Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 2, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229911 7.5 危険 Powie - Powie pNews の newskom.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4347 2012-12-20 18:52 2008-09-30 Show GitHub Exploit DB Packet Storm
229912 7.5 危険 talkback - TalkBack におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-4346 2012-12-20 18:52 2008-09-30 Show GitHub Exploit DB Packet Storm
229913 7.5 危険 webportal - WebPortal CMS の download.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4345 2012-12-20 18:52 2008-09-30 Show GitHub Exploit DB Packet Storm
229914 6 警告 vacilanda - Drupal 用の Brilliant Gallery モジュールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4338 2012-12-20 18:52 2008-09-30 Show GitHub Exploit DB Packet Storm
229915 7.5 危険 phpocs - phpOCS の library/pagefunctions.inc.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-4331 2012-12-20 18:52 2008-09-30 Show GitHub Exploit DB Packet Storm
229916 5.8 警告 ViewVC - ViewVC の lib/viewvc.py におけるブラウザにコンテンツを誤って解釈させる脆弱性 CWE-noinfo
情報不足
CVE-2008-4325 2012-12-20 18:52 2008-06-4 Show GitHub Exploit DB Packet Storm
229917 10 危険 project-observer - Observer における任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-4318 2012-12-20 18:52 2008-09-29 Show GitHub Exploit DB Packet Storm
229918 9 危険 phpCollab - phpCollab の installation/setup.php における include/settings.php に任意の PHP コードを挿入される脆弱性 CWE-94
コード・インジェクション
CVE-2008-4305 2012-12-20 18:52 2008-12-23 Show GitHub Exploit DB Packet Storm
229919 10 危険 phpCollab - phpCollab の general/login.php における任意のコマンドを実行される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2008-4304 2012-12-20 18:52 2008-12-23 Show GitHub Exploit DB Packet Storm
229920 6.8 警告 phpCollab - phpCollab における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4303 2012-12-20 18:52 2008-12-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 2, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
214591 7.8 HIGH
Local
icinga
opensuse
icinga
leap
backports_sle
An issue was discovered in Icinga2 before v2.12.0-rc1. The prepare-dirs script (run as part of the icinga2 systemd service) executes chmod 2750 /run/icinga2/cmd. /run/icinga2 is under control of an u… CWE-59
Link Following
CVE-2020-14004 2024-11-21 14:02 2020-06-13 Show GitHub Exploit DB Packet Storm
214592 7.5 HIGH
Network
zohocorp manageengine_servicedesk_plus Zoho ManageEngine ServiceDesk Plus before 11.1 build 11115 allows remote unauthenticated attackers to change the installation status of deployed agents. CWE-306
Missing Authentication for Critical Function
CVE-2020-14048 2024-11-21 14:02 2020-06-12 Show GitHub Exploit DB Packet Storm
214593 7.2 HIGH
Network
pandorafms pandora_fms Artica Pandora FMS 7.44 allows arbitrary file upload (leading to remote command execution) via the File Repository Manager feature. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-13855 2024-11-21 14:02 2020-06-11 Show GitHub Exploit DB Packet Storm
214594 9.8 CRITICAL
Network
pandorafms pandora_fms Artica Pandora FMS 7.44 allows privilege escalation. CWE-269
 Improper Privilege Management
CVE-2020-13854 2024-11-21 14:02 2020-06-11 Show GitHub Exploit DB Packet Storm
214595 5.4 MEDIUM
Network
pandorafms pandora_fms Artica Pandora FMS 7.44 has persistent XSS in the Messages feature. CWE-79
Cross-site Scripting
CVE-2020-13853 2024-11-21 14:02 2020-06-11 Show GitHub Exploit DB Packet Storm
214596 7.2 HIGH
Network
pandorafms pandora_fms Artica Pandora FMS 7.44 allows arbitrary file upload (leading to remote command execution) via the File Manager feature. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-13852 2024-11-21 14:02 2020-06-11 Show GitHub Exploit DB Packet Storm
214597 8.8 HIGH
Network
pandorafms pandora_fms Artica Pandora FMS 7.44 allows remote command execution via the events feature. CWE-78
OS Command 
CVE-2020-13851 2024-11-21 14:02 2020-06-11 Show GitHub Exploit DB Packet Storm
214598 7.5 HIGH
Network
pandorafms pandora_fms Artica Pandora FMS 7.44 has inadequate access controls on a web folder. CWE-425
 Direct Request ('Forced Browsing')
CVE-2020-13850 2024-11-21 14:02 2020-06-11 Show GitHub Exploit DB Packet Storm
214599 5.3 MEDIUM
Network
citrix xenapp Citrix XenApp 6.5, when 2FA is enabled, allows a remote unauthenticated attacker to ascertain whether a user exists on the server, because the 2FA error page only occurs after a valid username is ent… CWE-203
 Information Exposure Through Discrepancy
CVE-2020-13998 2024-11-21 14:02 2020-06-11 Show GitHub Exploit DB Packet Storm
214600 9.8 CRITICAL
Network
meetecho janus An issue was discovered in janus-gateway (aka Janus WebRTC Server) through 0.10.0. janus_sdp_merge in sdp.c has a stack-based buffer overflow. CWE-787
 Out-of-bounds Write
CVE-2020-13901 2024-11-21 14:02 2020-06-11 Show GitHub Exploit DB Packet Storm