Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 14, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
251601 7.8 危険 シスコシステムズ - Cisco IOS および IOS XE の NAT 機能におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2011-3276 2011-11-7 16:36 2011-09-28 Show GitHub Exploit DB Packet Storm
251602 7.8 危険 シスコシステムズ - Cisco IOS および IOS XE におけるサービス運用妨害 (メモリ消費) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-3275 2011-11-7 16:36 2011-09-28 Show GitHub Exploit DB Packet Storm
251603 6.1 警告 シスコシステムズ - Cisco IOS および IOS XE におけるサービス運用妨害 (デバイスクラッシュ) の脆弱性 CWE-noinfo
情報不足
CVE-2011-3274 2011-11-7 16:35 2011-09-28 Show GitHub Exploit DB Packet Storm
251604 7.8 危険 シスコシステムズ - Cisco IOS におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-3273 2011-11-7 16:35 2011-09-28 Show GitHub Exploit DB Packet Storm
251605 7.8 危険 シスコシステムズ - Cisco IOS の IP SLA 機能におけるサービス運用妨害 (メモリ破損およびデバイスのリロード) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-3272 2011-11-7 16:33 2011-09-28 Show GitHub Exploit DB Packet Storm
251606 10 危険 シスコシステムズ - Cisco IOS の Smart Install 機能における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2011-3271 2011-11-7 16:33 2011-09-28 Show GitHub Exploit DB Packet Storm
251607 7.8 危険 シスコシステムズ - Cisco 10000 シリーズのルータで動作する Cisco IOS におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2011-3270 2011-11-7 16:31 2011-09-28 Show GitHub Exploit DB Packet Storm
251608 1.7 注意 IBM - IBM WebSphere MQ における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-0905 2011-11-7 15:17 2011-10-30 Show GitHub Exploit DB Packet Storm
251609 4.1 警告 IBM - IBM WebSphere MQ におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-0900 2011-11-7 15:17 2011-10-30 Show GitHub Exploit DB Packet Storm
251610 9.3 危険 IBM - IBM Rational AppScan Standard および Express における任意のコマンドを実行される脆弱性 CWE-noinfo
情報不足
CVE-2011-1367 2011-11-7 15:16 2011-10-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
209411 7.8 HIGH
Local
linux
xen
netapp
linux_kernel
xen
cloud_backup
steelstore_cloud_integrated_storage
solidfire_baseboard_management_controller
An issue was discovered in the Linux kernel 5.5 through 5.7.9, as used in Xen through 4.13.x for x86 PV guests. An attacker may be granted the I/O port permissions of an unrelated task. This occurs b… CWE-276
Incorrect Default Permissions 
CVE-2020-15852 2024-11-21 14:06 2020-07-21 Show GitHub Exploit DB Packet Storm
209412 8.1 HIGH
Network
liferay liferay_portal
dxp
Liferay Portal before 7.3.0, and Liferay DXP 7.0 before fix pack 90, 7.1 before fix pack 17, and 7.2 before fix pack 5, allows man-in-the-middle attackers to execute arbitrary code via crafted serial… CWE-502
 Deserialization of Untrusted Data
CVE-2020-15842 2024-11-21 14:06 2020-07-20 Show GitHub Exploit DB Packet Storm
209413 8.8 HIGH
Network
liferay liferay_portal
dxp
Liferay Portal before 7.3.0, and Liferay DXP 7.0 before fix pack 89, 7.1 before fix pack 17, and 7.2 before fix pack 4, does not safely test a connection to a LDAP server, which allows remote attacke… NVD-CWE-noinfo
CVE-2020-15841 2024-11-21 14:06 2020-07-20 Show GitHub Exploit DB Packet Storm
209414 8.8 HIGH
Network
westerndigital wd_discovery In Western Digital WD Discovery before 4.0.251.0, a malicious application running with standard user permissions could potentially execute code in the application's process through library injection … CWE-668
 Exposure of Resource to Wrong Sphere
CVE-2020-15816 2024-11-21 14:06 2020-07-18 Show GitHub Exploit DB Packet Storm
209415 6.5 MEDIUM
Network
gnu libredwg GNU LibreDWG before 0.11 allows NULL pointer dereferences via crafted input files. CWE-476
 NULL Pointer Dereference
CVE-2020-15807 2024-11-21 14:06 2020-07-18 Show GitHub Exploit DB Packet Storm
209416 8.1 HIGH
Network
graylog graylog Graylog before 3.3.3 lacks SSL Certificate Validation for LDAP servers. It allows use of an external user/group database stored in LDAP. The connection configuration allows the usage of unencrypted, … CWE-295
Improper Certificate Validation 
CVE-2020-15813 2024-11-21 14:06 2020-07-18 Show GitHub Exploit DB Packet Storm
209417 6.1 MEDIUM
Network
zabbix
fedoraproject
debian
opensuse
zabbix
fedora
debian_linux
leap
backports
Zabbix before 3.0.32rc1, 4.x before 4.0.22rc1, 4.1.x through 4.4.x before 4.4.10rc1, and 5.x before 5.0.2rc1 allows stored XSS in the URL Widget. CWE-79
Cross-site Scripting
CVE-2020-15803 2024-11-21 14:06 2020-07-17 Show GitHub Exploit DB Packet Storm
209418 9.8 CRITICAL
Network
python
netapp
python
max_data
In Python 3.8.4, sys.path restrictions specified in a python38._pth file are ignored, allowing code to be loaded from arbitrary locations. The <executable-name>._pth file (e.g., the python._pth file)… CWE-426
 Untrusted Search Path
CVE-2020-15801 2024-11-21 14:06 2020-07-17 Show GitHub Exploit DB Packet Storm
209419 6.7 MEDIUM
Local
linux
opensuse
canonical
linux_kernel
leap
ubuntu_linux
An issue was discovered in drivers/acpi/acpi_configfs.c in the Linux kernel before 5.7.7. Injection of malicious ACPI tables via configfs could be used by attackers to bypass lockdown and secure boot… CWE-862
 Missing Authorization
CVE-2020-15780 2024-11-21 14:06 2020-07-16 Show GitHub Exploit DB Packet Storm
209420 7.5 HIGH
Network
socket.io-file_project socket.io-file A Path Traversal issue was discovered in the socket.io-file package through 2.0.31 for Node.js. The socket.io-file::createFile message uses path.join with ../ in the name option, and the uploadDir an… CWE-22
Path Traversal
CVE-2020-15779 2024-11-21 14:06 2020-07-16 Show GitHub Exploit DB Packet Storm