Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 3, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
254411 4.3 警告 マイクロソフト - Microsoft Windows の MHTML プロトコルハンドラにおけるクロスサイトスクリプティングを誘導される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-1894 2011-06-23 11:27 2011-06-14 Show GitHub Exploit DB Packet Storm
254412 5.5 警告 ターボリナックス
Timo Sirainen
レッドハット
- Dovecot の plugins/acl/acl-backend-vfile.c におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-3707 2011-06-23 11:15 2010-10-2 Show GitHub Exploit DB Packet Storm
254413 4 警告 ターボリナックス
Timo Sirainen
レッドハット
- Dovecot におけるサービス運用妨害 (master process outage) の脆弱性 CWE-Other
その他
CVE-2010-3780 2011-06-23 11:14 2010-10-2 Show GitHub Exploit DB Packet Storm
254414 4.3 警告 Google - Android の Android ブラウザにおける SD カード上の情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2010-4804 2011-06-21 07:53 2011-06-9 Show GitHub Exploit DB Packet Storm
254415 4.3 警告 株式会社カワイビジネスソフトウエア - WeblyGo におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-1330 2011-06-20 12:01 2011-06-20 Show GitHub Exploit DB Packet Storm
254416 - - Autonomy - Autonomy KeyView IDOL に複数の脆弱性 - - 2011-06-20 11:19 2011-06-8 Show GitHub Exploit DB Packet Storm
254417 7.6 危険 シスコシステムズ - Linux および Mac OS 上で稼働する Cisco AnyConnect Secure Mobility Client における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2011-2040 2011-06-20 11:12 2011-06-1 Show GitHub Exploit DB Packet Storm
254418 7.6 危険 シスコシステムズ - Windows 上で稼働する Cisco AnyConnect Secure Mobility Client における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2011-2039 2011-06-20 11:10 2011-06-1 Show GitHub Exploit DB Packet Storm
254419 9.3 危険 シスコシステムズ - Cisco WebEx WRF Player の atrpui.dll におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-2880 2011-06-17 11:28 2009-12-16 Show GitHub Exploit DB Packet Storm
254420 9.3 危険 シスコシステムズ - Cisco WebEx WRF Player の atas32.dll におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-2879 2011-06-17 11:25 2009-12-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 3, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
215671 7.8 HIGH
Local
sun-denshi universal_forensic_extraction_device_firmware Cellebrite UFED 5.0 to 7.5.0.845 implements local operating system policies that can be circumvented to obtain a command prompt via the Windows file dialog that is reachable via the Certificate-Based… CWE-269
 Improper Privilege Management
CVE-2020-12798 2024-11-21 14:00 2020-05-16 Show GitHub Exploit DB Packet Storm
215672 9.8 CRITICAL
Network
eq-3 homematic_ccu2_firmware
ccu3_firmware
eQ-3 Homematic Central Control Unit (CCU)2 through 2.51.6 and CCU3 through 3.51.6 allow Remote Code Execution in the JSON API Method ReGa.runScript, by unauthenticated attackers with access to the we… CWE-276
Incorrect Default Permissions 
CVE-2020-12834 2024-11-21 14:00 2020-05-16 Show GitHub Exploit DB Packet Storm
215673 6.1 MEDIUM
Network
redhat interchange XSS in the admin help system admin/help.html and admin/quicklinks.html in Interchange 4.7.0 through 5.11.x allows remote attackers to steal credentials or data via browser JavaScript. CWE-79
Cross-site Scripting
CVE-2020-12685 2024-11-21 14:00 2020-05-16 Show GitHub Exploit DB Packet Storm
215674 5.4 MEDIUM
Network
rcos submitty Submitty through 20.04.01 allows XSS via upload of an SVG document, as demonstrated by an attack by a Student against a Teaching Fellow. CWE-79
Cross-site Scripting
CVE-2020-12882 2024-11-21 14:00 2020-05-15 Show GitHub Exploit DB Packet Storm
215675 7.5 HIGH
Network
veritas aptare Veritas APTARE versions prior to 10.4 allowed sensitive information to be accessible without authentication. CWE-306
Missing Authentication for Critical Function
CVE-2020-12877 2024-11-21 14:00 2020-05-15 Show GitHub Exploit DB Packet Storm
215676 7.5 HIGH
Network
veritas aptare Veritas APTARE versions prior to 10.4 allowed remote users to access several unintended files on the server. This vulnerability only impacts Windows server deployments. CWE-863
 Incorrect Authorization
CVE-2020-12876 2024-11-21 14:00 2020-05-15 Show GitHub Exploit DB Packet Storm
215677 6.3 MEDIUM
Network
veritas aptare Veritas APTARE versions prior to 10.4 did not perform adequate authorization checks. An authenticated user could gain unauthorized access to sensitive information or functionality by manipulating spe… CWE-863
 Incorrect Authorization
CVE-2020-12875 2024-11-21 14:00 2020-05-15 Show GitHub Exploit DB Packet Storm
215678 9.8 CRITICAL
Network
veritas aptare Veritas APTARE versions prior to 10.4 included code that bypassed the normal login process when specific authentication credentials were provided to the server. CWE-287
Improper Authentication
CVE-2020-12874 2024-11-21 14:00 2020-05-15 Show GitHub Exploit DB Packet Storm
215679 6.1 MEDIUM
Network
progress moveit_automation An issue was discovered in Progress MOVEit Automation Web Admin. A Web Admin application endpoint failed to adequately sanitize malicious input, which could allow an unauthenticated attacker to execu… CWE-79
Cross-site Scripting
CVE-2020-12677 2024-11-21 14:00 2020-05-15 Show GitHub Exploit DB Packet Storm
215680 6.5 MEDIUM
Adjacent
alberta
tracetogether
health
gov
abtracetogether
tracetogether
covidsafe
protego_safe
The COVIDSafe (Australia) app 1.0 and 1.1 for iOS allows a remote attacker to crash the app, and consequently interfere with COVID-19 contact tracing, via a Bluetooth advertisement containing manufac… NVD-CWE-noinfo
CVE-2020-12717 2024-11-21 14:00 2020-05-14 Show GitHub Exploit DB Packet Storm