Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 10, 2026, 4:07 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
231641 7.5 危険 WordPress.org - WordPress 用 Upload File プラグインにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2510 2012-12-20 18:52 2008-05-29 Show GitHub Exploit DB Packet Storm
231642 4.3 警告 tr script news - Tr Script News の news.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2508 2012-12-20 18:52 2008-05-29 Show GitHub Exploit DB Packet Storm
231643 7.5 危険 simpel side - Simpel Side Weblosning における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2506 2012-12-20 18:52 2008-05-29 Show GitHub Exploit DB Packet Storm
231644 4.3 警告 simpel side - Simpel Side Weblosning の result.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2505 2012-12-20 18:52 2008-05-29 Show GitHub Exploit DB Packet Storm
231645 7.5 危険 simpel side - Simpel Side Netbutik における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2504 2012-12-20 18:52 2008-05-29 Show GitHub Exploit DB Packet Storm
231646 9.3 危険 加藤和良 - eMule X-Ray の Uploadlist におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-2503 2012-12-20 18:52 2008-05-29 Show GitHub Exploit DB Packet Storm
231647 4.3 警告 quate - Quate CMS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2496 2012-12-20 18:52 2008-05-28 Show GitHub Exploit DB Packet Storm
231648 4.3 警告 TYPO3 Association - TYPO3 用の KJ Image Lightbox 2 エクステンションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2490 2012-12-20 18:52 2008-05-28 Show GitHub Exploit DB Packet Storm
231649 7.5 危険 TYPO3 Association - TYPO3 用の Frontend プラグインエクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2489 2012-12-20 18:52 2008-05-28 Show GitHub Exploit DB Packet Storm
231650 6.8 警告 xomol - Xomol CMS の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2484 2012-12-20 18:52 2008-05-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 10, 2026, 5 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
210321 9.8 CRITICAL
Network
openclinic_ga_project openclinic_ga An exploitable SQL injection vulnerability exists in ‘getAssets.jsp’ page of OpenClinic GA 5.173.3. The serialnumber parameter in the getAssets.jsp page is vulnerable to unauthenticated SQL injection… CWE-89
SQL Injection
CVE-2020-27241 2024-11-21 14:20 2021-04-20 Show GitHub Exploit DB Packet Storm
210322 9.8 CRITICAL
Network
openclinic_ga_project openclinic_ga An exploitable SQL injection vulnerability exists in ‘getAssets.jsp’ page of OpenClinic GA 5.173.3. The componentStatus parameter in the getAssets.jsp page is vulnerable to unauthenticated SQL inject… CWE-89
SQL Injection
CVE-2020-27240 2024-11-21 14:20 2021-04-20 Show GitHub Exploit DB Packet Storm
210323 8.1 HIGH
Network
siemens nucleus_net
nucleus_source_code
A vulnerability has been identified in APOGEE PXC Compact (BACnet) (All versions < V3.5.5), APOGEE PXC Compact (P2 Ethernet) (All versions < V2.8.20), APOGEE PXC Modular (BACnet) (All versions < V3.5… CWE-787
 Out-of-bounds Write
CVE-2020-27009 2024-11-21 14:20 2021-04-23 Show GitHub Exploit DB Packet Storm
210324 7.8 HIGH
Local
siemens solid_edge_se2021
solid_edge_se2020
A vulnerability has been identified in Solid Edge SE2020 (All versions < SE2020MP13), Solid Edge SE2020 (All versions < SE2020MP14), Solid Edge SE2021 (All Versions < SE2021MP4). Affected application… - CVE-2020-26997 2024-11-21 14:20 2021-04-23 Show GitHub Exploit DB Packet Storm
210325 9.8 CRITICAL
Network
openclinic_ga_project openclinic_ga An exploitable SQL injection vulnerability exists in ‘getAssets.jsp’ page of OpenClinic GA 5.173.3. The assetStatus parameter in the getAssets.jsp page is vulnerable to unauthenticated SQL injection … CWE-89
SQL Injection
CVE-2020-27239 2024-11-21 14:20 2021-04-15 Show GitHub Exploit DB Packet Storm
210326 9.8 CRITICAL
Network
openclinic_ga_project openclinic_ga An exploitable SQL injection vulnerability exists in ‘getAssets.jsp’ page of OpenClinic GA 5.173.3. The code parameter in the getAssets.jsp page is vulnerable to unauthenticated SQL injection. An att… CWE-89
SQL Injection
CVE-2020-27238 2024-11-21 14:20 2021-04-15 Show GitHub Exploit DB Packet Storm
210327 9.8 CRITICAL
Network
openclinic_ga_project openclinic_ga An exploitable SQL injection vulnerability exists in ‘getAssets.jsp’ page of OpenClinic GA 5.173.3. The code parameter in the The nomenclature parameter in the getAssets.jsp page is vulnerable to una… CWE-89
SQL Injection
CVE-2020-27237 2024-11-21 14:20 2021-04-15 Show GitHub Exploit DB Packet Storm
210328 9.8 CRITICAL
Network
openclinic_ga_project openclinic_ga An exploitable SQL injection vulnerability exists in ‘getAssets.jsp’ page of OpenClinic GA 5.173.3 in the compnomenclature parameter. An attacker can make an authenticated HTTP request to trigger thi… CWE-89
SQL Injection
CVE-2020-27236 2024-11-21 14:20 2021-04-14 Show GitHub Exploit DB Packet Storm
210329 9.8 CRITICAL
Network
openclinic_ga_project openclinic_ga An exploitable SQL injection vulnerability exists in ‘getAssets.jsp’ page of OpenClinic GA 5.173.3 in the description parameter. An attacker can make an authenticated HTTP request to trigger this vul… CWE-89
SQL Injection
CVE-2020-27235 2024-11-21 14:20 2021-04-14 Show GitHub Exploit DB Packet Storm
210330 9.8 CRITICAL
Network
openclinic_ga_project openclinic_ga An exploitable SQL injection vulnerability exists in ‘getAssets.jsp’ page of OpenClinic GA 5.173.3 in the serviceUID parameter. An attacker can make an authenticated HTTP request to trigger this vuln… CWE-89
SQL Injection
CVE-2020-27234 2024-11-21 14:20 2021-04-14 Show GitHub Exploit DB Packet Storm