Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 2, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
249851 4.3 警告 Novell
marcus schafer
- SUSE Studio で使用される Kiwi におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-2644 2012-03-27 18:43 2011-08-23 Show GitHub Exploit DB Packet Storm
249852 6.8 警告 The phpMyAdmin Project - phpMyAdmin の sql.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2011-2643 2012-03-27 18:43 2011-07-23 Show GitHub Exploit DB Packet Storm
249853 2.6 注意 The phpMyAdmin Project - phpMyAdmin の table Print view 実装におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-2642 2012-03-27 18:43 2011-07-23 Show GitHub Exploit DB Packet Storm
249854 6.4 警告 ヒューレット・パッカード - HP OpenView Performance Agent および Operations Agent の ovbbccb.exe における任意のファイルを削除される脆弱性 CWE-20
不適切な入力確認
CVE-2011-2608 2012-03-27 18:43 2011-07-1 Show GitHub Exploit DB Packet Storm
249855 4.3 警告 IBM - IBM RTC におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-2607 2012-03-27 18:43 2011-05-27 Show GitHub Exploit DB Packet Storm
249856 4.3 警告 IBM - IBM RTC の Web UI におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-2606 2012-03-27 18:43 2011-06-30 Show GitHub Exploit DB Packet Storm
249857 4.3 警告 Mozilla Foundation - Mozilla Firefox および Thunderbird の nsCookieService::SetCookieStringInternal 関数における CRLF インジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2011-2605 2012-03-27 18:43 2011-06-30 Show GitHub Exploit DB Packet Storm
249858 5 警告 The Prosody Team - Prosody の json.decode 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-2532 2012-03-27 18:43 2011-06-3 Show GitHub Exploit DB Packet Storm
249859 7.1 危険 インテル - Intel G41 ドライバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-2604 2012-03-27 18:43 2011-06-30 Show GitHub Exploit DB Packet Storm
249860 7.1 危険 NVIDIA - NVIDIA 9400M ドライバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-2603 2012-03-27 18:43 2011-06-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 2, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209701 5.5 MEDIUM
Local
intel graphics_drivers Uncaught exception in some Intel(R) Graphics Drivers before version 15.33.51.5146 may allow an authenticated user to potentially enable denial of service via local access. NVD-CWE-Other
CVE-2020-24448 2024-11-21 14:14 2021-02-17 Show GitHub Exploit DB Packet Storm
209702 6.5 MEDIUM
Adjacent
bluez bluez Improper buffer restrictions in BlueZ may allow an unauthenticated user to potentially enable denial of service via adjacent access. This affects all Linux kernel versions that support BlueZ. NVD-CWE-noinfo
CVE-2020-24490 2024-11-21 14:14 2021-02-3 Show GitHub Exploit DB Packet Storm
209703 7.5 HIGH
Network
uip_project uip An issue was discovered in uIP through 1.0, as used in Contiki and Contiki-NG. Domain name parsing lacks bounds checks, allowing an attacker to corrupt memory with crafted DNS packets. CWE-125
Out-of-bounds Read
CVE-2020-24335 2024-11-21 14:14 2021-02-2 Show GitHub Exploit DB Packet Storm
209704 8.8 HIGH
Network
easycms easycms A CSRF vulnerability was discovered in EasyCMS v1.6 that can add an admin account through index.php?s=/admin/rbacuser/insert/navTabId/rbacuser/callbackType/closeCurrent, then post username=***&passwo… CWE-352
 Origin Validation Error
CVE-2020-24271 2024-11-21 14:14 2021-02-2 Show GitHub Exploit DB Packet Storm
209705 7.5 HIGH
Network
winmail_project winmail A SSRF vulnerability exists in Winmail 6.5 in app.php in the key parameter when HTTPS is on. An attacker can use this vulnerability to cause the server to send a request to a specific URL. An attacke… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2020-23776 2024-11-21 14:14 2021-01-27 Show GitHub Exploit DB Packet Storm
209706 6.1 MEDIUM
Network
winmail_project winmail A reflected XSS vulnerability exists in tohtml/convert.php of Winmail 6.5, which can cause JavaScript code to be executed. CWE-79
Cross-site Scripting
CVE-2020-23774 2024-11-21 14:14 2021-01-27 Show GitHub Exploit DB Packet Storm
209707 8.8 HIGH
Network
openmaint openmaint openMAINT before 1.1-2.4.2 allows remote authenticated users to run arbitrary JSP code on the underlying web server. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-24549 2024-11-21 14:14 2021-01-27 Show GitHub Exploit DB Packet Storm
209708 6.1 MEDIUM
Network
misp misp A cross-site scripting (XSS) vulnerability exists in MISP v2.4.128 in app/Controller/UserSettingsController.php at SetHomePage() function. Due to a lack of controller validation in "path" parameter, … CWE-79
Cross-site Scripting
CVE-2020-24085 2024-11-21 14:14 2021-01-27 Show GitHub Exploit DB Packet Storm
209709 8.8 HIGH
Network
assaabloy yale_wipc-303w_firmware The Yale WIPC-303W 2.21 through 2.31 camera is vulnerable to remote command execution (RCE) through command injection via the HTTP API. NOTE: This may be a duplicate of CVE-2020-10176 CWE-78
OS Command 
CVE-2020-23826 2024-11-21 14:14 2021-01-27 Show GitHub Exploit DB Packet Storm
209710 9.8 CRITICAL
Network
live555 liblivemedia In Live Networks, Inc., liblivemedia version 20200625, there is a potential buffer overflow bug in the server handling of a RTSP "PLAY" command, when the command specifies seeking by absolute time. CWE-787
 Out-of-bounds Write
CVE-2020-24027 2024-11-21 14:14 2021-01-12 Show GitHub Exploit DB Packet Storm