Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 23, 2025, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
207321 9.3 危険 アドビシステムズ - Adobe Shockwave Player におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-4307 2011-03-17 08:36 2011-02-8 Show GitHub Exploit DB Packet Storm
207322 9.3 危険 アドビシステムズ - Adobe Shockwave Player における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2010-4306 2011-03-17 08:36 2011-02-8 Show GitHub Exploit DB Packet Storm
207323 9.3 危険 アドビシステムズ - Adobe Shockwave Player の Shockwave 3d Asset モジュールにおける任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2010-4196 2011-03-17 08:36 2011-02-8 Show GitHub Exploit DB Packet Storm
207324 7.5 危険 アップル
VMware
サン・マイクロシステムズ
ヒューレット・パッカード
レッドハット
- 複数の Oracle 製品の Java 2D コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0849 2011-03-17 08:18 2010-03-30 Show GitHub Exploit DB Packet Storm
207325 7.5 危険 アップル
VMware
サン・マイクロシステムズ
ヒューレット・パッカード
レッドハット
- 複数の Oracle 製品の Java 2D コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0848 2011-03-17 08:18 2010-03-30 Show GitHub Exploit DB Packet Storm
207326 7.5 危険 サン・マイクロシステムズ
VMware
- 複数の Oracle 製品の Java 2D コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0850 2011-03-17 08:17 2010-03-30 Show GitHub Exploit DB Packet Storm
207327 9.3 危険 アドビシステムズ - Adobe Shockwave Player の TextXtra モジュールにおける任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2010-4195 2011-03-11 18:22 2011-02-8 Show GitHub Exploit DB Packet Storm
207328 9.3 危険 アドビシステムズ - Adobe Shockwave Player の dirapi.dll モジュールにおける任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2010-4194 2011-03-11 18:21 2011-02-8 Show GitHub Exploit DB Packet Storm
207329 9.3 危険 アドビシステムズ - Adobe Shockwave Player における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2010-4193 2011-03-11 18:21 2011-02-8 Show GitHub Exploit DB Packet Storm
207330 9.3 危険 アドビシステムズ - Adobe Shockwave Player における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2010-4192 2011-03-11 18:21 2011-02-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 24, 2025, 4:45 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
260301 - 2bits userpoints Unspecified vulnerability in Userpoints 6.x before 6.x-1.1, a module for Drupal, allows remote authenticated users with "View own userpoints" permissions to read the userpoint data of arbitrary users… CWE-200
Information Exposure
CVE-2009-3782 2017-08-17 10:31 2009-10-27 Show GitHub Exploit DB Packet Storm
260302 - sjoerd_arendsen simplenews_statistics Cross-site scripting (XSS) vulnerability in Simplenews Statistics 6.x before 6.x-2.0, a module for Drupal, allows remote attackers to inject arbitrary web script or HTML via unspecified vector. CWE-79
Cross-site Scripting
CVE-2009-3783 2017-08-17 10:31 2009-10-27 Show GitHub Exploit DB Packet Storm
260303 - sjoerd_arendsen simplenews_statistics Multiple cross-site request forgery (CSRF) vulnerabilities in Simplenews Statistics 6.x before 6.x-2.0, a module for Drupal, allow remote attackers to hijack the authentication of arbitrary users via… CWE-352
 Origin Validation Error
CVE-2009-3785 2017-08-17 10:31 2009-10-27 Show GitHub Exploit DB Packet Storm
260304 - moshe_weitzman og_vocab Cross-site scripting (XSS) vulnerability in Organic Groups (OG) Vocabulary 5.x before 5.x-1.1 and 6.x before 6.x-1.1, a module for Drupal, allows remote attackers to inject arbitrary web script or HT… CWE-79
Cross-site Scripting
CVE-2009-3786 2017-08-17 10:31 2009-10-27 Show GitHub Exploit DB Packet Storm
260305 - opendocman opendocman SQL injection vulnerability in index.php in OpenDocMan 1.2.5 allows remote attackers to execute arbitrary SQL commands via the frmuser (aka Username) parameter. CWE-89
SQL Injection
CVE-2009-3788 2017-08-17 10:31 2009-10-27 Show GitHub Exploit DB Packet Storm
260306 - opendocman opendocman Multiple cross-site scripting (XSS) vulnerabilities in OpenDocMan 1.2.5 allow remote attackers to inject arbitrary web script or HTML via the last_message parameter to (1) add.php, (2) toBePublished.… CWE-79
Cross-site Scripting
CVE-2009-3789 2017-08-17 10:31 2009-10-27 Show GitHub Exploit DB Packet Storm
260307 - cutepdf formmax Heap-based buffer overflow in FormMax (formerly AcroForm) evaluation 3.5 allows remote attackers to cause a denial of service or possibly execute arbitrary code via a crafted FormMax import (.aim) fi… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2009-3790 2017-08-17 10:31 2009-10-27 Show GitHub Exploit DB Packet Storm
260308 - amirocms amiro.cms Amiro.CMS 5.4.0.0 and earlier allows remote attackers to obtain sensitive information via an invalid loginname ("%%%") to _admin/index.php, which reveals the installation path and other information i… CWE-20
 Improper Input Validation 
CVE-2009-3802 2017-08-17 10:31 2009-10-28 Show GitHub Exploit DB Packet Storm
260309 - gpg4win gpg4win gpg2.exe in Gpg4win 2.0.1, as used in KDE Kleopatra 2.0.11, allows remote attackers to cause a denial of service (application crash) via a long certificate signature. NVD-CWE-Other
CVE-2009-3805 2017-08-17 10:31 2009-10-28 Show GitHub Exploit DB Packet Storm
260310 - amirocms amiro.cms Multiple cross-site scripting (XSS) vulnerabilities in Amiro.CMS 5.4.0.0 and earlier allow remote attackers to inject arbitrary web script or HTML via the status_message parameter to (1) /news, (2) /… CWE-79
Cross-site Scripting
CVE-2009-3803 2017-08-17 10:31 2009-10-28 Show GitHub Exploit DB Packet Storm