Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
250341 5.5 警告 ヒューレット・パッカード - HP Operations におけるアクセス制限を回避される脆弱性 CWE-noinfo
情報不足
CVE-2011-0894 2012-03-27 18:43 2011-04-4 Show GitHub Exploit DB Packet Storm
250342 4.3 警告 ヒューレット・パッカード - HP Operations におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-0893 2012-03-27 18:43 2011-04-4 Show GitHub Exploit DB Packet Storm
250343 4.3 警告 ヒューレット・パッカード - HP Diagnostics におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-0892 2012-03-27 18:43 2011-03-29 Show GitHub Exploit DB Packet Storm
250344 5 警告 ヒューレット・パッカード
マイクロソフト
- HP DDMI における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2011-0890 2012-03-27 18:43 2011-03-25 Show GitHub Exploit DB Packet Storm
250345 10 危険 ヒューレット・パッカード - HP Client Automation Enterprise における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2011-0889 2012-03-27 18:43 2011-03-16 Show GitHub Exploit DB Packet Storm
250346 4.3 警告 SMC Networks - SMC SMCD3G-CCR の Web 管理ポータル におけるセッションをハイジャックされる脆弱性 CWE-310
暗号の問題
CVE-2011-0887 2012-03-27 18:43 2011-02-8 Show GitHub Exploit DB Packet Storm
250347 6.8 警告 SMC Networks - SMC SMCD3G-CCR の Web インターフェースにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2011-0886 2012-03-27 18:43 2011-02-8 Show GitHub Exploit DB Packet Storm
250348 10 危険 SMC Networks - SMC SMCD3G-CCR の 特定の Comcast Business Gateway 設定における管理アクセスを取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2011-0885 2012-03-27 18:43 2011-02-8 Show GitHub Exploit DB Packet Storm
250349 5.8 警告 オラクル - Oracle JD Edwards Products の JD Edwards EnterpriseOne Tools コンポーネントにおける Enterprise Infrastructure SEC の処理に関連する脆弱性 CWE-noinfo
情報不足
CVE-2011-0803 2012-03-27 18:43 2011-04-19 Show GitHub Exploit DB Packet Storm
250350 5 警告 PivotX - PivotX の pivotx/modules/module_image.php における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2011-0775 2012-03-27 18:43 2011-01-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 30, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
201521 9.8 CRITICAL
Network
hp intelligent_management_center A devgroupselect expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07). CWE-917
 Improper Neutralization of Special Elements used in an Expression Language Statement ('Expression Language Injection')
CVE-2020-7146 2024-11-21 14:36 2020-10-20 Show GitHub Exploit DB Packet Storm
201522 9.8 CRITICAL
Network
hp intelligent_management_center A chooseperfview expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07). CWE-917
 Improper Neutralization of Special Elements used in an Expression Language Statement ('Expression Language Injection')
CVE-2020-7145 2024-11-21 14:36 2020-10-20 Show GitHub Exploit DB Packet Storm
201523 9.8 CRITICAL
Network
hp intelligent_management_center A comparefilesresult expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07). CWE-917
 Improper Neutralization of Special Elements used in an Expression Language Statement ('Expression Language Injection')
CVE-2020-7144 2024-11-21 14:36 2020-10-20 Show GitHub Exploit DB Packet Storm
201524 9.8 CRITICAL
Network
hp intelligent_management_center A faultdevparasset expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07). CWE-917
 Improper Neutralization of Special Elements used in an Expression Language Statement ('Expression Language Injection')
CVE-2020-7143 2024-11-21 14:36 2020-10-20 Show GitHub Exploit DB Packet Storm
201525 9.8 CRITICAL
Network
hp intelligent_management_center A eventinfo_content expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07). CWE-917
 Improper Neutralization of Special Elements used in an Expression Language Statement ('Expression Language Injection')
CVE-2020-7142 2024-11-21 14:36 2020-10-20 Show GitHub Exploit DB Packet Storm
201526 9.8 CRITICAL
Network
hp intelligent_management_center A adddevicetoview expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07). CWE-917
 Improper Neutralization of Special Elements used in an Expression Language Statement ('Expression Language Injection')
CVE-2020-7141 2024-11-21 14:36 2020-10-20 Show GitHub Exploit DB Packet Storm
201527 5.5 MEDIUM
Local
blackberry unified_endpoint_manager An improper input validation vulnerability in the UEM Core of BlackBerry UEM version(s) 12.13.0, 12.12.1a QF2 (and earlier), and 12.11.1 QF3 (and earlier) could allow an attacker to potentially cause… CWE-20
 Improper Input Validation 
CVE-2020-6933 2024-11-21 14:36 2020-10-14 Show GitHub Exploit DB Packet Storm
201528 9.8 CRITICAL
Network
zte zxone_19700_snpe_firmware A ZTE product is impacted by the improper access control vulnerability. Due to lack of an authentication protection mechanism in the program, attackers could use this vulnerability to gain access rig… CWE-306
Missing Authentication for Critical Function
CVE-2020-6875 2024-11-21 14:36 2020-10-6 Show GitHub Exploit DB Packet Storm
201529 5.3 MEDIUM
Network
php
fedoraproject
debian
opensuse
canonical
netapp
tenable
php
fedora
debian_linux
leap
ubuntu_linux
clustered_data_ontap
tenable.sc
In PHP versions 7.2.x below 7.2.34, 7.3.x below 7.3.23 and 7.4.x below 7.4.11, when PHP is processing incoming HTTP cookie values, the cookie names are url-decoded. This may lead to cookies with pref… CWE-565
 Reliance on Cookies without Validation and Integrity Checking
CVE-2020-7070 2024-11-21 14:36 2020-10-3 Show GitHub Exploit DB Packet Storm
201530 6.5 MEDIUM
Network
php
fedoraproject
debian
opensuse
canonical
netapp
oracle
tenable
php
fedora
debian_linux
leap
ubuntu_linux
clustered_data_ontap
communications_diameter_signaling_router
tenable.sc
In PHP versions 7.2.x below 7.2.34, 7.3.x below 7.3.23 and 7.4.x below 7.4.11, when AES-CCM mode is used with openssl_encrypt() function with 12 bytes IV, only first 7 bytes of the IV is actually use… CWE-326
Inadequate Encryption Strength
CVE-2020-7069 2024-11-21 14:36 2020-10-3 Show GitHub Exploit DB Packet Storm