Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 30, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
248241 2.6 注意 glFusion - glFusion の lib-comment.php の 匿名のコメント機能 におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-0455 2012-06-26 16:10 2009-02-10 Show GitHub Exploit DB Packet Storm
248242 7.5 危険 DMXReady - DMXReady Online Notebook Manager における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0454 2012-06-26 16:10 2009-02-10 Show GitHub Exploit DB Packet Storm
248243 9.3 危険 blazevideo - BlazeVideo HDTV Player におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-0450 2012-06-26 16:10 2009-02-10 Show GitHub Exploit DB Packet Storm
248244 7.5 危険 ASP indir - MyDesign Sayac の default.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0447 2012-06-26 16:10 2009-02-10 Show GitHub Exploit DB Packet Storm
248245 7.5 危険 dreampics - Dreampics Gallery Builder の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0445 2012-06-26 16:10 2009-02-10 Show GitHub Exploit DB Packet Storm
248246 9.3 危険 elecard - Elecard AVC HD PLAYER におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-0443 2012-06-26 16:10 2009-02-10 Show GitHub Exploit DB Packet Storm
248247 7.5 危険 codefixer - LinksPro Standard Edition の Default.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0431 2012-06-26 16:10 2009-02-4 Show GitHub Exploit DB Packet Storm
248248 4.3 警告 Activewebsoftwares - Active Bids におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-0430 2012-06-26 16:10 2009-02-4 Show GitHub Exploit DB Packet Storm
248249 7.5 危険 Activewebsoftwares - Active Bids における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0429 2012-06-26 16:10 2009-02-4 Show GitHub Exploit DB Packet Storm
248250 7.5 危険 DMXReady - DMXReady Secure Document Library の CategoryManager/upload_image_category.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0428 2012-06-26 16:10 2009-02-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 30, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
199041 7.8 HIGH
Local
amd enterprise_driver
radeon_pro_software
radeon_software
An attacker with local access to the system can make unauthorized modifications of the security configuration of the SOC registers. This could allow potential corruption of AMD secure processor’s enc… NVD-CWE-noinfo
CVE-2021-26360 2024-11-21 14:56 2022-11-10 Show GitHub Exploit DB Packet Storm
199042 5.5 MEDIUM
Local
amd enterprise_driver
radeon_pro_software
radeon_software
radeon_rx_vega_56_firmware
radeon_rx_vega_64_firmware
ryzen_3_2200ge_firmware
ryzen_3_2200g_firmware
ryzen_5_2400ge_firmware…
Insufficient memory cleanup in the AMD Secure Processor (ASP) Trusted Execution Environment (TEE) may allow an authenticated attacker with privileges to generate a valid signed TA and potentially poi… CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2021-26393 2024-11-21 14:56 2022-11-10 Show GitHub Exploit DB Packet Storm
199043 7.8 HIGH
Local
amd enterprise_driver
radeon_pro_software
radeon_software
radeon_rx_vega_56_firmware
radeon_rx_vega_64_firmware
ryzen_3_5300ge_firmware
ryzen_3_5300g_firmware
ryzen_5_5600ge_firmware…
Insufficient verification of multiple header signatures while loading a Trusted Application (TA) may allow an attacker with privileges to gain code execution in that TA or the OS/kernel. NVD-CWE-noinfo
CVE-2021-26391 2024-11-21 14:56 2022-11-10 Show GitHub Exploit DB Packet Storm
199044 7.5 HIGH
Network
lannerinc iac-ast2500a_firmware A broken access control vulnerability in the FirstReset_handler_func function of spx_restservice allows an attacker to arbitrarily send reboot commands to the BMC, causing a Denial-of-Service (DoS) c… NVD-CWE-Other
CVE-2021-26733 2024-11-21 14:56 2022-10-24 Show GitHub Exploit DB Packet Storm
199045 5.3 MEDIUM
Network
lannerinc iac-ast2500a_firmware A broken access control vulnerability in the First_network_func function of spx_restservice allows an attacker to arbitrarily change the network configuration of the BMC. This issue affects: Lanner I… NVD-CWE-Other
CVE-2021-26732 2024-11-21 14:56 2022-10-24 Show GitHub Exploit DB Packet Storm
199046 9.8 CRITICAL
Network
lannerinc iac-ast2500a_firmware Command injection and multiple stack-based buffer overflows vulnerabilities in the modifyUserb_func function of spx_restservice allow an authenticated attacker to execute arbitrary code with the same… CWE-77
CWE-787
Command Injection
 Out-of-bounds Write
CVE-2021-26731 2024-11-21 14:56 2022-10-24 Show GitHub Exploit DB Packet Storm
199047 9.8 CRITICAL
Network
lannerinc iac-ast2500a_firmware A stack-based buffer overflow vulnerability in a subfunction of the Login_handler_func function of spx_restservice allows an attacker to execute arbitrary code with the same privileges as the server … CWE-787
 Out-of-bounds Write
CVE-2021-26730 2024-11-21 14:56 2022-10-24 Show GitHub Exploit DB Packet Storm
199048 9.8 CRITICAL
Network
lannerinc iac-ast2500a_firmware Command injection and multiple stack-based buffer overflows vulnerabilities in the Login_handler_func function of spx_restservice allow an attacker to execute arbitrary code with the same privileges … CWE-77
CWE-787
Command Injection
 Out-of-bounds Write
CVE-2021-26729 2024-11-21 14:56 2022-10-24 Show GitHub Exploit DB Packet Storm
199049 9.8 CRITICAL
Network
lannerinc iac-ast2500a_firmware Command injection and stack-based buffer overflow vulnerabilities in the KillDupUsr_func function of spx_restservice allow an attacker to execute arbitrary code with the same privileges as the server… CWE-77
CWE-787
Command Injection
 Out-of-bounds Write
CVE-2021-26728 2024-11-21 14:56 2022-10-24 Show GitHub Exploit DB Packet Storm
199050 9.8 CRITICAL
Network
lannerinc iac-ast2500a_firmware Multiple command injections and stack-based buffer overflows vulnerabilities in the SubNet_handler_func function of spx_restservice allow an attacker to execute arbitrary code with the same privilege… CWE-77
CWE-787
Command Injection
 Out-of-bounds Write
CVE-2021-26727 2024-11-21 14:56 2022-10-24 Show GitHub Exploit DB Packet Storm