Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 30, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230071 7.2 危険 サン・マイクロシステムズ - IOCTL 用の METHOD_NEITHER 通信メソッドで使用されている Sun xVM VirtualBox における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-3431 2012-12-20 18:52 2008-08-5 Show GitHub Exploit DB Packet Storm
230072 6.5 警告 PhpFreeChat - phpFreeChat におけるセッションをハイジャックされる脆弱性 CWE-287
不適切な認証
CVE-2008-3428 2012-12-20 18:52 2008-07-31 Show GitHub Exploit DB Packet Storm
230073 6.5 警告 サン・マイクロシステムズ - Sun N1 SPS の Sun Java System Web Server プラグインにおける Web サーバへの管理アクセス権限を取得される脆弱性 CWE-287
不適切な認証
CVE-2008-3425 2012-12-20 18:52 2008-07-30 Show GitHub Exploit DB Packet Storm
230074 7.5 危険 willo - Mobius for Mimsy XG における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3420 2012-12-20 18:52 2008-07-31 Show GitHub Exploit DB Packet Storm
230075 7.5 危険 willo - TriO の browse.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3418 2012-12-20 18:52 2008-07-31 Show GitHub Exploit DB Packet Storm
230076 7.5 危険 siteadmin - SiteAdmin の line2.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3414 2012-12-20 18:52 2008-07-31 Show GitHub Exploit DB Packet Storm
230077 5 警告 phplinkat - phpLinkat における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2008-3407 2012-12-20 18:52 2008-07-31 Show GitHub Exploit DB Packet Storm
230078 7.5 危険 phplinkat - TribunaLibre の ftag.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3406 2012-12-20 18:52 2008-07-31 Show GitHub Exploit DB Packet Storm
230079 4.3 警告 xrms - XRMS CRM における設定情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2008-3400 2012-12-20 18:52 2008-07-31 Show GitHub Exploit DB Packet Storm
230080 6.8 警告 xrms - XRMS CRM の activities/workflow-activities.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-3399 2012-12-20 18:52 2008-07-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 31, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
196091 4.9 MEDIUM
Network
fortinet fortiproxy A stack-based buffer overflow vulnerability in FortiProxy physical appliance CLI 2.0.0 to 2.0.1, 1.2.0 to 1.2.9, 1.1.0 to 1.1.6, 1.0.0 to 1.0.7 may allow an authenticated, remote attacker to perform … CWE-787
 Out-of-bounds Write
CVE-2021-22130 2024-11-21 14:49 2021-06-3 Show GitHub Exploit DB Packet Storm
196092 8.8 HIGH
Network
fortinet fortiweb An OS command injection vulnerability in FortiWeb's management interface 6.3.7 and below, 6.2.3 and below, 6.1.x, 6.0.x, 5.9.x may allow a remote authenticated attacker to execute arbitrary commands … CWE-78
OS Command 
CVE-2021-22123 2024-11-21 14:49 2021-06-2 Show GitHub Exploit DB Packet Storm
196093 7.8 HIGH
Local
vmware
oracle
netapp
spring_framework
retail_order_broker
retail_predictive_application_server
enterprise_data_quality
retail_assortment_planning
retail_financial_integration
communications_network_inte…
In Spring Framework, versions 5.2.x prior to 5.2.15 and versions 5.3.x prior to 5.3.7, a WebFlux application is vulnerable to a privilege escalation: by (re)creating the temporary storage directory, … CWE-668
 Exposure of Resource to Wrong Sphere
CVE-2021-22118 2024-11-21 14:49 2021-05-28 Show GitHub Exploit DB Packet Storm
196094 5.5 MEDIUM
Local
huawei mate_30_firmware
mate_30_5g_firmware
There is a denial of service vulnerability in the versions 10.1.0.126(C00E125R5P3) of HUAWEI Mate 30 and 10.1.0.152(C00E136R7P2) of HUAWEI Mate 30 (5G) . A module does not verify certain parameters s… NVD-CWE-noinfo
CVE-2021-22364 2024-11-21 14:49 2021-05-27 Show GitHub Exploit DB Packet Storm
196095 5.3 MEDIUM
Network
huawei cloudengine_12800_firmware
cloudengine_5800_firmware
cloudengine_6800_firmware
cloudengine_7800_firmware
There is an out of bounds write vulnerability in some Huawei products. An attacker can exploit this vulnerability by sending crafted data in the packet to the target device. Due to insufficient valid… CWE-787
 Out-of-bounds Write
CVE-2021-22362 2024-11-21 14:49 2021-05-27 Show GitHub Exploit DB Packet Storm
196096 4.9 MEDIUM
Network
huawei usg9500_firmware There is a resource management error vulnerability in the verisions V500R001C60SPC500, V500R005C00SPC100, V500R005C00SPC200 of USG9500. An authentication attacker needs to perform specific operations… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2021-22360 2024-11-21 14:49 2021-05-27 Show GitHub Exploit DB Packet Storm
196097 7.5 HIGH
Network
huawei s5700_firmware
s6700_firmware
There is a denial of service vulnerability in the verisions V200R005C00SPC500 of S5700 and V200R005C00SPC500 of S6700. An attacker could exploit this vulnerability by sending specific message to a ta… CWE-20
 Improper Input Validation 
CVE-2021-22359 2024-11-21 14:49 2021-05-27 Show GitHub Exploit DB Packet Storm
196098 4.3 MEDIUM
Network
huawei fusioncompute There is an insufficient input validation vulnerability in FusionCompute 8.0.0. Due to the input validation is insufficient, an attacker can exploit this vulnerability to upload any files to the devi… CWE-20
 Improper Input Validation 
CVE-2021-22358 2024-11-21 14:49 2021-05-27 Show GitHub Exploit DB Packet Storm
196099 9.8 CRITICAL
Network
vmware vcenter_server
cloud_foundation
The vSphere Client (HTML5) contains a vulnerability in a vSphere authentication mechanism for the Virtual SAN Health Check, Site Recovery, vSphere Lifecycle Manager, and VMware Cloud Director Availab… CWE-306
Missing Authentication for Critical Function
CVE-2021-21986 2024-11-21 14:49 2021-05-27 Show GitHub Exploit DB Packet Storm
196100 9.8 CRITICAL
Network
vmware vcenter_server
cloud_foundation
The vSphere Client (HTML5) contains a remote code execution vulnerability due to lack of input validation in the Virtual SAN Health Check plug-in which is enabled by default in vCenter Server. A mali… CWE-20
 Improper Input Validation 
CVE-2021-21985 2024-11-21 14:49 2021-05-27 Show GitHub Exploit DB Packet Storm