Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229651 5 警告 plain old webserver - Mozilla Firefox 用の POW アドオンにおけるディレクトリトラバーサルの脆弱性 - CVE-2007-0872 2012-12-20 18:19 2007-02-12 Show GitHub Exploit DB Packet Storm
229652 5 警告 Yahoo! - Yahoo! Messenger の Chat Room 機能におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-0868 2012-12-20 18:19 2007-02-9 Show GitHub Exploit DB Packet Storm
229653 7.5 危険 site-assistant - Site-Assistant の classes/menu.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-0867 2012-12-20 18:19 2007-02-9 Show GitHub Exploit DB Packet Storm
229654 6.8 警告 RARLAB - WinRAR などの製品に同梱されている RARLabs Unrar におけるスタックベースのバッファオーバーフローの脆弱性 - CVE-2007-0855 2012-12-20 18:19 2007-02-8 Show GitHub Exploit DB Packet Storm
229655 7.5 危険 techexcel inc. - DevTrack における SQL インジェクションの脆弱性 - CVE-2007-0853 2012-12-20 18:19 2007-02-8 Show GitHub Exploit DB Packet Storm
229656 6.8 警告 techexcel inc. - DevTrack におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-0852 2012-12-20 18:19 2007-02-8 Show GitHub Exploit DB Packet Storm
229657 7.5 危険 syscp team - SysCP の scripts/cronscript.php における任意のコードを実行される脆弱性 - CVE-2007-0850 2012-12-20 18:19 2007-02-8 Show GitHub Exploit DB Packet Storm
229658 7.2 危険 syscp team - SysCP の scripts/cronscript.php における権限を取得される脆弱性 - CVE-2007-0849 2012-12-20 18:19 2007-02-8 Show GitHub Exploit DB Packet Storm
229659 10 危険 vbdrupal - vbDrupal における脆弱性 - CVE-2007-0841 2012-12-20 18:19 2007-01-30 Show GitHub Exploit DB Packet Storm
229660 7.5 危険 Wafer - Valarsoft WebMatic の index/index_album.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-0839 2012-12-20 18:19 2007-02-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 11, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
210281 6.7 MEDIUM
Local
linux
netapp
linux_kernel
cloud_backup
steelstore_cloud_integrated_storage
solidfire_\&_hci_management_node
active_iq_unified_manager
solidfire_baseboard_management_controller
hci_baseboard_…
An issue was discovered in the Linux kernel before 5.6.7. xdp_umem_reg in net/xdp/xdp_umem.c has an out-of-bounds write (by a user with the CAP_NET_ADMIN capability) because of a lack of headroom val… CWE-787
 Out-of-bounds Write
CVE-2020-12659 2024-11-21 14:00 2020-05-5 Show GitHub Exploit DB Packet Storm
210282 7.8 HIGH
Local
linux linux_kernel An issue was discovered in the Linux kernel before 5.6.5. There is a use-after-free in block/bfq-iosched.c related to bfq_idle_slice_timer_body. CWE-416
 Use After Free
CVE-2020-12657 2024-11-21 14:00 2020-05-5 Show GitHub Exploit DB Packet Storm
210283 5.5 MEDIUM
Local
linux linux_kernel An issue was discovered in xfs_agf_verify in fs/xfs/libxfs/xfs_alloc.c in the Linux kernel through 5.6.10. Attackers may trigger a sync of excessive duration via an XFS v5 image with crafted metadata… CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2020-12655 2024-11-21 14:00 2020-05-5 Show GitHub Exploit DB Packet Storm
210284 5.5 MEDIUM
Local
linux
canonical
opensuse
linux_kernel
ubuntu_linux
leap
gss_mech_free in net/sunrpc/auth_gss/gss_mech_switch.c in the rpcsec_gss_krb5 implementation in the Linux kernel through 5.6.10 lacks certain domain_release calls, leading to a memory leak. Note: Thi… CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2020-12656 2024-11-21 14:00 2020-05-5 Show GitHub Exploit DB Packet Storm
210285 7.8 HIGH
Local
beyondtrust privilege_management_for_windows An issue was discovered in BeyondTrust Privilege Management for Windows through 5.6. If the publisher criteria is selected, it defines the name of a publisher that must be present in the certificate … NVD-CWE-noinfo
CVE-2020-12614 2024-11-21 13:59 2023-12-13 Show GitHub Exploit DB Packet Storm
210286 7.8 HIGH
Local
beyondtrust privilege_management_for_windows An issue was discovered in BeyondTrust Privilege Management for Windows through 5.6. When adding the Add Admin token to a process, and specifying that it runs at medium integrity with the user owning… NVD-CWE-noinfo
CVE-2020-12615 2024-11-21 13:59 2023-12-12 Show GitHub Exploit DB Packet Storm
210287 7.8 HIGH
Local
beyondtrust privilege_management_for_windows An issue was discovered in BeyondTrust Privilege Management for Windows through 5.6. When specifying a program to elevate, it can typically be found within the Program Files (x86) folder and therefor… NVD-CWE-noinfo
CVE-2020-12612 2024-11-21 13:59 2023-12-12 Show GitHub Exploit DB Packet Storm
210288 8.8 HIGH
Network
beyondtrust privilege_management_for_windows An issue was discovered in BeyondTrust Privilege Management for Windows through 5.6. An attacker can spawn a process with multiple users as part of the security token (prior to Avecto elevation). Whe… NVD-CWE-noinfo
CVE-2020-12613 2024-11-21 13:59 2023-12-12 Show GitHub Exploit DB Packet Storm
210289 5.9 MEDIUM
Network
mozilla firefox
firefox_esr
The Raccoon attack is a timing attack on DHE ciphersuites inherit in the TLS specification. To mitigate this vulnerability, Firefox disabled support for DHE ciphersuites. CWE-203
 Information Exposure Through Discrepancy
CVE-2020-12413 2024-11-21 13:59 2023-02-17 Show GitHub Exploit DB Packet Storm
210290 7.8 HIGH
Local
pilz
codesys
festo
wago
pmc
control_for_beaglebone
control_for_empc-a\/imx6
control_for_iot2000
control_for_pfc100
control_for_pfc200
control_for_plcnext
control_for_raspberry_pi
hmi_v3
control_v3…
In CODESYS V3 products in all versions prior V3.5.16.0 containing the CmpUserMgr, the CODESYS Control runtime system stores the online communication passwords using a weak hashing algorithm. This can… CWE-916
 Use of Password Hash With Insufficient Computational Effort
CVE-2020-12069 2024-11-21 13:59 2022-12-27 Show GitHub Exploit DB Packet Storm