Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
258721 6.9 警告 サイバートラスト株式会社
Todd C. Miller
ターボリナックス
レッドハット
- sudo における任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2010-1163 2010-09-8 15:50 2010-04-16 Show GitHub Exploit DB Packet Storm
258722 10 危険 ESET
アップル
ClamAV
ソースネクスト
- 複数のアンチウィルス製品に脆弱性 CWE-noinfo
情報不足
CVE-2010-0098 2010-09-8 15:50 2010-04-13 Show GitHub Exploit DB Packet Storm
258723 7.5 危険 The PHP Group
アップル
- PHP の safe_mode 実装におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-1129 2010-09-8 15:49 2010-03-26 Show GitHub Exploit DB Packet Storm
258724 4.4 警告 サイバートラスト株式会社
Todd C. Miller
ターボリナックス
レッドハット
- sudo における権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-0427 2010-09-8 15:49 2010-02-25 Show GitHub Exploit DB Packet Storm
258725 6.6 警告 サイバートラスト株式会社
レッドハット
- QEMU-KVM の subpage MMIO initialization 機能における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-2784 2010-09-7 15:51 2010-08-19 Show GitHub Exploit DB Packet Storm
258726 6.6 警告 サイバートラスト株式会社
レッドハット
- QEMU-KVM のゲスト QXL ドライバポインタにおける権限を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2010-0431 2010-09-7 15:50 2010-08-19 Show GitHub Exploit DB Packet Storm
258727 6.6 警告 サイバートラスト株式会社
レッドハット
- 複数のレッドハット製品などで利用される libspice のメモリ管理操作における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-0429 2010-09-7 15:49 2010-08-19 Show GitHub Exploit DB Packet Storm
258728 6.6 警告 サイバートラスト株式会社
レッドハット
- 複数のレッドハット製品などで利用される libspice のゲスト QXL ドライバポインタにおける権限を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2010-0428 2010-09-7 15:48 2010-08-19 Show GitHub Exploit DB Packet Storm
258729 - - ワイズテクノロジー - Wyse ThinOS LPD サービスにバッファオーバーフローの脆弱性 - - 2010-09-7 15:47 2010-08-17 Show GitHub Exploit DB Packet Storm
258730 7.8 危険 日立 - Hitachi Storage Command Suite 製品の組み込みデータベースにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
- 2010-09-7 15:45 2010-08-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 18, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
195071 9.8 CRITICAL
Network
bab-technologie eibport_firmware BAB TECHNOLOGIE GmbH eibPort V3 prior version 3.9.1 allow unauthenticated attackers access to /webif/SecurityModule to validate the so called and hard coded unique 'eibPort String' which acts as the … CWE-306
Missing Authentication for Critical Function
CVE-2021-28913 2024-11-21 15:00 2021-09-10 Show GitHub Exploit DB Packet Storm
195072 7.2 HIGH
Network
bab-technologie eibport_firmware BAB TECHNOLOGIE GmbH eibPort V3. Each device has its own unique hard coded and weak root SSH key passphrase known as 'eibPort string'. This is usable and the final part of an attack chain to gain SSH… CWE-798
CWE-521
 Use of Hard-coded Credentials
Weak Password Requirements 
CVE-2021-28912 2024-11-21 15:00 2021-09-10 Show GitHub Exploit DB Packet Storm
195073 9.8 CRITICAL
Network
bab-technologie eibport_firmware BAB TECHNOLOGIE GmbH eibPort V3 prior version 3.9.1 allow unauthenticated attackers access to /tmp path which contains some sensitive data (e.g. device serial number). Having those info, a possible l… CWE-307
CWE-863
mproper Restriction of Excessive Authentication Attempts
 Incorrect Authorization
CVE-2021-28911 2024-11-21 15:00 2021-09-10 Show GitHub Exploit DB Packet Storm
195074 7.5 HIGH
Network
bab-technologie eibport_firmware BAB TECHNOLOGIE GmbH eibPort V3 prior version 3.9.1 contains basic SSRF vulnerability. It allow unauthenticated attackers to request to any internal and external server. CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2021-28910 2024-11-21 15:00 2021-09-10 Show GitHub Exploit DB Packet Storm
195075 9.8 CRITICAL
Network
bab-technologie eibport_firmware BAB TECHNOLOGIE GmbH eibPort V3 prior version 3.9.1 allow unauthenticated attackers to access uncontrolled the login service at /webif/SecurityModule in a brute force attack. The password could be we… CWE-307
mproper Restriction of Excessive Authentication Attempts
CVE-2021-28909 2024-11-21 15:00 2021-09-10 Show GitHub Exploit DB Packet Storm
195076 7.8 HIGH
Local
xen
debian
fedoraproject
xen
debian_linux
fedora
Another race in XENMAPSPACE_grant_table handling Guests are permitted access to certain Xen-owned pages of memory. The majority of such pages remain allocated / associated with a guest for its entire… CWE-362
Race Condition
CVE-2021-28701 2024-11-21 15:00 2021-09-8 Show GitHub Exploit DB Packet Storm
195077 4.9 MEDIUM
Network
xen
fedoraproject
debian
xen
fedora
debian_linux
xen/arm: No memory limit for dom0less domUs The dom0less feature allows an administrator to create multiple unprivileged domains directly from Xen. Unfortunately, the memory limit from them is not se… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2021-28700 2024-11-21 15:00 2021-08-28 Show GitHub Exploit DB Packet Storm
195078 5.5 MEDIUM
Local
xen
fedoraproject
debian
xen
fedora
debian_linux
inadequate grant-v2 status frames array bounds check The v2 grant table interface separates grant attributes from grant status. That is, when operating in this mode, a guest has two tables. As a resu… NVD-CWE-noinfo
CVE-2021-28699 2024-11-21 15:00 2021-08-28 Show GitHub Exploit DB Packet Storm
195079 5.5 MEDIUM
Local
xen
fedoraproject
debian
xen
fedora
debian_linux
long running loops in grant table handling In order to properly monitor resource use, Xen maintains information on the grant mappings a domain may create to map grants offered by other domains. In th… CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2021-28698 2024-11-21 15:00 2021-08-28 Show GitHub Exploit DB Packet Storm
195080 7.8 HIGH
Local
xen
fedoraproject
debian
xen
fedora
debian_linux
grant table v2 status pages may remain accessible after de-allocation Guest get permitted access to certain Xen-owned pages of memory. The majority of such pages remain allocated / associated with a … CWE-362
Race Condition
CVE-2021-28697 2024-11-21 15:00 2021-08-28 Show GitHub Exploit DB Packet Storm