Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
254181 9.3 危険 マイクロソフト - Microsoft Windows の Microsoft Paint における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2010-0028 2010-03-3 11:54 2010-02-9 Show GitHub Exploit DB Packet Storm
254182 7.2 危険 マイクロソフト - Microsoft Windows の kernel における権限昇格の脆弱性 CWE-Other
その他
CVE-2010-0233 2010-03-3 11:54 2010-02-9 Show GitHub Exploit DB Packet Storm
254183 6.3 警告 マイクロソフト - Microsoft Windows の KDC におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2010-0035 2010-03-3 11:54 2010-02-9 Show GitHub Exploit DB Packet Storm
254184 7.1 危険 マイクロソフト - Microsoft Windows の SMB 実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-362
競合状態
CVE-2010-0021 2010-03-3 11:54 2010-02-9 Show GitHub Exploit DB Packet Storm
254185 10 危険 マイクロソフト - Microsoft Windows の SMB 実装におけるアクセス権を取得される脆弱性 CWE-264
CWE-310
CVE-2010-0231 2010-03-3 11:54 2010-02-9 Show GitHub Exploit DB Packet Storm
254186 7.8 危険 マイクロソフト - Microsoft Windows の SMB 実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2010-0022 2010-03-3 11:53 2010-02-9 Show GitHub Exploit DB Packet Storm
254187 9 危険 マイクロソフト - Microsoft Windows の SMB 実装における任意のコードを実行される脆弱性 CWE-20
CWE-94
CVE-2010-0020 2010-03-3 11:53 2010-02-9 Show GitHub Exploit DB Packet Storm
254188 6.9 警告 マイクロソフト - Microsoft Windows の Client/Server Run-time Subsystem における権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-0023 2010-03-3 11:53 2010-02-9 Show GitHub Exploit DB Packet Storm
254189 4 警告 マイクロソフト - Microsoft Windows の Hyper-V サーバ実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2010-0026 2010-03-3 11:53 2010-02-9 Show GitHub Exploit DB Packet Storm
254190 9.3 危険 日本電気
アップル
富士通
古河電気工業
ヒューレット・パッカード
インターネットイニシアティブ
アラクサラネットワークス
日立
- IPv6 NDP 実装における Neighbor Discovery メッセージの送信元検証処理に関する脆弱性 CWE-20
不適切な入力確認
CVE-2008-2476 2010-03-3 11:43 2008-10-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
210131 9.8 CRITICAL
Network
3xlogic infinias_eidc32_firmware
infinias_eidc32_web
3xLOGIC Infinias eIDC32 2.213 devices with Web 1.107 allow Authentication Bypass via CMD.HTM?CMD= because authentication depends on the client side's interpretation of the <KEY>MYKEY</KEY> substring. CWE-287
CWE-319
Improper Authentication
Cleartext Transmission of Sensitive Information
CVE-2020-11542 2024-11-21 13:58 2020-04-5 Show GitHub Exploit DB Packet Storm
210132 5.5 MEDIUM
Local
ivanti workspace_control Ivanti Workspace Control before 10.4.30.0, when SCCM integration is enabled, allows local users to obtain sensitive information (keying material). NVD-CWE-noinfo
CVE-2020-11533 2024-11-21 13:58 2020-04-5 Show GitHub Exploit DB Packet Storm
210133 6.1 MEDIUM
Network
getgrav grav Common/Grav.php in Grav before 1.7 has an Open Redirect. This is partially fixed in 1.6.23 and still present in 1.6.x. CWE-601
Open Redirect
CVE-2020-11529 2024-11-21 13:58 2020-04-5 Show GitHub Exploit DB Packet Storm
210134 7.5 HIGH
Network
bit2spr_project bit2spr bit2spr 1992-06-07 has a stack-based buffer overflow (129-byte write) in conv_bitmap in bit2spr.c via a long line in a bitmap file. CWE-787
 Out-of-bounds Write
CVE-2020-11528 2024-11-21 13:58 2020-04-5 Show GitHub Exploit DB Packet Storm
210135 7.5 HIGH
Network
zohocorp manageengine_opmanager In Zoho ManageEngine OpManager before 12.4.181, an unauthenticated remote attacker can send a specially crafted URI to read arbitrary files. NVD-CWE-noinfo
CVE-2020-11527 2024-11-21 13:58 2020-04-5 Show GitHub Exploit DB Packet Storm
210136 9.8 CRITICAL
Network
zohocorp manageengine_adselfservice_plus Zoho ManageEngine ADSelfService Plus before 5815 allows unauthenticated remote code execution. NVD-CWE-noinfo
CVE-2020-11518 2024-11-21 13:58 2020-04-4 Show GitHub Exploit DB Packet Storm
210137 7.4 HIGH
Network
gnu
debian
opensuse
canonical
fedoraproject
gnutls
debian_linux
leap
ubuntu_linux
fedora
GnuTLS 3.6.x before 3.6.13 uses incorrect cryptography for DTLS. The earliest affected version is 3.6.3 (2018-07-16) because of an error in a 2017-10-06 commit. The DTLS client always uses 32 '\0' by… CWE-330
 Use of Insufficiently Random Values
CVE-2020-11501 2024-11-21 13:58 2020-04-3 Show GitHub Exploit DB Packet Storm
210138 7.5 HIGH
Network
zoom meetings Zoom Client for Meetings through 4.6.9 uses the ECB mode of AES for video and audio encryption. Within a meeting, all participants use a single 128-bit key. CWE-327
 Use of a Broken or Risky Cryptographic Algorithm
CVE-2020-11500 2024-11-21 13:58 2020-04-3 Show GitHub Exploit DB Packet Storm
210139 6.1 MEDIUM
Network
firmware_analysis_and_comparison_tool_project firmware_analysis_and_comparison_tool Firmware Analysis and Comparison Tool (FACT) 3 has Stored XSS when updating analysis details via a localhost web request, as demonstrated by mishandling of the tags and version fields in helperFuncti… CWE-79
Cross-site Scripting
CVE-2020-11499 2024-11-21 13:58 2020-04-3 Show GitHub Exploit DB Packet Storm
210140 8.8 HIGH
Network
slack nebula Slack Nebula through 1.1.0 contains a relative path vulnerability that allows a low-privileged attacker to execute code in the context of the root user via tun_darwin.go or tun_windows.go. A user can… CWE-22
Path Traversal
CVE-2020-11498 2024-11-21 13:58 2020-04-3 Show GitHub Exploit DB Packet Storm