Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228441 7.5 危険 WordPress.org - WordPress 用の Sniplets プラグインにおける PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-1059 2012-12-20 18:34 2008-02-28 Show GitHub Exploit DB Packet Storm
228442 6.9 警告 symark - Symark PowerBroker におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-1056 2012-12-20 18:34 2008-02-28 Show GitHub Exploit DB Packet Storm
228443 7.5 危険 PHPNUKE - PHP-Nuke 用の Kose_Yazilari モジュールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1053 2012-12-20 18:34 2008-02-27 Show GitHub Exploit DB Packet Storm
228444 6.8 警告 phpprofiles - phpProfiles の include/body_comm.inc.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-1051 2012-12-20 18:34 2008-02-27 Show GitHub Exploit DB Packet Storm
228445 7.5 危険 softbiz - Softbiz Jokes & Funny Pics Script の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1050 2012-12-20 18:34 2008-02-27 Show GitHub Exploit DB Packet Storm
228446 10 危険 positive software - Parallels H-Sphere で使用される Parallels SiteStudio における脆弱性 CWE-noinfo
情報不足
CVE-2008-1049 2012-12-20 18:34 2008-02-26 Show GitHub Exploit DB Packet Storm
228447 4.3 警告 Plume CMS - Plume CMS の manager/xmedia.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1048 2012-12-20 18:34 2008-02-27 Show GitHub Exploit DB Packet Storm
228448 4.3 警告 Tiki Software Community Association - TikiWiki の tiki-edit_article.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1047 2012-12-20 18:34 2008-02-23 Show GitHub Exploit DB Packet Storm
228449 6.8 警告 quinsonnas - Quinsonnas Mail Checker の footer.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-1046 2012-12-20 18:34 2008-02-27 Show GitHub Exploit DB Packet Storm
228450 7.5 危険 porar - PORAR WEBBOARD の question.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1039 2012-12-20 18:34 2008-02-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 13, 2026, 5:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
201331 6.5 MEDIUM
Network
atomix atomix A vulnerability in Atomix v3.1.5 allows attackers to cause a denial of service (DoS) via a Raft session flooding attack using Raft OpenSessionRequest messages. CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2020-35210 2024-11-21 14:27 2021-12-17 Show GitHub Exploit DB Packet Storm
201332 6.1 MEDIUM
Network
elkarbackup elkarbackup Cross Site Scripting (XSS) vulnerability in ElkarBackup 1.3.3, allows attackers to execute arbitrary code via the name parameter to the add client feature. CWE-79
Cross-site Scripting
CVE-2020-35249 2024-11-21 14:27 2021-11-2 Show GitHub Exploit DB Packet Storm
201333 7.5 HIGH
Network
expertpdf expertpdf A local file inclusion vulnerability in ExpertPDF 9.5.0 through 14.1.0 allows attackers to read the file contents from files that the running ExpertPDF process has access to read. CWE-552
 Files or Directories Accessible to External Parties
CVE-2020-35340 2024-11-21 14:27 2021-09-15 Show GitHub Exploit DB Packet Storm
201334 8.8 HIGH
Network
cgal
debian
computational_geometry_algorithms_library
debian_linux
A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1 in Nef_S2/SNC_io_parser.h SNC_io_parser::read_sface() store_sm_boundary_item() Sloop_of OOB r… - CVE-2020-35635 2024-11-21 14:27 2021-08-31 Show GitHub Exploit DB Packet Storm
201335 8.8 HIGH
Network
cgal
debian
computational_geometry_algorithms_library
debian_linux
A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1. An oob read vulnerability exists in Nef_S2/SNC_io_parser.h SNC_io_parser<EW>::read_sface() s… - CVE-2020-35634 2024-11-21 14:27 2021-08-31 Show GitHub Exploit DB Packet Storm
201336 8.8 HIGH
Network
cgal
debian
computational_geometry_algorithms_library
debian_linux
A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1. An oob read vulnerability exists in Nef_S2/SNC_io_parser.h SNC_io_parser<EW>::read_sface() s… - CVE-2020-35633 2024-11-21 14:27 2021-08-31 Show GitHub Exploit DB Packet Storm
201337 7.5 HIGH
Network
hcc-embedded
siemens
nichestack
7km9300-0ae02-0aa0_firmware
An issue was discovered in HCC Nichestack 3.0. The code that parses ICMP packets relies on an unchecked value of the IP payload size (extracted from the IP header) to compute the ICMP checksum. When … CWE-125
Out-of-bounds Read
CVE-2020-35683 2024-11-21 14:27 2021-08-19 Show GitHub Exploit DB Packet Storm
201338 9.1 CRITICAL
Network
hcc-embedded
siemens
nichestack
sentron_3wa_com190_firmware
sentron_3wl_com35_firmware
An issue was discovered in HCC Nichestack 3.0. The code that generates Initial Sequence Numbers (ISNs) for TCP connections derives the ISN from an insufficiently random source. As a result, an attack… CWE-330
 Use of Insufficiently Random Values
CVE-2020-35685 2024-11-21 14:27 2021-08-19 Show GitHub Exploit DB Packet Storm
201339 7.5 HIGH
Network
hcc-embedded
siemens
nichestack
sentron_3wl_com35_firmware
sentron_3wa_com190_firmware
An issue was discovered in HCC Nichestack 3.0. The code that parses TCP packets relies on an unchecked value of the IP payload size (extracted from the IP header) to compute the length of the TCP pay… CWE-20
 Improper Input Validation 
CVE-2020-35684 2024-11-21 14:27 2021-08-19 Show GitHub Exploit DB Packet Storm
201340 9.8 CRITICAL
Network
phpgurukul employee_record_management_system SQL injection vulnerability in PHPGurukul Employee Record Management System 1.1 allows remote attackers to execute arbitrary SQL commands and bypass authentication. CWE-89
SQL Injection
CVE-2020-35427 2024-11-21 14:27 2021-07-20 Show GitHub Exploit DB Packet Storm