Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 3, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
248601 7.5 危険 bob jewell - Bob Jewell Discloser における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4207 2012-06-26 15:37 2006-08-17 Show GitHub Exploit DB Packet Storm
248602 4.3 警告 aspplayground.net - ASPPlayground.NET Forum Advanced Edition Unicode の calendar.asp におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-4206 2012-06-26 15:37 2006-08-17 Show GitHub Exploit DB Packet Storm
248603 5.1 警告 BoonEx - Dolphin における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4189 2012-06-26 15:37 2006-08-16 Show GitHub Exploit DB Packet Storm
248604 7.5 危険 ClamAV - ClamAV における整数オーバーフローの脆弱性 - CVE-2006-4182 2012-06-26 15:37 2006-10-16 Show GitHub Exploit DB Packet Storm
248605 10 危険 GNU Project - GNU Radius の radiusd におけるフォーマットストリングの脆弱性 - CVE-2006-4181 2012-06-26 15:37 2006-11-27 Show GitHub Exploit DB Packet Storm
248606 4.9 警告 FreeBSD - FreeBSD の i386_set_ldt 呼び出しにおける整数符号化エラーの脆弱性 - CVE-2006-4178 2012-06-26 15:37 2006-09-25 Show GitHub Exploit DB Packet Storm
248607 7.2 危険 FreeBSD - FreeBSD の i386_set_ldt 呼び出しにおける整数オーバーフローの脆弱性 - CVE-2006-4172 2012-06-26 15:37 2006-09-25 Show GitHub Exploit DB Packet Storm
248608 6.8 警告 cpg-nuke - Dragonfly CMS におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-4162 2012-06-26 15:37 2006-08-16 Show GitHub Exploit DB Packet Storm
248609 7.5 危険 chaussette - Chaussette における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2006-4159 2012-06-26 15:37 2006-08-16 Show GitHub Exploit DB Packet Storm
248610 6.8 警告 Apache Software Foundation - Apache の mod_tc モジュールにおける任意のコードを実行される脆弱性 - CVE-2006-4154 2012-06-26 15:37 2006-10-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 3, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
210781 6.1 MEDIUM
Network
mossle lemon A cross-site scripting (XSS) vulnerability in the Editing component of lemon V1.10.0 allows attackers to execute arbitrary web scripts or HTML. CWE-79
Cross-site Scripting
CVE-2020-20598 2024-11-21 14:12 2021-12-23 Show GitHub Exploit DB Packet Storm
210782 6.1 MEDIUM
Network
mossle lemon A cross-site scripting (XSS) vulnerability in the potrtalItemName parameter in \web\PortalController.java of lemon V1.10.0 allows attackers to execute arbitrary web scripts or HTML. CWE-79
Cross-site Scripting
CVE-2020-20597 2024-11-21 14:12 2021-12-23 Show GitHub Exploit DB Packet Storm
210783 6.5 MEDIUM
Network
opms_project opms A cross-site request forgery (CSRF) in OPMS v1.3 and below allows attackers to arbitrarily add a user account via /user/add. CWE-352
 Origin Validation Error
CVE-2020-20595 2024-11-21 14:12 2021-12-23 Show GitHub Exploit DB Packet Storm
210784 8.0 HIGH
Network
rockoa rockoa A cross-site request forgery (CSRF) in Rockoa v1.9.8 allows an authenticated attacker to arbitrarily add an administrator account. CWE-352
 Origin Validation Error
CVE-2020-20593 2024-11-21 14:12 2021-12-23 Show GitHub Exploit DB Packet Storm
210785 6.1 MEDIUM
Network
s-cms s-cms S-CMS Government Station Building System v5.0 contains a cross-site scripting (XSS) vulnerability in /function/booksave.php. CWE-79
Cross-site Scripting
CVE-2020-20426 2024-11-21 14:12 2021-12-23 Show GitHub Exploit DB Packet Storm
210786 6.1 MEDIUM
Network
s-cms s-cms S-CMS Government Station Building System v5.0 contains a cross-site scripting (XSS) vulnerability in the search function. CWE-79
Cross-site Scripting
CVE-2020-20425 2024-11-21 14:12 2021-12-23 Show GitHub Exploit DB Packet Storm
210787 6.1 MEDIUM
Network
ruijie rg-uac_6000-e50_firmware Ruijie RG-UAC 6000-E50 commit 9071227 was discovered to contain a cross-site scripting (XSS) vulnerability via the rule_name parameter. This vulnerability allows attackers to execute arbitrary web sc… CWE-79
Cross-site Scripting
CVE-2020-21639 2024-11-21 14:12 2021-11-17 Show GitHub Exploit DB Packet Storm
210788 7.5 HIGH
Network
ruijie rg-uac_firmware Ruijie RG-UAC commit 9071227 was discovered to contain a vulnerability in the component /current_action.php?action=reboot, which allows attackers to cause a denial of service (DoS) via unspecified ve… NVD-CWE-noinfo
CVE-2020-21627 2024-11-21 14:12 2021-11-17 Show GitHub Exploit DB Packet Storm
210789 8.8 HIGH
Network
idreamsoft icms iCMS v7.0.15 was discovered to contain a Cross-Site Request Forgery (CSRF) via /admincp.php?app=members&do=add. CWE-352
 Origin Validation Error
CVE-2020-21141 2024-11-21 14:12 2021-11-13 Show GitHub Exploit DB Packet Storm
210790 6.5 MEDIUM
Network
ec_cloud_e-commerce_system_project ec_cloud_e-commerce_system EC Cloud E-Commerce System v1.3 was discovered to contain a Cross-Site Request Forgery (CSRF) which allows attackers to arbitrarily add admin accounts via /admin.html?do=user&act=add. CWE-352
 Origin Validation Error
CVE-2020-21139 2024-11-21 14:12 2021-11-5 Show GitHub Exploit DB Packet Storm