Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
247421 7.2 危険 AVAST Software s.r.o. - avast! Home and Professional の aswRdr.sys におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-4049 2012-06-26 16:18 2009-11-23 Show GitHub Exploit DB Packet Storm
247422 4 警告 dxmsoft - Dxmsoft XM Easy Personal FTP Server におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2009-4048 2012-06-26 16:18 2009-11-23 Show GitHub Exploit DB Packet Storm
247423 7.5 危険 FrontAccounting - FA における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4046 2012-06-26 16:18 2009-10-24 Show GitHub Exploit DB Packet Storm
247424 7.5 危険 FrontAccounting - FA における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4045 2012-06-26 16:18 2009-10-24 Show GitHub Exploit DB Packet Storm
247425 7.5 危険 Drupal
bruno massa
- Drupal の Web Services モジュールにおける API を使用をされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-4044 2012-06-26 16:18 2009-11-20 Show GitHub Exploit DB Packet Storm
247426 7.5 危険 FrontAccounting - FA における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4037 2012-06-26 16:18 2009-11-20 Show GitHub Exploit DB Packet Storm
247427 7.5 危険 Debian - Lintian におけるフォーマットストリングの脆弱性 CWE-134
書式文字列の問題
CVE-2009-4014 2012-06-26 16:18 2010-01-27 Show GitHub Exploit DB Packet Storm
247428 7.5 危険 Debian - Lintian におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-4013 2012-06-26 16:18 2010-01-27 Show GitHub Exploit DB Packet Storm
247429 9.3 危険 denton woods - DevIL の GetUID 関数におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-3994 2012-06-26 16:18 2009-12-8 Show GitHub Exploit DB Packet Storm
247430 9.3 危険 faslo - Faslo Player におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-3969 2012-06-26 16:18 2009-11-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 30, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
219071 9.8 CRITICAL
Network
mitsubishielectric qj71mes96_firmware
qj71ws96_firmware
q06ccpu-v_firmware
q24dhccpu-v_firmware
q24dhccpu-vg_firmware
r12ccpu-v_firmware
rd55up06-v_firmware
rd55up12-v_firmware
rj71gn11-t2_firmw…
Multiple Mitsubishi Electric products are vulnerable to impersonations of a legitimate device by a malicious actor, which may allow an attacker to remotely execute arbitrary commands. - CVE-2020-16226 2024-11-21 14:06 2020-10-6 Show GitHub Exploit DB Packet Storm
219072 7.8 HIGH
Local
fatek winproladder In PLC WinProladder Version 3.28 and prior, a stack-based buffer overflow vulnerability can be exploited when a valid user opens a specially crafted file, which may allow an attacker to remotely exec… - CVE-2020-16234 2024-11-21 14:06 2020-10-1 Show GitHub Exploit DB Packet Storm
219073 7.2 HIGH
Network
re-desk re\ Re:Desk 2.3 has a blind authenticated SQL injection vulnerability in the SettingsController class, in the actionEmailTemplates() method. A malicious actor with access to an administrative account cou… CWE-89
SQL Injection
CVE-2020-15849 2024-11-21 14:06 2020-10-1 Show GitHub Exploit DB Packet Storm
219074 3.6 LOW
Local
bitdefender engines An improper Input Validation vulnerability in the code handling file renaming and recovery in Bitdefender Engines allows an attacker to write an arbitrary file in a location hardcoded in a specially-… CWE-20
 Improper Input Validation 
CVE-2020-15731 2024-11-21 14:06 2020-09-30 Show GitHub Exploit DB Packet Storm
219075 7.3 HIGH
Local
actfax actfax ActFax Version 7.10 Build 0335 (2020-05-25) is susceptible to a privilege escalation vulnerability due to insecure folder permissions on %PROGRAMFILES%\ActiveFax\Client\, %PROGRAMFILES%\ActiveFax\Ins… CWE-276
Incorrect Default Permissions 
CVE-2020-15843 2024-11-21 14:06 2020-09-25 Show GitHub Exploit DB Packet Storm
219076 9.8 CRITICAL
Network
nakivo backup_\&_replication_transporter Lack of access control in Nakivo Backup & Replication Transporter version 9.4.0.r43656 allows remote users to access unencrypted backup repositories and the Nakivo Controller configuration via a netw… CWE-306
Missing Authentication for Critical Function
CVE-2020-15851 2024-11-21 14:06 2020-09-25 Show GitHub Exploit DB Packet Storm
219077 7.8 HIGH
Local
nakivo backup_\&_replication_director Insecure permissions in Nakivo Backup & Replication Director version 9.4.0.r43656 on Linux allow local users to access the Nakivo Director web interface and gain root privileges. This occurs because … CWE-276
Incorrect Default Permissions 
CVE-2020-15850 2024-11-21 14:06 2020-09-25 Show GitHub Exploit DB Packet Storm
219078 6.1 MEDIUM
Network
joplin_project joplin An XSS issue in Joplin desktop 1.0.190 to 1.0.245 allows arbitrary code execution via a malicious HTML embed tag. CWE-79
Cross-site Scripting
CVE-2020-15930 2024-11-21 14:06 2020-09-25 Show GitHub Exploit DB Packet Storm
219079 5.3 MEDIUM
Network
liferay dxp
liferay_portal
In Liferay Portal before 7.3.1, Liferay Portal 6.2 EE, and Liferay DXP 7.2, DXP 7.1 and DXP 7.0, the property 'portlet.resource.id.banned.paths.regexp' can be bypassed with doubled encoded URLs. NVD-CWE-noinfo
CVE-2020-15840 2024-11-21 14:06 2020-09-25 Show GitHub Exploit DB Packet Storm
219080 7.2 HIGH
Network
telmat accesslog_firmware
educ\@box_firmware
git\@box_firmware
The ping page of the administration panel in Telmat AccessLog <= 6.0 (TAL_20180415) allows an attacker to get root shell access via authenticated code injection over the network. CWE-78
OS Command 
CVE-2020-16148 2024-11-21 14:06 2020-09-24 Show GitHub Exploit DB Packet Storm