Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 11, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228291 5 警告 ZyXEL - ZyXEL Prestige ルータにおける ISP の資格情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2008-1523 2012-12-20 18:52 2008-03-26 Show GitHub Exploit DB Packet Storm
228292 7.5 危険 ZyXEL - ZyXEL Prestige ルータにおけるアクセス権を取得される脆弱性 CWE-16
環境設定
CVE-2008-1522 2012-12-20 18:52 2008-03-26 Show GitHub Exploit DB Packet Storm
228293 6.5 警告 ZyXEL - ZyXEL Prestige ルータにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-1521 2012-12-20 18:52 2008-03-26 Show GitHub Exploit DB Packet Storm
228294 7.5 危険 phpBB - phpBB 用の XS-Mod におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-1512 2012-12-20 18:52 2008-03-25 Show GitHub Exploit DB Packet Storm
228295 7.5 危険 xlportal - XLPortal の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1509 2012-12-20 18:52 2008-03-25 Show GitHub Exploit DB Packet Storm
228296 7.5 危険 sstreamtv - Joomla! 用の SSTREAMTV custompages コンポーネントにおける PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-1505 2012-12-20 18:52 2008-03-25 Show GitHub Exploit DB Packet Storm
228297 4.3 警告 php heaven - phpHeaven phpMyChat の setup.php3 におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1504 2012-12-20 18:52 2008-03-25 Show GitHub Exploit DB Packet Storm
228298 4.3 警告 tinyportal - TinyPortal の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1500 2012-12-20 18:52 2008-03-25 Show GitHub Exploit DB Packet Storm
228299 6.8 警告 VideoLAN - VLC 用の libmp4.c における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2008-1489 2012-12-20 18:52 2008-03-24 Show GitHub Exploit DB Packet Storm
228300 4.3 警告 PunBB - PunBB におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1485 2012-12-20 18:52 2008-03-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 12, 2026, 5:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209371 7.5 HIGH
Network
mi miui There is a pointer double free vulnerability in Some MIUI Services. When a function is called, the memory pointer is copied to two function modules, and an attacker can cause the pointer to be repeat… CWE-415
 Double Free
CVE-2020-14123 2024-11-21 14:02 2022-04-23 Show GitHub Exploit DB Packet Storm
209372 5.5 MEDIUM
Local
mi miui Some Xiaomi phones have information leakage vulnerabilities, and some of them may be able to forge a specific identity due to the lack of parameter verification, resulting in user information leakage. CWE-345
 Insufficient Verification of Data Authenticity
CVE-2020-14122 2024-11-21 14:02 2022-04-22 Show GitHub Exploit DB Packet Storm
209373 5.5 MEDIUM
Local
mi mi_app_store A business logic vulnerability exists in Mi App Store. The vulnerability is caused by incomplete permission checks of the products being bypassed, and an attacker can exploit the vulnerability to per… CWE-863
 Incorrect Authorization
CVE-2020-14121 2024-11-21 14:02 2022-04-22 Show GitHub Exploit DB Packet Storm
209374 8.8 HIGH
Network
mi miui Some Xiaomi models have a vulnerability in a certain application. The vulnerability is caused by the lack of checksum when using a three-party application to pass in parameters, and attackers can ind… CWE-354
 Improper Validation of Integrity Check Value
CVE-2020-14120 2024-11-21 14:02 2022-04-22 Show GitHub Exploit DB Packet Storm
209375 6.1 MEDIUM
Network
mi mi_app_store An intent redirection vulnerability in the Mi App Store product. This vulnerability is caused by the Mi App Store does not verify the validity of the incoming data, can cause the app store to automat… CWE-601
Open Redirect
CVE-2020-14118 2024-11-21 14:02 2022-04-22 Show GitHub Exploit DB Packet Storm
209376 5.3 MEDIUM
Network
mi content_center A improper permission configuration vulnerability in Xiaomi Content Center APP. This vulnerability is caused by the lack of correct permission verification in the Xiaomi content center APP, and attac… NVD-CWE-Other
CVE-2020-14117 2024-11-21 14:02 2022-04-22 Show GitHub Exploit DB Packet Storm
209377 7.5 HIGH
Network
mi mi_browser An intent redirection vulnerability in the Mi Browser product. This vulnerability is caused by the Mi Browser does not verify the validity of the incoming data. Attackers can perform sensitive operat… CWE-345
 Insufficient Verification of Data Authenticity
CVE-2020-14116 2024-11-21 14:02 2022-04-22 Show GitHub Exploit DB Packet Storm
209378 9.8 CRITICAL
Network
mi ax3600_firmware A command injection vulnerability exists in the Xiaomi Router AX3600. The vulnerability is caused by a lack of inspection for incoming data detection. Attackers can exploit this vulnerability to exec… CWE-345
 Insufficient Verification of Data Authenticity
CVE-2020-14115 2024-11-21 14:02 2022-03-11 Show GitHub Exploit DB Packet Storm
209379 5.3 MEDIUM
Network
mi ax6000_firmware Information Leak Vulnerability exists in the Xiaomi Router AX6000. The vulnerability is caused by incorrect routing configuration. Attackers can exploit this vulnerability to download part of the fil… CWE-200
Information Exposure
CVE-2020-14112 2024-11-21 14:02 2022-03-11 Show GitHub Exploit DB Packet Storm
209380 7.8 HIGH
Local
mi ax3600_firmware A command injection vulnerability exists in the Xiaomi Router AX3600. The vulnerability is caused by a lack of inspection for incoming data detection. Attackers can exploit this vulnerability to exec… CWE-345
 Insufficient Verification of Data Authenticity
CVE-2020-14111 2024-11-21 14:02 2022-03-11 Show GitHub Exploit DB Packet Storm