Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
232451 6.5 警告 PhpFreeChat - phpFreeChat におけるセッションをハイジャックされる脆弱性 CWE-287
不適切な認証
CVE-2008-3428 2012-12-20 18:52 2008-07-31 Show GitHub Exploit DB Packet Storm
232452 6.5 警告 サン・マイクロシステムズ - Sun N1 SPS の Sun Java System Web Server プラグインにおける Web サーバへの管理アクセス権限を取得される脆弱性 CWE-287
不適切な認証
CVE-2008-3425 2012-12-20 18:52 2008-07-30 Show GitHub Exploit DB Packet Storm
232453 7.5 危険 willo - Mobius for Mimsy XG における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3420 2012-12-20 18:52 2008-07-31 Show GitHub Exploit DB Packet Storm
232454 7.5 危険 willo - TriO の browse.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3418 2012-12-20 18:52 2008-07-31 Show GitHub Exploit DB Packet Storm
232455 7.5 危険 siteadmin - SiteAdmin の line2.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3414 2012-12-20 18:52 2008-07-31 Show GitHub Exploit DB Packet Storm
232456 5 警告 phplinkat - phpLinkat における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2008-3407 2012-12-20 18:52 2008-07-31 Show GitHub Exploit DB Packet Storm
232457 7.5 危険 phplinkat - TribunaLibre の ftag.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3406 2012-12-20 18:52 2008-07-31 Show GitHub Exploit DB Packet Storm
232458 4.3 警告 xrms - XRMS CRM における設定情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2008-3400 2012-12-20 18:52 2008-07-31 Show GitHub Exploit DB Packet Storm
232459 6.8 警告 xrms - XRMS CRM の activities/workflow-activities.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-3399 2012-12-20 18:52 2008-07-31 Show GitHub Exploit DB Packet Storm
232460 2.6 注意 xrms - XRMS CRM におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-3398 2012-12-20 18:52 2008-07-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 20, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
199741 8.1 HIGH
Network
sealevel seaconnect_370w_firmware An out-of-bounds write vulnerability exists in the HandleSeaCloudMessage functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. The HandleIncomingSeaCloudMessage function uses at [4] the js… CWE-787
 Out-of-bounds Write
CVE-2021-21969 2024-11-21 14:49 2022-02-5 Show GitHub Exploit DB Packet Storm
199742 8.3 HIGH
Network
sealevel seaconnect_370w_firmware A file write vulnerability exists in the OTA update task functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. A specially-crafted MQTT payload can lead to arbitrary file overwrite. An att… NVD-CWE-Other
CVE-2021-21968 2024-11-21 14:49 2022-02-5 Show GitHub Exploit DB Packet Storm
199743 9.3 CRITICAL
Network
sealevel seaconnect_370w_firmware A denial of service vulnerability exists in the SeaMax remote configuration functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. Specially-crafted network packets can lead to denial of se… CWE-287
Improper Authentication
CVE-2021-21965 2024-11-21 14:49 2022-02-5 Show GitHub Exploit DB Packet Storm
199744 7.4 HIGH
Network
sealevel seaconnect_370w_firmware A denial of service vulnerability exists in the Modbus configuration functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. Specially-crafted network packets can lead to denial of service. … CWE-306
Missing Authentication for Critical Function
CVE-2021-21964 2024-11-21 14:49 2022-02-5 Show GitHub Exploit DB Packet Storm
199745 5.9 MEDIUM
Network
sealevel seaconnect_370w_firmware An information disclosure vulnerability exists in the Web Server functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. A specially-crafted man-in-the-middle attack can lead to a disclosure… CWE-311
Missing Encryption of Sensitive Data
CVE-2021-21963 2024-11-21 14:49 2022-02-5 Show GitHub Exploit DB Packet Storm
199746 8.1 HIGH
Network
sealevel seaconnect_370w_firmware A heap-based buffer overflow vulnerability exists in the OTA Update u-download functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. A series of specially-crafted MQTT payloads can lead to… CWE-787
 Out-of-bounds Write
CVE-2021-21962 2024-11-21 14:49 2022-02-5 Show GitHub Exploit DB Packet Storm
199747 10.0 CRITICAL
Network
sealevel seaconnect_370w_firmware A stack-based buffer overflow vulnerability exists in the NBNS functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. A specially-crafted network packet can lead to remote code execution. A… CWE-787
 Out-of-bounds Write
CVE-2021-21961 2024-11-21 14:49 2022-02-5 Show GitHub Exploit DB Packet Storm
199748 10.0 CRITICAL
Network
sealevel seaconnect_370w_firmware A stack-based buffer overflow vulnerability exists in both the LLMNR functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. A specially-crafted network packet can lead to remote code execut… CWE-1284
 Improper Validation of Specified Quantity in Input
CVE-2021-21960 2024-11-21 14:49 2022-02-5 Show GitHub Exploit DB Packet Storm
199749 8.1 HIGH
Network
sealevel seaconnect_370w_firmware A misconfiguration exists in the MQTTS functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. This misconfiguration significantly simplifies a man-in-the-middle attack, which directly leads… CWE-295
Improper Certificate Validation 
CVE-2021-21959 2024-11-21 14:49 2022-02-5 Show GitHub Exploit DB Packet Storm
199750 4.3 MEDIUM
Network
vmware
oracle
spring_framework
communications_cloud_native_core_console
communications_cloud_native_core_service_communication_proxy
In Spring Framework versions 5.3.0 - 5.3.13, 5.2.0 - 5.2.18, and older unsupported versions, it is possible for a user to provide malicious input to cause the insertion of additional log entries. Thi… NVD-CWE-noinfo
CVE-2021-22060 2024-11-21 14:49 2022-01-10 Show GitHub Exploit DB Packet Storm