Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229781 7.5 危険 pozscripts - PozScripts Classified Auctions Script の gotourl.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4755 2012-12-20 18:52 2008-10-27 Show GitHub Exploit DB Packet Storm
229782 5.8 警告 scripts-for-sites - SFS Ez Forum の forum.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4754 2012-12-20 18:52 2008-10-27 Show GitHub Exploit DB Packet Storm
229783 7.5 危険 tech logic - TlNews における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2008-4752 2012-12-20 18:52 2008-10-27 Show GitHub Exploit DB Packet Storm
229784 7.5 危険 uniwin - Uniwin eCart Professional における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4746 2012-12-20 18:52 2008-10-27 Show GitHub Exploit DB Packet Storm
229785 4.3 警告 uniwin - Uniwin eCart Professional の emailFriend.asp におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4745 2012-12-20 18:52 2008-10-27 Show GitHub Exploit DB Packet Storm
229786 7.5 危険 quidascript - QuidaScript FAQ Management Script の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4743 2012-12-20 18:52 2008-10-27 Show GitHub Exploit DB Packet Storm
229787 4.3 警告 timetrex - TimeTrex の interface/Login.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4742 2012-12-20 18:52 2008-10-27 Show GitHub Exploit DB Packet Storm
229788 5.1 警告 tinycms - TinyCMS 内の ZZ_Templater モジュール内におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-4740 2012-12-20 18:52 2008-10-27 Show GitHub Exploit DB Packet Storm
229789 6.8 警告 plugspace - PlugSpace の index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-4739 2012-12-20 18:52 2008-10-24 Show GitHub Exploit DB Packet Storm
229790 7.5 危険 tufat - MyCard の gallery.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4738 2012-12-20 18:52 2008-10-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
195791 7.8 HIGH
Local
vmware esxi
cloud_foundation
VMware ESXi contains an unauthorized access vulnerability due to VMX having access to settingsd authorization tickets. A malicious actor with privileges within the VMX process only, may be able to ac… CWE-863
 Incorrect Authorization
CVE-2021-22042 2024-11-21 14:49 2022-02-17 Show GitHub Exploit DB Packet Storm
195792 6.7 MEDIUM
Local
vmware fusion
esxi
cloud_foundation
workstation
VMware ESXi, Workstation, and Fusion contain a double-fetch vulnerability in the UHCI USB controller. A malicious actor with local administrative privileges on a virtual machine may exploit this issu… NVD-CWE-noinfo
CVE-2021-22041 2024-11-21 14:49 2022-02-17 Show GitHub Exploit DB Packet Storm
195793 6.7 MEDIUM
Local
vmware esxi
fusion
workstation_player
cloud_foundation
workstation_pro
VMware ESXi, Workstation, and Fusion contain a use-after-free vulnerability in the XHCI USB controller. A malicious actor with local administrative privileges on a virtual machine may exploit this is… CWE-416
 Use After Free
CVE-2021-22040 2024-11-21 14:49 2022-02-17 Show GitHub Exploit DB Packet Storm
195794 5.3 MEDIUM
Network
ti simplelink_cc32xx_software_development_kit
cc3100_firmware
cc3200_firmware
An information disclosure vulnerability exists in the HTTP Server /ping.html functionality of Texas Instruments CC3200 SimpleLink Solution NWP 2.9.0.0. A specially-crafted HTTP request can lead to an… CWE-908
 Use of Uninitialized Resource
CVE-2021-21966 2024-11-21 14:49 2022-02-17 Show GitHub Exploit DB Packet Storm
195795 7.8 HIGH
Local
hancom hancom_office_2020 A heap-based buffer overflow vulnerability exists in the Hword HwordApp.dll functionality of Hancom Office 2020 11.0.0.2353. A specially-crafted malformed file can lead to memory corruption and poten… CWE-787
 Out-of-bounds Write
CVE-2021-21958 2024-11-21 14:49 2022-02-17 Show GitHub Exploit DB Packet Storm
195796 7.5 HIGH
Network
abb pni800_firmware
spiet800_firmware
Improper Input Validation vulnerability in the ABB SPIET800 and PNI800 module allows an attacker to cause the denial of service or make the module unresponsive. CWE-20
 Improper Input Validation 
CVE-2021-22288 2024-11-21 14:49 2022-02-5 Show GitHub Exploit DB Packet Storm
195797 7.5 HIGH
Network
abb pni800_firmware
spiet800_firmware
Improper Input Validation vulnerability in the ABB SPIET800 and PNI800 module allows an attacker to cause the denial of service or make the module unresponsive. CWE-20
 Improper Input Validation 
CVE-2021-22286 2024-11-21 14:49 2022-02-5 Show GitHub Exploit DB Packet Storm
195798 7.5 HIGH
Network
abb pni800_firmware
spiet800_firmware
Improper Handling of Exceptional Conditions, Improper Check for Unusual or Exceptional Conditions vulnerability in the ABB SPIET800 and PNI800 module that allows an attacker to cause the denial of se… CWE-754
CWE-755
 Improper Check for Unusual or Exceptional Conditions
 Improper Handling of Exceptional Conditions
CVE-2021-22285 2024-11-21 14:49 2022-02-5 Show GitHub Exploit DB Packet Storm
195799 8.8 HIGH
Network
abb opc_server_for_ac_800m Incorrect Permission Assignment for Critical Resource vulnerability in OPC Server for AC 800M allows an attacker to execute arbitrary code in the node running the AC800M OPC Server. CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2021-22284 2024-11-21 14:49 2022-02-5 Show GitHub Exploit DB Packet Storm
195800 5.9 MEDIUM
Network
sealevel seaconnect_370w_firmware An out-of-bounds write vulnerability exists in the URL_decode functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. A specially-crafted MQTT payload can lead to an out-of-bounds write. An … CWE-787
 Out-of-bounds Write
CVE-2021-21971 2024-11-21 14:49 2022-02-5 Show GitHub Exploit DB Packet Storm