Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 7, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229071 7.5 危険 サン・マイクロシステムズ - Sun Java SE のプラグイン機能における "古い zip および証明書処理" の脆弱性を悪用される脆弱性 CWE-noinfo
情報不足
CVE-2009-2716 2012-12-20 19:10 2009-08-10 Show GitHub Exploit DB Packet Storm
229072 4.9 警告 サン・マイクロシステムズ - Sun VirtualBox におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2009-2715 2012-12-20 19:10 2009-08-7 Show GitHub Exploit DB Packet Storm
229073 4.9 警告 サン・マイクロシステムズ - Sun VirtualBox におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2009-2714 2012-12-20 19:10 2009-08-5 Show GitHub Exploit DB Packet Storm
229074 4.3 警告 サン・マイクロシステムズ - Sun Java System Access Manager の CDCServlet コンポーネントにおける重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2009-2713 2012-12-20 19:10 2009-08-5 Show GitHub Exploit DB Packet Storm
229075 2.1 注意 サン・マイクロシステムズ - Sun Java System Access Manager および OpenSSO Enterprise などにおける平文パスワードを特定される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-2712 2012-12-20 19:10 2009-08-5 Show GitHub Exploit DB Packet Storm
229076 5 警告 strongSwan - strongSwan の asn1_length 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-310
暗号の問題
CVE-2009-2661 2012-12-20 19:10 2009-07-23 Show GitHub Exploit DB Packet Storm
229077 7.5 危険 ZNC - ZNC におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-2658 2012-12-20 19:10 2009-08-4 Show GitHub Exploit DB Packet Storm
229078 9.3 危険 sorcerersoftware - Sorcerer Software MultiMedia Jukebox におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-2650 2012-12-20 19:10 2009-07-30 Show GitHub Exploit DB Packet Storm
229079 6.8 警告 rich white - School Data Navigator の app_and_readme/navigator/index.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2009-2641 2012-12-20 19:10 2009-07-28 Show GitHub Exploit DB Packet Storm
229080 7.5 危険 prosmdr - ProSMDR の login.aspx における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2612 2012-12-20 19:10 2009-07-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 7, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
215951 5.4 MEDIUM
Network
solarwinds orion_network_performance_monitor
orion_web_performance_monitor
Solarwinds Orion (with Web Console WPM 2019.4.1, and Orion Platform HF4 or NPM HF2 2019.4) allows XSS via a Responsible Team. CWE-79
Cross-site Scripting
CVE-2020-14006 2024-11-21 14:02 2020-06-24 Show GitHub Exploit DB Packet Storm
215952 8.8 HIGH
Network
solarwinds orion_network_performance_monitor
orion_web_performance_monitor
Solarwinds Orion (with Web Console WPM 2019.4.1, and Orion Platform HF4 or NPM HF2 2019.4) allows remote attackers to execute arbitrary code via a defined event. NVD-CWE-noinfo
CVE-2020-14005 2024-11-21 14:02 2020-06-24 Show GitHub Exploit DB Packet Storm
215953 5.4 MEDIUM
Network
paessler prtg_network_monitor XSS exists in PRTG Network Monitor 20.1.56.1574 via crafted map properties. An attacker with Read/Write privileges can create a map, and then use the Map Designer Properties screen to insert JavaScri… CWE-79
Cross-site Scripting
CVE-2020-14073 2024-11-21 14:02 2020-06-24 Show GitHub Exploit DB Packet Storm
215954 7.5 HIGH
Network
rakuten viber Viber for Windows up to 13.2.0.39 does not properly quote its custom URI handler. A malicious website could launch Viber with arbitrary parameters, forcing a victim to send an NTLM authentication req… CWE-88
Argument Injection
CVE-2020-14049 2024-11-21 14:02 2020-06-23 Show GitHub Exploit DB Packet Storm
215955 8.8 HIGH
Network
kordil_edms_project kordil_edms documents_add.php in Kordil EDMS through 2.2.60rc3 allows Remote Command Execution because .php files can be uploaded to the documents folder. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-13887 2024-11-21 14:02 2020-06-23 Show GitHub Exploit DB Packet Storm
215956 5.4 MEDIUM
Network
kordil_edms_project kordil_edms Kordil EDMS through 2.2.60rc3 allows stored XSS in users_edit.php, users_management_edit.php, and user_management.php. CWE-79
Cross-site Scripting
CVE-2020-13888 2024-11-21 14:02 2020-06-23 Show GitHub Exploit DB Packet Storm
215957 8.2 HIGH
Network
ibi webfocus_business_intelligence In WebFOCUS Business Intelligence 8.0 (SP6), the administration portal allows remote attackers to read arbitrary local files or forge server-side HTTP requests via a crafted HTTP request to /ibi_apps… CWE-611
XXE
CVE-2020-14204 2024-11-21 14:02 2020-06-22 Show GitHub Exploit DB Packet Storm
215958 8.8 HIGH
Network
ibi webfocus_business_intelligence WebFOCUS Business Intelligence 8.0 (SP6) allows a Cross-Site Request Forgery (CSRF) attack against administrative users within the /ibi_apps/WFServlet(.ibfs) endpoint. The impact may be creation of a… CWE-352
 Origin Validation Error
CVE-2020-14203 2024-11-21 14:02 2020-06-22 Show GitHub Exploit DB Packet Storm
215959 6.1 MEDIUM
Network
ibi webfocus_business_intelligence WebFOCUS Business Intelligence 8.0 (SP6) was prone to XSS via arbitrary URL parameters. CWE-79
Cross-site Scripting
CVE-2020-14202 2024-11-21 14:02 2020-06-22 Show GitHub Exploit DB Packet Storm
215960 6.5 MEDIUM
Network
strapi strapi Strapi before 3.0.2 could allow a remote authenticated attacker to bypass security restrictions because templates are stored in a global variable without any sanitation. By sending a specially crafte… CWE-20
 Improper Input Validation 
CVE-2020-13961 2024-11-21 14:02 2020-06-20 Show GitHub Exploit DB Packet Storm