Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
248401 4.3 警告 brian carrier - Brian Carrier TSK の icat における特定の NTFS ファイルの検査を阻止される脆弱性 - CVE-2007-4196 2012-06-26 15:54 2007-08-7 Show GitHub Exploit DB Packet Storm
248402 4.3 警告 amg soft - WebDirector の index.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-4178 2012-06-26 15:54 2007-08-7 Show GitHub Exploit DB Packet Storm
248403 6.8 警告 eqdkp - EQDKP Plus における詳細不明な脆弱性 - CVE-2007-4176 2012-06-26 15:54 2007-08-7 Show GitHub Exploit DB Packet Storm
248404 7.5 危険 AuraCMS - auraCMS の Forum Module の komentar.php における SQL インジェクションの脆弱性 - CVE-2007-4171 2012-06-26 15:54 2007-08-7 Show GitHub Exploit DB Packet Storm
248405 10 危険 al-athkar - AL-Athkar における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-4170 2012-06-26 15:54 2007-08-7 Show GitHub Exploit DB Packet Storm
248406 7.5 危険 al-caricatier - AL-Caricatier の cat_viewed.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-4167 2012-06-26 15:54 2007-08-7 Show GitHub Exploit DB Packet Storm
248407 9.3 危険 DELL EMC (旧 EMC Corporation) - EMC VMware の vielib.dll の特定の ActiveX コントロールにおける絶対パストラバーサルの脆弱性 - CVE-2007-4155 2012-06-26 15:54 2007-08-3 Show GitHub Exploit DB Packet Storm
248408 4.3 警告 bluesky - v2.ocx の BlueSkychat ActiveX コントロールにおけるヒープベースのバッファオーバーフローの脆弱性 - CVE-2007-4145 2012-06-26 15:54 2007-08-3 Show GitHub Exploit DB Packet Storm
248409 7.5 危険 firestorm technologies - Joomla! の gmaps コンポーネントにおける SQL インジェクションの脆弱性 - CVE-2007-4128 2012-06-26 15:54 2007-08-1 Show GitHub Exploit DB Packet Storm
248410 10 危険 e-commerce solutions - E-Commerce Scripts Shopping Cart Script の admin.aspx における SQL インジェクションの脆弱性 - CVE-2007-4121 2012-06-26 15:54 2007-08-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 12, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
210401 9.8 CRITICAL
Network
google android An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), Q(10.0), and R(11.0) software. Attackers can bypass Factory Reset Protection (FRP) via Secure Folder. The Samsung ID is SVE-2020… NVD-CWE-noinfo
CVE-2020-28340 2024-11-21 14:22 2020-11-8 Show GitHub Exploit DB Packet Storm
210402 8.8 HIGH
Network
collne welcart_e-commerce The usc-e-shop (aka Collne Welcart e-Commerce) plugin before 1.9.36 for WordPress allows Object Injection because of usces_unserialize. There is not a complete POP chain. CWE-502
 Deserialization of Untrusted Data
CVE-2020-28339 2024-11-21 14:22 2020-11-8 Show GitHub Exploit DB Packet Storm
210403 5.9 MEDIUM
Network
axios
siemens
axios
sinec_ins
Axios NPM package 0.21.0 contains a Server-Side Request Forgery (SSRF) vulnerability where an attacker is able to bypass a proxy by providing a URL that responds with a redirect to a restricted host … CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2020-28168 2024-11-21 14:22 2020-11-7 Show GitHub Exploit DB Packet Storm
210404 8.8 HIGH
Network
salesagility suitecrm SuiteCRM before 7.11.17 is vulnerable to remote code execution via the system settings Log File Name setting. In certain circumstances involving admin account takeover, logger_file_name can refer to … CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-28328 2024-11-21 14:22 2020-11-7 Show GitHub Exploit DB Packet Storm
210405 5.3 MEDIUM
Network
digium
sangoma
certified_asterisk
asterisk
A res_pjsip_session crash was discovered in Asterisk Open Source 13.x before 13.37.1, 16.x before 16.14.1, 17.x before 17.8.1, and 18.x before 18.0.1. and Certified Asterisk before 16.8-cert5. Upon r… CWE-404
 Improper Resource Shutdown or Release
CVE-2020-28327 2024-11-21 14:22 2020-11-7 Show GitHub Exploit DB Packet Storm
210406 7.5 HIGH
Network
mit
fedoraproject
netapp
oracle
kerberos_5
fedora
cloud_backup
snapcenter
oncommand_workflow_automation
oncommand_insight
active_iq_unified_manager
communications_offline_mediation_controller
mysql_server
MIT Kerberos 5 (aka krb5) before 1.17.2 and 1.18.x before 1.18.3 allows unbounded recursion via an ASN.1-encoded Kerberos message because the lib/krb5/asn.1/asn1_encode.c support for BER indefinite l… CWE-674
 Uncontrolled Recursion
CVE-2020-28196 2024-11-21 14:22 2020-11-6 Show GitHub Exploit DB Packet Storm
210407 9.8 CRITICAL
Network
cellinx nvt_web_server Cellinx NVT Web Server 5.0.0.014b.test 2019-09-05 allows a remote user to run commands as root via SetFileContent.cgi because authentication is on the client side. NVD-CWE-Other
CVE-2020-28250 2024-11-21 14:22 2020-11-6 Show GitHub Exploit DB Packet Storm
210408 6.1 MEDIUM
Network
joplin_project joplin Joplin 1.2.6 for Desktop allows XSS via a LINK element in a note. CWE-79
Cross-site Scripting
CVE-2020-28249 2024-11-21 14:22 2020-11-6 Show GitHub Exploit DB Packet Storm
210409 6.5 MEDIUM
Network
maxmind
debian
fedoraproject
libmaxminddb
debian_linux
fedora
libmaxminddb before 1.4.3 has a heap-based buffer over-read in dump_entry_data_list in maxminddb.c. CWE-125
Out-of-bounds Read
CVE-2020-28241 2024-11-21 14:22 2020-11-6 Show GitHub Exploit DB Packet Storm
210410 6.5 MEDIUM
Network
asterisk
sangoma
fedoraproject
debian
certified_asterisk
asterisk
fedora
debian_linux
An issue was discovered in Asterisk Open Source 13.x before 13.37.1, 16.x before 16.14.1, 17.x before 17.8.1, and 18.x before 18.0.1 and Certified Asterisk before 16.8-cert5. If Asterisk is challenge… CWE-674
 Uncontrolled Recursion
CVE-2020-28242 2024-11-21 14:22 2020-11-6 Show GitHub Exploit DB Packet Storm