Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
248931 9.3 危険 Mozilla Foundation - 複数の Mozilla 製品におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-1941 2012-06-7 14:42 2012-06-5 Show GitHub Exploit DB Packet Storm
248932 9.3 危険 Mozilla Foundation - 複数の Mozilla 製品のブラウザエンジンにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2012-1938 2012-06-7 14:25 2012-06-5 Show GitHub Exploit DB Packet Storm
248933 4.3 警告 NewsGator Technologies, Inc. - FeedDemon において任意のスクリプトが実行される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2634 2012-06-7 12:01 2012-06-7 Show GitHub Exploit DB Packet Storm
248934 4.3 警告 Sebastian Heinlein
Canonical
- Ubuntu で使用される Aptdaemon における任意のパッケージをインストールされる脆弱性 CWE-287
不適切な認証
CVE-2012-0944 2012-06-6 16:08 2012-06-4 Show GitHub Exploit DB Packet Storm
248935 6.5 警告 Best Practical Solutions - Best Practical Solutions RT におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-5093 2012-06-6 14:16 2012-06-4 Show GitHub Exploit DB Packet Storm
248936 7.5 危険 Best Practical Solutions - Best Practical Solutions RT における任意のコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-5092 2012-06-6 14:16 2012-06-4 Show GitHub Exploit DB Packet Storm
248937 6.5 警告 Best Practical Solutions - Best Practical Solutions RT における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2011-4460 2012-06-6 14:14 2012-06-4 Show GitHub Exploit DB Packet Storm
248938 3.5 注意 Best Practical Solutions - Best Practical Solutions RT におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-4459 2012-06-6 14:14 2012-06-4 Show GitHub Exploit DB Packet Storm
248939 6.8 警告 Best Practical Solutions - Best Practical Solutions RT における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2011-4458 2012-06-6 14:12 2012-06-4 Show GitHub Exploit DB Packet Storm
248940 6.8 警告 Best Practical Solutions - Best Practical Solutions RT におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2011-2085 2012-06-6 14:10 2012-06-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
212861 9.9 CRITICAL
Network
rconfig rconfig rConfig 3.9.5 could allow a remote authenticated attacker to execute arbitrary code on the system, because of an error in the search.crud.php script. An attacker could exploit this vulnerability usin… NVD-CWE-noinfo
CVE-2020-15715 2024-11-21 14:06 2020-07-28 Show GitHub Exploit DB Packet Storm
212862 8.8 HIGH
Network
rconfig rconfig rConfig 3.9.5 is vulnerable to SQL injection. A remote authenticated attacker could send crafted SQL statements to the devices.crud.php script using the custom_Location parameter, which could allow t… CWE-89
SQL Injection
CVE-2020-15714 2024-11-21 14:06 2020-07-28 Show GitHub Exploit DB Packet Storm
212863 8.8 HIGH
Network
rconfig rconfig rConfig 3.9.5 is vulnerable to SQL injection. A remote authenticated attacker could send crafted SQL statements to the devices.php script using the sortBy parameter, which could allow the attacker to… CWE-89
SQL Injection
CVE-2020-15713 2024-11-21 14:06 2020-07-28 Show GitHub Exploit DB Packet Storm
212864 4.3 MEDIUM
Network
rconfig rconfig rConfig 3.9.5 could allow a remote authenticated attacker to traverse directories on the system. An attacker could send a crafted request to the ajaxGetFileByPath.php script containing hexadecimal en… CWE-22
Path Traversal
CVE-2020-15712 2024-11-21 14:06 2020-07-28 Show GitHub Exploit DB Packet Storm
212865 9.8 CRITICAL
Network
openbsd openbsd iked in OpenIKED, as used in OpenBSD through 6.7, allows authentication bypass because ca.c has the wrong logic for checking whether a public key matches. CWE-287
Improper Authentication
CVE-2020-16088 2024-11-21 14:06 2020-07-28 Show GitHub Exploit DB Packet Storm
212866 6.5 MEDIUM
Network
kde
debian
kmail
debian_linux
KDE KMail 19.12.3 (aka 5.13.3) engages in unencrypted POP3 communication during times when the UI indicates that encryption is in use. CWE-319
Cleartext Transmission of Sensitive Information
CVE-2020-15954 2024-11-21 14:06 2020-07-27 Show GitHub Exploit DB Packet Storm
212867 7.4 HIGH
Network
libetpan_project
libmailcore
fedoraproject
debian
libetpan
mailcore2
fedora
debian_linux
LibEtPan through 1.9.4, as used in MailCore 2 through 0.6.3 and other products, has a STARTTLS buffering issue that affects IMAP, SMTP, and POP3. When a server sends a "begin TLS" response, the clien… CWE-74
Injection
CVE-2020-15953 2024-11-21 14:06 2020-07-27 Show GitHub Exploit DB Packet Storm
212868 5.5 MEDIUM
Local
lua lua Lua through 5.4.0 has a segmentation fault in changedline in ldebug.c (e.g., when called by luaG_traceexec) because it incorrectly expects that an oldpc value is always updated upon a return of the f… NVD-CWE-Other
CVE-2020-15945 2024-11-21 14:06 2020-07-25 Show GitHub Exploit DB Packet Storm
212869 8.8 HIGH
Network
overwolf overwolf Overwolf before 0.149.2.30 mishandles Symbolic Links during updates, causing elevation of privileges. CWE-59
Link Following
CVE-2020-15932 2024-11-21 14:06 2020-07-25 Show GitHub Exploit DB Packet Storm
212870 9.9 CRITICAL
Network
parallels remote_application_server Parallels Remote Application Server (RAS) 17.1.1 has a Business Logic Error causing remote code execution. It allows an authenticated user to execute any application in the backend operating system t… NVD-CWE-Other
CVE-2020-15860 2024-11-21 14:06 2020-07-25 Show GitHub Exploit DB Packet Storm