Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 3, 2026, 6:08 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228721 7.5 危険 Vastal I-Tech & Co. - Vastal I-Tech Agent Zone の view_listing.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-3497 2012-12-20 19:28 2009-09-30 Show GitHub Exploit DB Packet Storm
228722 4.3 警告 Vastal I-Tech & Co. - Vastal I-Tech DVD Zone の view_mag.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3496 2012-12-20 19:28 2009-09-30 Show GitHub Exploit DB Packet Storm
228723 7.5 危険 Vastal I-Tech & Co. - Vastal I-Tech DVD Zone の view_mag.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-3495 2012-12-20 19:28 2009-09-30 Show GitHub Exploit DB Packet Storm
228724 6.8 警告 todor lazarov - T-HTB Manager の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-3494 2012-12-20 19:28 2009-09-30 Show GitHub Exploit DB Packet Storm
228725 4.3 警告 zenas - Zenas PaoBacheca Guestbook におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3493 2012-12-20 19:28 2009-09-30 Show GitHub Exploit DB Packet Storm
228726 2.1 注意 ron jerome - Drupal 用の Bibliography モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3488 2012-12-20 19:28 2009-09-30 Show GitHub Exploit DB Packet Storm
228727 6.8 警告 TrustPort - TrustPort Antivirus などにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-3482 2012-12-20 19:28 2009-09-30 Show GitHub Exploit DB Packet Storm
228728 5 警告 radactive - RADactive I-Load の WebCoreModule.ashx における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2009-3452 2012-12-20 19:28 2009-09-29 Show GitHub Exploit DB Packet Storm
228729 5 警告 radactive - RADactive I-Load の WebCoreModule.ashx におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-3451 2012-12-20 19:28 2009-09-29 Show GitHub Exploit DB Packet Storm
228730 4.7 警告 reductivelabs - puppet の puppetmasterd における制限ファイルにアクセスされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-3564 2012-12-20 19:28 2008-12-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 4, 2026, 4:17 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
194641 7.8 HIGH
Local
hpe cloudline_cl5800_gen10_server_firmware
cloudline_cl3100_gen10_server_firmware
cloudline_cl4100_gen10_server_firmware
cloudline_cl5200_gen9_server_firmware
cloudline_cl5800_gen9_server_fir…
The Baseboard Management Controller(BMC) in HPE Cloudline CL5800 Gen9 Server; HPE Cloudline CL5200 Gen9 Server; HPE Cloudline CL4100 Gen10 Server; HPE Cloudline CL3100 Gen10 Server; HPE Cloudline CL5… CWE-120
Classic Buffer Overflow
CVE-2021-25123 2024-11-21 14:54 2021-01-29 Show GitHub Exploit DB Packet Storm
194642 7.8 HIGH
Local
trendmicro housecall_for_home_networks A DLL hijacking vulnerability Trend Micro HouseCall for Home Networks version 5.3.1063 and below could allow an attacker to use a malicious DLL to escalate privileges and perform arbitrary code execu… CWE-427
 Uncontrolled Search Path Element
CVE-2021-25247 2024-11-21 14:54 2021-01-28 Show GitHub Exploit DB Packet Storm
194643 5.5 MEDIUM
Local
trendmicro serverprotect A memory exhaustion vulnerability in Trend Micro ServerProtect for Linux 3.0 could allow a local attacker to craft specific files that can cause a denial-of-service on the affected product. The speci… CWE-400
 Uncontrolled Resource Consumption
CVE-2021-25226 2024-11-21 14:54 2021-01-28 Show GitHub Exploit DB Packet Storm
194644 5.5 MEDIUM
Local
trendmicro serverprotect A memory exhaustion vulnerability in Trend Micro ServerProtect for Linux 3.0 could allow a local attacker to craft specific files that can cause a denial-of-service on the affected product. The speci… CWE-400
 Uncontrolled Resource Consumption
CVE-2021-25225 2024-11-21 14:54 2021-01-28 Show GitHub Exploit DB Packet Storm
194645 5.5 MEDIUM
Local
trendmicro serverprotect A memory exhaustion vulnerability in Trend Micro ServerProtect for Linux 3.0 could allow a local attacker to craft specific files that can cause a denial-of-service on the affected product. The speci… CWE-400
 Uncontrolled Resource Consumption
CVE-2021-25224 2024-11-21 14:54 2021-01-28 Show GitHub Exploit DB Packet Storm
194646 8.8 HIGH
Network
wisc htcondor HTCondor before 8.9.11 allows a user to submit a job as another user on the system, because of a flaw in the IDTOKENS authentication method. CWE-306
Missing Authentication for Critical Function
CVE-2021-25312 2024-11-21 14:54 2021-01-28 Show GitHub Exploit DB Packet Storm
194647 9.9 CRITICAL
Network
wisc htcondor condor_credd in HTCondor before 8.9.11 allows Directory Traversal outside the SEC_CREDENTIAL_DIRECTORY_OAUTH directory, as demonstrated by creating a file under /etc that will later be executed by ro… CWE-22
Path Traversal
CVE-2021-25311 2024-11-21 14:54 2021-01-28 Show GitHub Exploit DB Packet Storm
194648 6.1 MEDIUM
Network
misp misp MISP 2.4.136 has XSS via galaxy cluster element values to app/View/GalaxyElements/ajax/index.ctp. Reference types could contain javascript: URLs. CWE-79
Cross-site Scripting
CVE-2021-25325 2024-11-21 14:54 2021-01-20 Show GitHub Exploit DB Packet Storm
194649 6.1 MEDIUM
Network
misp misp MISP 2.4.136 has Stored XSS in the galaxy cluster view via a cluster name to app/View/GalaxyClusters/view.ctp. CWE-79
Cross-site Scripting
CVE-2021-25324 2024-11-21 14:54 2021-01-20 Show GitHub Exploit DB Packet Storm
194650 9.1 CRITICAL
Network
misp misp The default setting of MISP 2.4.136 did not enable the requirements (aka require_password_confirmation) to provide the previous password when changing a password. CWE-640
 Weak Password Recovery Mechanism for Forgotten Password
CVE-2021-25323 2024-11-21 14:54 2021-01-20 Show GitHub Exploit DB Packet Storm