Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 8, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229701 4.4 警告 vocabulary server - TemaTres における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-1585 2012-12-20 19:10 2009-05-7 Show GitHub Exploit DB Packet Storm
229702 6 警告 vocabulary server - TemaTres における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-1584 2012-12-20 19:10 2009-05-7 Show GitHub Exploit DB Packet Storm
229703 4.3 警告 vocabulary server - TemaTres におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-1583 2012-12-20 19:10 2009-05-7 Show GitHub Exploit DB Packet Storm
229704 9.3 危険 ROXIO - Roxio Creator 2010 の Roxio Easy Media Creator における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2009-1566 2012-12-20 19:10 2009-12-3 Show GitHub Exploit DB Packet Storm
229705 4.3 警告 サン・マイクロシステムズ - Sun GlassFish Enterprise Server などの製品で使用されている Sun Woodstock におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-1554 2012-12-20 19:10 2009-05-6 Show GitHub Exploit DB Packet Storm
229706 7.8 危険 SCO - SCO Unixware の IGMP ドライバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2009-1552 2012-12-20 19:10 2009-04-30 Show GitHub Exploit DB Packet Storm
229707 7.5 危険 qt-cute - Qt quickteam における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2009-1551 2012-12-20 19:10 2009-05-6 Show GitHub Exploit DB Packet Storm
229708 5 警告 zakkis - Zakkis Technology ABC Advertise における管理者ログイン名とパスワードを取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-1550 2012-12-20 19:10 2009-05-6 Show GitHub Exploit DB Packet Storm
229709 7.5 危険 qsix - BluSky CMS の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-1548 2012-12-20 19:10 2009-05-6 Show GitHub Exploit DB Packet Storm
229710 4.3 警告 シマンテック - Symantec Norton Ghost の Symantec.EasySetup.1 ActiveX コントロールにおけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2009-1517 2012-12-20 19:10 2009-05-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 8, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
202371 6.8 MEDIUM
Physics
lenovo thinkpad_a275_firmware
thinkpad_a285_firmware
thinkpad_a475_firmware
thinkpad_a485_firmware
thinkpad_t495_drift_firmware
thinkpad_t495s_jazz_firmware
thinkpad_x1_carbon_\(20bx\)_fir…
The BIOS tamper detection mechanism was not triggered in Lenovo ThinkPad A285, BIOS versions up to r0xuj70w; A485, BIOS versions up to r0wuj65w; T495 BIOS versions up to r12uj55w; T495s/X395, BIOS ve… NVD-CWE-noinfo
CVE-2020-8335 2024-11-21 14:38 2020-09-2 Show GitHub Exploit DB Packet Storm
202372 7.8 HIGH
Local
opensuse openldap2 A acceptance of Extraneous Untrusted Data With Trusted Data vulnerability in the start script of openldap2 of SUSE Enterprise Storage 5, SUSE Linux Enterprise Debuginfo 11-SP3, SUSE Linux Enterprise … - CVE-2020-8023 2024-11-21 14:38 2020-09-1 Show GitHub Exploit DB Packet Storm
202373 7.8 HIGH
Local
bitdefender endpoint_security
endpoint_security_tools
An improper authentication vulnerability in Bitdefender Endpoint Security Tools for Windows and Bitdefender Endpoint Security SDK allows an unprivileged local attacker to escalate privileges or tampe… CWE-287
Improper Authentication
CVE-2020-8097 2024-11-21 14:38 2020-08-31 Show GitHub Exploit DB Packet Storm
202374 6.5 MEDIUM
Network
bufferlist_project
debian
bufferlist
debian_linux
A buffer over-read vulnerability exists in bl <4.0.3, <3.0.1, <2.2.1, and <1.2.3 which could allow an attacker to supply user input (even typed) that if it ends up in consume() argument and can becom… CWE-125
Out-of-bounds Read
CVE-2020-8244 2024-11-21 14:38 2020-08-31 Show GitHub Exploit DB Packet Storm
202375 9.8 CRITICAL
Network
ui edgemax_firmware A vulnerability exists in The EdgeMax EdgeSwitch firmware <v1.9.1 where the EdgeSwitch legacy web interface SIDSSL cookie for admin can be guessed, enabling the attacker to obtain high privileges and… CWE-613
 Insufficient Session Expiration
CVE-2020-8234 2024-11-21 14:38 2020-08-22 Show GitHub Exploit DB Packet Storm
202376 6.8 MEDIUM
Network
nextcloud desktop Missing sanitization of a server response in Nextcloud Desktop Client 2.6.4 for Linux allowed a malicious Nextcloud Server to store files outside of the dedicated sync directory. CWE-22
Path Traversal
CVE-2020-8227 2024-11-21 14:38 2020-08-22 Show GitHub Exploit DB Packet Storm
202377 5.4 MEDIUM
Network
nextcloud desktop A cross-site scripting error in Nextcloud Desktop client 2.6.4 allowed to present any html (including local links) when responding with invalid data on the login attempt. CWE-79
Cross-site Scripting
CVE-2020-8189 2024-11-21 14:38 2020-08-22 Show GitHub Exploit DB Packet Storm
202378 6.5 MEDIUM
Network
mongodb mongodb A user authorized to perform database queries may cause denial of service by issuing specially crafted queries, which violate an invariant in the query subsystem's support for geoNear. This issue aff… CWE-755
 Improper Handling of Exceptional Conditions
CVE-2020-7923 2024-11-21 14:38 2020-08-22 Show GitHub Exploit DB Packet Storm
202379 8.8 HIGH
Network
ui
opensuse
edgeswitch_firmware
leap
backports_sle
A command injection vulnerability exists in EdgeSwitch firmware <v1.9.0 that allowed an authenticated read-only user to execute arbitrary shell commands over the HTTP interface, allowing them to esca… CWE-78
OS Command 
CVE-2020-8233 2024-11-21 14:38 2020-08-18 Show GitHub Exploit DB Packet Storm
202380 6.5 MEDIUM
Network
ui edgeswitch_firmware An information disclosure vulnerability exists in EdgeMax EdgeSwitch firmware v1.9.0 that allowed read only users could obtain unauthorized information through SNMP community pages. CWE-200
Information Exposure
CVE-2020-8232 2024-11-21 14:38 2020-08-18 Show GitHub Exploit DB Packet Storm