Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
252161 7.8 危険 シスコシステムズ - Cisco IOS XR におけるサービス運用妨害 (line-card reload) の脆弱性 CWE-noinfo
情報不足
CVE-2011-2549 2011-12-1 11:18 2011-07-20 Show GitHub Exploit DB Packet Storm
252162 9 危険 シスコシステムズ - Cisco SA 500 series security appliances における任意のコマンドを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-2547 2011-12-1 11:17 2011-07-20 Show GitHub Exploit DB Packet Storm
252163 5 警告 シスコシステムズ - Cisco SA 500 series security appliances における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2011-2546 2011-12-1 11:14 2011-07-20 Show GitHub Exploit DB Packet Storm
252164 6.8 警告 マイクロソフト
シスコシステムズ
- Cisco VPN Client における権限を取得される脆弱性 CWE-DesignError
CVE-2011-2678 2011-12-1 11:14 2011-07-7 Show GitHub Exploit DB Packet Storm
252165 7.8 危険 シスコシステムズ - Cisco IOS におけるサービス運用妨害 (デバイスリロード) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-2064 2011-12-1 11:12 2011-07-6 Show GitHub Exploit DB Packet Storm
252166 5 警告 シスコシステムズ - Cisco IOS における Router Advertisement Guarding 機能が回避される脆弱性 CWE-16
環境設定
CVE-2011-2395 2011-12-1 11:12 2011-06-9 Show GitHub Exploit DB Packet Storm
252167 7.2 危険 マイクロソフト
シスコシステムズ
- Cisco AnyConnect Secure Mobility Client における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-2041 2011-12-1 11:11 2011-06-1 Show GitHub Exploit DB Packet Storm
252168 10 危険 シスコシステムズ - Cisco Network Registrar におけるアクセス権を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2011-2024 2011-12-1 11:11 2011-06-1 Show GitHub Exploit DB Packet Storm
252169 1.5 注意 シスコシステムズ - Cisco Unified IP Phones 7900 デバイスにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-1637 2011-12-1 11:10 2011-06-1 Show GitHub Exploit DB Packet Storm
252170 10 危険 シスコシステムズ - Cisco Media Processing Software におけるアクセス権を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2011-1623 2011-12-1 11:08 2011-06-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
253651 8.1 HIGH
Network
wp-kama kama_click_counter The kama-clic-counter plugin 3.4.9 for WordPress has SQL injection via the admin.php order parameter. CWE-89
SQL Injection
CVE-2017-18614 2024-11-21 12:20 2019-09-13 Show GitHub Exploit DB Packet Storm
253652 6.1 MEDIUM
Network
trust_form_project trust_form The trust-form plugin 2.0 for WordPress has XSS via the wp-admin/admin.php?page=trust-form-edit page parameter. CWE-79
Cross-site Scripting
CVE-2017-18613 2024-11-21 12:20 2019-09-13 Show GitHub Exploit DB Packet Storm
253653 6.1 MEDIUM
Network
netattingo wp-whois-domain The wp-whois-domain plugin 1.0.0 for WordPress has XSS via the pages/func-whois.php domain parameter. CWE-79
Cross-site Scripting
CVE-2017-18612 2024-11-21 12:20 2019-09-13 Show GitHub Exploit DB Packet Storm
253654 6.1 MEDIUM
Network
magicfields magic_fields The magic-fields plugin before 1.7.2 for WordPress has XSS via the RCCWP_CreateCustomFieldPage.php custom-field-css parameter. CWE-79
Cross-site Scripting
CVE-2017-18611 2024-11-21 12:20 2019-09-10 Show GitHub Exploit DB Packet Storm
253655 6.1 MEDIUM
Network
magicfields magic_fields The magic-fields plugin before 1.7.2 for WordPress has XSS via the RCCWP_CreateCustomFieldPage.php custom-group-id parameter. CWE-79
Cross-site Scripting
CVE-2017-18610 2024-11-21 12:20 2019-09-10 Show GitHub Exploit DB Packet Storm
253656 6.1 MEDIUM
Network
magicfields magic_fields The magic-fields plugin before 1.7.2 for WordPress has XSS via the custom-write-panel-id parameter. CWE-79
Cross-site Scripting
CVE-2017-18609 2024-11-21 12:20 2019-09-10 Show GitHub Exploit DB Packet Storm
253657 6.1 MEDIUM
Network
spot spot.im_comments The spotim-comments plugin before 4.0.4 for WordPress has multiple XSS issues. CWE-79
Cross-site Scripting
CVE-2017-18608 2024-11-21 12:20 2019-09-10 Show GitHub Exploit DB Packet Storm
253658 8.8 HIGH
Network
theme-fusion avada The avada theme before 5.1.5 for WordPress has CSRF. CWE-352
 Origin Validation Error
CVE-2017-18607 2024-11-21 12:20 2019-09-10 Show GitHub Exploit DB Packet Storm
253659 6.1 MEDIUM
Network
theme-fusion avada The avada theme before 5.1.5 for WordPress has stored XSS. CWE-79
Cross-site Scripting
CVE-2017-18606 2024-11-21 12:20 2019-09-10 Show GitHub Exploit DB Packet Storm
253660 9.8 CRITICAL
Network
gravitatedesign gravitate_qa_tracker The gravitate-qa-tracker plugin through 1.2.1 for WordPress has PHP Object Injection. CWE-74
CWE-502
Injection
 Deserialization of Untrusted Data
CVE-2017-18605 2024-11-21 12:20 2019-09-10 Show GitHub Exploit DB Packet Storm