Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229181 7.5 危険 Powie - Powie pNews の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2673 2012-12-20 18:52 2008-06-12 Show GitHub Exploit DB Packet Storm
229182 7.5 危険 y-blog - yBlog における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2669 2012-12-20 18:52 2008-06-11 Show GitHub Exploit DB Packet Storm
229183 4.3 警告 y-blog - yBlog におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2668 2012-12-20 18:52 2008-06-11 Show GitHub Exploit DB Packet Storm
229184 7.5 危険 smeweb - SMEWeb の catalog.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2652 2012-12-20 18:52 2008-06-10 Show GitHub Exploit DB Packet Storm
229185 4.3 警告 smeweb - SMEWeb における任意の Web スクリプトまたは HTML を挿入される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2644 2012-12-20 18:52 2008-06-10 Show GitHub Exploit DB Packet Storm
229186 7.5 危険 theflashblog - FlashBlog の php/leer_comentarios.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2572 2012-12-20 18:52 2008-06-6 Show GitHub Exploit DB Packet Storm
229187 4.3 警告 samtodo - SamTodo の dsp_main.php などにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2563 2012-12-20 18:52 2008-06-6 Show GitHub Exploit DB Packet Storm
229188 6.5 警告 powerphlogger - PowerPhlogger の edCss.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2562 2012-12-20 18:52 2008-06-6 Show GitHub Exploit DB Packet Storm
229189 4.3 警告 slashcode.com - Slash におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2553 2012-12-20 18:52 2008-06-5 Show GitHub Exploit DB Packet Storm
229190 9.3 危険 Skype Technologies S.A. - Skype における警告ダイアログを回避される脆弱性 CWE-20
不適切な入力確認
CVE-2008-2545 2012-12-20 18:52 2008-06-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 19, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
224631 9.8 CRITICAL
Network
intesync solismed Intesync Solismed 3.3sp1 allows Local File Inclusion (LFI), a different vulnerability than CVE-2019-15931. This leads to unauthenticated code execution. CWE-22
Path Traversal
CVE-2019-16246 2024-11-21 13:30 2019-12-12 Show GitHub Exploit DB Packet Storm
224632 9.8 CRITICAL
Network
weidmueller ie-sw-pl09m-5gc-4gt_firmware
ie-sw-pl09mt-5gc-4gt_firmware
ie-sw-pl18m-2gc-16tx_firmware
ie-sw-pl18mt-2gc-16tx_firmware
ie-sw-pl18m-2gc14tx2sc_firmware
ie-sw-pl18mt-2gc14tx2sc_firmware…
An issue was discovered on Weidmueller IE-SW-VL05M 3.6.6 Build 16102415, IE-SW-VL08MT 3.5.2 Build 16102415, and IE-SW-PL10M 3.3.16 Build 16102416 devices. Authentication Information used in a cookie … CWE-330
 Use of Insufficiently Random Values
CVE-2019-16674 2024-11-21 13:30 2019-12-7 Show GitHub Exploit DB Packet Storm
224633 6.5 MEDIUM
Network
weidmueller ie-sw-pl09m-5gc-4gt_firmware
ie-sw-pl09mt-5gc-4gt_firmware
ie-sw-pl18m-2gc-16tx_firmware
ie-sw-pl18mt-2gc-16tx_firmware
ie-sw-pl18m-2gc14tx2sc_firmware
ie-sw-pl18mt-2gc14tx2sc_firmware…
An issue was discovered on Weidmueller IE-SW-VL05M 3.6.6 Build 16102415, IE-SW-VL08MT 3.5.2 Build 16102415, and IE-SW-PL10M 3.3.16 Build 16102416 devices. Passwords are stored in cleartext and can be… CWE-522
 Insufficiently Protected Credentials
CVE-2019-16673 2024-11-21 13:30 2019-12-7 Show GitHub Exploit DB Packet Storm
224634 9.8 CRITICAL
