Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
255131 4 警告 IBM - IBM DB2 の Engine Utilities コンポーネントにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2009-4329 2010-02-4 11:18 2009-12-16 Show GitHub Exploit DB Packet Storm
255132 7.2 危険 サイバートラスト株式会社
Linux
- Linux kernel の kvm_dev_ioctl_get_supported_cpuid 関数における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2009-3638 2010-02-3 14:35 2009-10-29 Show GitHub Exploit DB Packet Storm
255133 5 警告 Linear LLC
S2 Security
- Linear eMerge のマネージメントコンポーネントにおけるサービス運用妨害 (DoS) CWE-noinfo
情報不足
CVE-2009-3734 2010-02-3 14:35 2010-01-5 Show GitHub Exploit DB Packet Storm
255134 7.5 危険 The PHP Group
LibGD project
サイバートラスト株式会社
レッドハット
- PHP および GD Graphics Library の _gdGetColors 関数におけるバッファオーバーフローの脆弱性 CWE-Other
その他
CVE-2009-3546 2010-02-3 14:34 2009-10-19 Show GitHub Exploit DB Packet Storm
255135 6.8 警告 GNU Project
XEmacs
サイバートラスト株式会社
- Emacs および XEmacs における .flc ファイルの処理に関する任意のコードを実行される脆弱性 CWE-DesignError
CVE-2008-2142 2010-02-2 11:43 2008-05-12 Show GitHub Exploit DB Packet Storm
255136 3.5 注意 Drupal
サイバートラスト株式会社
- Drupal の Menu モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4370 2010-02-2 11:43 2009-12-16 Show GitHub Exploit DB Packet Storm
255137 3.5 注意 Drupal
サイバートラスト株式会社
- Drupal の Contact モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4369 2010-02-2 11:42 2009-12-16 Show GitHub Exploit DB Packet Storm
255138 7.5 危険 日立 - Cosminexus、Processing Kit for XML および Hitachi Developer's Kit for Java におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
- 2010-02-2 11:42 2009-12-22 Show GitHub Exploit DB Packet Storm
255139 4.3 警告 VMware - 複数の VMware 製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3731 2010-02-1 11:52 2009-12-15 Show GitHub Exploit DB Packet Storm
255140 10 危険 サイバートラスト株式会社
Linux
- Linux kernel および gxsnmp パッケージの asn1 の実装における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2008-1673 2010-02-1 11:51 2008-06-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 12, 2026, 5:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
197161 6.5 MEDIUM
Adjacent
zte e8820v3_firmware ZTE E8820V3 router product is impacted by an information leak vulnerability. Attackers could use this vulnerability to to gain wireless passwords. After obtaining the wireless password, the attacker … NVD-CWE-noinfo
CVE-2020-6864 2024-11-21 14:36 2020-02-28 Show GitHub Exploit DB Packet Storm
197162 6.5 MEDIUM
Adjacent
zte e8820v3_firmware ZTE E8820V3 router product is impacted by a permission and access control vulnerability. Attackers could use this vulnerability to tamper with DDNS parameters and send DoS attacks on the specified UR… NVD-CWE-noinfo
CVE-2020-6863 2024-11-21 14:36 2020-02-28 Show GitHub Exploit DB Packet Storm
197163 7.2 HIGH
Network
dlink dch-m225_firmware D-Link DCH-M225 1.05b01 and earlier devices allow remote authenticated admins to execute arbitrary OS commands via shell metacharacters in the media renderer name. CWE-78
OS Command 
CVE-2020-6842 2024-11-21 14:36 2020-02-22 Show GitHub Exploit DB Packet Storm
197164 9.8 CRITICAL
Network
dlink dch-m225_firmware D-Link DCH-M225 1.05b01 and earlier devices allow remote attackers to execute arbitrary OS commands via shell metacharacters in the spotifyConnect.php userName parameter. CWE-78
OS Command 
CVE-2020-6841 2024-11-21 14:36 2020-02-22 Show GitHub Exploit DB Packet Storm
197165 7.8 HIGH
Local
honeywell inncom_inncontrol_firmware Honeywell INNCOM INNControl 3 allows workstation users to escalate application user privileges through the modification of local configuration files. CWE-269
 Improper Privilege Management
CVE-2020-6968 2024-11-21 14:36 2020-02-21 Show GitHub Exploit DB Packet Storm
197166 6.8 MEDIUM
Physics
ge vivid_e95_firmware
vivid_e90_firmware
vivid_s70n_firmware
vivid_t8_firmware
vivid_t9_firmware
vivid_iq_firmware
logiq_e10_firmware
logiq_e9_firmware
logiq_s8_firmware
logiq…
A restricted desktop environment escape vulnerability exists in the Kiosk Mode functionality of affected devices. Specially crafted inputs can allow the user to escape the restricted environment, res… CWE-20
NVD-CWE-Other
 Improper Input Validation 
CVE-2020-6977 2024-11-21 14:36 2020-02-21 Show GitHub Exploit DB Packet Storm
197167 9.8 CRITICAL
Network
emerson openenterprise_scada_server A Heap-based Buffer Overflow was found in Emerson OpenEnterprise SCADA Server 2.83 (if Modbus or ROC Interfaces have been installed and are in use) and all versions of OpenEnterprise 3.1 through 3.3.… CWE-787
 Out-of-bounds Write
CVE-2020-6970 2024-11-21 14:36 2020-02-20 Show GitHub Exploit DB Packet Storm
197168 6.1 MEDIUM
Network
topmanage olk_webstore An issue was discovered in TopManage OLK 2020. As there is no ReadOnly on the Session cookie, the user and admin accounts can be taken over in a DOM-Based XSS attack. CWE-79
Cross-site Scripting
CVE-2020-6845 2024-11-21 14:36 2020-02-19 Show GitHub Exploit DB Packet Storm
197169 8.8 HIGH
Network
topmanage olk_webstore In TopManage OLK 2020, login CSRF can be chained with another vulnerability in order to takeover admin and user accounts. CWE-352
 Origin Validation Error
CVE-2020-6844 2024-11-21 14:36 2020-02-19 Show GitHub Exploit DB Packet Storm
197170 6.1 MEDIUM
Network
miniorange saml_sp_single_sign_on Utilities.php in the miniorange-saml-20-single-sign-on plugin before 4.8.84 for WordPress allows XSS via a crafted SAML XML Response to wp-login.php. This is related to the SAMLResponse and RelayStat… CWE-79
Cross-site Scripting
CVE-2020-6850 2024-11-21 14:36 2020-02-18 Show GitHub Exploit DB Packet Storm