Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 6, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229741 7.5 危険 stefan ernst - Stefan Ernst Newsscript における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2006-4666 2012-12-20 18:02 2006-09-8 Show GitHub Exploit DB Packet Storm
229742 5.1 警告 premod shadow - Premod Shadow の includes/functions_portal.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4664 2012-12-20 18:02 2006-09-8 Show GitHub Exploit DB Packet Storm
229743 7.5 危険 web-provence - Web Provence SL_Site の admin/editeur/spaw_control.class.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4656 2012-12-20 18:02 2006-09-8 Show GitHub Exploit DB Packet Storm
229744 5 警告 threesquared.net - threesquared.net Php download の download/index.php および download.php におけるディレクトリトラバーサルの脆弱性 - CVE-2006-4651 2012-12-20 18:02 2006-09-8 Show GitHub Exploit DB Packet Storm
229745 7.5 危険 sponge news - Sponge News の news.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4647 2012-12-20 18:02 2006-09-8 Show GitHub Exploit DB Packet Storm
229746 7.5 危険 phpfullannu - phpFullAnnu の modules/home.module.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4644 2012-12-20 18:02 2006-09-8 Show GitHub Exploit DB Packet Storm
229747 7.5 危険 uni-vert - Uni-Vert PhpLeague の consult/joueurs.php における SQL インジェクションの脆弱性 - CVE-2006-4643 2012-12-20 18:02 2006-09-8 Show GitHub Exploit DB Packet Storm
229748 7.5 危険 szewo - SZEWO PhpCommander におけるディレクトリトラバーサルの脆弱性 - CVE-2006-4636 2012-12-20 18:02 2006-09-8 Show GitHub Exploit DB Packet Storm
229749 6.5 警告 Squiz - MySource Classic における任意の PHP コードを挿入される脆弱性 - CVE-2006-4635 2012-12-20 18:02 2006-09-8 Show GitHub Exploit DB Packet Storm
229750 4.3 警告 vbzoom - VBZooM の index.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-4634 2012-12-20 18:02 2006-09-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 6, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
197701 4.3 MEDIUM
Network
ibm security_information_queue IBM Security Information Queue (ISIQ) 1.0.0, 1.0.1, 1.0.2, 1.0.3, 1.0.4, and 1.0.5 could allow an authenticated user to perform unauthorized actions by bypassing illegal character restrictions. X-For… CWE-116
 Improper Encoding or Escaping of Output
CVE-2020-4282 2024-11-21 14:32 2020-04-8 Show GitHub Exploit DB Packet Storm
197702 5.4 MEDIUM
Network
ibm rational_doors_next_generation
doors_next_generation
IBM DOORS Next Generation (DNG/RRC) 6.0.2. 6.0.6, and 6.0.61 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the … CWE-79
Cross-site Scripting
CVE-2020-4252 2024-11-21 14:32 2020-04-8 Show GitHub Exploit DB Packet Storm
197703 2.7 LOW
Network
ibm security_information_queue IBM Security Information Queue (ISIQ) 1.0.0, 1.0.1, 1.0.2, 1.0.3, 1.0.4, and 1.0.5 could expose sensitive information from applicatino errors which could be used in further attacks against the system… CWE-209
Information Exposure Through an Error Message
CVE-2020-4164 2024-11-21 14:32 2020-04-8 Show GitHub Exploit DB Packet Storm
197704 7.8 HIGH
Local
ibm spectrum_scale IBM Spectrum Scale 4.2 and 5.0 could allow a local unprivileged attacker with intimate knowledge of the enviornment to execute commands as root using specially crafted input. IBM X-Force ID: 175977. NVD-CWE-noinfo
CVE-2020-4273 2024-11-21 14:32 2020-04-3 Show GitHub Exploit DB Packet Storm
197705 6.1 MEDIUM
Network
ibm websphere_application_server IBM WebSphere Application Server - Liberty 17.0.0.3 through 20.0.0.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus alter… CWE-79
Cross-site Scripting
CVE-2020-4304 2024-11-21 14:32 2020-04-3 Show GitHub Exploit DB Packet Storm
197706 6.1 MEDIUM
Network
ibm websphere_application_server IBM WebSphere Application Server - Liberty 17.0.0.3 through 20.0.0.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus alter… CWE-79
Cross-site Scripting
CVE-2020-4303 2024-11-21 14:32 2020-04-3 Show GitHub Exploit DB Packet Storm
197707 6.5 MEDIUM
Network
ibm cloud_pak_for_automation
process_federation_server
The IBM Process Federation Server 18.0.0.1, 18.0.0.2, 19.0.0.1, 19.0.0.2, and 19.0.0.3 Global Teams REST API does not properly shutdown the thread pools that it creates to retrieve Global Teams infor… CWE-404
 Improper Resource Shutdown or Release
CVE-2020-4325 2024-11-21 14:32 2020-04-3 Show GitHub Exploit DB Packet Storm
197708 8.8 HIGH
Network
ibm spectrum_protect_plus
spectrum_scale
IBM Spectrum Scale and IBM Spectrum Protect Plus 10.1.0 through 10.1.5 could allow a remote authenticated attacker to execute arbitrary commands on the system. By sending a specially crafted request,… CWE-78
OS Command 
CVE-2020-4242 2024-11-21 14:32 2020-04-1 Show GitHub Exploit DB Packet Storm
197709 8.8 HIGH
Network
ibm spectrum_protect_plus
spectrum_scale
IBM Spectrum Scale and IBM Spectrum Protect Plus 10.1.0 through 10.1.5 could allow a remote authenticated attacker to execute arbitrary commands on the system. By sending a specially crafted request,… CWE-78
OS Command 
CVE-2020-4241 2024-11-21 14:32 2020-04-1 Show GitHub Exploit DB Packet Storm
197710 6.5 MEDIUM
Network
ibm spectrum_protect_plus IBM Spectrum Protect Plus 10.1.0 through 10.1.5 could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted URL request to overwrite or create arbi… CWE-22
Path Traversal
CVE-2020-4240 2024-11-21 14:32 2020-04-1 Show GitHub Exploit DB Packet Storm