Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 3, 2026, 6:08 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
250081 9.3 危険 シトリックス・システムズ - Citrix Access Gateway Enterprise の nsepa.ocx の NSEPA.NsepaCtrl.1 ActiveX コントロールにおける任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2011-2883 2012-03-27 18:43 2011-07-21 Show GitHub Exploit DB Packet Storm
250082 9.3 危険 シトリックス・システムズ - Citrix Access Gateway Enterprise の nsepa.ocx の NSEPA.NsepaCtrl.1 ActiveX コントロール におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-2882 2012-03-27 18:43 2011-07-21 Show GitHub Exploit DB Packet Storm
250083 5 警告 Chyrp - Chyrp の includes/lib/gz.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2011-2780 2012-03-27 18:43 2011-07-19 Show GitHub Exploit DB Packet Storm
250084 3.6 注意 ヒューレット・パッカード - HP ArcSight Connector Appliance の Windows Event Log SmartConnector におけるログデータを変更または削除される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-2779 2012-03-27 18:43 2011-07-19 Show GitHub Exploit DB Packet Storm
250085 10 危険 ioquake3
smokin-guns
openarena
worldofpadman
urbanterror
tremulous
- World of Padman などの製品で使用される ioQuake3 エンジンの FS_CheckFilenameIsNotExecutable 関数における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2011-2764 2012-03-27 18:43 2011-08-3 Show GitHub Exploit DB Packet Storm
250086 5 警告 IBM - IBM TDS の IDSWebApp のログインページにおけるアクセス権を取得される脆弱性 CWE-200
情報漏えい
CVE-2011-2759 2012-03-27 18:43 2011-05-10 Show GitHub Exploit DB Packet Storm
250087 5 警告 IBM - IBM TDS の IDSWebApp における重要な情報を取得される脆弱性 CWE-287
不適切な認証
CVE-2011-2758 2012-03-27 18:43 2011-06-27 Show GitHub Exploit DB Packet Storm
250088 5 警告 Zoho Corporation - ManageEngine ServiceDesk Plus の FileDownload.jsp におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2011-2757 2012-03-27 18:43 2011-07-17 Show GitHub Exploit DB Packet Storm
250089 5 警告 Zoho Corporation - ManageEngine ServiceDesk Plus の FileDownload.jsp における特定のディレクトリからファイルを読まれる脆弱性 CWE-287
不適切な認証
CVE-2011-2756 2012-03-27 18:43 2011-07-17 Show GitHub Exploit DB Packet Storm
250090 5 警告 Zoho Corporation - ManageEngine ServiceDesk Plus の FileDownload.jsp におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2011-2755 2012-03-27 18:43 2011-07-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 3, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209301 6.1 MEDIUM
Network
mediawiki
fedoraproject
mediawiki
fedora
An issue was discovered in MediaWiki before 1.31.10 and 1.32.x through 1.34.x before 1.34.4. The non-jqueryMsg version of mw.message().parse() doesn't escape HTML. This affects both message contents … CWE-79
Cross-site Scripting
CVE-2020-25828 2024-11-21 14:18 2020-09-28 Show GitHub Exploit DB Packet Storm
209302 6.1 MEDIUM
Network
mediawiki
fedoraproject
mediawiki
fedora
An issue was discovered in MediaWiki 1.32.x through 1.34.x before 1.34.4. LogEventList::getFiltersDesc is insecurely using message text to build options names for an HTML multi-select field. The rele… CWE-79
Cross-site Scripting
CVE-2020-25815 2024-11-21 14:18 2020-09-28 Show GitHub Exploit DB Packet Storm
209303 6.1 MEDIUM
Network
mediawiki
fedoraproject
mediawiki
fedora
In MediaWiki before 1.31.10 and 1.32.x through 1.34.x before 1.34.4, XSS related to jQuery can occur. The attacker creates a message with [javascript:payload xss] and turns it into a jQuery object wi… CWE-79
Cross-site Scripting
CVE-2020-25814 2024-11-21 14:18 2020-09-28 Show GitHub Exploit DB Packet Storm
209304 5.3 MEDIUM
Network
mediawiki
fedoraproject
mediawiki
fedora
In MediaWiki before 1.31.10 and 1.32.x through 1.34.x before 1.34.4, Special:UserRights exposes the existence of hidden users. NVD-CWE-noinfo
CVE-2020-25813 2024-11-21 14:18 2020-09-28 Show GitHub Exploit DB Packet Storm
209305 6.1 MEDIUM
Network
mediawiki
fedoraproject
mediawiki
fedora
An issue was discovered in MediaWiki 1.34.x before 1.34.4. On Special:Contributions, the NS filter uses unescaped messages as keys in the option key for an HTMLForm specifier. This is vulnerable to a… CWE-79
Cross-site Scripting
CVE-2020-25812 2024-11-21 14:18 2020-09-28 Show GitHub Exploit DB Packet Storm
209306 5.3 MEDIUM
Local
qemu
debian
qemu
debian_linux
hw/usb/hcd-ohci.c in QEMU 5.0.0 has an infinite loop when a TD list has a loop. CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2020-25625 2024-11-21 14:18 2020-09-25 Show GitHub Exploit DB Packet Storm
209307 9.8 CRITICAL
Network
rubetek rv-3406_firmware
rv-3409_firmware
rv-3411_firmware
The Telnet service of Rubetek cameras RV-3406, RV-3409, and RV-3411 cameras (firmware versions v342, v339) could allow an remote attacker to take full control of the device with a high-privileged acc… CWE-798
 Use of Hard-coded Credentials
CVE-2020-25749 2024-11-21 14:18 2020-09-25 Show GitHub Exploit DB Packet Storm
209308 8.1 HIGH
Network
rubetek rv-3406_firmware
rv-3409_firmware
rv-3411_firmware
A Cleartext Transmission issue was discovered on Rubetek RV-3406, RV-3409, and RV-3411 cameras (firmware versions v342, v339). Someone in the middle can intercept and modify the video data from the c… CWE-319
Cleartext Transmission of Sensitive Information
CVE-2020-25748 2024-11-21 14:18 2020-09-25 Show GitHub Exploit DB Packet Storm
209309 9.4 CRITICAL
Network
rubetek rv-3406_firmware
rv-3409_firmware
rv-3411_firmware
The Telnet service of Rubetek RV-3406, RV-3409, and RV-3411 cameras (firmware versions v342, v339) can allow a remote attacker to gain access to RTSP and ONFIV services without authentication. Thus, … CWE-306
Missing Authentication for Critical Function
CVE-2020-25747 2024-11-21 14:18 2020-09-25 Show GitHub Exploit DB Packet Storm
209310 4.7 MEDIUM
Local
xen
fedoraproject
debian
opensuse
xen
fedora
debian_linux
leap
An issue was discovered in Xen through 4.14.x. There is a race condition when migrating timers between x86 HVM vCPUs. When migrating timers of x86 HVM guests between its vCPUs, the locking model used… CWE-362
Race Condition
CVE-2020-25604 2024-11-21 14:18 2020-09-24 Show GitHub Exploit DB Packet Storm