Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
249391 7.5 危険 clicktech - ClickTech ClickContact の default.asp における SQL インジェクションの脆弱性 - CVE-2006-6181 2012-06-26 15:37 2006-11-30 Show GitHub Exploit DB Packet Storm
249392 6.8 警告 Expinion.net - Expinion.net iNews Publisher (iNP) の articles.asp におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-6180 2012-06-26 15:37 2006-11-30 Show GitHub Exploit DB Packet Storm
249393 7.2 危険 アップル - Mac OS X の shared_region_make_private_np 関数におけるバッファオーバーフローの脆弱性 - CVE-2006-6173 2012-06-26 15:37 2006-11-30 Show GitHub Exploit DB Packet Storm
249394 7.5 危険 doug luxem - Doug Luxem Liberum Help Desk における SQL インジェクションの脆弱性 - CVE-2006-6161 2012-06-26 15:37 2006-11-28 Show GitHub Exploit DB Packet Storm
249395 7.5 危険 doug luxem - Doug Luxem Liberum Help Desk の details.asp における SQL インジェクションの脆弱性 - CVE-2006-6160 2012-06-26 15:37 2006-11-28 Show GitHub Exploit DB Packet Storm
249396 6.8 警告 deskpro - DeskPRO の newticket.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2006-6159 2012-06-26 15:37 2006-11-28 Show GitHub Exploit DB Packet Storm
249397 6.8 警告 inverseflow
ace helpdesk
pmos helpdesk
- PMOS Help Desk におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-6158 2012-06-26 15:37 2006-11-28 Show GitHub Exploit DB Packet Storm
249398 2.1 注意 cryptocard - CRYPTOCard CRYPTO-Server における資格情報を取得される脆弱性 - CVE-2006-6145 2012-06-26 15:37 2006-11-28 Show GitHub Exploit DB Packet Storm
249399 4.9 警告 アップル - Apple Mac OS X AppleTalk におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-6130 2012-06-26 15:37 2006-11-27 Show GitHub Exploit DB Packet Storm
249400 4.6 警告 アップル - Apple Mac OS X の fatfile_getarch2 における整数オーバーフローの脆弱性 - CVE-2006-6129 2012-06-26 15:37 2006-11-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 11, 2026, 5:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
196091 9.1 CRITICAL
Network
moxa vport_06ec-2v26m_firmware
vport_06ec-2v36m-t_firmware
vport_06ec-2v36m-ct_firmware
vport_06ec-2v36m-ct-t_firmware
vport_06ec-2v42m_firmware
vport_06ec-2v42m-t_firmware
vport_06ec-2v…
Improper validation of the length field of LLDP-MED TLV in userdisk/vport_lldpd in Moxa Camera VPort 06EC-2V Series, version 1.1, allows information disclosure to attackers due to using fixed loop co… CWE-125
Out-of-bounds Read
CVE-2021-25848 2024-11-21 14:55 2021-05-10 Show GitHub Exploit DB Packet Storm
196092 9.1 CRITICAL
Network
moxa vport_06ec-2v26m_firmware
vport_06ec-2v36m-t_firmware
vport_06ec-2v36m-ct_firmware
vport_06ec-2v36m-ct-t_firmware
vport_06ec-2v42m_firmware
vport_06ec-2v42m-t_firmware
vport_06ec-2v…
Improper validation of the length field of LLDP-MED TLV in userdisk/vport_lldpd in Moxa Camera VPort 06EC-2V Series, version 1.1, allows information disclosure to attackers due to controllable loop c… CWE-125
Out-of-bounds Read
CVE-2021-25847 2024-11-21 14:55 2021-05-10 Show GitHub Exploit DB Packet Storm
196093 7.5 HIGH
Network
moxa vport_06ec-2v26m_firmware
vport_06ec-2v36m-t_firmware
vport_06ec-2v36m-ct_firmware
vport_06ec-2v36m-ct-t_firmware
vport_06ec-2v42m_firmware
vport_06ec-2v42m-t_firmware
vport_06ec-2v…
Improper validation of the ChassisID TLV in userdisk/vport_lldpd in Moxa Camera VPort 06EC-2V Series, version 1.1, allows attackers to cause a denial of service due to a negative number passed to the… CWE-191
 Integer Underflow (Wrap or Wraparound)
CVE-2021-25846 2024-11-21 14:55 2021-05-10 Show GitHub Exploit DB Packet Storm
196094 7.5 HIGH
Network
moxa vport_06ec-2v26m_firmware
vport_06ec-2v36m-t_firmware
vport_06ec-2v36m-ct_firmware
vport_06ec-2v36m-ct-t_firmware
vport_06ec-2v42m_firmware
vport_06ec-2v42m-t_firmware
vport_06ec-2v…
Improper validation of the ChassisID TLV in userdisk/vport_lldpd in Moxa Camera VPort 06EC-2V Series, version 1.1, allows attackers to cause a denial of service due to a NULL pointer dereference via … CWE-476
 NULL Pointer Dereference
CVE-2021-25845 2024-11-21 14:55 2021-05-10 Show GitHub Exploit DB Packet Storm
196095 8.8 HIGH
Network
atlassian connect_spring_boot Broken Authentication in Atlassian Connect Spring Boot (ACSB) in version 1.1.0 before 2.1.3 and from version 2.1.4 before 2.1.5: Atlassian Connect Spring Boot is a Java Spring Boot package for buildi… CWE-287
Improper Authentication
CVE-2021-26077 2024-11-21 14:55 2021-05-10 Show GitHub Exploit DB Packet Storm
196096 6.1 MEDIUM
Network
livinglogic xist4c LivingLogic XIST4C before 0.107.8 allows XSS via login.htm, login.wihtm, or login-form.htm. CWE-79
Cross-site Scripting
CVE-2021-26123 2024-11-21 14:55 2021-05-7 Show GitHub Exploit DB Packet Storm
196097 6.1 MEDIUM
Network
livinglogic xist4c LivingLogic XIST4C before 0.107.8 allows XSS via feedback.htm or feedback.wihtm. CWE-79
Cross-site Scripting
CVE-2021-26122 2024-11-21 14:55 2021-05-7 Show GitHub Exploit DB Packet Storm
196098 8.8 HIGH
Network
libreoffice libreoffice In the LibreOffice 7-1 series in versions prior to 7.1.2, and in the 7-0 series in versions prior to 7.0.5, the denylist can be circumvented by manipulating the link so it doesn't match the denylist … NVD-CWE-Other
CVE-2021-25631 2024-11-21 14:55 2021-05-3 Show GitHub Exploit DB Packet Storm
196099 9.8 CRITICAL
Network
chinamobile an_lianbao_wf-1_firmware Command injection vulnerability in China Mobile An Lianbao WF-1 1.01 via the 'ip' parameter with a POST request to /api/ZRQos/set_online_client. CWE-77
Command Injection
CVE-2021-25812 2024-11-21 14:55 2021-04-30 Show GitHub Exploit DB Packet Storm
196100 7.5 HIGH
Network
mercusys mercury_x18g_firmware MERCUSYS Mercury X18G 1.0.5 devices allow Denial of service via a crafted value to the POST listen_http_lan parameter. Upon subsequent device restarts after this vulnerability is exploted the device … NVD-CWE-noinfo
CVE-2021-25811 2024-11-21 14:55 2021-04-30 Show GitHub Exploit DB Packet Storm