Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 2:09 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229961 5 警告 SSH コミュニケーションズ・セキュリティ - SSH Tectia Client/Server/Connector などの製品における RSA 鍵で署名済みの PKCS #1 署名を偽装される脆弱性 - CVE-2006-5484 2012-12-20 18:02 2006-10-24 Show GitHub Exploit DB Packet Storm
229962 7.5 危険 softerra - Softerra PHP Developer Library における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5472 2012-12-20 18:02 2006-10-24 Show GitHub Exploit DB Packet Storm
229963 7.5 危険 softerra - Softerra PHP Developer Library の example/lib/grid3.lib.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5471 2012-12-20 18:02 2006-10-24 Show GitHub Exploit DB Packet Storm
229964 5.4 警告 RPM
Canonical
- RPM Package Manager の librpm におけるヒープベースのバッファオーバーフローの脆弱性 - CVE-2006-5466 2012-12-20 18:02 2006-11-3 Show GitHub Exploit DB Packet Storm
229965 2.6 注意 TorrentFlux - TorrentFlux におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2006-5451 2012-12-20 18:02 2006-10-23 Show GitHub Exploit DB Packet Storm
229966 5 警告 xiao gang - XIAO Gang WIMS におけるデータを変更される脆弱性 - CVE-2006-5443 2012-12-20 18:02 2006-10-23 Show GitHub Exploit DB Packet Storm
229967 6.8 警告 ViewVC - ViewVC におけるクロスサイトスクリプティング攻撃を実行される脆弱性 - CVE-2006-5442 2012-12-20 18:02 2006-10-20 Show GitHub Exploit DB Packet Storm
229968 7.5 危険 p-news - P-News の p-news.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5434 2012-12-20 18:02 2006-10-20 Show GitHub Exploit DB Packet Storm
229969 7.5 危険 timm maass - ALiCE-CMS の modules/guestbook/index.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5433 2012-12-20 18:02 2006-10-20 Show GitHub Exploit DB Packet Storm
229970 7.5 危険 phpoutsourcing - PHPOutsourcing Zorum の gorum/dbproperty.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5431 2012-12-20 18:02 2006-10-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
199481 5.5 MEDIUM
Local
array-queue_project array-queue An issue was discovered in the array-queue crate through 2020-09-26 for Rust. A pop_back() call may lead to a use-after-free. CWE-416
 Use After Free
CVE-2020-35900 2024-11-21 14:28 2020-12-31 Show GitHub Exploit DB Packet Storm
199482 5.5 MEDIUM
Local
actix actix-service An issue was discovered in the actix-service crate before 1.0.6 for Rust. The Cell implementation allows obtaining more than one mutable reference to the same data. CWE-416
 Use After Free
CVE-2020-35899 2024-11-21 14:28 2020-12-31 Show GitHub Exploit DB Packet Storm
199483 9.1 CRITICAL
Network
actix actix-utils An issue was discovered in the actix-utils crate before 2.0.0 for Rust. The Cell implementation allows obtaining more than one mutable reference to the same data. CWE-416
 Use After Free
CVE-2020-35898 2024-11-21 14:28 2020-12-31 Show GitHub Exploit DB Packet Storm
199484 9.8 CRITICAL
Network
hgiga msr45_isherlock-user
ssr45_isherlock-user
HGiga MailSherlock does not validate specific parameters properly. Attackers can use the vulnerability to launch Command inject attacks remotely and execute arbitrary commands of the system. CWE-78
OS Command 
CVE-2020-35851 2024-11-21 14:28 2020-12-31 Show GitHub Exploit DB Packet Storm
199485 7.5 HIGH
Network
mantisbt mantisbt An issue was discovered in MantisBT before 2.24.4. An incorrect access check in bug_revision_view_page.php allows an unprivileged attacker to view the Summary field of private issues, as well as bugn… CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2020-35849 2024-11-21 14:28 2020-12-31 Show GitHub Exploit DB Packet Storm
199486 6.5 MEDIUM
Network
cockpit-project cockpit An SSRF issue was discovered in cockpit-project.org Cockpit 234. NOTE: this is unrelated to the Agentejo Cockpit product. NOTE: the vendor states "I don't think [it] is a big real-life issue. CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2020-35850 2024-11-21 14:28 2020-12-30 Show GitHub Exploit DB Packet Storm
199487 9.8 CRITICAL
Network
agentejo cockpit Agentejo Cockpit before 0.11.2 allows NoSQL injection via the Controller/Auth.php newpassword function. CWE-89
SQL Injection
CVE-2020-35848 2024-11-21 14:28 2020-12-30 Show GitHub Exploit DB Packet Storm
199488 9.8 CRITICAL
Network
agentejo cockpit Agentejo Cockpit before 0.11.2 allows NoSQL injection via the Controller/Auth.php resetpassword function. CWE-89
SQL Injection
CVE-2020-35847 2024-11-21 14:28 2020-12-30 Show GitHub Exploit DB Packet Storm
199489 9.8 CRITICAL
Network
agentejo cockpit Agentejo Cockpit before 0.11.2 allows NoSQL injection via the Controller/Auth.php check function. CWE-89
SQL Injection
CVE-2020-35846 2024-11-21 14:28 2020-12-30 Show GitHub Exploit DB Packet Storm
199490 5.4 MEDIUM
Network
netgear d6200_firmware
d7000_firmware
jnr1010v2_firmware
jr6150_firmware
jwnr2010v5_firmware
r6020_firmware
r6050_firmware
r6080_firmware
r6120_firmware
r6220_firmware
r6260_fir…
Certain NETGEAR devices are affected by stored XSS. This affects D6200 before 1.1.00.38, D7000 before 1.0.1.78, JNR1010v2 before 1.1.0.62, JR6150 before 1.0.1.24, JWNR2010v5 before 1.1.0.62, R6020 be… CWE-79
Cross-site Scripting
CVE-2020-35842 2024-11-21 14:28 2020-12-30 Show GitHub Exploit DB Packet Storm