Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":April 30, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228921 5 警告 vz forum - Adp Forum における管理者アカウント名などを取得される脆弱性 - CVE-2006-6891 2012-12-20 18:02 2006-12-31 Show GitHub Exploit DB Packet Storm
228922 7.5 危険 voc-project - Voodoo chat におけるパスワードをダウンロードされる脆弱性 - CVE-2006-6890 2012-12-20 18:02 2006-12-31 Show GitHub Exploit DB Packet Storm
228923 5 警告 p-news - P-News における管理者アカウント名などを取得される脆弱性 - CVE-2006-6888 2012-12-20 18:02 2006-12-31 Show GitHub Exploit DB Packet Storm
228924 5 警告 phpwcms - phpwcms における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2006-6886 2012-12-20 18:02 2006-12-31 Show GitHub Exploit DB Packet Storm
228925 9.3 危険 winzip - WinZip 用の WZFILEVIEW.FileViewCtrl.61 ActiveX コントロールにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2006-6884 2012-12-20 18:02 2006-12-31 Show GitHub Exploit DB Packet Storm
228926 7.5 危険 stavros markou - ATMEL Linux PCI PCMCIA USB Drivers drivers の cofvnet.c におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2006-6881 2012-12-20 18:02 2006-12-31 Show GitHub Exploit DB Packet Storm
228927 7.5 危険 php-update - PHP-Update の code/guestadd.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2006-6880 2012-12-20 18:02 2006-12-31 Show GitHub Exploit DB Packet Storm
228928 6 警告 php-update - PHP-Update の admin/uploads.php における任意のコードをアップロードおよび実行される脆弱性 - CVE-2006-6879 2012-12-20 18:02 2006-12-31 Show GitHub Exploit DB Packet Storm
228929 7.5 危険 php-update - PHP-Update の admin/uploads.php における権限を取得される脆弱性 - CVE-2006-6878 2012-12-20 18:02 2006-12-31 Show GitHub Exploit DB Packet Storm
228930 6.8 警告 Zen Cart - Zen Cart Web Shopping Cart におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-6868 2012-12-20 18:02 2006-12-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 30, 2026, 4:58 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
199341 9.8 CRITICAL
Network
eggheads eggdrop_docker_image The official eggdrop Docker images before 1.8.4rc2 contain a blank password for a root user. Systems using the Eggdrop Docker container deployed by affected versions of the Docker image may allow an … NVD-CWE-Other
CVE-2020-29576 2024-11-21 14:24 2020-12-9 Show GitHub Exploit DB Packet Storm
199342 9.8 CRITICAL
Network
docker elixir_alpine_docker_image The official elixir Docker images before 1.8.0-alpine (Alpine specific) contain a blank password for a root user. Systems using the elixir Linux Docker container deployed by affected versions of the … NVD-CWE-Other
CVE-2020-29575 2024-11-21 14:24 2020-12-9 Show GitHub Exploit DB Packet Storm
199343 9.8 CRITICAL
Network
hashicorp consul_docker_image The official Consul Docker images 0.7.1 through 1.4.2 contain a blank password for a root user. System using the Consul Docker container deployed by affected versions of the Docker image may allow a … NVD-CWE-Other
CVE-2020-29564 2024-11-21 14:24 2020-12-9 Show GitHub Exploit DB Packet Storm
199344 9.8 CRITICAL
Network
matomo piwik_fpm-alpine_docker_image The official piwik Docker images before fpm-alpine (Alpine specific) contain a blank password for a root user. Systems using the Piwik Docker container deployed by affected versions of the Docker ima… NVD-CWE-Other
CVE-2020-29578 2024-11-21 14:24 2020-12-9 Show GitHub Exploit DB Packet Storm
199345 7.5 HIGH
Network
systransoft pure_neural_server API calls in the Translation API feature in Systran Pure Neural Server before 9.7.0 allow a threat actor to use the Systran Pure Neural Server as a Denial-of-Service proxy by sending a large amount o… NVD-CWE-noinfo
CVE-2020-29540 2024-11-21 14:24 2020-12-8 Show GitHub Exploit DB Packet Storm
199346 5.4 MEDIUM
Network
systransoft pure_neural_server A Cross-Site Scripting (XSS) issue in WebUI Translation in Systran Pure Neural Server before 9.7.0 allows a threat actor to have a remote authenticated user run JavaScript from a malicious site. CWE-79
Cross-site Scripting
CVE-2020-29539 2024-11-21 14:24 2020-12-8 Show GitHub Exploit DB Packet Storm
199347 9.8 CRITICAL
Network
awstats
debian
fedoraproject
awstats
debian_linux
fedora
In AWStats through 7.7, cgi-bin/awstats.pl?config= accepts an absolute pathname, even though it was intended to only read a file in the /etc/awstats/awstats.conf format. NOTE: this issue exists becau… CWE-22
Path Traversal
CVE-2020-29600 2024-11-21 14:24 2020-12-8 Show GitHub Exploit DB Packet Storm
199348 7.8 HIGH
Local
imagemagick
debian
imagemagick
debian_linux
ImageMagick before 6.9.11-40 and 7.x before 7.0.10-40 mishandles the -authenticate option, which allows setting a password for password-protected PDF files. The user-controlled password was not prope… CWE-91
Blind XPath Injection
CVE-2020-29599 2024-11-21 14:24 2020-12-8 Show GitHub Exploit DB Packet Storm
199349 9.8 CRITICAL
Network
incomcms_project incomcms IncomCMS 2.0 has a modules/uploader/showcase/script.php insecure file upload vulnerability. This vulnerability allows unauthenticated attackers to upload files into the server. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-29597 2024-11-21 14:24 2020-12-8 Show GitHub Exploit DB Packet Storm
199350 9.8 CRITICAL
Network
acdsee photo_studio_2021 PlugIns\IDE_ACDStd.apl in ACDSee Photo Studio Studio Professional 2021 14.0 Build 1705 has a User Mode Write AV starting at IDE_ACDStd!JPEGTransW+0x00000000000031aa. NVD-CWE-noinfo
CVE-2020-29595 2024-11-21 14:24 2020-12-8 Show GitHub Exploit DB Packet Storm