Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 21, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229561 6.5 警告 xigla - Xigla Absolute Form Processor XE の search.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2762 2012-12-20 18:52 2008-06-18 Show GitHub Exploit DB Packet Storm
229562 3.5 注意 xigla - Xigla Absolute Banner Manager XE におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2761 2012-12-20 18:52 2008-06-18 Show GitHub Exploit DB Packet Storm
229563 6.5 警告 xigla - Xigla Absolute Banner Manager XE の searchbanners.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2760 2012-12-20 18:52 2008-06-18 Show GitHub Exploit DB Packet Storm
229564 4.3 警告 xigla - Xigla Absolute Form Processor XE におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2759 2012-12-20 18:52 2008-06-18 Show GitHub Exploit DB Packet Storm
229565 3.5 注意 xigla - Xigla Absolute News Manager XE におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2758 2012-12-20 18:52 2008-06-18 Show GitHub Exploit DB Packet Storm
229566 6.5 警告 xigla - Xigla Absolute News Manager XE の search.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2757 2012-12-20 18:52 2008-06-18 Show GitHub Exploit DB Packet Storm
229567 4.3 警告 xigla - Xigla Absolute Control Panel XE の admin/users.asp におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2756 2012-12-20 18:52 2008-06-18 Show GitHub Exploit DB Packet Storm
229568 7.1 危険 サン・マイクロシステムズ - Sun Java System Calendar Server などの cshttpd におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2008-2749 2012-12-20 18:52 2008-06-13 Show GitHub Exploit DB Packet Storm
229569 5 警告 skulltag team - Skulltag におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2008-2748 2012-12-20 18:52 2008-06-18 Show GitHub Exploit DB Packet Storm
229570 4.3 警告 vBulletin Solutions, Inc. - vBulletin におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2744 2012-12-20 18:52 2008-06-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
222271 8.8 HIGH
Network
cisco hx220c_m5_firmware
hx240c_m5_firmware
hx240c_large_form_factor_firmware
hx220c_all_nvme_m5_firmware
hx220c_af_m5_firmware
hx240c_af_m5_firmware
hx220c_edge_m5_firmware
ucs_b200_m…
A vulnerability in the web-based management interface of Cisco HyperFlex HX-Series could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack and perform ar… CWE-352
 Origin Validation Error
CVE-2019-1857 2024-11-21 13:37 2019-05-4 Show GitHub Exploit DB Packet Storm
222272 7.4 HIGH
Adjacent
cisco firepower_management_center
firepower_threat_defense
Multiple vulnerabilities in the Server Message Block (SMB) Protocol preprocessor detection engine for Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, adjacent or remote … CWE-400
 Uncontrolled Resource Consumption
CVE-2019-1696 2024-11-21 13:37 2019-05-4 Show GitHub Exploit DB Packet Storm
222273 6.1 MEDIUM
Network
cisco prime_collaboration_assurance A vulnerability in the web-based management interface of Cisco Prime Collaboration Assurance (PCA) could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack again… CWE-79
Cross-site Scripting
CVE-2019-1856 2024-11-21 13:37 2019-05-4 Show GitHub Exploit DB Packet Storm
222274 4.3 MEDIUM
Network
cisco telepresence_video_communication_server A vulnerability in the management web interface of Cisco Expressway Series could allow an authenticated, remote attacker to perform a directory traversal attack against an affected device. The vulner… CWE-22
Path Traversal
CVE-2019-1854 2024-11-21 13:37 2019-05-4 Show GitHub Exploit DB Packet Storm
222275 6.1 MEDIUM
Network
cisco network_registrar A vulnerability in the web-based management interface of Cisco Prime Network Registrar could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of… CWE-79
Cross-site Scripting
CVE-2019-1852 2024-11-21 13:37 2019-05-4 Show GitHub Exploit DB Packet Storm
222276 5.3 MEDIUM
Network
cisco email_security_appliance A vulnerability in certain attachment detection mechanisms of the Cisco Email Security Appliance (ESA) could allow an unauthenticated, remote attacker to bypass the filtering functionality of an affe… CWE-20
 Improper Input Validation 
CVE-2019-1844 2024-11-21 13:37 2019-05-4 Show GitHub Exploit DB Packet Storm
222277 5.4 MEDIUM
Network
cisco application_policy_infrastructure_controller A vulnerability in the web-based management interface of Cisco Application Policy Infrastructure Controller (APIC) could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS… CWE-79
Cross-site Scripting
CVE-2019-1838 2024-11-21 13:37 2019-05-4 Show GitHub Exploit DB Packet Storm
222278 7.1 HIGH
Local
cisco nx-os A vulnerability in the system shell for Cisco Nexus 9000 Series Fabric Switches in Application Centric Infrastructure (ACI) mode could allow an authenticated, local attacker to use symbolic links to … CWE-59
Link Following
CVE-2019-1836 2024-11-21 13:37 2019-05-4 Show GitHub Exploit DB Packet Storm
222279 7.5 HIGH
Network
cisco web_security_appliance A vulnerability in the web proxy functionality of Cisco AsyncOS Software for Cisco Web Security Appliance could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition … CWE-20
 Improper Input Validation 
CVE-2019-1817 2024-11-21 13:37 2019-05-4 Show GitHub Exploit DB Packet Storm
222280 7.8 HIGH
Local
cisco web_security_appliance A vulnerability in the log subscription subsystem of the Cisco Web Security Appliance (WSA) could allow an authenticated, local attacker to perform command injection and elevate privileges to root. T… CWE-20
 Improper Input Validation 
CVE-2019-1816 2024-11-21 13:37 2019-05-4 Show GitHub Exploit DB Packet Storm