Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 15, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224701 3.3 注意 IBM - IBM Rational Focal Point の Webservice Axis Gateway におけるアクセス制限を回避される脆弱性 CWE-noinfo
情報不足
CVE-2013-5398 2013-12-19 16:54 2013-12-13 Show GitHub Exploit DB Packet Storm
224702 3.3 注意 IBM - IBM Rational Focal Point の Webservice Axis Gateway におけるアクセス制限を回避される脆弱性 CWE-noinfo
情報不足
CVE-2013-5397 2013-12-19 16:53 2013-12-13 Show GitHub Exploit DB Packet Storm
224703 4.3 警告 IBM - IBM Sametime Classic Meeting Server の Web アプリケーションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-6733 2013-12-19 16:51 2013-12-10 Show GitHub Exploit DB Packet Storm
224704 3.5 注意 IBM - IBM WebSphere Service Registry and Repository におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-6721 2013-12-19 16:46 2013-12-10 Show GitHub Exploit DB Packet Storm
224705 4.3 警告 IBM - IBM Sterling Connect:Enterprise HTTP Option におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-6327 2013-12-19 16:35 2013-12-13 Show GitHub Exploit DB Packet Storm
224706 6.8 警告 CRU Acquisition Group - CRU Ditto Forensic FieldStation のファームウェアにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-6883 2013-12-19 15:54 2013-10-15 Show GitHub Exploit DB Packet Storm
224707 4.3 警告 CRU Acquisition Group - CRU Ditto Forensic FieldStation のファームウェアにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-6882 2013-12-19 15:52 2013-12-12 Show GitHub Exploit DB Packet Storm
224708 2.1 注意 valve software - Valve SteamOS の valve-bugreporter パッケージの Valve Bug Reporter における重要な情報を取得される脆弱性 CWE-310
暗号の問題
CVE-2013-7128 2013-12-19 15:51 2013-12-14 Show GitHub Exploit DB Packet Storm
224709 4.3 警告 ThemeBeans - WordPress 用 ThemeBeans Blooog Theme におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-7129 2013-12-19 14:47 2013-12-2 Show GitHub Exploit DB Packet Storm
224710 2.1 注意 アップル - Apple Mac OS X 上で稼働する Safari における重要な情報を取得される脆弱性 CWE-310
暗号の問題
CVE-2013-7127 2013-12-19 14:41 2013-12-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 15, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
200241 7.5 HIGH
Network
phoenixcontact fl_comserver_uni_232\/422\/485_firmware
fl_comserver_uni_232\/422\/485-t_firmware
In Phoenix Contact FL COMSERVER UNI in versions < 2.40 a invalid Modbus exception response can lead to a temporary denial of service. - CVE-2021-21002 2024-11-21 14:47 2021-06-26 Show GitHub Exploit DB Packet Storm
200242 7.5 HIGH
Network
phoenixcontact fl_switch_smcs_16tx_firmware
fl_switch_smcs_14tx\/2fx_firmware
fl_switch_smcs_14tx\/2fx-sm_firmware
fl_switch_smcs_8gt_firmware
fl_switch_smcs_6gt\/2sfp_firmware
fl_switch_smcs_8tx-pn_…
In Phoenix Contact FL SWITCH SMCS series products in multiple versions if an attacker sends a hand-crafted TCP-Packet with the Urgent-Flag set and the Urgent-Pointer set to 0, the network stack will … - CVE-2021-21005 2024-11-21 14:47 2021-06-26 Show GitHub Exploit DB Packet Storm
200243 6.1 MEDIUM
Network
phoenixcontact fl_switch_smcs_16tx_firmware
fl_switch_smcs_14tx\/2fx_firmware
fl_switch_smcs_14tx\/2fx-sm_firmware
fl_switch_smcs_8gt_firmware
fl_switch_smcs_6gt\/2sfp_firmware
fl_switch_smcs_8tx-pn_…
In Phoenix Contact FL SWITCH SMCS series products in multiple versions an attacker may insert malicious code via LLDP frames into the web-based management which could then be executed by the client. CWE-79
Cross-site Scripting
CVE-2021-21004 2024-11-21 14:47 2021-06-26 Show GitHub Exploit DB Packet Storm
200244 5.3 MEDIUM
Network
phoenixcontact fl_switch_smcs_16tx_firmware
fl_switch_smcs_14tx\/2fx_firmware
fl_switch_smcs_14tx\/2fx-sm_firmware
fl_switch_smcs_8gt_firmware
fl_switch_smcs_6gt\/2sfp_firmware
fl_switch_smcs_8tx-pn_…
In Phoenix Contact FL SWITCH SMCS series products in multiple versions fragmented TCP-Packets may cause a Denial of Service of Web-, SNMP- and ICMP-Echo services. The switching functionality of the d… - CVE-2021-21003 2024-11-21 14:47 2021-06-26 Show GitHub Exploit DB Packet Storm
200245 6.1 MEDIUM
Network
ec-cube business_form_output Cross-site scripting vulnerability in EC-CUBE Category contents plugin (for EC-CUBE 3.0 series) versions prior to version 1.0.1 allows a remote attacker to inject an arbitrary script by leading an ad… CWE-79
Cross-site Scripting
CVE-2021-20744 2024-11-21 14:47 2021-06-22 Show GitHub Exploit DB Packet Storm
200246 6.1 MEDIUM
Network
ec-cube email_newsletters_management Cross-site scripting vulnerability in EC-CUBE Email newsletters management plugin (for EC-CUBE 3.0 series) versions prior to version 1.0.4 allows a remote attacker to inject an arbitrary script by le… CWE-79
Cross-site Scripting
CVE-2021-20743 2024-11-21 14:47 2021-06-22 Show GitHub Exploit DB Packet Storm
200247 6.1 MEDIUM
Network
ec-cube business_form_output Cross-site scripting vulnerability in EC-CUBE Business form output plugin (for EC-CUBE 3.0 series) versions prior to version 1.0.1 allows a remote attacker to inject an arbitrary script via unspecifi… CWE-79
Cross-site Scripting
CVE-2021-20742 2024-11-21 14:47 2021-06-22 Show GitHub Exploit DB Packet Storm
200248 6.1 MEDIUM
Network
hitachi application_server_v10_manual Cross-site scripting vulnerability in Hitachi Application Server Help (Hitachi Application Server V10 Manual (Windows) version 10-11-01 and earlier and Hitachi Application Server V10 Manual (UNIX) ve… CWE-79
Cross-site Scripting
CVE-2021-20741 2024-11-21 14:47 2021-06-22 Show GitHub Exploit DB Packet Storm
200249 6.5 MEDIUM
Network
weseek growi Improper authentication vulnerability in GROWI versions prior to v4.2.20 allows a remote attacker to view the unauthorized pages without access privileges via unspecified vectors. CWE-287
Improper Authentication
CVE-2021-20737 2024-11-21 14:47 2021-06-22 Show GitHub Exploit DB Packet Storm
200250 9.1 CRITICAL
Network
weseek growi NoSQL injection vulnerability in GROWI versions prior to v4.2.20 allows a remote attacker to obtain and/or alter the information stored in the database via unspecified vectors. CWE-74
Injection
CVE-2021-20736 2024-11-21 14:47 2021-06-22 Show GitHub Exploit DB Packet Storm