Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 14, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
132461 7.8 重要
Local
Fedora Project
Linux
Debian
Fedora
Debian GNU/Linux
Linux Kernel
Linux kernel における脆弱性 CWE-noinfo
情報不足
CVE-2021-26930 2021-11-5 10:20 2021-02-16 Show GitHub Exploit DB Packet Storm
132462 5.5 警告
Local
Fedora Project
Linux
Debian
Fedora
Debian GNU/Linux
Linux Kernel
Linux kernel における制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2021-26931 2021-11-5 10:08 2021-02-16 Show GitHub Exploit DB Packet Storm
132463 4.3 警告
Network
シスコシステムズ Cisco Identity Services Engine (ISE) Cisco Identity Services Engine における権限管理に関する脆弱性 CWE-269
不適切な権限管理
CVE-2021-1416 2021-11-4 18:16 2021-02-17 Show GitHub Exploit DB Packet Storm
132464 7.8 重要
Local
シスコシステムズ Cisco AnyConnect Secure Mobility Client Windows 用 Cisco AnyConnect Secure Mobility Client におけるデジタル署名の検証に関する脆弱性 CWE-347
デジタル署名の不適切な検証
CVE-2021-1366 2021-11-4 18:16 2021-02-17 Show GitHub Exploit DB Packet Storm
132465 6.1 警告
Network
シスコシステムズ Cisco WebEx Meetings Cisco Webex Meetings におけるクロスサイトスクリプティングの脆弱性 CWE-80
クロスサイトスクリプティング (Basic XSS)
CVE-2021-1351 2021-11-4 18:16 2021-02-17 Show GitHub Exploit DB Packet Storm
132466 6.5 警告
Network
IBM Maximo for Civil Infrastructure IBM Maximo for Civil Infrastructure における認証情報の不十分な保護に関する脆弱性 CWE-522
認証情報の不十分な保護
CVE-2021-20445 2021-11-4 18:16 2021-02-12 Show GitHub Exploit DB Packet Storm
132467 6.1 警告
Network
IBM Maximo for Civil Infrastructure IBM Maximo for Civil Infrastructure におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2021-20444 2021-11-4 18:15 2021-02-12 Show GitHub Exploit DB Packet Storm
132468 8.8 重要
Network
IBM Maximo for Civil Infrastructure IBM Maximo for Civil Infrastructure における信頼できない制御領域からの機能の組み込みに関する脆弱性 CWE-829
信頼性のない制御領域からの機能の組み込み
CVE-2021-20443 2021-11-4 18:15 2021-02-12 Show GitHub Exploit DB Packet Storm
132469 7.5 重要
Network
IBM IBM WebSphere Application Server IBM WebSphere Application Server におけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2021-20354 2021-11-4 18:15 2021-02-17 Show GitHub Exploit DB Packet Storm
132470 9.8 緊急
Network
Irfan Skiljan WPG IrfanView 用 WPG プラグインにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2021-27362 2021-11-4 18:15 2021-02-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 14, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
358721 - leszek_krupinski l-forum L-Forum 2.40 and earlier does not properly verify whether a file was uploaded or if the associated variables were set by POST (attachment, attachment_name, attachment_size and attachment_type), which… NVD-CWE-Other
CVE-2002-1460 2008-09-6 05:30 2003-06-9 Show GitHub Exploit DB Packet Storm
358722 - webscriptworld web_shop_manager Web Shop Manager 1.1 allows remote attackers to execute arbitrary commands via shell metacharacters in the search box. NVD-CWE-Other
CVE-2002-1461 2008-09-6 05:30 2003-06-9 Show GitHub Exploit DB Packet Storm
358723 - organicphp php-affiliate details2.php in OrganicPHP PHP-affiliate 1.0, and possibly later versions, allows remote attackers to modify information of other users by modifying certain hidden form fields. NVD-CWE-Other
CVE-2002-1462 2008-09-6 05:30 2003-06-9 Show GitHub Exploit DB Packet Storm
358724 - cafelog b2 Cross-site scripting (XSS) vulnerability in CafeLog b2 Weblog Tool allows remote attackers to insert arbitrary HTML or script via the GPC variable. NVD-CWE-Other
CVE-2002-1464 2008-09-6 05:30 2003-04-22 Show GitHub Exploit DB Packet Storm
358725 - cafelog b2 SQL injection vulnerability in CafeLog b2 Weblog Tool allows remote attackers to execute arbitrary SQL code via the tablehosts variable. NVD-CWE-Other
CVE-2002-1465 2008-09-6 05:30 2003-04-22 Show GitHub Exploit DB Packet Storm
358726 - cafelog b2 CafeLog b2 Weblog Tool 2.06pre4, with allow_fopen_url enabled, allows remote attackers to execute arbitrary PHP code via the b2inc variable. NVD-CWE-Other
CVE-2002-1466 2008-09-6 05:30 2003-04-22 Show GitHub Exploit DB Packet Storm
358727 - macromedia flash_player
shockwave
Macromedia Flash Plugin before 6,0,47,0 allows remote attackers to bypass the same-domain restriction and read arbitrary files via (1) an HTTP redirect, (2) a "file://" base in a web document, or (3)… NVD-CWE-Other
CVE-2002-1467 2008-09-6 05:30 2003-04-22 Show GitHub Exploit DB Packet Storm
358728 - ibm aix Buffer overflow in errpt in AIX 4.3.3 allows local users to execute arbitrary code as root. NVD-CWE-Other
CVE-2002-1468 2008-09-6 05:30 2003-04-22 Show GitHub Exploit DB Packet Storm
358729 - scponly scponly scponly does not properly verify the path when finding the (1) scp or (2) sftp-server programs, which could allow remote authenticated users to bypass access controls by uploading malicious programs … NVD-CWE-Other
CVE-2002-1469 2008-09-6 05:30 2003-04-22 Show GitHub Exploit DB Packet Storm
358730 - nullsoft shoutcast_server SHOUTcast 1.8.9 and earlier allows local users to obtain the cleartext administrative password via a GET request to port 8001, which causes the password to be logged in the world-readable sc_serv.log… NVD-CWE-Other
CVE-2002-1470 2008-09-6 05:30 2003-04-22 Show GitHub Exploit DB Packet Storm