Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
249541 2.1 注意 NVIDIA - NVIDIA CUDA Toolkit の cudaHostAlloc 関数における重要なメモリを読まれる脆弱性 CWE-200
情報漏えい
CVE-2011-0636 2012-03-27 18:42 2011-01-22 Show GitHub Exploit DB Packet Storm
249542 6 警告 simploo - Simploo CMS における任意の PHP コードを挿入される脆弱性 CWE-94
コード・インジェクション
CVE-2011-0635 2012-03-27 18:42 2011-01-22 Show GitHub Exploit DB Packet Storm
249543 4.3 警告 Gisle Aas - WWW::Mechanize などの製品で使用される LWP の Net::HTTPS モジュールにおけるサーバをなりすまされる脆弱性 CWE-20
不適切な入力確認
CVE-2011-0633 2012-03-27 18:42 2011-03-27 Show GitHub Exploit DB Packet Storm
249544 6.8 警告 シマンテック - SEP の Web インターフェースにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2011-0551 2012-03-27 18:42 2011-08-10 Show GitHub Exploit DB Packet Storm
249545 4.3 警告 シマンテック - Symantec SEP の Web インターフェースにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-0550 2012-03-27 18:42 2011-08-10 Show GitHub Exploit DB Packet Storm
249546 7.5 危険 シマンテック - Symantec Web Gateway の forget.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2011-0549 2012-03-27 18:42 2011-07-7 Show GitHub Exploit DB Packet Storm
249547 10 危険 シマンテック - Symantec Veritas Enterprise Administrator サービスの vxsvc.exe における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2011-0547 2012-03-27 18:42 2011-07-26 Show GitHub Exploit DB Packet Storm
249548 6.8 警告 シマンテック - Symantec LUA の adduser.do におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2011-0545 2012-03-27 18:42 2011-03-21 Show GitHub Exploit DB Packet Storm
249549 3.3 注意 FUSE - fuse の fusermount の特定の legacy 機能におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-0543 2012-03-27 18:42 2011-09-2 Show GitHub Exploit DB Packet Storm
249550 3.3 注意 FUSE - fuse の fusermount における任意のディレクトリをアンマウントされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-0542 2012-03-27 18:42 2011-09-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
197251 3.7 LOW
Network
apache
oracle
debian
qos
log4j
flexcube_private_banking
retail_integration_bus
flexcube_core_banking
peoplesoft_enterprise_peopletools
weblogic_server
utilities_framework
primavera_unifier
retail_cust…
Improper validation of certificate with host mismatch in Apache Log4j SMTP appender. This could allow an SMTPS connection to be intercepted by a man-in-the-middle attack which could leak any log mess… CWE-295
Improper Certificate Validation 
CVE-2020-9488 2024-11-21 14:40 2020-04-28 Show GitHub Exploit DB Packet Storm
197252 5.5 MEDIUM
Local
apache
oracle
tika
flexcube_private_banking
primavera_unifier
webcenter_portal
communications_messaging_server
A carefully crafted or corrupt file may trigger a System.exit in Tika's OneNote Parser. Crafted or corrupted files can also cause out of memory errors and/or infinite loops in Tika's ICNSParser, MP3P… CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2020-9489 2024-11-21 14:40 2020-04-27 Show GitHub Exploit DB Packet Storm
197253 9.8 CRITICAL
Network
dlink dsl-2640b_firmware An issue was discovered on D-Link DSL-2640B B2 EU_4.01B devices. A hard-coded account allows management-interface login with high privileges. The logged-in user can perform critical tasks and take fu… CWE-798
 Use of Hard-coded Credentials
CVE-2020-9279 2024-11-21 14:40 2020-04-21 Show GitHub Exploit DB Packet Storm
197254 9.1 CRITICAL
Network
dlink dsl-2640b_firmware An issue was discovered on D-Link DSL-2640B B2 EU_4.01B devices. The device can be reset to its default configuration by accessing an unauthenticated URL. CWE-306
Missing Authentication for Critical Function
CVE-2020-9278 2024-11-21 14:40 2020-04-21 Show GitHub Exploit DB Packet Storm
197255 9.8 CRITICAL
Network
dlink dsl-2640b_firmware An issue was discovered on D-Link DSL-2640B B2 EU_4.01B devices. Authentication can be bypassed when accessing cgi modules. This allows one to perform administrative tasks (e.g., modify the admin pas… CWE-287
Improper Authentication
CVE-2020-9277 2024-11-21 14:40 2020-04-21 Show GitHub Exploit DB Packet Storm
197256 8.8 HIGH
Network
dlink dsl-2640b_firmware An issue was discovered on D-Link DSL-2640B B2 EU_4.01B devices. The function do_cgi(), which processes cgi requests supplied to the device's web servers, is vulnerable to a remotely exploitable stac… CWE-787
 Out-of-bounds Write
CVE-2020-9276 2024-11-21 14:40 2020-04-21 Show GitHub Exploit DB Packet Storm
197257 9.8 CRITICAL
Network
dlink dsl-2640b_firmware An issue was discovered on D-Link DSL-2640B B2 EU_4.01B devices. A cfm UDP service listening on port 65002 allows remote, unauthenticated exfiltration of administrative credentials. CWE-306
Missing Authentication for Critical Function
CVE-2020-9275 2024-11-21 14:40 2020-04-21 Show GitHub Exploit DB Packet Storm
197258 6.1 MEDIUM
Network
zulip zulip_server Zulip Server before 2.1.3 allows XSS via the modal_link feature in the Markdown functionality. CWE-79
Cross-site Scripting
CVE-2020-9445 2024-11-21 14:40 2020-04-21 Show GitHub Exploit DB Packet Storm
197259 6.1 MEDIUM
Network
zulip zulip_server Zulip Server before 2.1.3 allows reverse tabnabbing via the Markdown functionality. CWE-1021
 Improper Restriction of Rendered UI Layers or Frames
CVE-2020-9444 2024-11-21 14:40 2020-04-21 Show GitHub Exploit DB Packet Storm
197260 8.8 HIGH
Network
microfocus enterprise_developer
enterprise_server
Insufficiently protected credentials vulnerability on Micro Focus enterprise developer and enterprise server, affecting all version prior to 4.0 Patch Update 16, and version 5.0 Patch Update 6. The v… CWE-522
 Insufficiently Protected Credentials
CVE-2020-9523 2024-11-21 14:40 2020-04-18 Show GitHub Exploit DB Packet Storm