Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 6, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228401 6.8 警告 xajax-project - xajax における脆弱性 - CVE-2007-2740 2012-12-20 18:19 2007-05-17 Show GitHub Exploit DB Packet Storm
228402 4.3 警告 xajax-project - xajax におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-2739 2012-12-20 18:19 2007-05-17 Show GitHub Exploit DB Packet Storm
228403 7.5 危険 XOOPS - XOOPS 用の Glossaire モジュールにおける SQL インジェクションの脆弱性 - CVE-2007-2738 2012-12-20 18:19 2007-05-17 Show GitHub Exploit DB Packet Storm
228404 7.5 危険 XOOPS - Xoops 用の MyConference モジュールにおける SQL インジェクションの脆弱性 - CVE-2007-2737 2012-12-20 18:19 2007-05-17 Show GitHub Exploit DB Packet Storm
228405 7.5 危険 touteresa - Xoops 用の ResManager モジュールにおける SQL インジェクションの脆弱性 - CVE-2007-2735 2012-12-20 18:19 2007-05-17 Show GitHub Exploit DB Packet Storm
228406 10 危険 snaps gallery - Snaps! Gallery の Admin/users.php における任意のユーザ名を変更される脆弱性 - CVE-2007-2715 2012-12-20 18:19 2007-05-16 Show GitHub Exploit DB Packet Storm
228407 10 危険 tinyirc - TinyIdentD におけるスタックベースのバッファオーバーフローの脆弱性 - CVE-2007-2711 2012-12-20 18:19 2007-05-16 Show GitHub Exploit DB Packet Storm
228408 6.8 警告 simple php scripts gallery - sphp の Ivan Peevski gallery における任意の PHP コードを実行される脆弱性 - CVE-2007-2679 2012-12-20 18:19 2007-05-14 Show GitHub Exploit DB Packet Storm
228409 7.5 危険 phpchess - phpChess Community Edition における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2677 2012-12-20 18:19 2007-05-14 Show GitHub Exploit DB Packet Storm
228410 7.5 危険 PreProject.com - Pre Classifieds Listings の search.php における SQL インジェクションの脆弱性 - CVE-2007-2675 2012-12-20 18:19 2007-05-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 6, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
196471 7.1 HIGH
Local
tenable nessus Nessus versions 8.11.0 and earlier were found to maintain sessions longer than the permitted period in certain scenarios. The lack of proper session expiration could allow attackers with local access… CWE-613
 Insufficient Session Expiration
CVE-2020-5774 2024-11-21 14:34 2020-08-21 Show GitHub Exploit DB Packet Storm
196472 7.8 HIGH
Local
dell endpoint_security_suite_enterprise
encryption
Dell Encryption versions prior to 10.8 and Dell Endpoint Security Suite versions prior to 2.8 contain a privilege escalation vulnerability because of an incomplete fix for CVE-2020-5358. A local mali… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2020-5385 2024-11-21 14:34 2020-08-19 Show GitHub Exploit DB Packet Storm
196473 10.0 CRITICAL
Network
pivotal_software concourse Concourse, versions prior to 6.3.1 and 6.4.1, in installations which use the GitLab auth connector, is vulnerable to identity spoofing by way of configuring a GitLab account with the same full name a… CWE-290
 Authentication Bypass by Spoofing
CVE-2020-5415 2024-11-21 14:34 2020-08-13 Show GitHub Exploit DB Packet Storm
196474 6.5 MEDIUM
Network
vmware spring_cloud_netflix Spring Cloud Netflix, versions 2.2.x prior to 2.2.4, versions 2.1.x prior to 2.1.6, and older unsupported versions allow applications to use the Hystrix Dashboard proxy.stream endpoint to make reques… CWE-610
Externally Controlled Reference to a Resource in Another Sphere
CVE-2020-5412 2024-11-21 14:34 2020-08-8 Show GitHub Exploit DB Packet Storm
196475 9.8 CRITICAL
Network
yokogawa centum_cs_3000_firmware
centum_vp_firmware
b\/m9000cs_firmware
b\/m9000vp_firmware
Directory traversal vulnerability in CAMS for HIS CENTUM CS 3000 (includes CENTUM CS 3000 Small) R3.08.10 to R3.09.50, CENTUM VP (includes CENTUM VP Small, Basic) R4.01.00 to R6.07.00, B/M9000CS R5.0… CWE-22
Path Traversal
CVE-2020-5609 2024-11-21 14:34 2020-08-5 Show GitHub Exploit DB Packet Storm
196476 9.8 CRITICAL
Network
yokogawa centum_cs_3000_firmware
centum_vp_firmware
b\/m9000cs_firmware
b\/m9000vp_firmware
CAMS for HIS CENTUM CS 3000 (includes CENTUM CS 3000 Small) R3.08.10 to R3.09.50, CENTUM VP (includes CENTUM VP Small, Basic) R4.01.00 to R6.07.00, B/M9000CS R5.04.01 to R5.05.01, and B/M9000 VP R6.0… CWE-287
Improper Authentication
CVE-2020-5608 2024-11-21 14:34 2020-08-5 Show GitHub Exploit DB Packet Storm
196477 7.4 HIGH
Local
checkpoint zonealarm_anti-ransomware ZoneAlarm Anti-Ransomware before version 1.0.713 copies files for the report from a directory with low privileges. A sophisticated timed attacker can replace those files with malicious or linked cont… CWE-59
Link Following
CVE-2020-6012 2024-11-21 14:34 2020-08-4 Show GitHub Exploit DB Packet Storm
196478 7.8 HIGH
Local
skygroup skysea_client_view Privilege escalation vulnerability in SKYSEA Client View Ver.12.200.12n to 15.210.05f allows an attacker to obtain unauthorized privileges and modify/obtain sensitive information or perform unintende… CWE-269
 Improper Privilege Management
CVE-2020-5617 2024-11-21 14:34 2020-08-4 Show GitHub Exploit DB Packet Storm
196479 9.8 CRITICAL
Network
calendar02_project
calendar01_project
link01_project
calendarform01_project
gallery01_project
telop01_project
pkobo-vote01_project
pkobo-news01_project
calendar02
calendar01
link01
calendarform01
gallery01
telop01
pkobo-vote01
pkobo-news01
[Calendar01], [Calendar02], [PKOBO-News01], [PKOBO-vote01], [Telop01], [Gallery01], [CalendarForm01], and [Link01] [Calendar01] free edition ver1.0.0, [Calendar02] free edition ver1.0.0, [PKOBO-News0… CWE-287
Improper Authentication
CVE-2020-5616 2024-11-21 14:34 2020-08-4 Show GitHub Exploit DB Packet Storm
196480 8.8 HIGH
Network
calendar02_project
calendar01_project
calendar02
calendar01
Cross-site request forgery (CSRF) vulnerability in [Calendar01] free edition ver1.0.0 and [Calendar02] free edition ver1.0.0 allows remote attackers to hijack the authentication of administrators via… CWE-352
 Origin Validation Error
CVE-2020-5615 2024-11-21 14:34 2020-08-4 Show GitHub Exploit DB Packet Storm