Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
254021 4.3 警告 Theme4Press - WordPress 用 EvoLve テーマにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-3852 2012-03-5 11:03 2011-09-28 Show GitHub Exploit DB Packet Storm
254022 4.3 警告 DevPress - WordPress 用 News テーマにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-3851 2012-03-5 11:03 2011-09-28 Show GitHub Exploit DB Packet Storm
254023 4.3 警告 Bytes For All - WordPress 用 Atahualpa テーマにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-3850 2012-03-5 11:02 2011-09-28 Show GitHub Exploit DB Packet Storm
254024 5.1 警告 Mozilla Foundation - Bugzilla の xmlrpc.cgi におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-0453 2012-03-2 15:18 2012-02-9 Show GitHub Exploit DB Packet Storm
254025 9.3 危険 シスコシステムズ - Cisco Wireless LAN Controller デバイスにおける設定を読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-0371 2012-03-2 15:04 2012-02-29 Show GitHub Exploit DB Packet Storm
254026 7.8 危険 シスコシステムズ - Cisco Wireless LAN Controller デバイスにおけるサービス運用妨害 (デバイスリロード) の脆弱性 CWE-399
リソース管理の問題
CVE-2012-0370 2012-03-2 15:03 2012-02-29 Show GitHub Exploit DB Packet Storm
254027 7.8 危険 シスコシステムズ - Cisco Wireless LAN Controller デバイスにおけるサービス運用妨害 (デバイスリロード) の脆弱性 CWE-399
リソース管理の問題
CVE-2012-0369 2012-03-2 15:02 2012-02-29 Show GitHub Exploit DB Packet Storm
254028 7.8 危険 シスコシステムズ - Cisco Unity Connection におけるサービス運用妨害 (サービスクラッシュ) の脆弱性 CWE-399
リソース管理の問題
CVE-2012-0367 2012-03-2 14:25 2012-02-29 Show GitHub Exploit DB Packet Storm
254029 9 危険 シスコシステムズ - Cisco Unity Connection における管理者のパスワードを変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-0366 2012-03-2 14:25 2012-02-29 Show GitHub Exploit DB Packet Storm
254030 7.8 危険 シスコシステムズ - Cisco Cius におけるサービス運用妨害 (デバイスクラッシュまたはハング) の脆弱性 CWE-399
リソース管理の問題
CVE-2012-0359 2012-03-2 14:24 2012-02-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
194641 9.8 CRITICAL
Network
bab-technologie eibport_firmware BAB TECHNOLOGIE GmbH eibPort V3 prior version 3.9.1 allow unauthenticated attackers access to /tmp path which contains some sensitive data (e.g. device serial number). Having those info, a possible l… CWE-307
CWE-863
mproper Restriction of Excessive Authentication Attempts
 Incorrect Authorization
CVE-2021-28911 2024-11-21 15:00 2021-09-10 Show GitHub Exploit DB Packet Storm
194642 7.5 HIGH
Network
bab-technologie eibport_firmware BAB TECHNOLOGIE GmbH eibPort V3 prior version 3.9.1 contains basic SSRF vulnerability. It allow unauthenticated attackers to request to any internal and external server. CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2021-28910 2024-11-21 15:00 2021-09-10 Show GitHub Exploit DB Packet Storm
194643 9.8 CRITICAL
Network
bab-technologie eibport_firmware BAB TECHNOLOGIE GmbH eibPort V3 prior version 3.9.1 allow unauthenticated attackers to access uncontrolled the login service at /webif/SecurityModule in a brute force attack. The password could be we… CWE-307
mproper Restriction of Excessive Authentication Attempts
CVE-2021-28909 2024-11-21 15:00 2021-09-10 Show GitHub Exploit DB Packet Storm
194644 7.8 HIGH
Local
xen
debian
fedoraproject
xen
debian_linux
fedora
Another race in XENMAPSPACE_grant_table handling Guests are permitted access to certain Xen-owned pages of memory. The majority of such pages remain allocated / associated with a guest for its entire… CWE-362
Race Condition
CVE-2021-28701 2024-11-21 15:00 2021-09-8 Show GitHub Exploit DB Packet Storm
194645 4.9 MEDIUM
Network
xen
fedoraproject
debian
xen
fedora
debian_linux
xen/arm: No memory limit for dom0less domUs The dom0less feature allows an administrator to create multiple unprivileged domains directly from Xen. Unfortunately, the memory limit from them is not se… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2021-28700 2024-11-21 15:00 2021-08-28 Show GitHub Exploit DB Packet Storm
194646 5.5 MEDIUM
Local
xen
fedoraproject
debian
xen
fedora
debian_linux
inadequate grant-v2 status frames array bounds check The v2 grant table interface separates grant attributes from grant status. That is, when operating in this mode, a guest has two tables. As a resu… NVD-CWE-noinfo
CVE-2021-28699 2024-11-21 15:00 2021-08-28 Show GitHub Exploit DB Packet Storm
194647 5.5 MEDIUM
Local
xen
fedoraproject
debian
xen
fedora
debian_linux
long running loops in grant table handling In order to properly monitor resource use, Xen maintains information on the grant mappings a domain may create to map grants offered by other domains. In th… CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2021-28698 2024-11-21 15:00 2021-08-28 Show GitHub Exploit DB Packet Storm
194648 7.8 HIGH
Local
xen
fedoraproject
debian
xen
fedora
debian_linux
grant table v2 status pages may remain accessible after de-allocation Guest get permitted access to certain Xen-owned pages of memory. The majority of such pages remain allocated / associated with a … CWE-362
Race Condition
CVE-2021-28697 2024-11-21 15:00 2021-08-28 Show GitHub Exploit DB Packet Storm
194649 6.8 MEDIUM
Physics
xen
fedoraproject
debian
xen
fedora
debian_linux
IOMMU page mapping issues on x86 T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Both AMD and Intel allow ACPI tables … CWE-863
 Incorrect Authorization
CVE-2021-28696 2024-11-21 15:00 2021-08-28 Show GitHub Exploit DB Packet Storm
194650 6.8 MEDIUM
Physics
xen
fedoraproject
debian
xen
fedora
debian_linux
IOMMU page mapping issues on x86 T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Both AMD and Intel allow ACPI tables … NVD-CWE-noinfo
CVE-2021-28695 2024-11-21 15:00 2021-08-28 Show GitHub Exploit DB Packet Storm