Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 21, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229171 7.5 危険 yourownbux - YourOwnBux の referrals.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4492 2012-12-20 18:52 2008-10-8 Show GitHub Exploit DB Packet Storm
229172 10 危険 yerba - Yerba で使用される SACphp の index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-4486 2012-12-20 18:52 2008-10-7 Show GitHub Exploit DB Packet Storm
229173 6.9 警告 Sympa - sympa の sympa.pl における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2008-4476 2012-12-20 18:52 2008-10-7 Show GitHub Exploit DB Packet Storm
229174 7.5 危険 Vastal I-Tech & Co. - Vastal I-Tech Freelance Zone の view_cresume.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4469 2012-12-20 18:52 2008-10-6 Show GitHub Exploit DB Packet Storm
229175 7.5 危険 Vastal I-Tech & Co. - Vastal I-Tech Share Zone の view_news.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4468 2012-12-20 18:52 2008-10-6 Show GitHub Exploit DB Packet Storm
229176 7.5 危険 Vastal I-Tech & Co. - Vastal I-Tech Toner Cart の show_series_ink.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4467 2012-12-20 18:52 2008-10-6 Show GitHub Exploit DB Packet Storm
229177 7.5 危険 Vastal I-Tech & Co. - Vastal I-Tech Cosmetics Zone の view_products_cat.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4466 2012-12-20 18:52 2008-10-6 Show GitHub Exploit DB Packet Storm
229178 7.5 危険 Vastal I-Tech & Co. - Vastal I-Tech DVD Zone の view_mags.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4465 2012-12-20 18:52 2008-10-6 Show GitHub Exploit DB Packet Storm
229179 7.5 危険 Vastal I-Tech & Co. - Vastal I-Tech Mag Zone の view_mags.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4464 2012-12-20 18:52 2008-10-6 Show GitHub Exploit DB Packet Storm
229180 7.5 危険 Vastal I-Tech & Co. - Vastal I-Tech Jobs Zone の view_news.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4463 2012-12-20 18:52 2008-10-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 22, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
215001 8.8 HIGH
Network
dlink
trendnet
dir-825_firmware
tew-632brp_firmware
An issue was discovered on D-Link DIR-825 Rev.B 2.10 devices. They allow remote attackers to execute arbitrary commands via the dns_query_name parameter in a dns_query.cgi POST request. TRENDnet TEW-… CWE-78
OS Command 
CVE-2020-10215 2024-11-21 13:54 2020-03-7 Show GitHub Exploit DB Packet Storm
215002 8.8 HIGH
Network
dlink dir-825_firmware An issue was discovered on D-Link DIR-825 Rev.B 2.10 devices. There is a stack-based buffer overflow in the httpd binary. It allows an authenticated user to execute arbitrary code via a POST to ntp_s… CWE-787
 Out-of-bounds Write
CVE-2020-10214 2024-11-21 13:54 2020-03-7 Show GitHub Exploit DB Packet Storm
215003 8.8 HIGH
Network
dlink
trendnet
dir-825_firmware
tew-632brp_firmware
An issue was discovered on D-Link DIR-825 Rev.B 2.10 devices. They allow remote attackers to execute arbitrary commands via the wps_sta_enrollee_pin parameter in a set_sta_enrollee_pin.cgi POST reque… CWE-78
OS Command 
CVE-2020-10213 2024-11-21 13:54 2020-03-7 Show GitHub Exploit DB Packet Storm
215004 9.8 CRITICAL
Network
tecrail responsive_filemanager upload.php in Responsive FileManager 9.13.4 and 9.14.0 allows SSRF via the url parameter because file-extension blocking is mishandled and because it is possible for a DNS hostname to resolve to an i… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2020-10212 2024-11-21 13:54 2020-03-7 Show GitHub Exploit DB Packet Storm
215005 5.4 MEDIUM
Network
citrix gateway_firmware Citrix Gateway 11.1, 12.0, and 12.1 allows Cache Poisoning. NOTE: Citrix disputes this as not a vulnerability. By default, Citrix ADC only caches static content served under certain URL paths for Cit… CWE-444
HTTP Request Smuggling
CVE-2020-10112 2024-11-21 13:54 2020-03-7 Show GitHub Exploit DB Packet Storm
215006 7.5 HIGH
Network
citrix gateway_firmware Citrix Gateway 11.1, 12.0, and 12.1 has an Inconsistent Interpretation of HTTP Requests. NOTE: Citrix disputes the reported behavior as not a security issue. Citrix ADC only caches HTTP/1.1 traffic f… CWE-444
HTTP Request Smuggling
CVE-2020-10111 2024-11-21 13:54 2020-03-7 Show GitHub Exploit DB Packet Storm
215007 5.3 MEDIUM
Network
citrix gateway_firmware Citrix Gateway 11.1, 12.0, and 12.1 allows Information Exposure Through Caching. NOTE: Citrix disputes this as not a vulnerability. There is no sensitive information disclosure through the cache head… NVD-CWE-noinfo
CVE-2020-10110 2024-11-21 13:54 2020-03-7 Show GitHub Exploit DB Packet Storm
215008 7.5 HIGH
Network
eset smart_security
nod32_antivirus
mobile_security
smart_tv_security
internet_security
cyber_security
ESET Archive Support Module before 1294 allows virus-detection bypass via crafted RAR Compression Information in an archive. This affects versions before 1294 of Smart Security Premium, Internet Secu… CWE-436
 Interpretation Conflict
CVE-2020-10193 2024-11-21 13:54 2020-03-7 Show GitHub Exploit DB Packet Storm
215009 9.8 CRITICAL
Network
zohocorp manageengine_desktop_central Zoho ManageEngine Desktop Central before 10.0.474 allows remote code execution because of deserialization of untrusted data in getChartImage in the FileStorage class. This is related to the CewolfSer… CWE-502
 Deserialization of Untrusted Data
CVE-2020-10189 2024-11-21 13:54 2020-03-7 Show GitHub Exploit DB Packet Storm
215010 9.8 CRITICAL
Network
netkit_telnet_project
fedoraproject
debian
arista
oracle
juniper
netkit_telnet
fedora
debian_linux
eos
communications_performance_intelligence_center
junos
utility.c in telnetd in netkit telnet through 0.17 allows remote attackers to execute arbitrary code via short writes or urgent data, because of a buffer overflow involving the netclear and nextitem … CWE-120
Classic Buffer Overflow
CVE-2020-10188 2024-11-21 13:54 2020-03-7 Show GitHub Exploit DB Packet Storm