Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230851 6.8 警告 siteatschool - Site@School の starnet/addons/slideshow_full.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-0129 2012-12-20 18:34 2008-01-8 Show GitHub Exploit DB Packet Storm
230852 4.3 警告 php-stats - Michael Wagner phpstats の phpstats.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-0125 2012-12-20 18:34 2008-03-24 Show GitHub Exploit DB Packet Storm
230853 4.3 警告 s9y - S9Y におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-0124 2012-12-20 18:34 2008-02-25 Show GitHub Exploit DB Packet Storm
230854 7.5 危険 ourproject.org - White_Dune の DuneApp.cpp におけるフォーマットストリングの脆弱性 CWE-20
不適切な入力確認
CVE-2008-0101 2012-12-20 18:34 2008-01-7 Show GitHub Exploit DB Packet Storm
230855 7.5 危険 ourproject.org - White_Dune の Scene.cpp におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-0100 2012-12-20 18:34 2008-01-7 Show GitHub Exploit DB Packet Storm
230856 10 危険 リアルネットワークス - RealPlayer におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-0098 2012-12-20 18:34 2008-01-7 Show GitHub Exploit DB Packet Storm
230857 4.3 警告 phpWebSite - Appalachian State University phpWebSite の search モジュールの index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-0092 2012-12-20 18:34 2008-01-3 Show GitHub Exploit DB Packet Storm
230858 6.8 警告 Xine - xine-lib の input/libreal/sdpplin.c における任意のコードを実行される脆弱性 CWE-189
数値処理の問題
CVE-2008-0073 2012-12-20 18:34 2008-03-24 Show GitHub Exploit DB Packet Storm
230859 6.8 警告 pierreegougelet - XnView におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-0069 2012-12-20 18:34 2008-04-2 Show GitHub Exploit DB Packet Storm
230860 10 危険 Winamp - Winamp の in_mp3.dll におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-0065 2012-12-20 18:34 2008-01-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
213821 5.8 MEDIUM
Network
redhat ansible_tower A data exposure flaw was found in Tower, where sensitive data was revealed from the HTTP return error codes. This flaw allows an unauthenticated, remote attacker to retrieve pages from the default or… CWE-209
Information Exposure Through an Error Message
CVE-2020-14337 2024-11-21 14:03 2020-07-31 Show GitHub Exploit DB Packet Storm
213822 8.8 HIGH
Local
redhat satellite A flaw was found in Red Hat Satellite 6 which allows privileged attacker to read cache files. These cache credentials could help attacker to gain complete control of the Satellite instance. - CVE-2020-14334 2024-11-21 14:03 2020-07-31 Show GitHub Exploit DB Packet Storm
213823 8.8 HIGH
Network
freemedsoftware openclinic_ga OpenClinic GA 5.09.02 and 5.89.05b does not properly verify uploaded files, which may allow a low-privilege user to upload and execute arbitrary files on the system. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-14488 2024-11-21 14:03 2020-07-29 Show GitHub Exploit DB Packet Storm
213824 9.8 CRITICAL
Network
freemedsoftware openclinic_ga OpenClinic GA 5.09.02 contains a hidden default user account that may be accessed if an administrator has not expressly turned off this account, which may allow an attacker to login and execute arbit… NVD-CWE-Other
CVE-2020-14487 2024-11-21 14:03 2020-07-29 Show GitHub Exploit DB Packet Storm
213825 8.8 HIGH
Network
openclinic_ga_project openclinic_ga An attacker may bypass permission/authorization checks in OpenClinic GA 5.09.02 and 5.89.05b by ignoring the redirect of a permission failure, which may allow unauthorized execution of commands. CWE-863
 Incorrect Authorization
CVE-2020-14486 2024-11-21 14:03 2020-07-29 Show GitHub Exploit DB Packet Storm
213826 8.8 HIGH
Network
openclinic_ga_project openclinic_ga A low-privilege user may use SQL syntax to write arbitrary files to the OpenClinic GA 5.09.02 and 5.89.05b server, which may allow the execution of arbitrary commands. CWE-269
 Improper Privilege Management
CVE-2020-14493 2024-11-21 14:03 2020-07-29 Show GitHub Exploit DB Packet Storm
213827 6.1 MEDIUM
Network
openclinic_ga_project openclinic_ga OpenClinic GA 5.09.02 and 5.89.05b does not properly neutralize user-controllable input, which may allow the execution of malicious code within the user’s browser. CWE-79
Cross-site Scripting
CVE-2020-14492 2024-11-21 14:03 2020-07-29 Show GitHub Exploit DB Packet Storm
213828 8.8 HIGH
Network
openclinic_ga_project openclinic_ga OpenClinic GA 5.09.02 and 5.89.05b includes arbitrary local files specified within its parameter and executes some files, which may allow disclosure of sensitive files or the execution of malicious u… CWE-22
Path Traversal
CVE-2020-14490 2024-11-21 14:03 2020-07-29 Show GitHub Exploit DB Packet Storm
213829 7.5 HIGH
Network
openclinic_ga_project openclinic_ga OpenClinic GA 5.09.02 and 5.89.05b stores passwords using inadequate hashing complexity, which may allow an attacker to recover passwords using known password cracking techniques. CWE-522
 Insufficiently Protected Credentials
CVE-2020-14489 2024-11-21 14:03 2020-07-29 Show GitHub Exploit DB Packet Storm
213830 4.9 MEDIUM
Network
oracle
netapp
mysql
active_iq_unified_manager
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.20 and prior. Easily exploitable vulnerability allows high privi… NVD-CWE-noinfo
CVE-2020-14725 2024-11-21 14:03 2020-07-25 Show GitHub Exploit DB Packet Storm