Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 19, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
251721 4.3 警告 SAP - SAP Crystal Report Server の pubDBLogon.jsp におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-4805 2011-12-16 15:18 2011-12-14 Show GitHub Exploit DB Packet Storm
251722 7.5 危険 Authenex - ASAS Server 上の Authenex Web Management Control における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2011-4801 2011-12-16 15:16 2011-09-16 Show GitHub Exploit DB Packet Storm
251723 9 危険 Rhino Software - Serv-U FTP サーバにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2011-4800 2011-12-16 15:15 2011-12-14 Show GitHub Exploit DB Packet Storm
251724 4.3 警告 マイクロソフト - Microsoft Internet Explorer におけるコンテンツを読まれる脆弱性 CWE-200
情報漏えい
CVE-2011-3404 2011-12-16 11:52 2011-12-13 Show GitHub Exploit DB Packet Storm
251725 9.3 危険 マイクロソフト - Windows 2008 および Windows 7 上で稼働する Microsoft Internet Explorer 9 における権限昇格の脆弱性 CWE-Other
その他
CVE-2011-2019 2011-12-16 11:50 2011-12-13 Show GitHub Exploit DB Packet Storm
251726 7.2 危険 マイクロソフト - 複数の Microsoft Windows のカーネルにおける権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-2018 2011-12-16 11:49 2011-12-13 Show GitHub Exploit DB Packet Storm
251727 4.3 警告 マイクロソフト - Microsoft Internet Explorer 8 の XSS フィルタにおけるコンテンツを読まれる脆弱性 CWE-200
情報漏えい
CVE-2011-1992 2011-12-16 11:48 2011-12-13 Show GitHub Exploit DB Packet Storm
251728 9.3 危険 マイクロソフト - Microsoft Excel および Office における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2011-3403 2011-12-16 11:40 2011-12-13 Show GitHub Exploit DB Packet Storm
251729 9 危険 マイクロソフト - Microsoft Windows におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-3406 2011-12-16 11:38 2011-12-13 Show GitHub Exploit DB Packet Storm
251730 9.3 危険 マイクロソフト - 複数の Microsoft PowerPoint 製品における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2011-3413 2011-12-16 11:37 2011-12-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 19, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
222581 8.8 HIGH
Network
totolink a3002ru_firmware
a702r_firmware
n301rt_firmware
n302r_firmware
n300rt_firmware
n200re_firmware
n150rt_firmware
n100re_firmware
On certain TOTOLINK Realtek SDK based routers, an authenticated attacker may execute arbitrary OS commands via the sysCmd parameter to the boafrm/formSysCmd URI, even if the GUI (syscmd.htm) is not a… CWE-78
OS Command 
CVE-2019-19824 2024-11-21 13:35 2020-01-28 Show GitHub Exploit DB Packet Storm
222582 7.5 HIGH
Network
totolink
realtek
sapido
ciktel
kctvjeju
fg-products
hiwifi
tbroad
coship
iodata
hcn_max-c300n_project
a3002ru_firmware
a702r_firmware
n302r_firmware
n300rt_firmware
n200re_firmware
n150rt_firmware
n100re_firmware
rtk_11n_ap_firmware
gr297n_firmware
mesh_router_firmware
w…
A certain router administration interface (that includes Realtek APMIB 0.11f for Boa 0.94.14rc21) stores cleartext administrative passwords in flash memory and in a file. This affects TOTOLINK A3002R… CWE-522
 Insufficiently Protected Credentials
CVE-2019-19823 2024-11-21 13:35 2020-01-28 Show GitHub Exploit DB Packet Storm
222583 7.5 HIGH
Network
totolink
realtek
sapido
ciktel
kctvjeju
fg-products
hiwifi
tbroad
coship
iodata
hcn_max-c300n_project
a3002ru_firmware
a702r_firmware
