Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 24, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228681 7.5 危険 xigla - Xigla Software Absolute Newsletter における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2008-6861 2012-12-20 19:10 2009-07-14 Show GitHub Exploit DB Packet Storm
228682 7.5 危険 xigla - Xigla Software Absolute Poll Manager XE における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2008-6860 2012-12-20 19:10 2009-07-14 Show GitHub Exploit DB Packet Storm
228683 7.5 危険 xigla - Xigla Software Absolute Control Panel XE における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2008-6859 2012-12-20 19:10 2009-07-14 Show GitHub Exploit DB Packet Storm
228684 7.5 危険 xigla - Absolute Banner Manager .NET における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2008-6858 2012-12-20 19:10 2009-07-14 Show GitHub Exploit DB Packet Storm
228685 7.5 危険 xigla - Absolute Podcast .NET における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2008-6857 2012-12-20 19:10 2009-07-14 Show GitHub Exploit DB Packet Storm
228686 7.5 危険 xigla - Xigla Software Absolute News Manager.NET における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2008-6856 2012-12-20 19:10 2009-07-14 Show GitHub Exploit DB Packet Storm
228687 7.5 危険 xigla - Xigla Software Absolute News Feed における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2008-6855 2012-12-20 19:10 2009-07-14 Show GitHub Exploit DB Packet Storm
228688 7.5 危険 xigla - Xigla Software Absolute FAQ Manager.NET における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2008-6854 2012-12-20 19:10 2009-07-14 Show GitHub Exploit DB Packet Storm
228689 4.3 警告 PHP-Fusion - PHP-Fusion の messages.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-6850 2012-12-20 19:10 2009-07-7 Show GitHub Exploit DB Packet Storm
228690 6.8 警告 w2b - phpGreetCards の index.php における任意の PHP コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2008-6849 2012-12-20 19:10 2009-07-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 25, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
195211 5.5 MEDIUM
Local
gnu
netapp
binutils
cloud_backup
ontap_select_deploy_administration_utility
A flaw was found in GNU Binutils 2.35.1, where there is a heap-based buffer overflow in _bfd_elf_slurp_secondary_reloc_section in elf.c due to the number of symbols not calculated correctly. The high… - CVE-2021-20284 2024-11-21 14:46 2021-03-27 Show GitHub Exploit DB Packet Storm
195212 7.0 HIGH
Local
rpm
redhat
fedoraproject
starwindsoftware
rpm
enterprise_linux
fedora
starwind_virtual_san
A flaw was found in RPM's signature check functionality when reading a package file. This flaw allows an attacker who can convince a victim to install a seemingly verifiable package, whose signature … - CVE-2021-20271 2024-11-21 14:46 2021-03-27 Show GitHub Exploit DB Packet Storm
195213 6.3 MEDIUM
Local
gnu
redhat
netapp
broadcom
binutils
enterprise_linux
cloud_backup
ontap_select_deploy_administration_utility
solidfire_\&_hci_management_node
brocade_fabric_operating_system_firmware
There is an open race window when writing output in the following utilities in GNU binutils version 2.35 and earlier:ar, objcopy, strip, ranlib. When these utilities are run as a privileged user (pre… - CVE-2021-20197 2024-11-21 14:46 2021-03-27 Show GitHub Exploit DB Packet Storm
195214 3.3 LOW
Local
gnu tar A flaw was found in the src/list.c of tar 1.33 and earlier. This flaw allows an attacker who can submit a crafted input file to tar to cause uncontrolled consumption of memory. The highest threat fro… CWE-125
CWE-401
Out-of-bounds Read
 Missing Release of Memory after Effective Lifetime
CVE-2021-20193 2024-11-21 14:46 2021-03-27 Show GitHub Exploit DB Packet Storm
195215 3.1 LOW
Network
necplatforms univerge_aspire_wx_firmware
univerge_aspire_ux_firmware
univerge_sv9100_firmware
sl2100_firmware
UNIVERGE Aspire series PBX (UNIVERGE Aspire WX from 1.00 to 3.51, UNIVERGE Aspire UX from 1.00 to 9.70, UNIVERGE SV9100 from 1.00 to 10.70, and SL2100 from 1.00 to 3.00) allows a remote authenticated… NVD-CWE-noinfo
CVE-2021-20677 2024-11-21 14:46 2021-03-26 Show GitHub Exploit DB Packet Storm
195216 7.5 HIGH
Network
privoxy privoxy A flaw was found in Privoxy in versions before 3.0.31. An assertion failure triggered by a crafted CGI request may lead to denial of service. The highest threat from this vulnerability is to system a… - CVE-2021-20217 2024-11-21 14:46 2021-03-26 Show GitHub Exploit DB Packet Storm
195217 7.5 HIGH
Network
privoxy privoxy A flaw was found in Privoxy in versions before 3.0.31. A memory leak that occurs when decompression fails unexpectedly may lead to a denial of service. The highest threat from this vulnerability is t… CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2021-20216 2024-11-21 14:46 2021-03-26 Show GitHub Exploit DB Packet Storm
195218 7.5 HIGH
Network
privoxy privoxy A flaw was found in Privoxy in versions before 3.0.29. Memory leaks in the show-status CGI handler when memory allocations fail can lead to a system crash. - CVE-2021-20215 2024-11-21 14:46 2021-03-26 Show GitHub Exploit DB Packet Storm
195219 7.5 HIGH
Network
privoxy privoxy A flaw was found in Privoxy in versions before 3.0.29. Memory leaks in the client-tags CGI handler when client tags are configured and memory allocations fail can lead to a system crash. - CVE-2021-20214 2024-11-21 14:46 2021-03-26 Show GitHub Exploit DB Packet Storm
195220 7.5 HIGH
Network
privoxy privoxy A flaw was found in Privoxy in versions before 3.0.29. Dereference of a NULL-pointer that could result in a crash if accept-intercepted-requests was enabled, Privoxy failed to get the request destina… - CVE-2021-20213 2024-11-21 14:46 2021-03-26 Show GitHub Exploit DB Packet Storm