|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 14, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 230851 | 7.8 | 危険 | sony ericsson | - | Sony Ericsson W910i などの電話機におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2009-0396 | 2012-12-20 19:10 | 2009-02-2 | Show | GitHub Exploit DB Packet Storm |
| 230852 | 7.5 | 危険 | ple cms | - | PLEs CMS の login.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-0394 | 2012-12-20 19:10 | 2009-02-2 | Show | GitHub Exploit DB Packet Storm |
| 230853 | 6.8 | 警告 | sitexs cms | - | SiteXS CMS の post.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2009-0371 | 2012-12-20 19:10 | 2009-01-30 | Show | GitHub Exploit DB Packet Storm |
| 230854 | 9.3 | 危険 | wesnoth | - | Wesnoth の Python AI モジュールにおけるサンドボックスをエスケープされる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-0367 | 2012-12-20 19:10 | 2009-03-2 | Show | GitHub Exploit DB Packet Storm |
| 230855 | 4.3 | 警告 | wesnoth | - | Wesnoth の src/server/simple_wml.cpp におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2009-0366 | 2012-12-20 19:10 | 2009-03-12 | Show | GitHub Exploit DB Packet Storm |
| 230856 | 9 | 危険 | WING FTP software | - | WinFTP の WFTPSRV.exe におけるスタックベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2009-0351 | 2012-12-20 19:10 | 2009-01-29 | Show | GitHub Exploit DB Packet Storm |
| 230857 | 7.2 | 危険 | Niels Provos | - | x86_64 Linux 上で稼動している Niels Provos Systrace におけるアクセス制限を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-0342 | 2012-12-20 19:10 | 2009-01-29 | Show | GitHub Exploit DB Packet Storm |
| 230858 | 6.8 | 警告 | Quirm | - | Simple PHP Newsletter におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2009-0340 | 2012-12-20 19:10 | 2009-01-29 | Show | GitHub Exploit DB Packet Storm |
| 230859 | 7.8 | 危険 | Quirm | - | ESPG の gallery/comment.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2009-0331 | 2012-12-20 19:10 | 2009-01-29 | Show | GitHub Exploit DB Packet Storm |
| 230860 | 6.8 | 警告 | wss-pro | - | SCMS の index.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2009-0330 | 2012-12-20 19:10 | 2009-01-29 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 14, 2026, 4:12 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 196221 | 7.5 |
HIGH
Network |
hitachienergy | esoms | Information Exposure vulnerability in Hitachi ABB Power Grids eSOMS allows unauthorized user to gain access to report data if the URL used to access the report is discovered. This issue affects: Hita… |
CWE-863
Incorrect Authorization |
CVE-2021-26845 | 2024-11-21 14:56 | 2021-06-15 | Show | GitHub Exploit DB Packet Storm |
| 196222 | 5.4 |
MEDIUM
Network |
openplcproject | scadabr | OpenPLC ScadaBR through 0.9.1 on Linux and through 1.12.4 on Windows allows stored XSS via system_settings.shtm. |
CWE-79
Cross-site Scripting |
CVE-2021-26829 | 2024-11-21 14:56 | 2021-06-11 | Show | GitHub Exploit DB Packet Storm |
| 196223 | 8.8 |
HIGH
Network |
openplcproject | scadabr | OpenPLC ScadaBR through 0.9.1 on Linux and through 1.12.4 on Windows allows remote authenticated users to upload and execute arbitrary JSP files via view_edit.shtm. |
CWE-434
Unrestricted Upload of File with Dangerous Type |
CVE-2021-26828 | 2024-11-21 14:56 | 2021-06-11 | Show | GitHub Exploit DB Packet Storm |
| 196224 | 9.8 |
CRITICAL
Network |
apache debian fedoraproject oracle netapp |
http_server debian_linux fedora instantis_enterprisetrack enterprise_manager_ops_center zfs_storage_appliance_kit secure_backup cloud_backup |
In Apache HTTP Server versions 2.4.0 to 2.4.46 a specially crafted SessionHeader sent by an origin server could cause a heap overflow |
CWE-787
Out-of-bounds Write |
CVE-2021-26691 | 2024-11-21 14:56 | 2021-06-10 | Show | GitHub Exploit DB Packet Storm |
| 196225 | 7.5 |
HIGH
Network |
apache debian fedoraproject oracle |
http_server debian_linux fedora instantis_enterprisetrack enterprise_manager_ops_center zfs_storage_appliance_kit |
Apache HTTP Server versions 2.4.0 to 2.4.46 A specially crafted Cookie header handled by mod_session can cause a NULL pointer dereference and crash, leading to a possible Denial Of Service |
CWE-476
NULL Pointer Dereference |
CVE-2021-26690 | 2024-11-21 14:56 | 2021-06-10 | Show | GitHub Exploit DB Packet Storm |
| 196226 | 5.5 |
MEDIUM
Local |
xen arm broadcom intel fedoraproject |
xen cortex-a72 bcm2711 core_i7-7700k xeon_silver_4214 core_i9-9900k core_i7-10700k fedora |
Potential floating point value injection in all supported CPU products, in conjunction with software vulnerabilities relating to speculative execution with incorrect floating point results, may cause… |
CWE-203
Information Exposure Through Discrepancy |
CVE-2021-26314 | 2024-11-21 14:56 | 2021-06-9 | Show | GitHub Exploit DB Packet Storm |
| 196227 | 5.5 |
MEDIUM
Local |
xen arm broadcom intel debian |
xen cortex-a72 bcm2711 core_i7-7700k xeon_silver_4214 core_i9-9900k core_i7-10700k debian_linux |
Potential speculative code store bypass in all supported CPU products, in conjunction with software vulnerabilities relating to speculative execution of overwritten instructions, may cause an incorre… |
CWE-203
Information Exposure Through Discrepancy |
CVE-2021-26313 | 2024-11-21 14:56 | 2021-06-9 | Show | GitHub Exploit DB Packet Storm |
| 196228 | 7.1 |
HIGH
Network |
microsoft |
sharepoint_foundation sharepoint_enterprise_server sharepoint_server |
Microsoft SharePoint Server Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2021-26420 | 2024-11-21 14:56 | 2021-06-9 | Show | GitHub Exploit DB Packet Storm |
| 196229 | 4.8 |
MEDIUM
Network |
microsoft |
windows_10 windows_server_2008 windows_7 windows_server_2012 windows_8.1 windows_server_2016 windows_rt_8.1 windows_server_2019 windows_server_2022 windows_server |
Windows DCOM Server Security Feature Bypass |
NVD-CWE-noinfo
|
CVE-2021-26414 | 2024-11-21 14:56 | 2021-06-9 | Show | GitHub Exploit DB Packet Storm |
| 196230 | 8.8 |
HIGH
Network |
vembu |
bdr_suite offsite_dr |
Various Vembu products allow an attacker to execute a (non-blind) http-only Cross Site Request Forgery (Other products or versions of products in this family may be affected too.) |
CWE-352
Origin Validation Error |
CVE-2021-26474 | 2024-11-21 14:56 | 2021-06-9 | Show | GitHub Exploit DB Packet Storm |