Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 31, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
249221 5.5 警告 オラクル - Oracle PeopleSoft Enterprise HRMS における eCompensation Manager Desktop の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2012-0517 2012-05-9 18:08 2012-04-17 Show GitHub Exploit DB Packet Storm
249222 6.5 警告 オラクル - Oracle PeopleSoft Enterprise PeopleTools におけるクエリ処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2012-0564 2012-05-9 18:06 2012-04-17 Show GitHub Exploit DB Packet Storm
249223 4 警告 オラクル - Oracle DB UM Connector for Oracle Identity Manager (Oracle Identity Manager Connector) における脆弱性 CWE-noinfo
情報不足
CVE-2012-0515 2012-05-9 18:04 2012-04-17 Show GitHub Exploit DB Packet Storm
249224 4.3 警告 オラクル - Oracle JDeveloper における Java Business Objects の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2012-0522 2012-05-9 17:57 2012-04-17 Show GitHub Exploit DB Packet Storm
249225 4.3 警告 オラクル - Oracle BI Publisher における Administration の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2012-0543 2012-05-9 17:54 2012-04-17 Show GitHub Exploit DB Packet Storm
249226 5.5 警告 オラクル - Oracle Identity Manager における User Config Management の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2012-0532 2012-05-9 17:45 2012-04-17 Show GitHub Exploit DB Packet Storm
249227 7.5 危険 オラクル - Oracle WebCenter Forms Recognition における Designer の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2012-1709 2012-05-9 17:40 2012-04-17 Show GitHub Exploit DB Packet Storm
249228 10 危険 サン・マイクロシステムズ
オラクル
- Oracle JRockit および JDK/JRE における脆弱性 CWE-noinfo
情報不足
CVE-2012-1695 2012-05-9 17:19 2012-04-17 Show GitHub Exploit DB Packet Storm
249229 4 警告 オラクル - Oracle の Siebel Clinical における Web UI の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2012-1674 2012-05-9 16:46 2012-04-17 Show GitHub Exploit DB Packet Storm
249230 4 警告 オラクル - Oracle の Siebel Clinical における Web UI の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2012-0582 2012-05-9 16:42 2012-04-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 31, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
210091 8.8 HIGH
Network
easyregistrationforms easy_registration_forms Easy Registration Forms (ER Forms) Wordpress Plugin 2.0.6 allows an attacker to submit an entry with malicious CSV commands. After that, when the system administrator generates CSV output from the fo… CWE-1236
 Improper Neutralization of Formula Elements in a CSV File
CVE-2020-22275 2024-11-21 14:13 2020-11-5 Show GitHub Exploit DB Packet Storm
210092 9.8 CRITICAL
Network
moxa vport_461_firmware A command injection vulnerability exists in Moxa Inc VPort 461 Series Firmware Version 3.4 or lower that could allow a remote attacker to execute arbitrary commands in Moxa's VPort 461 Series Industr… CWE-77
Command Injection
CVE-2020-23639 2024-11-21 14:13 2020-11-3 Show GitHub Exploit DB Packet Storm
210093 7.5 HIGH
Network
snap7_project snap7 The Snap7 server component in version 1.4.1, when an attacker sends a crafted packet with COTP protocol the last-data-unit flag set to No and S7 writes a var function, the Snap7 server will be crashe… NVD-CWE-noinfo
CVE-2020-22552 2024-11-21 14:13 2020-10-28 Show GitHub Exploit DB Packet Storm
210094 5.4 MEDIUM
Network
cmsmadesimple cms_made_simple CMS Made Simple before 2.2.15 allows XSS via the m1_mod parameter in a ModuleManager local_uninstall action to admin/moduleinterface.php. CWE-79
Cross-site Scripting
CVE-2020-22842 2024-11-21 14:13 2020-10-1 Show GitHub Exploit DB Packet Storm
210095 6.1 MEDIUM
Network
hack hfish An issue was discovered in HFish 0.5.1. When a payload is inserted where the password is entered, XSS code is triggered when the administrator views the information. CWE-79
Cross-site Scripting
CVE-2020-22481 2024-11-21 14:13 2020-10-1 Show GitHub Exploit DB Packet Storm
210096 6.1 MEDIUM
Network
untis webuntis Untis WebUntis before 2020.9.6 allows XSS in multiple functions that store information. CWE-79
Cross-site Scripting
CVE-2020-22453 2024-11-21 14:13 2020-09-24 Show GitHub Exploit DB Packet Storm
210097 5.3 MEDIUM
Network
verint workforce_optimization Verint Workforce Optimization suite 15.1 (15.1.0.37634) has Unauthenticated Information Disclosure via API CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2020-23446 2024-11-21 14:13 2020-09-22 Show GitHub Exploit DB Packet Storm
210098 9.8 CRITICAL
Network
vr_cam p1_firmware VR CAM P1 Model P1 v1 has an incorrect access control vulnerability where an attacker can obtain complete access of the device from web (remote) without authentication. CWE-306
Missing Authentication for Critical Function
CVE-2020-23512 2024-11-21 14:13 2020-09-15 Show GitHub Exploit DB Packet Storm
210099 8.8 HIGH
Network
spiceworks spiceworks Spiceworks Version <= 7.5.00107 is affected by CSRF which can lead to privilege escalation via "/settings/v1/users" function. CWE-352
 Origin Validation Error
CVE-2020-23451 2024-11-21 14:13 2020-09-15 Show GitHub Exploit DB Packet Storm
210100 6.1 MEDIUM
Network
mediakind rx8200_firmware MediaKind (formerly Ericsson) RX8200 5.13.3 devices are vulnerable to multiple reflected and stored XSS. An attacker has to inject JavaScript code directly in the "path" or "Services+ID" parameters a… CWE-79
Cross-site Scripting
CVE-2020-22158 2024-11-21 14:13 2020-09-15 Show GitHub Exploit DB Packet Storm