Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 21, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229181 7.5 危険 Vastal I-Tech & Co. - Vastal I-Tech Visa Zone の view_news.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4462 2012-12-20 18:52 2008-10-6 Show GitHub Exploit DB Packet Storm
229182 7.5 危険 Vastal I-Tech & Co. - Vastal I-Tech Dating Zone の advanced_search_results.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4461 2012-12-20 18:52 2008-10-6 Show GitHub Exploit DB Packet Storm
229183 7.5 危険 Vastal I-Tech & Co. - Vastal I-Tech MMORPG Zone の game.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4460 2012-12-20 18:52 2008-10-6 Show GitHub Exploit DB Packet Storm
229184 6.8 警告 positive software - Positive Software H-Sphere WebShell の actions.php におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2008-4448 2012-12-20 18:52 2008-10-6 Show GitHub Exploit DB Packet Storm
229185 4.3 警告 positive software - Positive Software H-Sphere WebShell の actions.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4447 2012-12-20 18:52 2008-10-6 Show GitHub Exploit DB Packet Storm
229186 4.3 警告 rmsoft - Xoops 用の rmdp モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4435 2012-12-20 18:52 2008-10-3 Show GitHub Exploit DB Packet Storm
229187 7.5 危険 rmsoft - Xoops 用の RMSOFT MiniShop モジュールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4433 2012-12-20 18:52 2008-10-3 Show GitHub Exploit DB Packet Storm
229188 4.3 警告 rmsoft - Xoops 用の RMSOFT MiniShop モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4432 2012-12-20 18:52 2008-10-3 Show GitHub Exploit DB Packet Storm
229189 5 警告 トレンドマイクロ - Trend Micro OfficeScan のサーバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2008-4403 2012-12-20 18:52 2008-09-30 Show GitHub Exploit DB Packet Storm
229190 10 危険 トレンドマイクロ - Trend Micro OfficeScan のサーバにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-4402 2012-12-20 18:52 2008-09-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 22, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
201641 5.5 MEDIUM
Local
qualcomm qualcomm Local privilege escalation in admin services in Windows environment can occur due to an arbitrary read issue. CWE-200
Information Exposure
CVE-2020-3687 2024-11-21 14:31 2021-01-21 Show GitHub Exploit DB Packet Storm
201642 9.8 CRITICAL
Network
qualcomm msm8960
mdm9206
mdm9607
mdm9650
msm8909w
mdm9635m
mdm9655
mdm9615
mdm9625
mdm9640
mdm9645
sdm630
qca6174a
qca6574au
qca6584
qca6584au
qca9379
msm897…
Possible out of bound memory access in audio due to integer underflow while processing modified contents in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snap… CWE-191
 Integer Underflow (Wrap or Wraparound)
CVE-2020-3691 2024-11-21 14:31 2021-01-21 Show GitHub Exploit DB Packet Storm
201643 9.8 CRITICAL
Network
qualcomm msm8960
mdm9607
mdm9650
msm8909w
mdm9635m
mdm9655
mdm9615
mdm9625
mdm9640
mdm9645
sdm630
qca6174a
qca6574au
qca6584au
qca9379
msm8976
msm8952
apq809…
Possible memory out of bound issue during music playback when an incorrect bit stream content is copied into array without checking the length of array in Snapdragon Auto, Snapdragon Compute, Snapdra… CWE-120
Classic Buffer Overflow
CVE-2020-3686 2024-11-21 14:31 2021-01-21 Show GitHub Exploit DB Packet Storm
201644 7.5 HIGH
Network
qualcomm msm8960
mdm9206
mdm9607
mdm9650
msm8909w
mdm9635m
mdm9655
mdm9615
mdm9625
mdm9640
mdm9645
sdm630
qca6174a
qca6574au
qca6584
qca6584au
qca9379
msm897…
Pointer variable which is freed is not cleared can result in memory corruption and leads to denial of service in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT,… CWE-415
 Double Free
CVE-2020-3685 2024-11-21 14:31 2021-01-21 Show GitHub Exploit DB Packet Storm
201645 9.8 CRITICAL
Network
cisco dna_spaces\ A vulnerability in the web-based management interface of Cisco DNA Spaces Connector could allow an unauthenticated, remote attacker to execute arbitrary commands on an affected device. The vulnerabil… CWE-78
OS Command 
CVE-2020-3586 2024-11-21 14:31 2020-11-19 Show GitHub Exploit DB Packet Storm
201646 9.8 CRITICAL
Network
cisco iot_field_network_director A vulnerability in the REST API of Cisco IoT Field Network Director (FND) could allow an unauthenticated, remote attacker to access the back-end database of an affected system. The vulnerability exis… CWE-306
Missing Authentication for Critical Function
CVE-2020-3531 2024-11-21 14:31 2020-11-19 Show GitHub Exploit DB Packet Storm
201647 6.5 MEDIUM
Network
cisco expressway
telepresence_video_communication_server
A vulnerability in the Traversal Using Relays around NAT (TURN) server component of Cisco Expressway software could allow an unauthenticated, remote attacker to bypass security controls and send netw… CWE-269
 Improper Privilege Management
CVE-2020-3482 2024-11-21 14:31 2020-11-19 Show GitHub Exploit DB Packet Storm
201648 6.5 MEDIUM
Network
cisco webex_meetings_server A vulnerability in Cisco Webex Meetings and Cisco Webex Meetings Server could allow an unauthenticated, remote attacker to maintain bidirectional audio despite being expelled from an active Webex ses… CWE-662
 Improper Synchronization
CVE-2020-3471 2024-11-21 14:31 2020-11-19 Show GitHub Exploit DB Packet Storm
201649 9.8 CRITICAL
Network
cisco enterprise_nfv_infrastructure_software
integrated_management_controller
Multiple vulnerabilities in the API subsystem of Cisco Integrated Management Controller (IMC) could allow an unauthenticated, remote attacker to execute arbitrary code with root privileges. The vulne… CWE-20
 Improper Input Validation 
CVE-2020-3470 2024-11-21 14:31 2020-11-19 Show GitHub Exploit DB Packet Storm
201650 5.3 MEDIUM
Network
cisco webex_meetings_server
webex_meetings
A vulnerability in Cisco Webex Meetings and Cisco Webex Meetings Server could allow an unauthenticated, remote attacker to view sensitive information from the meeting room lobby. This vulnerability i… NVD-CWE-noinfo
CVE-2020-3441 2024-11-21 14:31 2020-11-19 Show GitHub Exploit DB Packet Storm