Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 7, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
253311 6.5 警告 Dolibarr ERP & CRM - Dolibarr における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2011-4802 2011-12-16 10:50 2011-11-3 Show GitHub Exploit DB Packet Storm
253312 4.3 警告 Jextensions - Joomla! 用 HM Community コンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-4809 2011-12-16 10:44 2011-12-14 Show GitHub Exploit DB Packet Storm
253313 7.5 危険 Jextensions - Joomla! 用 HM Community コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2011-4808 2011-12-16 10:41 2011-12-14 Show GitHub Exploit DB Packet Storm
253314 5 警告 foobla - Joomla! 用の obSuggest コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2011-4804 2011-12-16 10:19 2011-12-14 Show GitHub Exploit DB Packet Storm
253315 7.5 危険 BraveNewCode - WordPress 用の WPTouch プラグインにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2011-4803 2011-12-16 10:18 2011-12-14 Show GitHub Exploit DB Packet Storm
253316 6.8 警告 DELL EMC (旧 EMC Corporation) - EMC RSA AAOP におけるアプリケーション制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-2742 2011-12-15 16:59 2011-12-14 Show GitHub Exploit DB Packet Storm
253317 6.8 警告 DELL EMC (旧 EMC Corporation) - EMC RSA AAOP におけるセキュリティ制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-2741 2011-12-15 16:58 2011-12-14 Show GitHub Exploit DB Packet Storm
253318 4.3 警告 アドビシステムズ - Adobe ColdFusion の RDS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-4368 2011-12-15 16:57 2011-12-13 Show GitHub Exploit DB Packet Storm
253319 4.3 警告 アドビシステムズ - Adobe ColdFusion におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-2463 2011-12-15 16:57 2011-12-13 Show GitHub Exploit DB Packet Storm
253320 4.3 警告 アップル - iOS 上の Safari におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
- 2011-12-15 12:02 2011-12-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 7, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
194901 7.5 HIGH
Network
moxa vport_06ec-2v26m_firmware
vport_06ec-2v36m-t_firmware
vport_06ec-2v36m-ct_firmware
vport_06ec-2v36m-ct-t_firmware
vport_06ec-2v42m_firmware
vport_06ec-2v42m-t_firmware
vport_06ec-2v…
An integer underflow was discovered in userdisk/vport_lldpd in Moxa Camera VPort 06EC-2V Series, version 1.1, improper validation of the PortID TLV leads to Denial of Service via a crafted lldp packe… CWE-191
 Integer Underflow (Wrap or Wraparound)
CVE-2021-25849 2024-11-21 14:55 2021-05-10 Show GitHub Exploit DB Packet Storm
194902 9.1 CRITICAL
Network
moxa vport_06ec-2v26m_firmware
vport_06ec-2v36m-t_firmware
vport_06ec-2v36m-ct_firmware
vport_06ec-2v36m-ct-t_firmware
vport_06ec-2v42m_firmware
vport_06ec-2v42m-t_firmware
vport_06ec-2v…
Improper validation of the length field of LLDP-MED TLV in userdisk/vport_lldpd in Moxa Camera VPort 06EC-2V Series, version 1.1, allows information disclosure to attackers due to using fixed loop co… CWE-125
Out-of-bounds Read
CVE-2021-25848 2024-11-21 14:55 2021-05-10 Show GitHub Exploit DB Packet Storm
194903 9.1 CRITICAL
Network
moxa vport_06ec-2v26m_firmware
vport_06ec-2v36m-t_firmware
vport_06ec-2v36m-ct_firmware
vport_06ec-2v36m-ct-t_firmware
vport_06ec-2v42m_firmware
vport_06ec-2v42m-t_firmware
vport_06ec-2v…
Improper validation of the length field of LLDP-MED TLV in userdisk/vport_lldpd in Moxa Camera VPort 06EC-2V Series, version 1.1, allows information disclosure to attackers due to controllable loop c… CWE-125
Out-of-bounds Read
CVE-2021-25847 2024-11-21 14:55 2021-05-10 Show GitHub Exploit DB Packet Storm
194904 7.5 HIGH
Network
moxa vport_06ec-2v26m_firmware
vport_06ec-2v36m-t_firmware
vport_06ec-2v36m-ct_firmware
vport_06ec-2v36m-ct-t_firmware
vport_06ec-2v42m_firmware
vport_06ec-2v42m-t_firmware
vport_06ec-2v…
Improper validation of the ChassisID TLV in userdisk/vport_lldpd in Moxa Camera VPort 06EC-2V Series, version 1.1, allows attackers to cause a denial of service due to a negative number passed to the… CWE-191
 Integer Underflow (Wrap or Wraparound)
CVE-2021-25846 2024-11-21 14:55 2021-05-10 Show GitHub Exploit DB Packet Storm
194905 7.5 HIGH
Network
moxa vport_06ec-2v26m_firmware
vport_06ec-2v36m-t_firmware
vport_06ec-2v36m-ct_firmware
vport_06ec-2v36m-ct-t_firmware
vport_06ec-2v42m_firmware
vport_06ec-2v42m-t_firmware
vport_06ec-2v…
Improper validation of the ChassisID TLV in userdisk/vport_lldpd in Moxa Camera VPort 06EC-2V Series, version 1.1, allows attackers to cause a denial of service due to a NULL pointer dereference via … CWE-476
 NULL Pointer Dereference
CVE-2021-25845 2024-11-21 14:55 2021-05-10 Show GitHub Exploit DB Packet Storm
194906 8.8 HIGH
Network
atlassian connect_spring_boot Broken Authentication in Atlassian Connect Spring Boot (ACSB) in version 1.1.0 before 2.1.3 and from version 2.1.4 before 2.1.5: Atlassian Connect Spring Boot is a Java Spring Boot package for buildi… CWE-287
Improper Authentication
CVE-2021-26077 2024-11-21 14:55 2021-05-10 Show GitHub Exploit DB Packet Storm
194907 6.1 MEDIUM
Network
livinglogic xist4c LivingLogic XIST4C before 0.107.8 allows XSS via login.htm, login.wihtm, or login-form.htm. CWE-79
Cross-site Scripting
CVE-2021-26123 2024-11-21 14:55 2021-05-7 Show GitHub Exploit DB Packet Storm
194908 6.1 MEDIUM
Network
livinglogic xist4c LivingLogic XIST4C before 0.107.8 allows XSS via feedback.htm or feedback.wihtm. CWE-79
Cross-site Scripting
CVE-2021-26122 2024-11-21 14:55 2021-05-7 Show GitHub Exploit DB Packet Storm
194909 8.8 HIGH
Network
libreoffice libreoffice In the LibreOffice 7-1 series in versions prior to 7.1.2, and in the 7-0 series in versions prior to 7.0.5, the denylist can be circumvented by manipulating the link so it doesn't match the denylist … NVD-CWE-Other
CVE-2021-25631 2024-11-21 14:55 2021-05-3 Show GitHub Exploit DB Packet Storm
194910 9.8 CRITICAL
Network
chinamobile an_lianbao_wf-1_firmware Command injection vulnerability in China Mobile An Lianbao WF-1 1.01 via the 'ip' parameter with a POST request to /api/ZRQos/set_online_client. CWE-77
Command Injection
CVE-2021-25812 2024-11-21 14:55 2021-04-30 Show GitHub Exploit DB Packet Storm