n302r_firmware
n300rt_firmware
n200re_firmware
n150rt_firmware
n100re_firmware
rtk_11n_ap_firmware
gr297n_firmware
mesh_router_firmware
w…
A certain router administration interface (that includes Realtek APMIB 0.11f for Boa 0.94.14rc21) allows remote attackers to retrieve the configuration, including sensitive data (usernames and passwo… CWE-306
Missing Authentication for Critical Function
CVE-2019-19822 2024-11-21 13:35 2020-01-28 Show GitHub Exploit DB Packet Storm
222584 9.8 CRITICAL
Network
totolink a3002ru_firmware
a702r_firmware
n301rt_firmware
n302r_firmware
n300rt_firmware
n200re_firmware
n150rt_firmware
n100re_firmware
On certain TOTOLINK Realtek SDK based routers, the CAPTCHA text can be retrieved via an {"topicurl":"setting/getSanvas"} POST to the boafrm/formLogin URI, leading to a CAPTCHA bypass. (Also, the CAPT… CWE-287
Improper Authentication
CVE-2019-19825 2024-11-21 13:35 2020-01-28 Show GitHub Exploit DB Packet Storm
222585 8.8 HIGH
Network
bigswitch big_cloud_fabric
big_monitoring_fabric
multi-cloud_director
An issue was discovered in Big Switch Big Monitoring Fabric 6.2 through 6.2.4, 6.3 through 6.3.9, 7.0 through 7.0.3, and 7.1 through 7.1.3; Big Cloud Fabric 4.5 through 4.5.5, 4.7 through 4.7.7, 5.0 … CWE-200
Information Exposure
CVE-2019-19631 2024-11-21 13:35 2020-01-25 Show GitHub Exploit DB Packet Storm
222586 6.1 MEDIUM
Network
bigswitch big_cloud_fabric
big_monitoring_fabric
multi-cloud_director
An issue was discovered in Big Switch Big Monitoring Fabric 6.2 through 6.2.4, 6.3 through 6.3.9, 7.0 through 7.0.3, and 7.1 through 7.1.3; Big Cloud Fabric 4.5 through 4.5.5, 4.7 through 4.7.7, 5.0 … CWE-79
Cross-site Scripting
CVE-2019-19632 2024-11-21 13:35 2020-01-25 Show GitHub Exploit DB Packet Storm
222587 7.5 HIGH
Network
ixpdata easyinstall In IXP EasyInstall 6.2.13723, there are cleartext credentials in network communication on TCP port 20050 when using the Administrator console remotely. CWE-319
CWE-522
Cleartext Transmission of Sensitive Information
 Insufficiently Protected Credentials
CVE-2019-19898 2024-11-21 13:35 2020-01-24 Show GitHub Exploit DB Packet Storm
222588 9.8 CRITICAL
Network
ixpdata easyinstall In IXP EasyInstall 6.2.13723, there is Remote Code Execution via the Agent Service. An unauthenticated attacker can communicate with the Agent Service over TCP port 20051, and execute code in the NT … CWE-78
OS Command 
CVE-2019-19897 2024-11-21 13:35 2020-01-24 Show GitHub Exploit DB Packet Storm
222589 9.9 CRITICAL
Network
ixpdata easyinstall In IXP EasyInstall 6.2.13723, there is Remote Code Execution via weak permissions on the Engine Service share. The default file permissions of the IXP$ share on the server allows modification of dire… CWE-276
Incorrect Default Permissions 
CVE-2019-19896 2024-11-21 13:35 2020-01-24 Show GitHub Exploit DB Packet Storm
222590 7.8 HIGH
Local
ixpdata easyinstall In IXP EasyInstall 6.2.13723, there is Lateral Movement (using the Agent Service) against other users on a client system. An authenticated attacker can, by modifying %SYSTEMDRIVE%\IXP\SW\[PACKAGE_COD… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2019-19895 2024-11-21 13:35 2020-01-24 Show GitHub Exploit DB Packet Storm