Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
246581 6.8 警告 geody - Geody Labs Dagger - The Cutting Edge における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-6636 2012-06-26 16:10 2009-04-7 Show GitHub Exploit DB Packet Storm
246582 6.8 警告 geody - Geody Labs Dagger - The Cutting Edge における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-6635 2012-06-26 16:10 2009-04-7 Show GitHub Exploit DB Packet Storm
246583 9 危険 アバイア - Avaya SES の Web 管理インターフェースにおける任意のコマンドを実行される脆弱性 CWE-noinfo
情報不足
CVE-2008-6709 2012-06-26 16:10 2008-06-25 Show GitHub Exploit DB Packet Storm
246584 9 危険 アバイア - Avaya SES の Web 管理インターフェースにおける root 権限を取得される脆弱性 CWE-noinfo
情報不足
CVE-2008-6708 2012-06-26 16:10 2008-06-25 Show GitHub Exploit DB Packet Storm
246585 6.4 警告 アバイア - Avaya SES の Web 管理インターフェースにおける重要な情報を取得される脆弱性 CWE-287
不適切な認証
CVE-2008-6707 2012-06-26 16:10 2008-06-25 Show GitHub Exploit DB Packet Storm
246586 7.8 危険 アバイア - Avaya SES の Web 管理インターフェースにおけるアプリケーションサーバ設定を取得される脆弱性 CWE-noinfo
情報不足
CVE-2008-6706 2012-06-26 16:10 2008-06-25 Show GitHub Exploit DB Packet Storm
246587 7.5 危険 fr.simon rundell
TYPO3 Association
- TYPO3 の ste_prayer における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6694 2012-06-26 16:10 2008-07-9 Show GitHub Exploit DB Packet Storm
246588 7.5 危険 fr.simon rundell
TYPO3 Association
- TYPO3 の pd_trainingcourses 拡張における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6692 2012-06-26 16:10 2008-07-9 Show GitHub Exploit DB Packet Storm
246589 7.5 危険 TYPO3 Association
diocese of portsmouth
- TYPO3 の pd_calendar_today 拡張における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6691 2012-06-26 16:10 2008-06-19 Show GitHub Exploit DB Packet Storm
246590 4.3 警告 DNN - DotNetNuke の Default.aspx におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-6644 2012-06-26 16:10 2008-06-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 17, 2026, 4:19 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
220711 9.8 CRITICAL
Network
mitel mivoice_connect_client
mivoice_connect
A weak encryption vulnerability in Mitel MiVoice Connect Client before 214.100.1214.0 could allow an unauthenticated attacker to gain access to user credentials. A successful exploit could allow an a… CWE-327
 Use of a Broken or Risky Cryptographic Algorithm
CVE-2020-10377 2024-11-21 13:55 2020-04-17 Show GitHub Exploit DB Packet Storm
220712 7.5 HIGH
Network
trianglemicroworks scada_data_gateway Triangle MicroWorks SCADA Data Gateway 3.02.0697 through 4.0.122, 2.41.0213 through 4.0.122 allows remote attackers cause a denial-of-service condition due to a lack of proper validation of the lengt… CWE-787
 Out-of-bounds Write
CVE-2020-10615 2024-11-21 13:55 2020-04-16 Show GitHub Exploit DB Packet Storm
220713 7.5 HIGH
Network
trianglemicroworks scada_data_gateway Triangle MicroWorks SCADA Data Gateway 3.02.0697 through 4.0.122, 2.41.0213 through 4.0.122 allows remote attackers to disclose sensitive information due to the lack of proper validation of user-supp… CWE-125
Out-of-bounds Read
CVE-2020-10613 2024-11-21 13:55 2020-04-16 Show GitHub Exploit DB Packet Storm
220714 9.8 CRITICAL
Network
trianglemicroworks scada_data_gateway Triangle MicroWorks SCADA Data Gateway 3.02.0697 through 4.0.122, 2.41.0213 through 4.0.122 allows remote attackers to execute arbitrary code due to the lack of proper validation of user-supplied dat… CWE-843
Type Confusion
CVE-2020-10611 2024-11-21 13:55 2020-04-16 Show GitHub Exploit DB Packet Storm
220715 7.8 HIGH
Local
eaton hmisoft_vu3_firmware Eaton HMiSoft VU3 (HMIVU3 runtime not impacted), Version 3.00.23 and prior, however, the HMIVU runtimes are not impacted by these issues. A specially crafted input file could cause a buffer overflow … CWE-120
Classic Buffer Overflow
CVE-2020-10639 2024-11-21 13:55 2020-04-16 Show GitHub Exploit DB Packet Storm
220716 5.5 MEDIUM
Local
eaton hmisoft_vu3_firmware Eaton HMiSoft VU3 (HMIVU3 runtime not impacted), Version 3.00.23 and prior, however, the HMIVU runtimes are not impacted by these issues. A specially crafted input file could trigger an out-of-bounds… CWE-125
Out-of-bounds Read
CVE-2020-10637 2024-11-21 13:55 2020-04-16 Show GitHub Exploit DB Packet Storm
220717 7.8 HIGH
Local
targetcli-fb_project targetcli-fb A flaw was found in Linux, in targetcli-fb versions 2.1.50 and 2.1.51 where the socket used by targetclid was world-writable. If a system enables the targetclid socket, a local attacker can use this … CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2020-10699 2024-11-21 13:55 2020-04-15 Show GitHub Exploit DB Packet Storm
220718 8.8 HIGH
Network
icatchinc dvr_firmware iCatch DVR firmware before 20200103 do not validate function parameter properly, resulting attackers executing arbitrary command. CWE-77
Command Injection
CVE-2020-10514 2024-11-21 13:55 2020-04-15 Show GitHub Exploit DB Packet Storm
220719 6.5 MEDIUM
Network
icatchinc dvr_interface The file management interface of iCatch DVR firmware before 20200103 contains broken access control which allows the attacker to remotely manipulate arbitrary file. CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2020-10513 2024-11-21 13:55 2020-04-15 Show GitHub Exploit DB Packet Storm
220720 8.8 HIGH
Network
hgiga oaklouds_ccm\@il HGiga C&Cmail CCMAILQ before olln-calendar-6.0-100.i386.rpm and CCMAILN before olln-calendar-5.0-100.i386.rpm contains a SQL Injection vulnerability which allows attackers to injecting SQL commands i… CWE-89
SQL Injection
CVE-2020-10512 2024-11-21 13:55 2020-04-15 Show GitHub Exploit DB Packet Storm