Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230011 10 危険 TYPO3 Association - TYPO3 用の air_filemanager エクステンションにおける任意の PHP コードされる脆弱性 CWE-94
コード・インジェクション
CVE-2008-2345 2012-12-20 18:52 2008-05-19 Show GitHub Exploit DB Packet Storm
230012 4.3 警告 TYPO3 Association - TYPO3 用の air_filemanager エクステンションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2344 2012-12-20 18:52 2008-05-19 Show GitHub Exploit DB Packet Storm
230013 7.5 危険 turnkey web tools - Turnkey Web Tools SunShop Shopping Cart の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2339 2012-12-20 18:52 2008-05-19 Show GitHub Exploit DB Packet Storm
230014 4.3 警告 Vastal I-Tech & Co. - Vastal I-Tech phpVID の search_results.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2335 2012-12-20 18:52 2008-05-19 Show GitHub Exploit DB Packet Storm
230015 7.5 危険 phpway - Kostenloses Linkmanagementscript における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2301 2012-12-20 18:52 2008-05-18 Show GitHub Exploit DB Packet Storm
230016 7.5 危険 加藤和良 - Web Slider の Admin.php における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2008-2298 2012-12-20 18:52 2008-05-18 Show GitHub Exploit DB Packet Storm
230017 7.5 危険 roticv - Rantx の admin.php における認証を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-2297 2012-12-20 18:52 2008-05-18 Show GitHub Exploit DB Packet Storm
230018 7.5 危険 rgboard - Rgboard の include/bbs.lib.inc.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-2296 2012-12-20 18:52 2008-05-18 Show GitHub Exploit DB Packet Storm
230019 4.3 警告 rgboard - Rgboard の rg_search.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2295 2012-12-20 18:52 2008-05-18 Show GitHub Exploit DB Packet Storm
230020 7.5 危険 tpvgames - MPCS の admin.php における認証を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-2293 2012-12-20 18:52 2008-05-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209191 9.8 CRITICAL
Network
vr_cam p1_firmware VR CAM P1 Model P1 v1 has an incorrect access control vulnerability where an attacker can obtain complete access of the device from web (remote) without authentication. CWE-306
Missing Authentication for Critical Function
CVE-2020-23512 2024-11-21 14:13 2020-09-15 Show GitHub Exploit DB Packet Storm
209192 8.8 HIGH
Network
spiceworks spiceworks Spiceworks Version <= 7.5.00107 is affected by CSRF which can lead to privilege escalation via "/settings/v1/users" function. CWE-352
 Origin Validation Error
CVE-2020-23451 2024-11-21 14:13 2020-09-15 Show GitHub Exploit DB Packet Storm
209193 6.1 MEDIUM
Network
mediakind rx8200_firmware MediaKind (formerly Ericsson) RX8200 5.13.3 devices are vulnerable to multiple reflected and stored XSS. An attacker has to inject JavaScript code directly in the "path" or "Services+ID" parameters a… CWE-79
Cross-site Scripting
CVE-2020-22158 2024-11-21 14:13 2020-09-15 Show GitHub Exploit DB Packet Storm
209194 5.4 MEDIUM
Network
spiceworks spiceworks Spiceworks Version <= 7.5.00107 is affected by XSS. Any name typed on Custom Groups function is vulnerable to stored XSS as they displayed on http://127.0.0.1/inventory/groups/ without output sanitiz… CWE-79
Cross-site Scripting
CVE-2020-23450 2024-11-21 14:13 2020-09-2 Show GitHub Exploit DB Packet Storm
209195 5.4 MEDIUM
Network
laborator neon Laborator Neon dashboard v3 is affected by stored Cross Site Scripting (XSS) via the chat tab. CWE-79
Cross-site Scripting
CVE-2020-23576 2024-11-21 14:13 2020-08-28 Show GitHub Exploit DB Packet Storm
209196 5.4 MEDIUM
Network
webtareas_project webtareas webTareas v2.1 is affected by Cross Site Scripting (XSS) on "Search." CWE-79
Cross-site Scripting
CVE-2020-23660 2024-11-21 14:13 2020-08-27 Show GitHub Exploit DB Packet Storm
209197 5.4 MEDIUM
Network
webport web_port WebPort-v1.19.17121 is affected by Cross Site Scripting (XSS) on the "connections" feature. CWE-79
Cross-site Scripting
CVE-2020-23659 2024-11-21 14:13 2020-08-27 Show GitHub Exploit DB Packet Storm
209198 5.4 MEDIUM
Network
php-fusion php-fusion PHP-Fusion 9.03.60 is affected by Cross Site Scripting (XSS) via infusions/member_poll_panel/poll_admin.php. CWE-79
Cross-site Scripting
CVE-2020-23658 2024-11-21 14:13 2020-08-27 Show GitHub Exploit DB Packet Storm
209199 5.4 MEDIUM
Network
naviwebs navigatecms NavigateCMS 2.9 is affected by Cross Site Scripting (XSS) on module "Configuration." CWE-79
Cross-site Scripting
CVE-2020-23657 2024-11-21 14:13 2020-08-27 Show GitHub Exploit DB Packet Storm
209200 5.4 MEDIUM
Network
naviwebs navigatecms NavigateCMS 2.9 is affected by Cross Site Scripting (XSS) on module "Content." CWE-79
Cross-site Scripting
CVE-2020-23656 2024-11-21 14:13 2020-08-27 Show GitHub Exploit DB Packet Storm