Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228281 7.5 危険 select development solutions - PHP Auto Dealer の view_cat.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4495 2012-12-20 18:52 2008-10-8 Show GitHub Exploit DB Packet Storm
228282 7.5 危険 torrenttrader - TorrentTrader Classic の completed-advance.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4494 2012-12-20 18:52 2008-10-8 Show GitHub Exploit DB Packet Storm
228283 7.5 危険 yourownbux - YourOwnBux の referrals.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4492 2012-12-20 18:52 2008-10-8 Show GitHub Exploit DB Packet Storm
228284 10 危険 yerba - Yerba で使用される SACphp の index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-4486 2012-12-20 18:52 2008-10-7 Show GitHub Exploit DB Packet Storm
228285 6.9 警告 Sympa - sympa の sympa.pl における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2008-4476 2012-12-20 18:52 2008-10-7 Show GitHub Exploit DB Packet Storm
228286 7.5 危険 Vastal I-Tech & Co. - Vastal I-Tech Freelance Zone の view_cresume.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4469 2012-12-20 18:52 2008-10-6 Show GitHub Exploit DB Packet Storm
228287 7.5 危険 Vastal I-Tech & Co. - Vastal I-Tech Share Zone の view_news.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4468 2012-12-20 18:52 2008-10-6 Show GitHub Exploit DB Packet Storm
228288 7.5 危険 Vastal I-Tech & Co. - Vastal I-Tech Toner Cart の show_series_ink.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4467 2012-12-20 18:52 2008-10-6 Show GitHub Exploit DB Packet Storm
228289 7.5 危険 Vastal I-Tech & Co. - Vastal I-Tech Cosmetics Zone の view_products_cat.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4466 2012-12-20 18:52 2008-10-6 Show GitHub Exploit DB Packet Storm
228290 7.5 危険 Vastal I-Tech & Co. - Vastal I-Tech DVD Zone の view_mags.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4465 2012-12-20 18:52 2008-10-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 17, 2026, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209111 5.5 MEDIUM
Local
gnu
netapp
binutils
cloud_backup
ontap_select_deploy_administration_utility
solidfire
hci_management_node
A Null Pointer Dereference vulnerability exists in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.35, in _bfd_elf_get_symbol_version_string, as demonstrated i… CWE-476
 NULL Pointer Dereference
CVE-2020-16599 2024-11-21 14:07 2020-12-10 Show GitHub Exploit DB Packet Storm
209112 5.5 MEDIUM
Local
gnu
netapp
binutils
cloud_backup
ontap_select_deploy_administration_utility
solidfire_\&_hci_management_node
A Null Pointer Dereference vulnerability exists in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.35, in scan_unit_for_symbols, as demonstrated in addr2line, … CWE-476
 NULL Pointer Dereference
CVE-2020-16593 2024-11-21 14:07 2020-12-10 Show GitHub Exploit DB Packet Storm
209113 5.5 MEDIUM
Local
gnu
netapp
fedoraproject
binutils
ontap_select_deploy_administration_utility
fedora
A use after free issue exists in the Binary File Descriptor (BFD) library (aka libbfd) in GNU Binutils 2.34 in bfd_hash_lookup, as demonstrated in nm-new, that can cause a denial of service via a cra… CWE-416
 Use After Free
CVE-2020-16592 2024-11-21 14:07 2020-12-10 Show GitHub Exploit DB Packet Storm
209114 5.5 MEDIUM
Local
gnu
netapp
binutils
ontap_select_deploy_administration_utility
A Denial of Service vulnerability exists in the Binary File Descriptor (BFD) in GNU Binutils 2.35 due to an invalid read in process_symbol_table, as demonstrated in readeif. CWE-125
Out-of-bounds Read
CVE-2020-16591 2024-11-21 14:07 2020-12-10 Show GitHub Exploit DB Packet Storm
209115 5.5 MEDIUM
Local
gnu
netapp
binutils
ontap_select_deploy_administration_utility
A double free vulnerability exists in the Binary File Descriptor (BFD) (aka libbrd) in GNU Binutils 2.35 in the process_symbol_table, as demonstrated in readelf, via a crafted file. CWE-415
 Double Free
CVE-2020-16590 2024-11-21 14:07 2020-12-10 Show GitHub Exploit DB Packet Storm
209116 5.5 MEDIUM
Local
openexr
debian
openexr
debian_linux
A head-based buffer overflow exists in Academy Software Foundation OpenEXR 2.3.0 in writeTileData in ImfTiledOutputFile.cpp that can cause a denial of service via a crafted EXR file. CWE-787
 Out-of-bounds Write
CVE-2020-16589 2024-11-21 14:07 2020-12-10 Show GitHub Exploit DB Packet Storm
209117 5.5 MEDIUM
Local
openexr
debian
openexr
debian_linux
A Null Pointer Deference issue exists in Academy Software Foundation OpenEXR 2.3.0 in generatePreview in makePreview.cpp that can cause a denial of service via a crafted EXR file. CWE-476
 NULL Pointer Dereference
CVE-2020-16588 2024-11-21 14:07 2020-12-10 Show GitHub Exploit DB Packet Storm
209118 5.5 MEDIUM
Local
openexr
debian
openexr
debian_linux
A heap-based buffer overflow vulnerability exists in Academy Software Foundation OpenEXR 2.3.0 in chunkOffsetReconstruction in ImfMultiPartInputFile.cpp that can cause a denial of service via a craft… CWE-787
 Out-of-bounds Write
CVE-2020-16587 2024-11-21 14:07 2020-12-10 Show GitHub Exploit DB Packet Storm
209119 7.5 HIGH
Network
mitsubishielectric r00cpu_firmware
r01cpu_firmware
r02cpu_firmware
r04cpu_firmware
r08cpu_firmware
r16cpu_firmware
r32cpu_firmware
r120cpu_firmware
r08sfcpu_firmware
r16sfcpu_firmware
r32s…
Mitsubishi MELSEC iQ-R Series PLCs with firmware 49 allow an unauthenticated attacker to halt the industrial process by sending a crafted packet over the network. This denial of service attack expose… CWE-20
CWE-400
 Improper Input Validation 
 Uncontrolled Resource Consumption
CVE-2020-16850 2024-11-21 14:07 2020-12-1 Show GitHub Exploit DB Packet Storm
209120 7.5 HIGH
Network
canon mf237w_firmware
mf113w_firmware
mf212w_firmware
mf216n_firmware
mf217w_firmware
mf226dn_firmware
mf229dw_firmware
mf231_firmware
mf232w_firmware
mf244dw_firmware
mf247dw…
An issue was discovered on Canon MF237w 06.07 devices. An "Improper Handling of Length Parameter Inconsistency" issue in the IPv4/ICMPv4 component, when handling a packet sent by an unauthenticated n… NVD-CWE-Other
CVE-2020-16849 2024-11-21 14:07 2020-12-1 Show GitHub Exploit DB Packet Storm