Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 24, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228631 7.5 危険 X7 Group - X7 Chat のログインページにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6964 2012-12-20 19:10 2009-08-13 Show GitHub Exploit DB Packet Storm
228632 7.5 危険 turnkeyforms - TurnkeyForms Text Link Sales の admin.php における認証を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-6963 2012-12-20 19:10 2009-08-13 Show GitHub Exploit DB Packet Storm
228633 5 警告 x10media - X10media x10 Automatic Mp3 Search Engine Script の download.php における任意のファイルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-6960 2012-12-20 19:10 2009-08-12 Show GitHub Exploit DB Packet Storm
228634 7.5 危険 wowraidmanager - WoW Raid Manager の auth/auth_phpbb3.php における認証を回避される脆弱性 CWE-255
証明書・パスワード管理
CVE-2008-7050 2012-12-20 19:10 2008-10-13 Show GitHub Exploit DB Packet Storm
228635 7.5 危険 Simple Machines - SMF のパスワードリセット機能における他のユーザのパスワードを変更される脆弱性 CWE-255
証明書・パスワード管理
CVE-2008-6971 2012-12-20 19:10 2008-09-7 Show GitHub Exploit DB Packet Storm
228636 7.5 危険 UBB Systems - UBB.threads の dosearch.inc.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6970 2012-12-20 19:10 2008-09-2 Show GitHub Exploit DB Packet Storm
228637 10 危険 raidsonic - RaidSonic ICY BOX NAS の userHandler.cgi における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2008-7081 2012-12-20 19:10 2009-08-25 Show GitHub Exploit DB Packet Storm
228638 5 警告 phpclassifiedsscript - Team PHP PHP Classifieds Script におけるデータベース資格情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-7080 2012-12-20 19:10 2009-08-25 Show GitHub Exploit DB Packet Storm
228639 7.5 危険 relative - SailPlanner における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-7077 2012-12-20 19:10 2009-08-25 Show GitHub Exploit DB Packet Storm
228640 7.8 危険 シーメンス - Siemens C450 IP など VoIP デバイスにおけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2008-7065 2012-12-20 19:10 2009-08-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 25, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
195171 7.8 HIGH
Local
gnu binutils A flaw was found in binutils readelf 2.35 program. An attacker who is able to convince a victim using readelf to read a crafted file could trigger a stack buffer overflow, out-of-bounds write of arbi… CWE-787
 Out-of-bounds Write
CVE-2021-20294 2024-11-21 14:46 2021-04-30 Show GitHub Exploit DB Packet Storm
195172 7.5 HIGH
Network
redhat
debian
ansible_engine
ansible_tower
ansible_automation_platform
debian_linux
A flaw was found in the Ansible Engine 2.9.18, where sensitive info is not masked by default and is not protected by the no_log feature when using the sub-option feature of the basic.py module. This … CWE-200
Information Exposure
CVE-2021-20228 2024-11-21 14:46 2021-04-30 Show GitHub Exploit DB Packet Storm
195173 5.4 MEDIUM
Network
ibm content_navigator IBM Content Navigator 3.0.CD is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potential… CWE-79
Cross-site Scripting
CVE-2021-20550 2024-11-21 14:46 2021-04-28 Show GitHub Exploit DB Packet Storm
195174 5.4 MEDIUM
Network
ibm content_navigator IBM Content Navigator 3.0.CD is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potential… CWE-79
Cross-site Scripting
CVE-2021-20549 2024-11-21 14:46 2021-04-28 Show GitHub Exploit DB Packet Storm
195175 5.4 MEDIUM
Network
ibm content_navigator IBM Content Navigator 3.0.CD is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potential… CWE-79
Cross-site Scripting
CVE-2021-20448 2024-11-21 14:46 2021-04-28 Show GitHub Exploit DB Packet Storm
195176 5.5 MEDIUM
Local
ibm spectrum_protect_client
spectrum_protect_for_space_management
IBM Spectrum Protect Client 8.1.0.0 through 8.1.11.0 is vulnerable to a stack-based buffer overflow, caused by improper bounds checking. A local attacker could overflow a buffer and cause the applica… CWE-787
 Out-of-bounds Write
CVE-2021-20546 2024-11-21 14:46 2021-04-27 Show GitHub Exploit DB Packet Storm
195177 6.2 MEDIUM
Local
ibm spectrum_protect_plus IBM Spectrum Protect Plus File Systems Agent 10.1.6 and 10.1.7 stores potentially sensitive information in log files that could be read by a local user. IBM X-Force ID: 198836. CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2021-20536 2024-11-21 14:46 2021-04-27 Show GitHub Exploit DB Packet Storm
195178 7.8 HIGH
Local
ibm spectrum_protect_backup-archive_client
spectrum_protect_for_virtual_environments
IBM Spectrum Protect Client 8.1.0.0 through 8.1.11.0 could allow a local user to escalate their privileges to take full control of the system due to insecure directory permissions. IBM X-Force ID: 19… CWE-276
Incorrect Default Permissions 
CVE-2021-20532 2024-11-21 14:46 2021-04-27 Show GitHub Exploit DB Packet Storm
195179 6.5 MEDIUM
Network
ibm spectrum_protect_plus IBM Spectrum Protect Plus 10.1.0 through 10.1.7 uses Cross-Origin Resource Sharing (CORS) which could allow an attacker to carry out privileged actions and retrieve sensitive information as the domai… NVD-CWE-Other
CVE-2021-20432 2024-11-21 14:46 2021-04-27 Show GitHub Exploit DB Packet Storm
195180 6.1 MEDIUM
Network
nec aterm_wg1900hp2_firmware
aterm_wg1900hp_firmware
aterm_wg1800hp4_firmware
aterm_wg1800hp3_firmware
aterm_wg1200hs3_firmware
aterm_wg1200hs2_firmware
aterm_wg1200hp3_firmware
ater…
Cross-site scripting vulnerability in NEC Aterm devices (Aterm WG1900HP2 firmware Ver.1.3.1 and earlier, Aterm WG1900HP firmware Ver.2.5.1 and earlier, Aterm WG1800HP4 firmware Ver.1.3.1 and earlier,… CWE-79
Cross-site Scripting
CVE-2021-20680 2024-11-21 14:46 2021-04-26 Show GitHub Exploit DB Packet Storm