Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
250621 7.5 危険 commodityrentals - DVD Rentals Script における任意の SQL コマンドを実行される脆弱性 CWE-89
SQLインジェクション
CVE-2010-4770 2012-03-27 18:42 2011-03-23 Show GitHub Exploit DB Packet Storm
250622 7.5 危険 Janguo
Joomla!
- Joomla! の Jimtawl コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-4769 2012-03-27 18:42 2011-03-23 Show GitHub Exploit DB Packet Storm
250623 6 警告 OTRS プロジェクト - OTRS における待ち行列アクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-4768 2012-03-27 18:42 2011-03-18 Show GitHub Exploit DB Packet Storm
250624 5 警告 OTRS プロジェクト - OTRS におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2010-4767 2012-03-27 18:42 2011-03-18 Show GitHub Exploit DB Packet Storm
250625 4.3 警告 OTRS プロジェクト - OTRS の AgentTicketForward 機能における重要な画像情報を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2010-4766 2012-03-27 18:42 2011-03-18 Show GitHub Exploit DB Packet Storm
250626 4.9 警告 OTRS プロジェクト - OTRS の Kernel::System::Main::FileWrite メソッドにおける icketCounter.log のデータを破損される脆弱性 CWE-362
競合状態
CVE-2010-4765 2012-03-27 18:42 2011-03-18 Show GitHub Exploit DB Packet Storm
250627 5 警告 OTRS プロジェクト - OTRS における電子メール通信をなりすまされる脆弱性 CWE-255
証明書・パスワード管理
CVE-2010-4764 2012-03-27 18:42 2011-03-18 Show GitHub Exploit DB Packet Storm
250628 6.5 警告 OTRS プロジェクト - OTRS の ACL 顧客ステータスチケットタイプ設定における ACL 制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-4763 2012-03-27 18:42 2011-03-18 Show GitHub Exploit DB Packet Storm
250629 3.5 注意 OTRS プロジェクト - OTRS のリッチテキストエディタコンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-4762 2012-03-27 18:42 2011-03-18 Show GitHub Exploit DB Packet Storm
250630 4 警告 OTRS プロジェクト - OTRS の顧客インターフェースチケット印刷ダイアログにおける重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-4761 2012-03-27 18:42 2011-03-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
195791 7.8 HIGH
Local
vmware esxi
cloud_foundation
VMware ESXi contains an unauthorized access vulnerability due to VMX having access to settingsd authorization tickets. A malicious actor with privileges within the VMX process only, may be able to ac… CWE-863
 Incorrect Authorization
CVE-2021-22042 2024-11-21 14:49 2022-02-17 Show GitHub Exploit DB Packet Storm
195792 6.7 MEDIUM
Local
vmware fusion
esxi
cloud_foundation
workstation
VMware ESXi, Workstation, and Fusion contain a double-fetch vulnerability in the UHCI USB controller. A malicious actor with local administrative privileges on a virtual machine may exploit this issu… NVD-CWE-noinfo
CVE-2021-22041 2024-11-21 14:49 2022-02-17 Show GitHub Exploit DB Packet Storm
195793 6.7 MEDIUM
Local
vmware esxi
fusion
workstation_player
cloud_foundation
workstation_pro
VMware ESXi, Workstation, and Fusion contain a use-after-free vulnerability in the XHCI USB controller. A malicious actor with local administrative privileges on a virtual machine may exploit this is… CWE-416
 Use After Free
CVE-2021-22040 2024-11-21 14:49 2022-02-17 Show GitHub Exploit DB Packet Storm
195794 5.3 MEDIUM
Network
ti simplelink_cc32xx_software_development_kit
cc3100_firmware
cc3200_firmware
An information disclosure vulnerability exists in the HTTP Server /ping.html functionality of Texas Instruments CC3200 SimpleLink Solution NWP 2.9.0.0. A specially-crafted HTTP request can lead to an… CWE-908
 Use of Uninitialized Resource
CVE-2021-21966 2024-11-21 14:49 2022-02-17 Show GitHub Exploit DB Packet Storm
195795 7.8 HIGH
Local
hancom hancom_office_2020 A heap-based buffer overflow vulnerability exists in the Hword HwordApp.dll functionality of Hancom Office 2020 11.0.0.2353. A specially-crafted malformed file can lead to memory corruption and poten… CWE-787
 Out-of-bounds Write
CVE-2021-21958 2024-11-21 14:49 2022-02-17 Show GitHub Exploit DB Packet Storm
195796 7.5 HIGH
Network
abb pni800_firmware
spiet800_firmware
Improper Input Validation vulnerability in the ABB SPIET800 and PNI800 module allows an attacker to cause the denial of service or make the module unresponsive. CWE-20
 Improper Input Validation 
CVE-2021-22288 2024-11-21 14:49 2022-02-5 Show GitHub Exploit DB Packet Storm
195797 7.5 HIGH
Network
abb pni800_firmware
spiet800_firmware
Improper Input Validation vulnerability in the ABB SPIET800 and PNI800 module allows an attacker to cause the denial of service or make the module unresponsive. CWE-20
 Improper Input Validation 
CVE-2021-22286 2024-11-21 14:49 2022-02-5 Show GitHub Exploit DB Packet Storm
195798 7.5 HIGH
Network
abb pni800_firmware
spiet800_firmware
Improper Handling of Exceptional Conditions, Improper Check for Unusual or Exceptional Conditions vulnerability in the ABB SPIET800 and PNI800 module that allows an attacker to cause the denial of se… CWE-754
CWE-755
 Improper Check for Unusual or Exceptional Conditions
 Improper Handling of Exceptional Conditions
CVE-2021-22285 2024-11-21 14:49 2022-02-5 Show GitHub Exploit DB Packet Storm
195799 8.8 HIGH
Network
abb opc_server_for_ac_800m Incorrect Permission Assignment for Critical Resource vulnerability in OPC Server for AC 800M allows an attacker to execute arbitrary code in the node running the AC800M OPC Server. CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2021-22284 2024-11-21 14:49 2022-02-5 Show GitHub Exploit DB Packet Storm
195800 5.9 MEDIUM
Network
sealevel seaconnect_370w_firmware An out-of-bounds write vulnerability exists in the URL_decode functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. A specially-crafted MQTT payload can lead to an out-of-bounds write. An … CWE-787
 Out-of-bounds Write
CVE-2021-21971 2024-11-21 14:49 2022-02-5 Show GitHub Exploit DB Packet Storm