Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 28, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
255871 4.3 警告 オラクル - Oracle Fusion Middleware の Cabo/UIX コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-2410 2010-11-1 15:41 2010-10-12 Show GitHub Exploit DB Packet Storm
255872 4.3 警告 オラクル - Oracle Fusion Middleware の Cabo/UIX コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-2409 2010-11-1 15:40 2010-10-12 Show GitHub Exploit DB Packet Storm
255873 4.3 警告 オラクル - Oracle Fusion Middleware の Cabo/UIX コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-2395 2010-11-1 15:39 2010-10-12 Show GitHub Exploit DB Packet Storm
255874 5 警告 オラクル - Oracle Fusion Middleware の OID コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-3501 2010-11-1 15:39 2010-10-12 Show GitHub Exploit DB Packet Storm
255875 1 注意 オラクル - 複数の Oracle 製品の Perl コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-2389 2010-11-1 15:38 2010-10-12 Show GitHub Exploit DB Packet Storm
255876 3.6 注意 オラクル - Oracle Database Server の Core RDBMS コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-2391 2010-11-1 15:37 2010-10-12 Show GitHub Exploit DB Packet Storm
255877 4.3 警告 オラクル - Oracle Database Server の XDK コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-2407 2010-11-1 15:37 2010-10-12 Show GitHub Exploit DB Packet Storm
255878 6.8 警告 Vim - GVim における DLL 読み込みに関する脆弱性 CWE-Other
その他
CVE-2010-3914 2010-11-1 12:00 2010-11-1 Show GitHub Exploit DB Packet Storm
255879 9.3 危険 オラクル - Oracle Siebel Option Pack for IE の ActiveX コントロールのメモリ初期化処理に脆弱性 CWE-94
コード・インジェクション
CVE-2009-3737 2010-10-29 16:43 2010-08-9 Show GitHub Exploit DB Packet Storm
255880 4.6 警告 オラクル - Oracle Database Server の Job Queue コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-2411 2010-10-29 16:35 2010-10-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
212701 9.8 CRITICAL
Network
sophos xg_firewall_firmware Sophos XG Firewall 17.x through v17.5 MR12 allows a Buffer Overflow and remote code execution via the HTTP/S Bookmarks feature for clientless access. Hotfix HF062020.1 was published for all firewalls… CWE-120
Classic Buffer Overflow
CVE-2020-15069 2024-11-21 14:04 2020-06-30 Show GitHub Exploit DB Packet Storm
212702 6.5 MEDIUM
Network
iball wrb303n_firmware iBall WRB303N devices allow CSRF attacks, as demonstrated by enabling remote management, enabling DHCP, or modifying the subnet range for IP addresses. CWE-352
 Origin Validation Error
CVE-2020-15043 2024-11-21 14:04 2020-06-30 Show GitHub Exploit DB Packet Storm
212703 5.5 MEDIUM
Local
jiangmin jiangmin_antivirus In Jiangmin Antivirus 16.0.13.129, the driver file (KVFG.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values f… CWE-20
 Improper Input Validation 
CVE-2020-14955 2024-11-21 14:04 2020-06-27 Show GitHub Exploit DB Packet Storm
212704 6.1 MEDIUM
Network
nedi nedi NeDi 1.9C is vulnerable to reflected cross-site scripting. The Devices-Config.php file improperly validates user input. An attacker can exploit this vulnerability by crafting arbitrary JavaScript in … CWE-79
Cross-site Scripting
CVE-2020-15017 2024-11-21 14:04 2020-06-26 Show GitHub Exploit DB Packet Storm
212705 6.1 MEDIUM
Network
nedi nedi NeDi 1.9C is vulnerable to reflected cross-site scripting. The Other-Converter.php file improperly validates user input. An attacker can exploit this vulnerability by crafting arbitrary JavaScript in… CWE-79
Cross-site Scripting
CVE-2020-15016 2024-11-21 14:04 2020-06-26 Show GitHub Exploit DB Packet Storm
212706 5.9 MEDIUM
Network
trojita_project trojita MSA/SMTP.cpp in Trojita before 0.8 ignores certificate-verification errors, which allows man-in-the-middle attackers to spoof SMTP servers. CWE-295
Improper Certificate Validation 
CVE-2020-15047 2024-11-21 14:04 2020-06-25 Show GitHub Exploit DB Packet Storm
212707 8.8 HIGH
Network
supermicro x10drh-it_bios
x10drh-it_firmware
The web interface on Supermicro X10DRH-iT motherboards with BIOS 2.0a and IPMI firmware 03.40 allows remote attackers to exploit a cgi/config_user.cgi CSRF issue to add new admin users. The fixed ver… CWE-352
 Origin Validation Error
CVE-2020-15046 2024-11-21 14:04 2020-06-25 Show GitHub Exploit DB Packet Storm
212708 3.1 LOW
Network
mediawiki
fedoraproject
debian
mediawiki
fedora
debian_linux
In MediaWiki before 1.31.8, 1.32.x and 1.33.x before 1.33.4, and 1.34.x before 1.34.2, private wikis behind a caching server using the img_auth.php image authorization security feature may have had t… NVD-CWE-noinfo
CVE-2020-15005 2024-11-21 14:04 2020-06-25 Show GitHub Exploit DB Packet Storm
212709 4.8 MEDIUM
Network
php-fusion php-fusion PHP-Fusion 9.03.60 allows XSS via the administration/site_links.php Add Site Link field. CWE-79
Cross-site Scripting
CVE-2020-15041 2024-11-21 14:04 2020-06-25 Show GitHub Exploit DB Packet Storm
212710 5.4 MEDIUM
Network
seedprod coming_soon_page\
_under_construction_\&_maintenance_mode
The SeedProd coming-soon plugin before 5.1.1 for WordPress allows XSS. CWE-79
Cross-site Scripting
CVE-2020-15038 2024-11-21 14:04 2020-06-25 Show GitHub Exploit DB Packet Storm