Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 2, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225171 6.4 警告 IBM - IBM API Management におけるテナント API へアクセスされる脆弱性 CWE-noinfo
情報不足
CVE-2013-0559 2013-07-22 16:33 2013-07-10 Show GitHub Exploit DB Packet Storm
225172 7.2 危険 IBM - IBM AIX および VIOS の InfiniBand サブシステムにおける権限を取得される脆弱性 CWE-noinfo
情報不足
CVE-2013-4011 2013-07-22 16:32 2013-06-3 Show GitHub Exploit DB Packet Storm
225173 10 危険 シーメンス - Siemens Enterprise OpenScape Branch および OpenScape Session Border Controller における任意のコマンドを実行される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2013-4781 2013-07-22 16:31 2012-09-14 Show GitHub Exploit DB Packet Storm
225174 7.8 危険 シーメンス - Siemens Enterprise OpenScape Branch および OpenScape Session Border Controller における任意のファイルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2013-4780 2013-07-22 16:31 2012-09-14 Show GitHub Exploit DB Packet Storm
225175 4.3 警告 シーメンス - Siemens Enterprise OpenScape Branch および OpenScape Session Border Controller におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4779 2013-07-22 16:29 2012-09-14 Show GitHub Exploit DB Packet Storm
225176 7.8 危険 シーメンス - Siemens Enterprise OpenScape Branch および OpenScape Session Border Controller における重要なサーバおよび統計情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-4778 2013-07-22 16:29 2012-09-14 Show GitHub Exploit DB Packet Storm
225177 5 警告 シスコシステムズ - Cisco IOS の GET VPN 機能のデフォルト設定における暗号化ポリシーを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-3436 2013-07-22 16:25 2013-07-19 Show GitHub Exploit DB Packet Storm
225178 4.3 警告 DELL EMC (旧 EMC Corporation) - Data Store Gen プラットフォーム上で稼働する EMC Avamar Server および Avamar Virtual Edition における重要な情報を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2013-3275 2013-07-22 16:23 2013-07-17 Show GitHub Exploit DB Packet Storm
225179 9 危険 DELL EMC (旧 EMC Corporation) - Data Store Gen プラットフォーム上で稼働する EMC Avamar Server および Avamar Virtual Edition における任意のコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-3274 2013-07-22 16:22 2013-07-17 Show GitHub Exploit DB Packet Storm
225180 2.6 注意 Verizon - Verizon Wireless Network Extender における ESN および MIN 値を取得される脆弱性 CWE-287
不適切な認証
CVE-2013-4877 2013-07-22 16:20 2013-07-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 2, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
197401 4.3 MEDIUM
Network
ibm jazz_team_server IBM Jazz Team Server 6.0.6, 6.0.6.1, 7.0, 7.0.1, and 7.0.2 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system,… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2021-20544 2024-11-21 14:46 2022-06-25 Show GitHub Exploit DB Packet Storm
197402 5.4 MEDIUM
Network
ibm jazz_team_server IBM Jazz Team Server 6.0.6, 6.0.6.1, 7.0, 7.0.1, and 7.0.2 is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be executed in the victim's We… CWE-79
Cross-site Scripting
CVE-2021-20543 2024-11-21 14:46 2022-06-25 Show GitHub Exploit DB Packet Storm
197403 4.3 MEDIUM
Network
ibm jazz_team_server IBM Jazz Team Server 6.0.6, 6.0.6.1, 7.0, 7.0.1, and 7.0.2 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system,… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2021-20421 2024-11-21 14:46 2022-06-25 Show GitHub Exploit DB Packet Storm
197404 5.3 MEDIUM
Network
ibm jazz_team_server IBM Jazz Team Server 6.0.6, 6.0.6.1, 7.0, 7.0.1, and 7.0.2 could allow a remote attacker to obtain sensitive information, caused by the failure to set the HTTPOnly flag. A remote attacker could explo… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2021-20355 2024-11-21 14:46 2022-06-25 Show GitHub Exploit DB Packet Storm
197405 7.5 HIGH
Network
ibm cloud_pak_system IBM Cloud Pak System 2.3.0 through 2.3.3.3 Interim Fix 1 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 19749… CWE-327
 Use of a Broken or Risky Cryptographic Algorithm
CVE-2021-20479 2024-11-21 14:46 2022-05-10 Show GitHub Exploit DB Packet Storm
197406 6.5 MEDIUM
Network
ibm
netapp
cognos_analytics
oncommand_insight
IBM Cognos Analytics PowerPlay (IBM Cognos Analytics 11.1.7, 11.2.0, and 11.1.7) could be vulnerable to an XML Bomb attack by a malicious authenticated user. IBM X-Force ID: 196813. CWE-776
XML Entity Expansion
CVE-2021-20464 2024-11-21 14:46 2022-04-23 Show GitHub Exploit DB Packet Storm
197407 6.5 MEDIUM
Local
qemu qemu It was discovered that the update for the virt:rhel module in the RHSA-2020:4676 (https://access.redhat.com/errata/RHSA-2020:4676) erratum released as part of Red Hat Enterprise Linux 8.3 failed to i… CWE-125
Out-of-bounds Read
CVE-2021-20295 2024-11-21 14:46 2022-04-2 Show GitHub Exploit DB Packet Storm
197408 3.7 LOW
Network
redhat openshift_container_platform
openshift_machine-config-operator
It was found in OpenShift Container Platform 4 that ignition config, served by the Machine Config Server, can be accessed externally from clusters without authentication. The MCS endpoint (port 22623… CWE-306
Missing Authentication for Critical Function
CVE-2021-20238 2024-11-21 14:46 2022-04-2 Show GitHub Exploit DB Packet Storm
197409 6.1 MEDIUM
Network
redhat keycloak A POST based reflected Cross Site Scripting vulnerability on has been identified in Keycloak. CWE-79
Cross-site Scripting
CVE-2021-20323 2024-11-21 14:46 2022-03-26 Show GitHub Exploit DB Packet Storm
197410 6.1 MEDIUM
Local
theforeman openscap An improper authorization handling flaw was found in Foreman. The OpenSCAP plugin for the smart-proxy allows foreman clients to execute actions that should be limited to the Foreman Server. This flaw… CWE-863
 Incorrect Authorization
CVE-2021-20290 2024-11-21 14:46 2022-03-26 Show GitHub Exploit DB Packet Storm