Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 23, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230341 10 危険 トレンドマイクロ - Trend Micro ServerProtect の不特定のプロシージャにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-0012 2012-12-20 18:34 2008-11-17 Show GitHub Exploit DB Packet Storm
230342 7.2 危険 PulseAudio - PulseAudio の pa_drop_root 関数における権限を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2008-0008 2012-12-20 18:34 2008-01-28 Show GitHub Exploit DB Packet Storm
230343 4.3 警告 xmb forum - XMB におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-6728 2012-12-20 18:34 2009-07-5 Show GitHub Exploit DB Packet Storm
230344 10 危険 synce - SynCE (SynCE-dccm) の vdccm におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2007-6703 2012-12-20 18:34 2008-03-4 Show GitHub Exploit DB Packet Storm
230345 7.5 危険 Simple DirectMedia Layer - SDL_image の IMG_gif.c におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-6697 2012-12-20 18:34 2008-02-1 Show GitHub Exploit DB Packet Storm
230346 2.1 注意 webcalendar - WebCalendar におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-6696 2012-12-20 18:34 2008-02-1 Show GitHub Exploit DB Packet Storm
230347 5 警告 VideoLAN - VideoLAN VLC の RTSP モジュールにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2007-6684 2012-12-20 18:34 2008-01-16 Show GitHub Exploit DB Packet Storm
230348 5 警告 VideoLAN - VideoLAN VLC のブラウザプラグインにおける任意のファイルを上書きされる脆弱性 CWE-DesignError
CVE-2007-6683 2012-12-20 18:34 2008-01-16 Show GitHub Exploit DB Packet Storm
230349 7.5 危険 VideoLAN - VideoLAN VLC の httpd_FileCallBack 関数 におけるフォーマットストリングの脆弱性 CWE-DesignError
CVE-2007-6682 2012-12-20 18:34 2008-01-16 Show GitHub Exploit DB Packet Storm
230350 7.5 危険 VideoLAN - VideoLAN VLC の modules/demux/subtitle.c におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-6681 2012-12-20 18:34 2008-01-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 23, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
200641 9.8 CRITICAL
Network
lifterlms lifterlms LifterLMS Wordpress plugin version below 3.37.15 is vulnerable to arbitrary file write leading to remote code execution CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-6008 2024-11-21 14:34 2020-04-1 Show GitHub Exploit DB Packet Storm
200642 7.5 HIGH
Network
grandstream ucm6202_firmware
ucm6204_firmware
ucm6208_firmware
The Grandstream UCM6200 series before 1.0.20.22 is vulnerable to an SQL injection via the CTI server on port 8888. A remote unauthenticated attacker can invoke the challenge action with a crafted use… CWE-89
SQL Injection
CVE-2020-5726 2024-11-21 14:34 2020-03-31 Show GitHub Exploit DB Packet Storm
200643 5.9 MEDIUM
Network
grandstream ucm6202_firmware
ucm6204_firmware
ucm6208_firmware
The Grandstream UCM6200 series before 1.0.20.22 is vulnerable to an SQL injection via the HTTP server's websockify endpoint. A remote unauthenticated attacker can invoke the login action with a craft… CWE-89
SQL Injection
CVE-2020-5725 2024-11-21 14:34 2020-03-31 Show GitHub Exploit DB Packet Storm
200644 7.5 HIGH
Network
grandstream ucm6202_firmware
ucm6204_firmware
ucm6208_firmware
The Grandstream UCM6200 series before 1.0.20.22 is vulnerable to an SQL injection via the HTTP server's websockify endpoint. A remote unauthenticated attacker can invoke the challenge action with a c… CWE-89
SQL Injection
CVE-2020-5724 2024-11-21 14:34 2020-03-31 Show GitHub Exploit DB Packet Storm
200645 9.8 CRITICAL
Network
grandstream ucm6202_firmware
ucm6204_firmware
ucm6208_firmware
The UCM6200 series 1.0.20.22 and below stores unencrypted user passwords in an SQLite database. This could allow an attacker to retrieve all passwords and possibly gain elevated privileges. CWE-312
 Cleartext Storage of Sensitive Information
CVE-2020-5723 2024-11-21 14:34 2020-03-31 Show GitHub Exploit DB Packet Storm
200646 7.5 HIGH
Network
mitsubishielectric cr800-q_firmware
fx3g_firmware
fx3gc_firmware
fx3s_firmware
fx3u_firmware
fx3uc_firmware
fx5u_firmware
fx5uc_firmware
fx5uj_firmware
l02cpu_firmware
l02cpu-p_firmware
When MELSOFT transmission port (UDP/IP) of Mitsubishi Electric MELSEC iQ-R series (all versions), MELSEC iQ-F series (all versions), MELSEC Q series (all versions), MELSEC L series (all versions), an… CWE-400
 Uncontrolled Resource Consumption
CVE-2020-5527 2024-11-21 14:34 2020-03-30 Show GitHub Exploit DB Packet Storm
200647 8.8 HIGH
Adjacent
toyota display_control_unit Toyota 2017 Model Year DCU (Display Control Unit) allows an unauthenticated attacker within Bluetooth range to cause a denial of service attack and/or execute an arbitrary command. The affected DCUs … CWE-276
Incorrect Default Permissions 
CVE-2020-5551 2024-11-21 14:34 2020-03-30 Show GitHub Exploit DB Packet Storm
200648 8.6 HIGH
Network
f5
netapp
nginx_controller
cloud_backup
In NGINX Controller versions prior to 3.2.0, an unauthenticated attacker with network access to the Controller API can create unprivileged user accounts. The user which is created is only able to upl… NVD-CWE-noinfo
CVE-2020-5863 2024-11-21 14:34 2020-03-28 Show GitHub Exploit DB Packet Storm
200649 7.5 HIGH
Network
f5 big-ip_access_policy_manager
big-ip_advanced_firewall_manager
big-ip_analytics
big-ip_application_acceleration_manager
big-ip_application_security_manager
big-ip_domain_name_system
On BIG-IP 15.1.0-15.1.0.1, 15.0.0-15.0.1.1, and 14.1.0-14.1.2.2, under certain conditions, TMM may crash or stop processing new traffic with the DPDK/ENA driver on AWS systems while sending traffic. … NVD-CWE-noinfo
CVE-2020-5862 2024-11-21 14:34 2020-03-28 Show GitHub Exploit DB Packet Storm
200650 7.5 HIGH
Network
f5 big-ip_access_policy_manager
big-ip_advanced_firewall_manager
big-ip_analytics
big-ip_application_acceleration_manager
big-ip_application_security_manager
big-ip_domain_name_system
On BIG-IP 15.1.0.1, specially formatted HTTP/3 messages may cause TMM to produce a core file. NVD-CWE-noinfo
CVE-2020-5859 2024-11-21 14:34 2020-03-28 Show GitHub Exploit DB Packet Storm