Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
249281 6.3 警告 シスコシステムズ - Cisco IOS および IOS XE におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2011-4231 2012-05-8 13:40 2012-05-3 Show GitHub Exploit DB Packet Storm
249282 7.8 危険 シスコシステムズ - Nexus スイッチ上で稼働する Cisco NX-OS の libcmd におけるサービス運用妨害 (メモリ消費) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-4023 2012-05-8 11:54 2012-05-3 Show GitHub Exploit DB Packet Storm
249283 5 警告 シスコシステムズ - Cisco Intrusion Prevention System のセンサにおけるサービス運用妨害 (DoS) の脆弱性 CWE-287
不適切な認証
CVE-2011-4022 2012-05-8 11:53 2012-05-3 Show GitHub Exploit DB Packet Storm
249284 5.4 警告 シスコシステムズ - Cisco IOS および Cisco Unified Communications Manager におけるサービス運用妨害 (メモリ消費) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-4019 2012-05-8 11:50 2012-05-3 Show GitHub Exploit DB Packet Storm
249285 5.4 警告 シスコシステムズ - Cisco IOS の PPP の実装におけるサービス運用妨害 (デバイスクラッシュ) の脆弱性 CWE-16
環境設定
CVE-2011-4016 2012-05-8 11:41 2012-05-2 Show GitHub Exploit DB Packet Storm
249286 5 警告 シスコシステムズ - Cisco IOS におけるサービス運用妨害 (インターフェイスキューウェッジ) の脆弱性 CWE-20
不適切な入力確認
CVE-2011-4015 2012-05-8 11:40 2012-05-2 Show GitHub Exploit DB Packet Storm
249287 4 警告 シスコシステムズ - Cisco WCS の TAC Case Attachment ツールにおける任意のファイルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2011-4014 2012-05-8 11:39 2012-05-2 Show GitHub Exploit DB Packet Storm
249288 9.3 危険 シスコシステムズ - Cisco IOS におけるフラグメンテーション (断片化) のエントリー生成処理に関する詳細不明な脆弱性 CWE-Other
その他
CVE-2011-4012 2012-05-8 11:38 2012-05-2 Show GitHub Exploit DB Packet Storm
249289 5.4 警告 シスコシステムズ - Cisco IOS および IOS XE におけるサービス運用妨害 (デバイスクラッシュ) の脆弱性 CWE-20
不適切な入力確認
CVE-2011-4007 2012-05-8 11:38 2012-05-2 Show GitHub Exploit DB Packet Storm
249290 7.8 危険 シスコシステムズ - Cisco ASA 5500 シリーズデバイスの ESMTP 検査機能におけるサービス運用妨害 (CPU 資源の消費) の脆弱性 CWE-20
不適切な入力確認
CVE-2011-4006 2012-05-8 11:36 2012-05-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 29, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
200461 6.1 MEDIUM
Network
plone plone An open redirect on the login form (and possibly other places) in Plone 4.0 through 5.2.1 allows an attacker to craft a link to a Plone Site that, when followed, and possibly after login, will redire… CWE-601
Open Redirect
CVE-2020-7936 2024-11-21 14:38 2020-01-24 Show GitHub Exploit DB Packet Storm
200462 8.8 HIGH
Network
jfrog artifactory In JFrog Artifactory 5.x and 6.x, insecure FreeMarker template processing leads to remote code execution, e.g., by modifying a .ssh/authorized_keys file. Patches are available for various versions be… NVD-CWE-noinfo
CVE-2020-7931 2024-11-21 14:38 2020-01-24 Show GitHub Exploit DB Packet Storm
200463 4.8 MEDIUM
Network
eaton 5p_850_firmware An issue was discovered on Eaton 5P 850 devices. The Ubicacion SAI field allows XSS attacks by an administrator. CWE-79
Cross-site Scripting
CVE-2020-7915 2024-11-21 14:38 2020-01-23 Show GitHub Exploit DB Packet Storm
200464 9.8 CRITICAL
Network
get-npm-package-version_project get-npm-package-version The package get-npm-package-version before 1.0.7 are vulnerable to Command Injection via main function in index.js. CWE-77
Command Injection
CVE-2020-7795 2024-11-21 14:37 2022-08-2 Show GitHub Exploit DB Packet Storm
200465 9.8 CRITICAL
Network
node-import_project node-import This affects all versions of package node-import. The "params" argument of module function can be controlled by users without any sanitization.b. This is then provided to the “eval” function located … NVD-CWE-noinfo
CVE-2020-7678 2024-11-21 14:37 2022-07-25 Show GitHub Exploit DB Packet Storm
200466 9.8 CRITICAL
Network
thenify_project
debian
fedoraproject
thenify
debian_linux
fedora
This affects the package thenify before 3.3.1. The name argument provided to the package can be controlled by users without any sanitization, and this is provided to the eval function without any san… NVD-CWE-noinfo
CVE-2020-7677 2024-11-21 14:37 2022-07-25 Show GitHub Exploit DB Packet Storm
200467 4.9 MEDIUM
Network
snyk broker This affects the package snyk-broker before 4.73.0. It allows arbitrary file reads for users with access to Snyk's internal network via directory traversal. CWE-22
Path Traversal
CVE-2020-7649 2024-11-21 14:37 2022-07-25 Show GitHub Exploit DB Packet Storm
200468 7.8 HIGH
Local
grunt-util-property_project grunt-util-property This affects all versions of package grunt-util-property. The function call could be tricked into adding or modifying properties of Object.prototype using a __proto__ payload. CWE-1321
 Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
CVE-2020-7641 2024-11-21 14:37 2022-07-17 Show GitHub Exploit DB Packet Storm
200469 8.8 HIGH
Network
schneider-electric modicon_m340_bmxp342020_firmware
140cpu65_firmware
tsxp57_firmware
bmxnoc0401_firmware
bmxnoe01_firmware
bmxnor0200h_firmware
140noe77111_firmware
140noc78000_firmware
tsxety5…
A CWE-352: Cross-Site Request Forgery (CSRF) vulnerability exists on the web server used, that could cause a leak of sensitive data or unauthorized actions on the web server during the time the user … CWE-352
 Origin Validation Error
CVE-2020-7534 2024-11-21 14:37 2022-02-5 Show GitHub Exploit DB Packet Storm
200470 9.8 CRITICAL
Network
wowsoft printchaser Printchaser v2.2021.804.1 and earlier versions contain a vulnerability, which could allow remote attacker to download and execute remote file by setting the argument, variable in the activeX module. … CWE-494
 Download of Code Without Integrity Check
CVE-2020-7883 2024-11-21 14:37 2021-12-29 Show GitHub Exploit DB Packet Storm