Network
weidmueller ie-sw-pl09m-5gc-4gt_firmware
ie-sw-pl09mt-5gc-4gt_firmware
ie-sw-pl18m-2gc-16tx_firmware
ie-sw-pl18mt-2gc-16tx_firmware
ie-sw-pl18m-2gc14tx2sc_firmware
ie-sw-pl18mt-2gc14tx2sc_firmware…
An issue was discovered on Weidmueller IE-SW-VL05M 3.6.6 Build 16102415, IE-SW-VL08MT 3.5.2 Build 16102415, and IE-SW-PL10M 3.3.16 Build 16102416 devices. Sensitive Credentials data is transmitted in… CWE-319
CWE-522
Cleartext Transmission of Sensitive Information
 Insufficiently Protected Credentials
CVE-2019-16672 2024-11-21 13:30 2019-12-7 Show GitHub Exploit DB Packet Storm
224635 6.5 MEDIUM
Network
weidmueller ie-sw-pl09m-5gc-4gt_firmware
ie-sw-pl09mt-5gc-4gt_firmware
ie-sw-pl18m-2gc-16tx_firmware
ie-sw-pl18mt-2gc-16tx_firmware
ie-sw-pl18m-2gc14tx2sc_firmware
ie-sw-pl18mt-2gc14tx2sc_firmware…
An issue was discovered on Weidmueller IE-SW-VL05M 3.6.6 Build 16102415, IE-SW-VL08MT 3.5.2 Build 16102415, and IE-SW-PL10M 3.3.16 Build 16102416 devices. Remote authenticated users can crash a devic… CWE-400
 Uncontrolled Resource Consumption
CVE-2019-16671 2024-11-21 13:30 2019-12-7 Show GitHub Exploit DB Packet Storm
224636 9.8 CRITICAL
Network
weidmueller ie-sw-pl09m-5gc-4gt_firmware
ie-sw-pl09mt-5gc-4gt_firmware
ie-sw-pl18m-2gc-16tx_firmware
ie-sw-pl18mt-2gc-16tx_firmware
ie-sw-pl18m-2gc14tx2sc_firmware
ie-sw-pl18mt-2gc14tx2sc_firmware…
An issue was discovered on Weidmueller IE-SW-VL05M 3.6.6 Build 16102415, IE-SW-VL08MT 3.5.2 Build 16102415, and IE-SW-PL10M 3.3.16 Build 16102416 devices. The Authentication mechanism has no brute-fo… CWE-307
mproper Restriction of Excessive Authentication Attempts
CVE-2019-16670 2024-11-21 13:30 2019-12-7 Show GitHub Exploit DB Packet Storm
224637 4.3 MEDIUM
Network
pega pega_platform PEGA Platform 8.3.0 is vulnerable to Information disclosure via a direct prweb/sso/random_token/!STANDARD?pyStream=MyAlerts request to get Audit Log information while using a low-privilege account. N… CWE-425
 Direct Request ('Forced Browsing')
CVE-2019-16388 2024-11-21 13:30 2019-11-27 Show GitHub Exploit DB Packet Storm
224638 4.3 MEDIUM
Network
pega pega_platform PEGA Platform 7.x and 8.x is vulnerable to Information disclosure via a direct prweb/sso/random_token/!STANDARD?pyActivity=GetWebInfo&target=popup&pzHarnessID=random_harness_id request to get databas… CWE-425
 Direct Request ('Forced Browsing')
CVE-2019-16386 2024-11-21 13:30 2019-11-27 Show GitHub Exploit DB Packet Storm
224639 8.1 HIGH
Network
pega pega_platform PEGA Platform 8.3.0 is vulnerable to a direct prweb/sso/random_token/!STANDARD?pyActivity=Data-Admin-DB-Name.DBSchema_ListDatabases request while using a low-privilege account. (This can perform acti… CWE-668
 Exposure of Resource to Wrong Sphere
CVE-2019-16387 2024-11-21 13:30 2019-11-27 Show GitHub Exploit DB Packet Storm
224640 8.1 HIGH
Network
ruby-lang
debian
opensuse
oracle
ruby
debian_linux
leap
graalvm
Ruby through 2.4.7, 2.5.x through 2.5.6, and 2.6.x through 2.6.4 allows code injection if the first argument (aka the "command" argument) to Shell#[] or Shell#test in lib/shell.rb is untrusted data. … CWE-94
Code Injection
CVE-2019-16255 2024-11-21 13:30 2019-11-27 Show GitHub Exploit DB Packet Storm