Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229051 7.5 危険 ヒューレット・パッカード - HP Intelligent Management Center および Intelligent Management Center for Automated Network Manager における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2012-5205 2013-03-19 18:41 2013-03-7 Show GitHub Exploit DB Packet Storm
229052 7.5 危険 ヒューレット・パッカード - HP Intelligent Management Center および Intelligent Management Center for Automated Network Manager における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2012-5206 2013-03-19 18:39 2013-03-7 Show GitHub Exploit DB Packet Storm
229053 9 危険 ヒューレット・パッカード - HP Intelligent Management Center および Intelligent Management Center for Automated Network Manager における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2012-5207 2013-03-19 18:37 2013-03-7 Show GitHub Exploit DB Packet Storm
229054 7.5 危険 ヒューレット・パッカード - HP Intelligent Management Center および Intelligent Management Center for Automated Network Manager における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2012-5208 2013-03-19 18:36 2013-03-7 Show GitHub Exploit DB Packet Storm
229055 4 警告 Spree Commerce - Spree における任意のロールを割り当てられる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-2506 2013-03-19 18:34 2013-02-21 Show GitHub Exploit DB Packet Storm
229056 10 危険 ヒューレット・パッカード - HP Intelligent Management Center および Intelligent Management Center for Automated Network Manager における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2012-5209 2013-03-19 18:27 2013-03-7 Show GitHub Exploit DB Packet Storm
229057 7.5 危険 ヒューレット・パッカード - HP Intelligent Management Center TACACS+ Authentication Manager における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2012-5210 2013-03-19 18:25 2013-03-7 Show GitHub Exploit DB Packet Storm
229058 7.5 危険 ヒューレット・パッカード - HP Intelligent Management Center User Access Manager における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2012-5211 2013-03-19 18:24 2013-03-7 Show GitHub Exploit DB Packet Storm
229059 6.8 警告 ヒューレット・パッカード - HP Intelligent Management Center および Intelligent Management Center for Automated Network Manager における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2012-5212 2013-03-19 18:23 2013-03-7 Show GitHub Exploit DB Packet Storm
229060 7.8 危険 ヒューレット・パッカード - HP Intelligent Management Center および Intelligent Management Center for Automated Network Manager における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2012-5213 2013-03-19 18:22 2013-03-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 20, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
207391 9.8 CRITICAL
Network
dell emc_isilon_onefs Dell EMC Isilon OneFS versions prior to 8.2.0 contain an unauthorized access vulnerability due to a lack of thorough authorization checks when SyncIQ is licensed, but encrypted syncs are not marked a… CWE-306
Missing Authentication for Critical Function
CVE-2020-5328 2024-11-21 14:33 2020-03-7 Show GitHub Exploit DB Packet Storm
207392 9.8 CRITICAL
Network
dell security_management_server Dell Security Management Server versions prior to 10.2.10 contain a Java RMI Deserialization of Untrusted Data vulnerability. When the server is exposed to the internet and Windows Firewall is disabl… CWE-502
 Deserialization of Untrusted Data
CVE-2020-5327 2024-11-21 14:33 2020-03-7 Show GitHub Exploit DB Packet Storm
207393 6.3 MEDIUM
Network
prestashop prestashop In PrestaShop before version 1.7.6.4, when a customer edits their address, they can freely change the id_address in the form, and thus steal someone else's address. It is the same with CustomerForm, … CWE-552
 Files or Directories Accessible to External Parties
CVE-2020-5250 2024-11-21 14:33 2020-03-6 Show GitHub Exploit DB Packet Storm
207394 5.3 MEDIUM
Network
parseplatform parse-server In parser-server before version 4.1.0, you can fetch all the users objects, by using regex in the NoSQL query. Using the NoSQL, you can use a regex on sessionToken and find valid accounts this way. CWE-863
 Incorrect Authorization
CVE-2020-5251 2024-11-21 14:33 2020-03-5 Show GitHub Exploit DB Packet Storm
207395 6.5 MEDIUM
Network
puma puma In Puma (RubyGem) before 4.3.3 and 3.12.4, if an application using Puma allows untrusted input in an early-hints header, an attacker can use a carriage return character to end the header and inject m… CWE-74
Injection
CVE-2020-5249 2024-11-21 14:33 2020-03-3 Show GitHub Exploit DB Packet Storm
207396 7.5 HIGH
Network
ruby-lang
puma
debian
fedoraproject
ruby
puma
debian_linux
fedora
In Puma (RubyGem) before 4.3.2 and before 3.12.3, if an application using Puma allows untrusted input in a response header, an attacker can use newline characters (i.e. `CR`, `LF` or`/r`, `/n`) to en… - CVE-2020-5247 2024-11-21 14:33 2020-02-29 Show GitHub Exploit DB Packet Storm
207397 8.8 HIGH
Network
dropwizard
oracle
dropwizard_validation
blockchain_platform
Dropwizard-Validation before 1.3.19, and 2.0.2 may allow arbitrary code execution on the host system, with the privileges of the Dropwizard service account, by injecting arbitrary Java Expression Lan… CWE-74
Injection
CVE-2020-5245 2024-11-21 14:33 2020-02-25 Show GitHub Exploit DB Packet Storm
207398 7.5 HIGH
Network
buddypress buddypress In BuddyPress before 5.1.2, requests to a certain REST API endpoint can result in private user data getting exposed. Authentication is not needed. This has been patched in version 5.1.2. CWE-200
Information Exposure
CVE-2020-5244 2024-11-21 14:33 2020-02-25 Show GitHub Exploit DB Packet Storm
207399 6.5 MEDIUM
Network
dnnsoftware dotnetnuke DNN (formerly DotNetNuke) through 9.4.4 has Insecure Permissions. CWE-669
CWE-434
 Incorrect Resource Transfer Between Spheres
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-5188 2024-11-21 14:33 2020-02-25 Show GitHub Exploit DB Packet Storm
207400 8.8 HIGH
Network
dnnsoftware dotnetnuke DNN (formerly DotNetNuke) through 9.4.4 allows Path Traversal (issue 2 of 2). CWE-22
Path Traversal
CVE-2020-5187 2024-11-21 14:33 2020-02-25 Show GitHub Exploit DB Packet Storm