Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 11, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230781 7.5 危険 salims softhouse - ph03y3nk JAF CMS の module/shout/jafshout.php における "" で囲まれたセクション内の任意のコードを実行される脆弱性 - CVE-2006-5131 2012-12-20 18:02 2006-10-3 Show GitHub Exploit DB Packet Storm
230782 6.8 警告 salims softhouse - ph03y3nk JAF CMS におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5130 2012-12-20 18:02 2006-10-3 Show GitHub Exploit DB Packet Storm
230783 6.8 警告 salims softhouse - ph03y3nk JAF CMS におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5129 2012-12-20 18:02 2006-10-3 Show GitHub Exploit DB Packet Storm
230784 7.5 危険 powerportal - John Himmelman PowerPortal の index.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5126 2012-12-20 18:02 2006-10-3 Show GitHub Exploit DB Packet Storm
230785 7.5 危険 phprojekt - Albrecht Guenther PHProjekt における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5123 2012-12-20 18:02 2006-10-3 Show GitHub Exploit DB Packet Storm
230786 7.5 危険 postnuke software foundation - PostNuke の Admin セクションにおける SQL インジェクションの脆弱性 - CVE-2006-5121 2012-12-20 18:02 2006-10-3 Show GitHub Exploit DB Packet Storm
230787 4 警告 scott metoyer - Scott Metoyer Red Mombin におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5120 2012-12-20 18:02 2006-10-3 Show GitHub Exploit DB Packet Storm
230788 4 警告 Zen Cart - Zen Cart におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2006-5119 2012-12-20 18:02 2006-09-28 Show GitHub Exploit DB Packet Storm
230789 7.5 危険 phpselect - PHPSelect Web Development Division 用の PDD パッケージにおける PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5118 2012-12-20 18:02 2006-10-3 Show GitHub Exploit DB Packet Storm
230790 5 警告 The phpMyAdmin Project - phpMyAdmin における重要な情報を取得される脆弱性 - CVE-2006-5117 2012-12-20 18:02 2006-10-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 11, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211571 8.8 HIGH
Network
apachefriends xampp An issue was discovered in XAMPP before 7.2.29, 7.3.x before 7.3.16 , and 7.4.x before 7.4.4 on Windows. An unprivileged user can change a .exe configuration in xampp-contol.ini for all users (includ… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2020-11107 2024-11-21 13:56 2020-04-3 Show GitHub Exploit DB Packet Storm
211572 8.8 HIGH
Network
haproxy
debian
redhat
fedoraproject
canonical
opensuse
haproxy
debian_linux
openshift_container_platform
fedora
ubuntu_linux
leap
In hpack_dht_insert in hpack-tbl.c in the HPACK decoder in HAProxy 1.8 through 2.x before 2.1.4, a remote attacker can write arbitrary bytes around a certain location on the heap via a crafted HTTP/2… CWE-787
 Out-of-bounds Write
CVE-2020-11100 2024-11-21 13:56 2020-04-3 Show GitHub Exploit DB Packet Storm
211573 9.8 CRITICAL
Network
alienform2_project alienform2 Jon Hedley AlienForm2 (typically installed as af.cgi or alienform.cgi) 2.0.2 is vulnerable to Remote Command Execution via eval injection, a different issue than CVE-2002-0934. An unauthenticated, re… CWE-94
Code Injection
CVE-2020-10948 2024-11-21 13:56 2020-04-2 Show GitHub Exploit DB Packet Storm
211574 7.5 HIGH
Network
avast antivirus An issue was discovered in Avast Antivirus before 20. The aswTask RPC endpoint for the TaskEx library in the Avast Service (AvastSvc.exe) allows attackers to launch the Repair App RPC call from a Low… NVD-CWE-noinfo
CVE-2020-10868 2024-11-21 13:56 2020-04-2 Show GitHub Exploit DB Packet Storm
211575 9.8 CRITICAL
Network
avast antivirus An issue was discovered in Avast Antivirus before 20. The aswTask RPC endpoint for the TaskEx library in the Avast Service (AvastSvc.exe) allows attackers to bypass intended access restrictions on ta… CWE-668
 Exposure of Resource to Wrong Sphere
CVE-2020-10867 2024-11-21 13:56 2020-04-2 Show GitHub Exploit DB Packet Storm
211576 7.5 HIGH
Network
avast antivirus An issue was discovered in Avast Antivirus before 20. The aswTask RPC endpoint for the TaskEx library in the Avast Service (AvastSvc.exe) allows attackers to enumerate the network interfaces and acce… CWE-326
Inadequate Encryption Strength
CVE-2020-10866 2024-11-21 13:56 2020-04-2 Show GitHub Exploit DB Packet Storm
211577 7.5 HIGH
Network
avast antivirus An issue was discovered in Avast Antivirus before 20. The aswTask RPC endpoint for the TaskEx library in the Avast Service (AvastSvc.exe) allows attackers to make arbitrary changes to the Components … CWE-829
 Inclusion of Functionality from Untrusted Control Sphere
CVE-2020-10865 2024-11-21 13:56 2020-04-2 Show GitHub Exploit DB Packet Storm
211578 6.5 MEDIUM
Network
avast antivirus An issue was discovered in Avast Antivirus before 20. The aswTask RPC endpoint for the TaskEx library in the Avast Service (AvastSvc.exe) allows attackers to trigger a reboot via RPC from a Low Integ… NVD-CWE-noinfo
CVE-2020-10864 2024-11-21 13:56 2020-04-2 Show GitHub Exploit DB Packet Storm
211579 7.5 HIGH
Network
avast antivirus An issue was discovered in Avast Antivirus before 20. The aswTask RPC endpoint for the TaskEx library in the Avast Service (AvastSvc.exe) allows attackers to trigger a shutdown via RPC from a Low Int… NVD-CWE-noinfo
CVE-2020-10863 2024-11-21 13:56 2020-04-2 Show GitHub Exploit DB Packet Storm
211580 7.8 HIGH
Local
avast antivirus An issue was discovered in Avast Antivirus before 20. The aswTask RPC endpoint for the TaskEx library in the Avast Service (AvastSvc.exe) allows attackers to achieve Local Privilege Escalation (LPE) … NVD-CWE-noinfo
CVE-2020-10862 2024-11-21 13:56 2020-04-2 Show GitHub Exploit DB Packet Storm