Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228321 4.4 警告 audreyt
Canonical
Novell
- Perl 用 Module::Signature モジュールの cpansign 検証機能における署名チェックを回避される脆弱性 CWE-20
不適切な入力確認
CVE-2013-2145 2013-08-21 19:39 2013-06-4 Show GitHub Exploit DB Packet Storm
228322 6.8 警告 Novell
Mesa 3D
Canonical
レッドハット
- Mesa の Intel ドライバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2013-1872 2013-08-21 19:30 2013-06-26 Show GitHub Exploit DB Packet Storm
228323 4.3 警告 Apache Software Foundation - Apache CloudStack におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-2136 2013-08-21 19:16 2013-06-11 Show GitHub Exploit DB Packet Storm
228324 2.7 注意 レッドハット - Red Hat Enterprise Virtualization の VDSM におけるホストがマネジメントサーバを利用できない状態にされる脆弱性 CWE-DesignError
CVE-2013-4236 2013-08-21 16:59 2013-08-13 Show GitHub Exploit DB Packet Storm
228325 2.7 注意 レッドハット - Red Hat Enterprise Virtualization の VDSM におけるホストがマネジメントサーバを利用できない状態にされる脆弱性 CWE-Other
その他
CVE-2013-0167 2013-08-21 16:56 2013-06-10 Show GitHub Exploit DB Packet Storm
228326 4.3 警告 s9y - Serendipity の serendipity_admin_image_selector.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-5314 2013-08-21 14:22 2013-07-12 Show GitHub Exploit DB Packet Storm
228327 6.8 警告 BigTree CMS - BigTree CMS の core/admin/modules/users/update.php におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-5313 2013-08-21 14:08 2013-07-17 Show GitHub Exploit DB Packet Storm
228328 4.3 警告 Vastal I-Tech & Co. - Vastal I-Tech phpVID におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-5312 2013-08-21 14:06 2013-08-8 Show GitHub Exploit DB Packet Storm
228329 7.5 危険 Vastal I-Tech & Co. - Vastal I-Tech phpVID における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-5311 2013-08-21 14:01 2013-08-8 Show GitHub Exploit DB Packet Storm
228330 5 警告 Willy Tarreau
Canonical
レッドハット
- HAProxy におけるサービス運用妨害 (DoS) の脆弱性 CWE-16
環境設定
CVE-2013-2175 2013-08-20 16:32 2013-06-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 27, 2026, 4:35 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
203851 6.1 MEDIUM
Network
tecnick tcexam A reflected cross-site scripting vulnerability exists in TCExam <= 14.8.3. The paths provided in the f, d, and dir parameters in tce_filemanager.php were not properly validated and could cause reflec… CWE-79
Cross-site Scripting
CVE-2021-20115 2024-11-21 14:45 2021-08-6 Show GitHub Exploit DB Packet Storm
203852 9.8 CRITICAL
Network
sonicwall sma_210_firmware
sma_410_firmware
sma_500v_firmware
sra_4600_firmware
sra_1600_firmware
sra_va_firmware
Improper neutralization of a SQL Command leading to SQL Injection vulnerability impacting end-of-life Secure Remote Access (SRA) products, specifically the SRA appliances running all 8.x firmware and… CWE-89
SQL Injection
CVE-2021-20028 2024-11-21 14:45 2021-08-5 Show GitHub Exploit DB Packet Storm
203853 7.5 HIGH
Network
tecnick tcexam When installed following the default/recommended settings, TCExam <= 14.8.1 allowed unauthenticated users to access the /cache/backup/ directory, which included sensitive database backup files. CWE-425
 Direct Request ('Forced Browsing')
CVE-2021-20114 2024-11-21 14:45 2021-07-30 Show GitHub Exploit DB Packet Storm
203854 5.3 MEDIUM
Network
tecnick tcexam An exposure of sensitive information vulnerability exists in TCExam <= 14.8.1. If a password reset request was made for an email address that was not registered with a user then we would be presented… CWE-203
 Information Exposure Through Discrepancy
CVE-2021-20113 2024-11-21 14:45 2021-07-30 Show GitHub Exploit DB Packet Storm
203855 5.4 MEDIUM
Network
tecnick tcexam A stored cross-site scripting vulnerability exists in TCExam <= 14.8.1. Valid files uploaded via tce_select_mediafile.php with a filename beggining with a period will be rendered as text/html. An att… CWE-79
Cross-site Scripting
CVE-2021-20112 2024-11-21 14:45 2021-07-30 Show GitHub Exploit DB Packet Storm
203856 5.4 MEDIUM
Network
tecnick tcexam A stored cross-site scripting vulnerability exists in TCExam <= 14.8.1. Valid files uploaded via tce_filemanager.php with a filename beggining with a period will be rendered as text/html. An attacker… CWE-79
Cross-site Scripting
CVE-2021-20111 2024-11-21 14:45 2021-07-30 Show GitHub Exploit DB Packet Storm
203857 6.5 MEDIUM
Local
tenable nessus Nessus Agent versions 8.2.5 and earlier were found to contain a privilege escalation vulnerability which could allow a Nessus administrator user to upload a specially crafted file that could lead to … NVD-CWE-noinfo
CVE-2021-20106 2024-11-21 14:45 2021-07-22 Show GitHub Exploit DB Packet Storm
203858 9.8 CRITICAL
Network
zohocorp manageengine_assetexplorer Due to Manage Engine Asset Explorer Agent 1.0.34 not validating HTTPS certificates, an attacker on the network can statically configure their IP address to match the Asset Explorer's Server IP addres… CWE-190
 Integer Overflow or Wraparound
CVE-2021-20110 2024-11-21 14:45 2021-07-20 Show GitHub Exploit DB Packet Storm
203859 7.5 HIGH
Network
zohocorp manageengine_assetexplorer Due to the Asset Explorer agent not validating HTTPS certificates, an attacker on the network can statically configure their IP address to match the Asset Explorer's Server IP address. This will allo… CWE-787
 Out-of-bounds Write
CVE-2021-20109 2024-11-21 14:45 2021-07-20 Show GitHub Exploit DB Packet Storm
203860 7.5 HIGH
Network
zohocorp manageengine_assetexplorer Manage Engine Asset Explorer Agent 1.0.34 listens on port 9000 for incoming commands over HTTPS from Manage Engine Server. The HTTPS certificates are not verified which allows any arbitrary user on t… CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2021-20108 2024-11-21 14:45 2021-07-20 Show GitHub Exploit DB Packet Storm