Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 2, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230641 6.9 警告 symark - Symark PowerBroker におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-1056 2012-12-20 18:34 2008-02-28 Show GitHub Exploit DB Packet Storm
230642 7.5 危険 PHPNUKE - PHP-Nuke 用の Kose_Yazilari モジュールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1053 2012-12-20 18:34 2008-02-27 Show GitHub Exploit DB Packet Storm
230643 6.8 警告 phpprofiles - phpProfiles の include/body_comm.inc.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-1051 2012-12-20 18:34 2008-02-27 Show GitHub Exploit DB Packet Storm
230644 7.5 危険 softbiz - Softbiz Jokes & Funny Pics Script の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1050 2012-12-20 18:34 2008-02-27 Show GitHub Exploit DB Packet Storm
230645 10 危険 positive software - Parallels H-Sphere で使用される Parallels SiteStudio における脆弱性 CWE-noinfo
情報不足
CVE-2008-1049 2012-12-20 18:34 2008-02-26 Show GitHub Exploit DB Packet Storm
230646 4.3 警告 Plume CMS - Plume CMS の manager/xmedia.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1048 2012-12-20 18:34 2008-02-27 Show GitHub Exploit DB Packet Storm
230647 4.3 警告 Tiki Software Community Association - TikiWiki の tiki-edit_article.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1047 2012-12-20 18:34 2008-02-23 Show GitHub Exploit DB Packet Storm
230648 6.8 警告 quinsonnas - Quinsonnas Mail Checker の footer.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-1046 2012-12-20 18:34 2008-02-27 Show GitHub Exploit DB Packet Storm
230649 7.5 危険 porar - PORAR WEBBOARD の question.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1039 2012-12-20 18:34 2008-02-27 Show GitHub Exploit DB Packet Storm
230650 5.8 警告 spyce - Spyce - PSP における重要な情報を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2008-0982 2012-12-20 18:34 2008-02-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 2, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209611 9.8 CRITICAL
Network
naviwebs navigate_cms SQL Injection vulnerability in NavigateCMS 2.9 via the URL encoded GET input category in navigate.php. CWE-89
SQL Injection
CVE-2020-23711 2024-11-21 14:14 2021-06-29 Show GitHub Exploit DB Packet Storm
209612 5.4 MEDIUM
Network
limesurvey limesurvey Cross Site Scripting (XSS) vulneraiblity in LimeSurvey 4.2.5 on textbox via the Notifications & data feature. CWE-79
Cross-site Scripting
CVE-2020-23710 2024-11-21 14:14 2021-06-29 Show GitHub Exploit DB Packet Storm
209613 6.1 MEDIUM
Network
catfish-cms catfish_cms A cross site scripting (XSS) vulnerability in Catfish CMS 4.9.90 allows attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the "announcement_gonggao" parameter. CWE-79
Cross-site Scripting
CVE-2020-23962 2024-11-21 14:14 2021-06-24 Show GitHub Exploit DB Packet Storm
209614 5.5 MEDIUM
Local
intel baseboard_management_controller_firmware Improper initialization in the BMC firmware for some Intel(R) Server Boards, Server Systems and Compute Modules before version 2.48.ce3e3bd2 may allow an authenticated user to potentially enable deni… CWE-665
 Improper Initialization
CVE-2020-24475 2024-11-21 14:14 2021-06-10 Show GitHub Exploit DB Packet Storm
209615 8.0 HIGH
Adjacent
intel baseboard_management_controller_firmware Buffer overflow in the BMC firmware for some Intel(R) Server Boards, Server Systems and Compute Modules before version 2.48.ce3e3bd2 may allow an authenticated user to potentially enable escalation o… CWE-120
Classic Buffer Overflow
CVE-2020-24474 2024-11-21 14:14 2021-06-10 Show GitHub Exploit DB Packet Storm
209616 7.8 HIGH
Local
intel baseboard_management_controller_firmware Out of bounds write in the BMC firmware for some Intel(R) Server Boards, Server Systems and Compute Modules before version 2.48.ce3e3bd2 may allow an authenticated user to potentially enable escalati… CWE-787
 Out-of-bounds Write
CVE-2020-24473 2024-11-21 14:14 2021-06-10 Show GitHub Exploit DB Packet Storm
209617 8.8 HIGH
Local
intel
debian
celeron_n2840
celeron_j4005
celeron_n4100
celeron_n4000
celeron_j4105
celeron_j3355
celeron_n3350
celeron_j3455
celeron_n3450
celeron_j3060
celeron_j3160
celeron_n300…
Incomplete cleanup in some Intel(R) VT-d products may allow an authenticated user to potentially enable escalation of privilege via local access. CWE-459
 Incomplete Cleanup
CVE-2020-24489 2024-11-21 14:14 2021-06-10 Show GitHub Exploit DB Packet Storm
209618 6.8 MEDIUM
Physics
intel converged_security_and_manageability_engine Modification of assumed-immutable data in subsystem in Intel(R) CSME versions before 13.0.47, 13.30.17, 14.1.53, 14.5.32, 15.0.22 may allow an unauthenticated user to potentially enable escalation of… NVD-CWE-Other
CVE-2020-24516 2024-11-21 14:14 2021-06-10 Show GitHub Exploit DB Packet Storm
209619 6.8 MEDIUM
Physics
intel realsense_id_f450_firmware
realsense_id_f455_firmware
Protection mechanism failure in some Intel(R) RealSense(TM) IDs may allow an unauthenticated user to potentially enable escalation of privilege via physical access. NVD-CWE-Other
CVE-2020-24515 2024-11-21 14:14 2021-06-10 Show GitHub Exploit DB Packet Storm
209620 6.8 MEDIUM
Physics
intel realsense_id_f450_firmware
realsense_id_f455_firmware
Improper authentication in some Intel(R) RealSense(TM) IDs may allow an unauthenticated user to potentially enable escalation of privilege via physical access. CWE-287
Improper Authentication
CVE-2020-24514 2024-11-21 14:14 2021-06-10 Show GitHub Exploit DB Packet Storm