Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
249041 6.5 警告 Dotclear - Dotclear の updateFile 関数における任意の PHP コードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-1584 2012-03-27 18:43 2011-06-8 Show GitHub Exploit DB Packet Storm
249042 3.5 注意 MediaWiki - MediaWiki の transwiki import 機能における wgImportSources wiki からインポートを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2011-1580 2012-03-27 18:43 2011-04-26 Show GitHub Exploit DB Packet Storm
249043 5.8 警告 MediaWiki - MediaWiki の checkCss 関数における重要な情報を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2011-1579 2012-03-27 18:43 2011-04-26 Show GitHub Exploit DB Packet Storm
249044 4.3 警告 マイクロソフト
MediaWiki
- MediaWiki におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-1578 2012-03-27 18:43 2011-04-26 Show GitHub Exploit DB Packet Storm
249045 5.8 警告 pureftpd - Pure-FTPd の STARTTLS 実装における暗号化された FTP セッションにコマンドを挿入される脆弱性 CWE-399
リソース管理の問題
CVE-2011-1575 2012-03-27 18:43 2011-05-23 Show GitHub Exploit DB Packet Storm
249046 9.3 危険 Liferay
Apache Software Foundation
- Liferay Portal CE の XSL Content portlet における任意のコマンドを実行される脆弱性 CWE-noinfo
情報不足
CVE-2011-1571 2012-03-27 18:43 2011-01-12 Show GitHub Exploit DB Packet Storm
249047 5 警告 douran - Douran Portal における Web ルート下の任意のファイルのソースコードを取得される脆弱性 CWE-200
情報漏えい
CVE-2011-1569 2012-03-27 18:43 2011-04-5 Show GitHub Exploit DB Packet Storm
249048 9.3 危険 IBM - IBM solidDB の solid.exe における認証を回避する脆弱性 CWE-255
証明書・パスワード管理
CVE-2011-1560 2012-03-27 18:43 2011-04-5 Show GitHub Exploit DB Packet Storm
249049 10 危険 IBM - IBM Web Interface for Content Management における詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2011-1559 2012-03-27 18:43 2011-04-5 Show GitHub Exploit DB Packet Storm
249050 4.3 警告 IBM - IBM Web Interface for Content Management におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-1558 2012-03-27 18:43 2011-04-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211771 7.8 HIGH
Local
win911 win-911 An exploitable local privilege elevation vulnerability exists in the file system permissions of the Win-911 Enterprise V4.20.13 install directory via WIN-911 Account Change Utility. Depending on the … CWE-276
Incorrect Default Permissions 
CVE-2020-13540 2024-11-21 14:01 2021-01-6 Show GitHub Exploit DB Packet Storm
211772 7.8 HIGH
Local
win911 win-911 An exploitable local privilege elevation vulnerability exists in the file system permissions of the Win-911 Enterprise V4.20.13 install directory via “WIN-911 Mobile Runtime” service. Depending on th… CWE-276
Incorrect Default Permissions 
CVE-2020-13539 2024-11-21 14:01 2021-01-6 Show GitHub Exploit DB Packet Storm
211773 7.5 HIGH
Network
xwiki xwiki XWiki Platform before 12.8 mishandles escaping in the property displayer. CWE-116
 Improper Encoding or Escaping of Output
CVE-2020-13654 2024-11-21 14:01 2020-12-31 Show GitHub Exploit DB Packet Storm
211774 4.8 MEDIUM
Network
nchsoftware express_invoice NCH Express Invoice 8.06 to 8.24 is vulnerable to Reflected XSS in the Quotes List module. CWE-79
Cross-site Scripting
CVE-2020-13476 2024-11-21 14:01 2020-12-29 Show GitHub Exploit DB Packet Storm
211775 6.5 MEDIUM
Network
nchsoftware express_accounts In NCH Express Accounts 8.24 and earlier, an authenticated low-privilege user can enter a crafted URL to access higher-privileged functionalities such as Add/Edit users. CWE-425
 Direct Request ('Forced Browsing')
CVE-2020-13474 2024-11-21 14:01 2020-12-29 Show GitHub Exploit DB Packet Storm
211776 5.5 MEDIUM
Local
nchsoftware express_accounts NCH Express Accounts 8.24 and earlier allows local users to discover the cleartext password by reading the configuration file. CWE-312
 Cleartext Storage of Sensitive Information
CVE-2020-13473 2024-11-21 14:01 2020-12-29 Show GitHub Exploit DB Packet Storm
211777 8.8 HIGH
Network
foxitsoftware foxit_reader A type confusion vulnerability exists in the JavaScript engine of Foxit Software’s Foxit PDF Reader, version 10.1.0.37527. A specially crafted PDF document can trigger an improper use of an object, r… CWE-787
CWE-843
 Out-of-bounds Write
Type Confusion
CVE-2020-13547 2024-11-21 14:01 2020-12-23 Show GitHub Exploit DB Packet Storm
211778 8.8 HIGH
Network
foxitsoftware foxit_reader A use-after-free vulnerability exists in the JavaScript engine of Foxit Software’s PDF Reader, version 10.1.0.37527. A specially crafted PDF document can trigger the reuse of previously free memory w… CWE-416
 Use After Free
CVE-2020-13570 2024-11-21 14:01 2020-12-23 Show GitHub Exploit DB Packet Storm
211779 8.8 HIGH
Network
foxitsoftware foxit_reader A use after free vulnerability exists in the JavaScript engine of Foxit Software’s Foxit PDF Reader, version 10.1.0.37527. A specially crafted PDF document can trigger reuse of previously free memory… CWE-416
 Use After Free
CVE-2020-13560 2024-11-21 14:01 2020-12-23 Show GitHub Exploit DB Packet Storm
211780 8.8 HIGH
Network
foxitsoftware foxit_reader A use after free vulnerability exists in the JavaScript engine of Foxit Software’s Foxit PDF Reader, version 10.1.0.37527. A specially crafted PDF document can trigger reuse of previously free memory… CWE-416
 Use After Free
CVE-2020-13557 2024-11-21 14:01 2020-12-23 Show GitHub Exploit DB Packet Storm