Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 24, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
247641 7.5 危険 dotcontent - DotContent FluentCMS の view.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6642 2012-06-26 16:10 2009-04-7 Show GitHub Exploit DB Packet Storm
247642 6.5 警告 ASP indir - Shader TV (Beta) における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6641 2012-06-26 16:10 2009-04-7 Show GitHub Exploit DB Packet Storm
247643 7.5 危険 ASP indir - BatmanPorTaL における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6640 2012-06-26 16:10 2009-04-7 Show GitHub Exploit DB Packet Storm
247644 6.8 警告 Pydio - AjaXplorer の admin.php におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2008-6639 2012-06-26 16:10 2009-04-7 Show GitHub Exploit DB Packet Storm
247645 6.8 警告 geody - Geody Labs Dagger - The Cutting Edge における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-6636 2012-06-26 16:10 2009-04-7 Show GitHub Exploit DB Packet Storm
247646 6.8 警告 geody - Geody Labs Dagger - The Cutting Edge における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-6635 2012-06-26 16:10 2009-04-7 Show GitHub Exploit DB Packet Storm
247647 9 危険 アバイア - Avaya SES の Web 管理インターフェースにおける任意のコマンドを実行される脆弱性 CWE-noinfo
情報不足
CVE-2008-6709 2012-06-26 16:10 2008-06-25 Show GitHub Exploit DB Packet Storm
247648 9 危険 アバイア - Avaya SES の Web 管理インターフェースにおける root 権限を取得される脆弱性 CWE-noinfo
情報不足
CVE-2008-6708 2012-06-26 16:10 2008-06-25 Show GitHub Exploit DB Packet Storm
247649 6.4 警告 アバイア - Avaya SES の Web 管理インターフェースにおける重要な情報を取得される脆弱性 CWE-287
不適切な認証
CVE-2008-6707 2012-06-26 16:10 2008-06-25 Show GitHub Exploit DB Packet Storm
247650 7.8 危険 アバイア - Avaya SES の Web 管理インターフェースにおけるアプリケーションサーバ設定を取得される脆弱性 CWE-noinfo
情報不足
CVE-2008-6706 2012-06-26 16:10 2008-06-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 24, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
200291 6.5 MEDIUM
Network
otrs otrs Generated Support Bundles contains private S/MIME and PGP keys if containing folder is not hidden. This issue affects: OTRS AG ((OTRS)) Community Edition 6.0.x version 6.0.1 and later versions. OTRS … NVD-CWE-noinfo
CVE-2021-21440 2024-11-21 14:48 2021-07-26 Show GitHub Exploit DB Packet Storm
200292 6.5 MEDIUM
Network
combodo itop Combodo iTop is an open source, web based IT Service Management tool. Prior to version 2.7.4, the CSRF token validation can be bypassed through iTop portal via a tricky browser procedure. The vulnera… CWE-352
 Origin Validation Error
CVE-2021-21407 2024-11-21 14:48 2021-07-22 Show GitHub Exploit DB Packet Storm
200293 8.8 HIGH
Network
combodo itop Combodo iTop is an open source, web based IT Service Management tool. In versions prior to 2.7.4, there is a command injection vulnerability in the Setup Wizard when providing Graphviz executable pat… CWE-77
Command Injection
CVE-2021-21406 2024-11-21 14:48 2021-07-22 Show GitHub Exploit DB Packet Storm
200294 6.1 MEDIUM
Network
advantech r-seenet Cross-site scripting vulnerabilities exist in the ssh_form.php script functionality of Advantech R-SeeNet v 2.4.12 (20.10.2020). If a user visits a specially crafted URL, it can lead to arbitrary Jav… CWE-79
Cross-site Scripting
CVE-2021-21800 2024-11-21 14:48 2021-07-16 Show GitHub Exploit DB Packet Storm
200295 6.1 MEDIUM
Network
advantech r-seenet Cross-site scripting vulnerabilities exist in the telnet_form.php script functionality of Advantech R-SeeNet v 2.4.12 (20.10.2020). If a user visits a specially crafted URL, it can lead to arbitrary … CWE-79
Cross-site Scripting
CVE-2021-21799 2024-11-21 14:48 2021-07-16 Show GitHub Exploit DB Packet Storm
200296 3.3 LOW
Local
dell wyse_management_suite Dell Wyse Management Suite versions 3.2 and earlier contain a full path disclosure vulnerability. A local unauthenticated attacker could exploit this vulnerability in order to obtain the path of file… CWE-200
Information Exposure
CVE-2021-21587 2024-11-21 14:48 2021-07-16 Show GitHub Exploit DB Packet Storm
200297 6.5 MEDIUM
Network
dell wyse_management_suite Wyse Management Suite versions 3.2 and earlier contain an absolute path traversal vulnerability. A remote authenticated malicious user could exploit this vulnerability in order to read arbitrary file… CWE-22
Path Traversal
CVE-2021-21586 2024-11-21 14:48 2021-07-16 Show GitHub Exploit DB Packet Storm
200298 6.7 MEDIUM
Local
dell emc_unity_operating_environment
emc_unityvsa_operating_environment
emc_unity_xt_operating_environment
Dell EMC Unity, Unity XT, and UnityVSA versions prior to 5.1.0.0.5.394 contain a plain-text password storage vulnerability. A local malicious user with high privileges may use the exposed password to… CWE-522
 Insufficiently Protected Credentials
CVE-2021-21591 2024-11-21 14:48 2021-07-13 Show GitHub Exploit DB Packet Storm
200299 6.7 MEDIUM
Local
dell emc_unity_operating_environment
emc_unityvsa_operating_environment
emc_unity_xt_operating_environment
Dell EMC Unity, Unity XT, and UnityVSA versions prior to 5.1.0.0.5.394 contain a plain-text password storage vulnerability. A local malicious user with high privileges may use the exposed password to… CWE-522
 Insufficiently Protected Credentials
CVE-2021-21590 2024-11-21 14:48 2021-07-13 Show GitHub Exploit DB Packet Storm
200300 6.7 MEDIUM
Local
dell emc_unity_operating_environment
emc_unityvsa_operating_environment
emc_unity_xt_operating_environment
Dell EMC Unity, Unity XT, and UnityVSA versions prior to 5.1.0.0.5.394 do not exit on failed Initialization. A local authenticated Service user could potentially exploit this vulnerability to escalat… NVD-CWE-Other
CVE-2021-21589 2024-11-21 14:48 2021-07-13 Show GitHub Exploit DB Packet Storm