Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
251271 4.3 警告 オラクル - Oracle PeopleSoft Products の PeopleSoft Enterprise PeopleTools コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2011-2275 2011-09-9 09:49 2011-07-19 Show GitHub Exploit DB Packet Storm
251272 4.3 警告 リアルネットワークス - RealNetworks RealPlayer の ActiveX コントロールにおけるクロスゾーンスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-2947 2011-09-8 13:36 2011-08-16 Show GitHub Exploit DB Packet Storm
251273 10 危険 リアルネットワークス - RealNetworks RealPlayer および RealPlayer Enterprise の ActiveX コントロールにおける任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2011-2946 2011-09-8 13:35 2011-08-16 Show GitHub Exploit DB Packet Storm
251274 9.3 危険 リアルネットワークス - RealNetworks RealPlayer におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-2945 2011-09-8 13:34 2011-08-16 Show GitHub Exploit DB Packet Storm
251275 10 危険 Mozilla Foundation
レッドハット
- 複数の Mozilla 製品における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2011-0084 2011-09-8 13:33 2011-08-16 Show GitHub Exploit DB Packet Storm
251276 4.3 警告 Mozilla Foundation
レッドハット
- 複数の Mozilla 製品における同一生成元ポリシーを回避される脆弱性 CWE-200
情報漏えい
CVE-2011-2983 2011-09-8 13:32 2011-08-16 Show GitHub Exploit DB Packet Storm
251277 10 危険 Mozilla Foundation
レッドハット
- 複数の Mozilla 製品におけるクローム特権で任意の JavaScript を実行される脆弱性 CWE-94
コード・インジェクション
CVE-2011-2984 2011-09-7 11:35 2011-08-16 Show GitHub Exploit DB Packet Storm
251278 7.2 危険 Mozilla Foundation - Mozilla Firefox における権限昇格の脆弱性 CWE-Other
その他
CVE-2011-2980 2011-09-7 11:34 2011-08-16 Show GitHub Exploit DB Packet Storm
251279 10 危険 Mozilla Foundation
レッドハット
- 複数の Mozilla 製品の appendChild 関数における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2011-2378 2011-09-7 11:33 2011-08-16 Show GitHub Exploit DB Packet Storm
251280 9.3 危険 Mozilla Foundation
レッドハット
- 複数の Mozilla 製品のイベント管理実装における同一生成元ポリシーを回避される脆弱性 CWE-16
環境設定
CVE-2011-2981 2011-09-7 11:32 2011-08-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 8, 2026, 4:54 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209951 4.9 MEDIUM
Network
silver-peak unity_edgeconnect_for_google_cloud_platform
unity_edgeconnect_for_azure
unity_edgeconnect_for_amazon_web_services
unity_orchestrator
vx-500_firmware
vx-1000_firmware
vx-2000_firmwar…
The certificate used to identify the Silver Peak Cloud Portal to EdgeConnect devices is not validated. This makes it possible for someone to establish a TLS connection from EdgeConnect to an untruste… CWE-295
Improper Certificate Validation 
CVE-2020-12144 2024-11-21 13:59 2020-05-6 Show GitHub Exploit DB Packet Storm
209952 4.9 MEDIUM
Network
silver-peak unity_edgeconnect_for_google_cloud_platform
unity_edgeconnect_for_azure
unity_edgeconnect_for_amazon_web_services
unity_orchestrator
vx-500_firmware
vx-1000_firmware
vx-2000_firmwar…
The certificate used to identify Orchestrator to EdgeConnect devices is not validated, which makes it possible for someone to establish a TLS connection from EdgeConnect to an untrusted Orchestrator. CWE-295
Improper Certificate Validation 
CVE-2020-12143 2024-11-21 13:59 2020-05-6 Show GitHub Exploit DB Packet Storm
209953 4.9 MEDIUM
Network
silver-peak unity_edgeconnect_for_google_cloud_platform
unity_edgeconnect_for_azure
unity_edgeconnect_for_amazon_web_services
unity_orchestrator
vx-500_firmware
vx-1000_firmware
vx-2000_firmwar…
1. IPSec UDP key material can be retrieved from machine-to-machine interfaces and human-accessible interfaces by a user with admin credentials. Such a user, with the required system knowledge, could … CWE-668
 Exposure of Resource to Wrong Sphere
CVE-2020-12142 2024-11-21 13:59 2020-05-6 Show GitHub Exploit DB Packet Storm
209954 8.8 HIGH
Network
internet-formation wp-advanced-search The Import feature in the wp-advanced-search plugin 3.3.6 for WordPress is vulnerable to authenticated SQL injection via an uploaded .sql file. An attacker can use this to execute SQL commands withou… CWE-89
SQL Injection
CVE-2020-12104 2024-11-21 13:59 2020-05-6 Show GitHub Exploit DB Packet Storm
209955 7.8 HIGH
Local
linux
opensuse
debian
netapp
linux_kernel
leap
debian_linux
cloud_backup
element_software
steelstore_cloud_integrated_storage
solidfire
hci_management_node
active_iq_unified_manager
hci_compute_node_fi…
An issue was found in Linux kernel before 5.5.4. The mwifiex_cmd_append_vsie_tlv() function in drivers/net/wireless/marvell/mwifiex/scan.c allows local users to gain privileges or cause a denial of s… CWE-787
 Out-of-bounds Write
CVE-2020-12653 2024-11-21 13:59 2020-05-5 Show GitHub Exploit DB Packet Storm
209956 7.1 HIGH
Adjacent
linux linux_kernel An issue was found in Linux kernel before 5.5.4. mwifiex_ret_wmm_get_status() in drivers/net/wireless/marvell/mwifiex/wmm.c allows a remote AP to trigger a heap-based buffer overflow because of an in… CWE-787
 Out-of-bounds Write
CVE-2020-12654 2024-11-21 13:59 2020-05-5 Show GitHub Exploit DB Packet Storm
209957 4.1 MEDIUM
Local
linux linux_kernel The __mptctl_ioctl function in drivers/message/fusion/mptctl.c in the Linux kernel before 5.4.14 allows local users to hold an incorrect lock during the ioctl operation and trigger a race condition, … CWE-362
Race Condition
CVE-2020-12652 2024-11-21 13:59 2020-05-5 Show GitHub Exploit DB Packet Storm
209958 7.5 HIGH
Network
gurbalib_project gurbalib Gurbalib through 2020-04-30 allows lib/cmds/player/help.c directory traversal for reading administrative paths. CWE-22
Path Traversal
CVE-2020-12649 2024-11-21 13:59 2020-05-5 Show GitHub Exploit DB Packet Storm
209959 7.5 HIGH
Network
reportportal service-api An issue was discovered in service-api before 4.3.12 and 5.x before 5.1.1 for Report Portal. It allows XXE, with resultant secrets disclosure and SSRF, via JUnit XML launch import. CWE-611
XXE
CVE-2020-12642 2024-11-21 13:59 2020-05-5 Show GitHub Exploit DB Packet Storm
209960 8.8 HIGH
Network
tp-link nc200_firmware
nc210_firmware
nc220_firmware
nc230_firmware
nc250_firmware
nc260_firmware
nc450_firmware
Certain TP-Link devices allow Command Injection. This affects NC200 2.1.9 build 200225, NC210 1.0.9 build 200304, NC220 1.3.0 build 200304, NC230 1.3.0 build 200304, NC250 1.3.0 build 200304, NC260 1… CWE-78
OS Command 
CVE-2020-12109 2024-11-21 13:59 2020-05-5 Show GitHub Exploit DB Packet Storm