Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 19, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
247781 7.5 危険 badongo - Campus Bulletin Board における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2492 2012-06-26 16:02 2008-05-28 Show GitHub Exploit DB Packet Storm
247782 9.3 危険 ebay - eBay Enhanced Picture Uploader ActiveX コントロールにおける任意のコマンドを実行される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2008-2475 2012-06-26 16:02 2009-06-9 Show GitHub Exploit DB Packet Storm
247783 6.5 警告 beaussier - RoomPHPlanning の admin/userform.php における新規に admin アカウントを作成される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-2488 2012-06-26 16:02 2008-05-28 Show GitHub Exploit DB Packet Storm
247784 10 危険 emule - eMule Plus における詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2008-2486 2012-06-26 16:02 2008-05-28 Show GitHub Exploit DB Packet Storm
247785 6.8 警告 badongo - phpFix における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2479 2012-06-26 16:02 2008-05-28 Show GitHub Exploit DB Packet Storm
247786 6.8 警告 entertainmentscript - EntertainmentScript の page.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-2459 2012-06-26 16:02 2008-05-27 Show GitHub Exploit DB Packet Storm
247787 4.3 警告 4shared - Starsgames Control Panel の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2458 2012-06-26 16:02 2008-05-27 Show GitHub Exploit DB Packet Storm
247788 7.5 危険 bitmixsoft - PHP-Jokesite の jokes_category.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2457 2012-06-26 16:02 2008-05-27 Show GitHub Exploit DB Packet Storm
247789 7.5 危険 comicshout - ComicShout の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2456 2012-06-26 16:02 2008-05-27 Show GitHub Exploit DB Packet Storm
247790 7.5 危険 e107coders - e107用 MacGuru BLOG Engine プラグインの comment.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2455 2012-06-26 16:02 2008-05-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 19, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
199731 6.7 MEDIUM
Local
vmware fusion
esxi
cloud_foundation
workstation
VMware ESXi, Workstation, and Fusion contain a double-fetch vulnerability in the UHCI USB controller. A malicious actor with local administrative privileges on a virtual machine may exploit this issu… NVD-CWE-noinfo
CVE-2021-22041 2024-11-21 14:49 2022-02-17 Show GitHub Exploit DB Packet Storm
199732 6.7 MEDIUM
Local
vmware esxi
fusion
workstation_player
cloud_foundation
workstation_pro
VMware ESXi, Workstation, and Fusion contain a use-after-free vulnerability in the XHCI USB controller. A malicious actor with local administrative privileges on a virtual machine may exploit this is… CWE-416
 Use After Free
CVE-2021-22040 2024-11-21 14:49 2022-02-17 Show GitHub Exploit DB Packet Storm
199733 5.3 MEDIUM
Network
ti simplelink_cc32xx_software_development_kit
cc3100_firmware
cc3200_firmware
An information disclosure vulnerability exists in the HTTP Server /ping.html functionality of Texas Instruments CC3200 SimpleLink Solution NWP 2.9.0.0. A specially-crafted HTTP request can lead to an… CWE-908
 Use of Uninitialized Resource
CVE-2021-21966 2024-11-21 14:49 2022-02-17 Show GitHub Exploit DB Packet Storm
199734 7.8 HIGH
Local
hancom hancom_office_2020 A heap-based buffer overflow vulnerability exists in the Hword HwordApp.dll functionality of Hancom Office 2020 11.0.0.2353. A specially-crafted malformed file can lead to memory corruption and poten… CWE-787
 Out-of-bounds Write
CVE-2021-21958 2024-11-21 14:49 2022-02-17 Show GitHub Exploit DB Packet Storm
199735 7.5 HIGH
Network
abb pni800_firmware
spiet800_firmware
Improper Input Validation vulnerability in the ABB SPIET800 and PNI800 module allows an attacker to cause the denial of service or make the module unresponsive. CWE-20
 Improper Input Validation 
CVE-2021-22288 2024-11-21 14:49 2022-02-5 Show GitHub Exploit DB Packet Storm
199736 7.5 HIGH
Network
abb pni800_firmware
spiet800_firmware
Improper Input Validation vulnerability in the ABB SPIET800 and PNI800 module allows an attacker to cause the denial of service or make the module unresponsive. CWE-20
 Improper Input Validation 
CVE-2021-22286 2024-11-21 14:49 2022-02-5 Show GitHub Exploit DB Packet Storm
199737 7.5 HIGH
Network
abb pni800_firmware
spiet800_firmware
Improper Handling of Exceptional Conditions, Improper Check for Unusual or Exceptional Conditions vulnerability in the ABB SPIET800 and PNI800 module that allows an attacker to cause the denial of se… CWE-754
CWE-755
 Improper Check for Unusual or Exceptional Conditions
 Improper Handling of Exceptional Conditions
CVE-2021-22285 2024-11-21 14:49 2022-02-5 Show GitHub Exploit DB Packet Storm
199738 8.8 HIGH
Network
abb opc_server_for_ac_800m Incorrect Permission Assignment for Critical Resource vulnerability in OPC Server for AC 800M allows an attacker to execute arbitrary code in the node running the AC800M OPC Server. CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2021-22284 2024-11-21 14:49 2022-02-5 Show GitHub Exploit DB Packet Storm
199739 5.9 MEDIUM
Network
sealevel seaconnect_370w_firmware An out-of-bounds write vulnerability exists in the URL_decode functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. A specially-crafted MQTT payload can lead to an out-of-bounds write. An … CWE-787
 Out-of-bounds Write
CVE-2021-21971 2024-11-21 14:49 2022-02-5 Show GitHub Exploit DB Packet Storm
199740 8.1 HIGH
Network
sealevel seaconnect_370w_firmware An out-of-bounds write vulnerability exists in the HandleSeaCloudMessage functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. The HandleIncomingSeaCloudMessage function uses at [3] the js… CWE-787
 Out-of-bounds Write
CVE-2021-21970 2024-11-21 14:49 2022-02-5 Show GitHub Exploit DB Packet Storm