allows an attacker to obtain unauthorized privileges and modify/obtain sensitive information or perform unintende… CWE-269
 Improper Privilege Management
CVE-2020-5617 2024-11-21 14:34 2020-08-4 Show GitHub Exploit DB Packet Storm
196479 9.8 CRITICAL
Network
calendar02_project
calendar01_project
link01_project
calendarform01_project
gallery01_project
telop01_project
pkobo-vote01_project
pkobo-news01_project
calendar02
calendar01
link01
calendarform01
gallery01
telop01
pkobo-vote01
pkobo-news01
[Calendar01], [Calendar02], [PKOBO-News01], [PKOBO-vote01], [Telop01], [Gallery01], [CalendarForm01], and [Link01] [Calendar01] free edition ver1.0.0, [Calendar02] free edition ver1.0.0, [PKOBO-News0… CWE-287
Improper Authentication
CVE-2020-5616 2024-11-21 14:34 2020-08-4 Show GitHub Exploit DB Packet Storm
196480 8.8 HIGH
Network
calendar02_project
calendar01_project
calendar02
calendar01
Cross-site request forgery (CSRF) vulnerability in [Calendar01] free edition ver1.0.0 and [Calendar02] free edition ver1.0.0 allows remote attackers to hijack the authentication of administrators via… CWE-352
 Origin Validation Error
CVE-2020-5615 2024-11-21 14:34 2020-08-4 Show GitHub Exploit DB Packet Storm