Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 5, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229921 4 警告 Alkacon Software - Alcacon OpenCms の system/workplace/editors/editor.jsp における任意の JSP ファイルのソースコードを読まれる脆弱性 - CVE-2006-3936 2012-12-20 18:02 2006-07-21 Show GitHub Exploit DB Packet Storm
229922 6.5 警告 Alkacon Software - Alkacon OpenCms の system/workplace/views/admin/admin-main.jsp におけるブロードキャストメッセージを全ユーザへ送信される脆弱性 - CVE-2006-3935 2012-12-20 18:02 2006-07-21 Show GitHub Exploit DB Packet Storm
229923 4 警告 Alkacon Software - Alkacon OpenCms の downloadTrigger.jsp における絶対パストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2006-3934 2012-12-20 18:02 2006-07-21 Show GitHub Exploit DB Packet Storm
229924 3.5 注意 Alkacon Software - Alkacon OpenCms におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-3933 2012-12-20 18:02 2006-07-31 Show GitHub Exploit DB Packet Storm
229925 5.1 警告 gonafish - Gonafish LinksCaffe の links.php における SQL インジェクションの脆弱性 - CVE-2006-3932 2012-12-20 18:02 2006-07-31 Show GitHub Exploit DB Packet Storm
229926 4.6 警告 tuomas airaksinen - Tuomas Airaksinen Midirecord の midirecord.cc におけるバッファオーバーフローの脆弱性 - CVE-2006-3931 2012-12-20 18:02 2006-07-31 Show GitHub Exploit DB Packet Storm
229927 7.5 危険 mamboxchange - a6mambohelpdesk Mambo コンポーネントの admin.a6mambohelpdesk.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-3930 2012-12-20 18:02 2006-07-31 Show GitHub Exploit DB Packet Storm
229928 4.3 警告 ZyXEL - Zyxel Prestige 660H-61 ADSL ルータの Forms/rpSysAdmin スクリプトにおけるクロスサイトスクリプティングの脆弱性 - CVE-2006-3929 2012-12-20 18:02 2006-07-31 Show GitHub Exploit DB Packet Storm
229929 7.5 危険 mikael software - WMNews の index.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-3928 2012-12-20 18:02 2006-07-31 Show GitHub Exploit DB Packet Storm
229930 4.3 警告 phpprobid - PhpProBid の auctionsearch.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-3927 2012-12-20 18:02 2006-07-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 5, 2026, 4:51 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
199141 6.5 MEDIUM
Network
mbconnectline
helmholz
mbconnect24
mymbconnect24
myrex24.virtual
myrex24
An issue in MB connect line mymbCONNECT24, mbCONNECT24 and Helmholz myREX24 and myREX24.virtual in all versions through v2.11.2 allows a logged in user to see devices in the account he should not hav… CWE-269
 Improper Privilege Management
CVE-2020-35557 2024-11-21 14:27 2021-02-17 Show GitHub Exploit DB Packet Storm
199142 7.2 HIGH
Network
batflat batflat Sruu.pl in Batflat 1.3.6 allows an authenticated user to perform code injection (and consequently Remote Code Execution) via the input fields of the Users tab. To exploit this, one must login to the … CWE-94
Code Injection
CVE-2020-35734 2024-11-21 14:27 2021-02-16 Show GitHub Exploit DB Packet Storm
199143 7.8 HIGH
Local
freedesktop dbus A use-after-free flaw was found in D-Bus Development branch <= 1.13.16, dbus-1.12.x stable branch <= 1.12.18, and dbus-1.10.x and older branches <= 1.10.30 when a system has multiple usernames sharin… CWE-416
 Use After Free
CVE-2020-35512 2024-11-21 14:27 2021-02-16 Show GitHub Exploit DB Packet Storm
199144 7.5 HIGH
Network
openvswitch
debian
fedoraproject
openvswitch
debian_linux
fedora
A vulnerability was found in openvswitch. A limitation in the implementation of userspace packet parsing can allow a malicious user to send a specially crafted packet causing the resulting megaflow i… - CVE-2020-35498 2024-11-21 14:27 2021-02-12 Show GitHub Exploit DB Packet Storm
199145 6.1 MEDIUM
Network
adminer adminer Adminer through 4.7.8 allows XSS via the history parameter to the default URI. CWE-79
Cross-site Scripting
CVE-2020-35572 2024-11-21 14:27 2021-02-10 Show GitHub Exploit DB Packet Storm
199146 8.8 HIGH
Network
librenms librenms A second-order SQL injection issue in Widgets/TopDevicesController.php (aka the Top Devices dashboard widget) of LibreNMS before 21.1.0 allows remote authenticated attackers to execute arbitrary SQL … CWE-89
SQL Injection
CVE-2020-35700 2024-11-21 14:27 2021-02-8 Show GitHub Exploit DB Packet Storm
199147 7.5 HIGH
Network
jetbrains teamcity JetBrains TeamCity Plugin before 2020.2.85695 SSRF. Vulnerability that could potentially expose user credentials. CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2020-35667 2024-11-21 14:27 2021-02-4 Show GitHub Exploit DB Packet Storm
199148 5.4 MEDIUM
Network
solarwinds serv-u SolarWinds Serv-U before 15.2.2 allows authenticated reflected XSS. CWE-79
Cross-site Scripting
CVE-2020-35482 2024-11-21 14:27 2021-02-4 Show GitHub Exploit DB Packet Storm
199149 9.8 CRITICAL
Network
solarwinds serv-u SolarWinds Serv-U before 15.2.2 allows Unauthenticated Macro Injection. NVD-CWE-Other
CVE-2020-35481 2024-11-21 14:27 2021-02-4 Show GitHub Exploit DB Packet Storm
199150 6.5 MEDIUM
Network
digium asterisk An issue was discovered in res_pjsip_diversion.c in Sangoma Asterisk before 13.38.0, 14.x through 16.x before 16.15.0, 17.x before 17.9.0, and 18.x before 18.1.0. A crash can occur when a SIP message… NVD-CWE-noinfo
CVE-2020-35652 2024-11-21 14:27 2021-01-29 Show GitHub Exploit DB Packet Storm