Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 31, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225161 5 警告 ヒューレット・パッカード - HP System Management Homepage におけるアクセス制限を回避される脆弱性 CWE-noinfo
情報不足
CVE-2012-5217 2013-07-23 14:55 2013-07-18 Show GitHub Exploit DB Packet Storm
225162 6.8 警告 Markus Blaschke - TYPO3 用 TEQneers SEO Enhancements エクステンションにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-4871 2013-07-23 14:44 2013-06-3 Show GitHub Exploit DB Packet Storm
225163 7.5 危険 News Search Project - TYPO3 用 News Search エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-4870 2013-07-23 14:43 2013-01-28 Show GitHub Exploit DB Packet Storm
225164 4.3 警告 NashTech - Easy PHP Calendar の index.php および datePicker.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1955 2013-07-23 14:38 2013-04-12 Show GitHub Exploit DB Packet Storm
225165 4.3 警告 マカフィー - McAfee ePolicy Orchestrator におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-0141 2013-07-22 18:52 2013-04-22 Show GitHub Exploit DB Packet Storm
225166 7.9 危険 マカフィー - McAfee ePolicy Orchestrator における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-0140 2013-07-22 18:50 2013-04-22 Show GitHub Exploit DB Packet Storm
225167 4.3 警告 Moxiecode Systems AB
SWFUpload Project
WordPress.org
- WordPress および TinyMCE Image Manager などの製品で使用される SWFUpload におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-3414 2013-07-22 16:58 2012-05-17 Show GitHub Exploit DB Packet Storm
225168 6.4 警告 IBM - IBM API Management におけるテナント API へアクセスされる脆弱性 CWE-noinfo
情報不足
CVE-2013-0559 2013-07-22 16:33 2013-07-10 Show GitHub Exploit DB Packet Storm
225169 7.2 危険 IBM - IBM AIX および VIOS の InfiniBand サブシステムにおける権限を取得される脆弱性 CWE-noinfo
情報不足
CVE-2013-4011 2013-07-22 16:32 2013-06-3 Show GitHub Exploit DB Packet Storm
225170 10 危険 シーメンス - Siemens Enterprise OpenScape Branch および OpenScape Session Border Controller における任意のコマンドを実行される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2013-4781 2013-07-22 16:31 2012-09-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 31, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
197531 8.2 HIGH
Local
gnu
redhat
fedoraproject
netapp
grub2
enterprise_linux_server_aus
enterprise_linux_workstation
enterprise_linux
enterprise_linux_server_tus
enterprise_linux_server_eus
fedora
ontap_select_deploy_administration_…
A flaw was found in grub2 in versions prior to 2.06. Setparam_prefix() in the menu rendering code performs a length calculation on the assumption that expressing a quoted single quote will require 3 … CWE-787
 Out-of-bounds Write
CVE-2021-20233 2024-11-21 14:46 2021-03-4 Show GitHub Exploit DB Packet Storm
197532 6.7 MEDIUM
Local
gnu
redhat
fedoraproject
netapp
grub2
enterprise_linux_server_aus
enterprise_linux_workstation
enterprise_linux
enterprise_linux_server_tus
enterprise_linux_server_eus
fedora
ontap_select_deploy_administration_…
A flaw was found in grub2 in versions prior to 2.06. The option parser allows an attacker to write past the end of a heap-allocated buffer by calling certain commands with a large number of specific … CWE-787
 Out-of-bounds Write
CVE-2021-20225 2024-11-21 14:46 2021-03-4 Show GitHub Exploit DB Packet Storm
197533 3.2 LOW
Local
qemu
fedoraproject
debian
qemu
fedora
debian_linux
An integer overflow issue was found in the vmxnet3 NIC emulator of the QEMU for versions up to v5.2.0. It may occur if a guest was to supply invalid values for rx/tx queue size or other NIC parameter… CWE-190
 Integer Overflow or Wraparound
CVE-2021-20203 2024-11-21 14:46 2021-02-26 Show GitHub Exploit DB Packet Storm
197534 6.8 MEDIUM
Adjacent
mongodb
quarkus
java_driver
quarkus
Specific versions of the Java driver that support client-side field level encryption (CSFLE) fail to perform correct host name verification on the KMS server’s certificate. This vulnerability in comb… CWE-295
Improper Certificate Validation 
CVE-2021-20328 2024-11-21 14:46 2021-02-26 Show GitHub Exploit DB Packet Storm
197535 6.8 MEDIUM
Adjacent
mongodb libmongocrypt A specific version of the Node.js mongodb-client-encryption module does not perform correct validation of the KMS server’s certificate. This vulnerability in combination with a privileged network pos… CWE-295
Improper Certificate Validation 
CVE-2021-20327 2024-11-21 14:46 2021-02-26 Show GitHub Exploit DB Packet Storm
197536 7.5 HIGH
Network
contec sv-cpt-mc310_firmware Missing authentication for critical function in SolarView Compact SV-CPT-MC310 prior to Ver.6.5 allows an attacker to alter the setting information without the access privileges via unspecified vecto… CWE-306
Missing Authentication for Critical Function
CVE-2021-20662 2024-11-21 14:46 2021-02-24 Show GitHub Exploit DB Packet Storm
197537 8.1 HIGH
Network
contec sv-cpt-mc310_firmware Directory traversal vulnerability in SolarView Compact SV-CPT-MC310 prior to Ver.6.5 allows authenticated attackers to delete arbitrary files and/or directories on the server via unspecified vectors. CWE-22
Path Traversal
CVE-2021-20661 2024-11-21 14:46 2021-02-24 Show GitHub Exploit DB Packet Storm
197538 6.1 MEDIUM
Network
contec sv-cpt-mc310_firmware Cross-site scripting vulnerability in SolarView Compact SV-CPT-MC310 prior to Ver.6.5 allows an attacker to inject an arbitrary script via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2021-20660 2024-11-21 14:46 2021-02-24 Show GitHub Exploit DB Packet Storm
197539 8.8 HIGH
Network
contec sv-cpt-mc310_firmware SolarView Compact SV-CPT-MC310 prior to Ver.6.5 allows an authenticated attacker to upload arbitrary files via unspecified vectors. If the file is PHP script, an attacker may execute arbitrary code. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2021-20659 2024-11-21 14:46 2021-02-24 Show GitHub Exploit DB Packet Storm
197540 9.8 CRITICAL
Network
contec sv-cpt-mc310_firmware SolarView Compact SV-CPT-MC310 prior to Ver.6.5 allows an attacker to execute arbitrary OS commands with the web server privilege via unspecified vectors. CWE-78
OS Command 
CVE-2021-20658 2024-11-21 14:46 2021-02-24 Show GitHub Exploit DB Packet Storm