Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230331 7.5 危険 redaction system - Redaction System における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2006-5302 2012-12-20 18:02 2006-10-17 Show GitHub Exploit DB Packet Storm
230332 6.8 警告 phpBB - phpBB 用の SpamBlockerMODv モジュールにおける PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2006-5301 2012-12-20 18:02 2006-10-17 Show GitHub Exploit DB Packet Storm
230333 4.3 警告 Tincan - phplist の index.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5294 2012-12-20 18:02 2006-10-16 Show GitHub Exploit DB Packet Storm
230334 6.8 警告 phpoutsourcing - PhpOutsourcing Noah's Classifieds の index.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5293 2012-12-20 18:02 2006-10-16 Show GitHub Exploit DB Packet Storm
230335 7.5 危険 Xerox - Xerox WorkCentre における認証を回避される脆弱性 - CVE-2006-5290 2012-12-20 18:02 2006-10-3 Show GitHub Exploit DB Packet Storm
230336 7.5 危険 Vtiger - Vtiger CRM における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5289 2012-12-20 18:02 2006-10-13 Show GitHub Exploit DB Packet Storm
230337 5.1 警告 xeobook - Xeobook の sign.php における SQL インジェクションの脆弱性 - CVE-2006-5287 2012-12-20 18:02 2006-10-13 Show GitHub Exploit DB Packet Storm
230338 7.5 危険 xeoport - XeoPort の index.php における SQL インジェクションの脆弱性 - CVE-2006-5285 2012-12-20 18:02 2006-10-13 Show GitHub Exploit DB Packet Storm
230339 7.5 危険 sh-news - SH-News における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5282 2012-12-20 18:02 2006-10-13 Show GitHub Exploit DB Packet Storm
230340 7.5 危険 phpmyagenda - phpMyAgenda の templates/header.php3 におけるディレクトリトラバーサルの脆弱性 - CVE-2006-5263 2012-12-20 18:02 2006-10-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
198951 6.7 MEDIUM
Local
cisco adaptive_security_appliance_software
firepower_threat_defense
Multiple vulnerabilities in the secure boot process of Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat Defense (FTD) Software for the Firepower 1000 Series and Firepower 2100 Se… NVD-CWE-Other
CVE-2020-3458 2024-11-21 14:31 2020-10-22 Show GitHub Exploit DB Packet Storm
198952 6.7 MEDIUM
Local
cisco firepower_extensible_operating_system
adaptive_security_appliance_software
firepower_threat_defense
A vulnerability in the CLI of Cisco FXOS Software could allow an authenticated, local attacker to inject arbitrary commands that are executed with root privileges. The vulnerability is due to insuffi… CWE-78
OS Command 
CVE-2020-3457 2024-11-21 14:31 2020-10-22 Show GitHub Exploit DB Packet Storm
198953 8.8 HIGH
Network
cisco firepower_extensible_operating_system A vulnerability in the Cisco Firepower Chassis Manager (FCM) of Cisco FXOS Software could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack against a use… CWE-352
 Origin Validation Error
CVE-2020-3456 2024-11-21 14:31 2020-10-22 Show GitHub Exploit DB Packet Storm
198954 7.8 HIGH
Local
cisco firepower_extensible_operating_system A vulnerability in the secure boot process of Cisco FXOS Software could allow an authenticated, local attacker to bypass the secure boot mechanisms. The vulnerability is due to insufficient protectio… NVD-CWE-Other
CVE-2020-3455 2024-11-21 14:31 2020-10-22 Show GitHub Exploit DB Packet Storm
198955 8.6 HIGH
Network
cisco firepower_threat_defense
adaptive_security_appliance
adaptive_security_appliance_software
A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to upload ar… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-3436 2024-11-21 14:31 2020-10-22 Show GitHub Exploit DB Packet Storm
198956 6.3 MEDIUM
Local
cisco duo_network_gateway Duo has identified and fixed an issue with the Duo Network Gateway (DNG) product in which some customer-provided SSL certificates and private keys were not excluded from logging. This issue resulted … CWE-522
 Insufficiently Protected Credentials
CVE-2020-3483 2024-11-21 14:31 2020-10-15 Show GitHub Exploit DB Packet Storm
198957 7.8 HIGH
Local
cisco duo_authentication_for_windows_logon_and_rdp The Windows Logon installer prior to 4.1.2 did not properly validate file installation paths. This allows an attacker with local user privileges to coerce the installer to write to arbitrary privileg… NVD-CWE-noinfo
CVE-2020-3427 2024-11-21 14:31 2020-10-15 Show GitHub Exploit DB Packet Storm
198958 6.7 MEDIUM
Local
cisco staros A vulnerability in the CLI of Cisco StarOS operating system for Cisco ASR 5000 Series Routers could allow an authenticated, local attacker to elevate privileges on an affected device. The vulnerabili… CWE-78
OS Command 
CVE-2020-3602 2024-11-21 14:31 2020-10-8 Show GitHub Exploit DB Packet Storm
198959 6.7 MEDIUM
Local
cisco staros A vulnerability in the CLI of Cisco StarOS operating system for Cisco ASR 5000 Series Routers could allow an authenticated, local attacker to elevate privileges on an affected device. The vulnerabili… CWE-78
OS Command 
CVE-2020-3601 2024-11-21 14:31 2020-10-8 Show GitHub Exploit DB Packet Storm
198960 6.5 MEDIUM
Network
cisco vision_dynamic_signage_director A vulnerability in the web-based management interface of Cisco Vision Dynamic Signage Director could allow an unauthenticated, remote attacker to access confidential information or make configuration… CWE-306
Missing Authentication for Critical Function
CVE-2020-3598 2024-11-21 14:31 2020-10-8 Show GitHub Exploit DB Packet Storm