Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
232011 7.5 危険 select development solutions - PHP Auto Dealer の view_cat.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4495 2012-12-20 18:52 2008-10-8 Show GitHub Exploit DB Packet Storm
232012 7.5 危険 torrenttrader - TorrentTrader Classic の completed-advance.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4494 2012-12-20 18:52 2008-10-8 Show GitHub Exploit DB Packet Storm
232013 7.5 危険 yourownbux - YourOwnBux の referrals.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4492 2012-12-20 18:52 2008-10-8 Show GitHub Exploit DB Packet Storm
232014 10 危険 yerba - Yerba で使用される SACphp の index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-4486 2012-12-20 18:52 2008-10-7 Show GitHub Exploit DB Packet Storm
232015 6.9 警告 Sympa - sympa の sympa.pl における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2008-4476 2012-12-20 18:52 2008-10-7 Show GitHub Exploit DB Packet Storm
232016 7.5 危険 Vastal I-Tech & Co. - Vastal I-Tech Freelance Zone の view_cresume.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4469 2012-12-20 18:52 2008-10-6 Show GitHub Exploit DB Packet Storm
232017 7.5 危険 Vastal I-Tech & Co. - Vastal I-Tech Share Zone の view_news.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4468 2012-12-20 18:52 2008-10-6 Show GitHub Exploit DB Packet Storm
232018 7.5 危険 Vastal I-Tech & Co. - Vastal I-Tech Toner Cart の show_series_ink.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4467 2012-12-20 18:52 2008-10-6 Show GitHub Exploit DB Packet Storm
232019 7.5 危険 Vastal I-Tech & Co. - Vastal I-Tech Cosmetics Zone の view_products_cat.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4466 2012-12-20 18:52 2008-10-6 Show GitHub Exploit DB Packet Storm
232020 7.5 危険 Vastal I-Tech & Co. - Vastal I-Tech DVD Zone の view_mags.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4465 2012-12-20 18:52 2008-10-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211071 7.5 HIGH
Network
redhat jboss_fuse
openshift_application_runtimes
undertow
A flaw was found in the Undertow AJP connector. Malicious requests and abrupt connection closes could be triggered by an attacker using query strings with non-RFC compliant characters resulting in a … - CVE-2020-27782 2024-11-21 14:21 2021-02-24 Show GitHub Exploit DB Packet Storm
211072 5.5 MEDIUM
Local
libxls_project libxls An issue was discovered in libxls before and including 1.6.1 when reading Microsoft Excel files. A NULL pointer dereference vulnerability exists when parsing XLS cells in libxls/xls2csv.c:199. It cou… - CVE-2020-27819 2024-11-21 14:21 2021-02-23 Show GitHub Exploit DB Packet Storm
211073 3.3 LOW
Local
imagemagick
debian
imagemagick
debian_linux
In ImageMagick, there is an outside the range of representable values of type 'unsigned int' at MagickCore/quantum-private.h. This flaw affects ImageMagick versions prior to 7.0.9-0. - CVE-2020-27768 2024-11-21 14:21 2021-02-23 Show GitHub Exploit DB Packet Storm
211074 8.8 HIGH
Network
solarwinds network_performance_monitor This vulnerability allows remote attackers to escalate privileges on affected installations of SolarWinds Network Performance Monitor 2020 HF1, NPM: 2020.2. Authentication is required to exploit this… - CVE-2020-27869 2024-11-21 14:21 2021-02-12 Show GitHub Exploit DB Packet Storm
211075 9.8 CRITICAL
Network
qognify ocularis This vulnerability allows remote attackers to execute arbitrary code on affected installations of Qognify Ocularis 5.9.0.395. Authentication is not required to exploit this vulnerability. The specifi… - CVE-2020-27868 2024-11-21 14:21 2021-02-12 Show GitHub Exploit DB Packet Storm
211076 6.8 MEDIUM
Adjacent
netgear ac2100_firmware
ac2400_firmware
ac2600_firmware
r6700_firmware
r6800_firmware
r6900_firmware
r7200_firmware
r7350_firmware
r7400_firmware
r7450_firmware
r6220_firmware
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6020, R6080, R6120, R6220, R6260, R6700v2, R6800, R6900v2, R7450, JNR3210, WNR2020… - CVE-2020-27867 2024-11-21 14:21 2021-02-12 Show GitHub Exploit DB Packet Storm
211077 8.8 HIGH
Adjacent
netgear ac2100_firmware
ac2400_firmware
ac2600_firmware
r6700_firmware
r6800_firmware
r6900_firmware
r7200_firmware
r7350_firmware
r7400_firmware
r7450_firmware
r6220_firmware
This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R6020, R6080, R6120, R6220, R6260, R6700v2, R6800, R6900v2, R7450, JNR3210, WNR2020,… - CVE-2020-27866 2024-11-21 14:21 2021-02-12 Show GitHub Exploit DB Packet Storm
211078 8.8 HIGH
Adjacent
dlink dap-1860_firmware This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1860 firmware version 1.04B03 WiFi extenders. Authentication is not required to … - CVE-2020-27865 2024-11-21 14:21 2021-02-12 Show GitHub Exploit DB Packet Storm
211079 8.8 HIGH
Adjacent
dlink dap-1860_firmware This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1860 firmware version 1.04B03 WiFi extenders. Authentication is not required to … - CVE-2020-27864 2024-11-21 14:21 2021-02-12 Show GitHub Exploit DB Packet Storm
211080 6.5 MEDIUM
Adjacent
dlink dva-2800_firmware
dsl-2888a_firmware
This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of D-Link DVA-2800 and DSL-2888A routers. Authentication is not required to exploit th… - CVE-2020-27863 2024-11-21 14:21 2021-02-12 Show GitHub Exploit DB Packet Storm