Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 2, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
250561 6.9 警告 Todd C. Miller
レッドハット
- Fedora の sudo の parse.c における root 権限を取得される脆弱性 CWE-DesignError
CVE-2011-0008 2012-03-27 18:42 2011-01-18 Show GitHub Exploit DB Packet Storm
250562 3.3 注意 troglobit - pimd における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2011-0007 2012-03-27 18:42 2011-01-10 Show GitHub Exploit DB Packet Storm
250563 4.3 警告 Joomla! - Joomla! の com_search モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-0005 2012-03-27 18:42 2011-01-10 Show GitHub Exploit DB Packet Storm
250564 4.3 警告 Piwik - Piwik におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-0004 2012-03-27 18:42 2011-01-10 Show GitHub Exploit DB Packet Storm
250565 6.9 警告 Exim Development - Exim の open_log 機能における任意のファイルにログデータをアペンドさせる脆弱性 CWE-20
CWE-59
CVE-2011-0017 2012-03-27 18:42 2010-06-12 Show GitHub Exploit DB Packet Storm
250566 5.8 警告 MediaWiki - MediaWiki におけるクリックジャッキング攻撃を実行される脆弱性 CWE-20
不適切な入力確認
CVE-2011-0003 2012-03-27 18:42 2011-01-10 Show GitHub Exploit DB Packet Storm
250567 7.5 危険 Digital Junkies - dompdf の dompdf.php における任意の PHP コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2010-4879 2012-03-27 18:42 2011-10-7 Show GitHub Exploit DB Packet Storm
250568 7.5 危険 WordPress.org
edgetechweb
- Event Registration プラグインにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-4839 2012-03-27 18:42 2011-09-13 Show GitHub Exploit DB Packet Storm
250569 6 警告 extensiondepot
Joomla!
- Joomla! の JSupport (com_jsupport) コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-4838 2012-03-27 18:42 2011-09-13 Show GitHub Exploit DB Packet Storm
250570 4.3 警告 extensiondepot - Joomla! の JSupport (com_jsupport) コンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-4837 2012-03-27 18:42 2011-09-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 2, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
208971 9.8 CRITICAL
Network
rubetek rv-3406_firmware
rv-3409_firmware
rv-3411_firmware
The Telnet service of Rubetek cameras RV-3406, RV-3409, and RV-3411 cameras (firmware versions v342, v339) could allow an remote attacker to take full control of the device with a high-privileged acc… CWE-798
 Use of Hard-coded Credentials
CVE-2020-25749 2024-11-21 14:18 2020-09-25 Show GitHub Exploit DB Packet Storm
208972 8.1 HIGH
Network
rubetek rv-3406_firmware
rv-3409_firmware
rv-3411_firmware
A Cleartext Transmission issue was discovered on Rubetek RV-3406, RV-3409, and RV-3411 cameras (firmware versions v342, v339). Someone in the middle can intercept and modify the video data from the c… CWE-319
Cleartext Transmission of Sensitive Information
CVE-2020-25748 2024-11-21 14:18 2020-09-25 Show GitHub Exploit DB Packet Storm
208973 9.4 CRITICAL
Network
rubetek rv-3406_firmware
rv-3409_firmware
rv-3411_firmware
The Telnet service of Rubetek RV-3406, RV-3409, and RV-3411 cameras (firmware versions v342, v339) can allow a remote attacker to gain access to RTSP and ONFIV services without authentication. Thus, … CWE-306
Missing Authentication for Critical Function
CVE-2020-25747 2024-11-21 14:18 2020-09-25 Show GitHub Exploit DB Packet Storm
208974 4.7 MEDIUM
Local
xen
fedoraproject
debian
opensuse
xen
fedora
debian_linux
leap
An issue was discovered in Xen through 4.14.x. There is a race condition when migrating timers between x86 HVM vCPUs. When migrating timers of x86 HVM guests between its vCPUs, the locking model used… CWE-362
Race Condition
CVE-2020-25604 2024-11-21 14:18 2020-09-24 Show GitHub Exploit DB Packet Storm
208975 7.8 HIGH
Local
xen
fedoraproject
opensuse
debian
xen
fedora
leap
debian_linux
An issue was discovered in Xen through 4.14.x. There are missing memory barriers when accessing/allocating an event channel. Event channels control structures can be accessed lockless as long as the … CWE-670
 Always-Incorrect Control Flow Implementation
CVE-2020-25603 2024-11-21 14:18 2020-09-24 Show GitHub Exploit DB Packet Storm
208976 6.0 MEDIUM
Local
xen
fedoraproject
debian
opensuse
xen
fedora
debian_linux
leap
An issue was discovered in Xen through 4.14.x. An x86 PV guest can trigger a host OS crash when handling guest access to MSR_MISC_ENABLE. When a guest accesses certain Model Specific Registers, Xen f… CWE-755
 Improper Handling of Exceptional Conditions
CVE-2020-25602 2024-11-21 14:18 2020-09-24 Show GitHub Exploit DB Packet Storm
208977 5.5 MEDIUM
Local
xen
debian
fedoraproject
opensuse
xen
debian_linux
fedora
leap
An issue was discovered in Xen through 4.14.x. There is a lack of preemption in evtchn_reset() / evtchn_destroy(). In particular, the FIFO event channel model allows guests to have a large number of … NVD-CWE-noinfo
CVE-2020-25601 2024-11-21 14:18 2020-09-24 Show GitHub Exploit DB Packet Storm
208978 5.5 MEDIUM
Local
xen
fedoraproject
opensuse
debian
xen
fedora
leap
debian_linux
An issue was discovered in Xen through 4.14.x. Out of bounds event channels are available to 32-bit x86 domains. The so called 2-level event channel model imposes different limits on the number of us… CWE-787
 Out-of-bounds Write
CVE-2020-25600 2024-11-21 14:18 2020-09-24 Show GitHub Exploit DB Packet Storm
208979 7.0 HIGH
Local
xen
fedoraproject
opensuse
debian
xen
fedora
leap
debian_linux
An issue was discovered in Xen through 4.14.x. There are evtchn_reset() race conditions. Uses of EVTCHNOP_reset (potentially by a guest on itself) or XEN_DOMCTL_soft_reset (by itself covered by XSA-7… CWE-119
CWE-362
Incorrect Access of Indexable Resource ('Range Error') 
Race Condition
CVE-2020-25599 2024-11-21 14:18 2020-09-24 Show GitHub Exploit DB Packet Storm
208980 5.5 MEDIUM
Local
xen
fedoraproject
opensuse
xen
fedora
leap
An issue was discovered in Xen 4.14.x. There is a missing unlock in the XENMEM_acquire_resource error path. The RCU (Read, Copy, Update) mechanism is a synchronisation primitive. A buggy error path i… CWE-670
 Always-Incorrect Control Flow Implementation
CVE-2020-25598 2024-11-21 14:18 2020-09-24 Show GitHub Exploit DB Packet Storm