Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 1, 2026, 12:10 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228791 4.3 警告 SQLiteManager - SQLiteManager におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-1231 2012-12-20 18:19 2007-03-3 Show GitHub Exploit DB Packet Storm
228792 5.8 警告 WordPress.org - WordPress の wp-includes/functions.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-1230 2012-12-20 18:19 2007-02-27 Show GitHub Exploit DB Packet Storm
228793 4.3 警告 taskfreak - TaskFreak! におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-1198 2012-12-20 18:19 2007-03-2 Show GitHub Exploit DB Packet Storm
228794 2.1 注意 quicksilver - Quicksilver の Social Bookmarks プラグインにおける重要な情報を取得される脆弱性 - CVE-2007-1191 2012-12-20 18:19 2007-03-2 Show GitHub Exploit DB Packet Storm
228795 5 警告 トレンドマイクロ - Linux 用の Trend Micro ServerProtect の Web インターフェースにおける資格情報を取得される脆弱性 - CVE-2007-1169 2012-12-20 18:19 2007-03-2 Show GitHub Exploit DB Packet Storm
228796 7.5 危険 トレンドマイクロ - Linux 用の Trend Micro ServerProtect における任意の Web ページをアクセスされる脆弱性 - CVE-2007-1168 2012-12-20 18:19 2007-03-2 Show GitHub Exploit DB Packet Storm
228797 7.5 危険 webSPELL - webSPELL の printview.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-1163 2012-12-20 18:19 2007-03-2 Show GitHub Exploit DB Packet Storm
228798 10 危険 webSPELL - webSPELL における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2007-1160 2012-12-20 18:19 2007-03-2 Show GitHub Exploit DB Packet Storm
228799 4.3 警告 pyrophobia - Pyrophobia の modules/out.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-1159 2012-12-20 18:19 2007-03-2 Show GitHub Exploit DB Packet Storm
228800 5 警告 postnuke software foundation - PostNuke 用の Pagesetter モジュールにおけるディレクトリトラバーサルの脆弱性 - CVE-2007-1158 2012-12-20 18:19 2007-03-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 1, 2026, 4:54 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
197631 9.8 CRITICAL
Network
cisco ios Multiple vulnerabilities in Cisco IOS Software for Cisco 809 and 829 Industrial Integrated Services Routers (Industrial ISRs) and Cisco 1000 Series Connected Grid Routers (CGR1000) could allow an una… NVD-CWE-Other
CVE-2020-3258 2024-11-21 14:30 2020-06-4 Show GitHub Exploit DB Packet Storm
197632 5.5 MEDIUM
Local
cisco application_services_engine
application_policy_infrastructure_controller
A vulnerability in the key store of Cisco Application Services Engine Software could allow an authenticated, local attacker to read sensitive information of other users on an affected device. The vul… CWE-863
 Incorrect Authorization
CVE-2020-3335 2024-11-21 14:30 2020-06-4 Show GitHub Exploit DB Packet Storm
197633 5.3 MEDIUM
Network
cisco application_services_engine
application_policy_infrastructure_controller
A vulnerability in the API of Cisco Application Services Engine Software could allow an unauthenticated, remote attacker to update event policies on an affected device. The vulnerability is due to in… CWE-306
Missing Authentication for Critical Function
CVE-2020-3333 2024-11-21 14:30 2020-06-4 Show GitHub Exploit DB Packet Storm
197634 8.8 HIGH
Network
cisco digital_network_architecture_center A vulnerability in the audit logging component of Cisco Digital Network Architecture (DNA) Center could allow an authenticated, remote attacker to view sensitive information in clear text. The vulner… CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2020-3281 2024-11-21 14:30 2020-06-4 Show GitHub Exploit DB Packet Storm
197635 7.1 HIGH
Network
cisco unified_contact_center_express A vulnerability in the API subsystem of Cisco Unified Contact Center Express (Unified CCX) could allow an authenticated, remote attacker to change the availability state of any agent. The vulnerabili… CWE-552
 Files or Directories Accessible to External Parties
CVE-2020-3267 2024-11-21 14:30 2020-06-4 Show GitHub Exploit DB Packet Storm
197636 8.1 HIGH
Adjacent
cisco ios Multiple vulnerabilities in the Cisco IOx application environment of Cisco 809 and 829 Industrial Integrated Services Routers (Industrial ISRs) and Cisco 1000 Series Connected Grid Routers (CGR1000) … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2020-3257 2024-11-21 14:30 2020-06-4 Show GitHub Exploit DB Packet Storm
197637 8.1 HIGH
Network
cisco iox A vulnerability in the Cisco Application Framework component of the Cisco IOx application environment could allow an authenticated, remote attacker to write or modify arbitrary files in the virtual i… CWE-20
 Improper Input Validation 
CVE-2020-3238 2024-11-21 14:30 2020-06-4 Show GitHub Exploit DB Packet Storm
197638 6.3 MEDIUM
Local
cisco iox A vulnerability in the Cisco Application Framework component of the Cisco IOx application environment could allow an authenticated, local attacker to overwrite arbitrary files in the virtual instance… CWE-59
Link Following
CVE-2020-3237 2024-11-21 14:30 2020-06-4 Show GitHub Exploit DB Packet Storm
197639 6.7 MEDIUM
Local
cisco ios_xe A vulnerability in the Virtual Services Container of Cisco IOS XE Software could allow an authenticated, local attacker to gain root-level privileges on an affected device. The vulnerability is due t… CWE-20
 Improper Input Validation 
CVE-2020-3215 2024-11-21 14:30 2020-06-4 Show GitHub Exploit DB Packet Storm
197640 6.7 MEDIUM
Local
cisco ios_xe A vulnerability in Cisco IOS XE Software could allow an authenticated, local attacker to escalate their privileges to a user with root-level privileges. The vulnerability is due to insufficient valid… CWE-20
 Improper Input Validation 
CVE-2020-3214 2024-11-21 14:30 2020-06-4 Show GitHub Exploit DB Packet Storm