Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224841 6.8 警告 ownCloud - ownCloud の管理ページにおけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-6403 2013-12-27 10:59 2013-11-8 Show GitHub Exploit DB Packet Storm
224842 4.3 警告 DuckCorp Projects
Fedora Project
- Bip の connection.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-310
暗号の問題
CVE-2011-5268 2013-12-27 10:53 2011-11-10 Show GitHub Exploit DB Packet Storm
224843 5.1 警告 DuckCorp Projects
Fedora Project
- Bip における他のソケットに書き込まれる脆弱性 CWE-310
暗号の問題
CVE-2013-4550 2013-12-27 10:52 2013-11-8 Show GitHub Exploit DB Packet Storm
224844 2.1 注意 レッドハット - Red Hat JBoss Operations Network における認証資格情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-4452 2013-12-27 10:09 2013-11-25 Show GitHub Exploit DB Packet Storm
224845 7.5 危険 INNER ESTEEM SDN BHD - Classifieds Creator における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-7216 2013-12-27 10:08 2013-12-14 Show GitHub Exploit DB Packet Storm
224846 5.4 警告 シスコシステムズ - Cisco IOS XE の Cisco Express Forwarding 処理モジュールにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-6706 2013-12-26 18:37 2013-11-27 Show GitHub Exploit DB Packet Storm
224847 5 警告 MediaWiki - MediaWiki の includes/api/ 配下の複数の PHP ファイルにおける CSRF トークンを取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-4302 2013-12-26 18:17 2013-09-3 Show GitHub Exploit DB Packet Storm
224848 4.3 警告 Jean-Paul Calderone
Canonical
- pyOpenSSL の X509Extension における任意の SSL サーバになりすまされる脆弱性 CWE-20
不適切な入力確認
CVE-2013-4314 2013-12-26 18:05 2013-09-4 Show GitHub Exploit DB Packet Storm
224849 10 危険 Super Micro Computer - 複数の Supermicro デバイス製品の IPMI におけるアクセス制限を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2013-3609 2013-12-26 18:04 2013-08-30 Show GitHub Exploit DB Packet Storm
224850 10 危険 Super Micro Computer - 複数の Supermicro デバイス製品の IPMI における任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2013-3608 2013-12-26 18:03 2013-08-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 20, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
313171 - oracle siebel_option_pack_ie_activex_control The Oracle Siebel Option Pack for IE ActiveX control does not properly initialize memory that is used by the NewBusObj method, which allows remote attackers to execute arbitrary code via a crafted HT… CWE-94
Code Injection
CVE-2009-3737 2024-11-21 10:08 2010-08-18 Show GitHub Exploit DB Packet Storm
313172 - oracle opensso_enterprise Unspecified vulnerability in Oracle OpenSSO Enterprise 8.0 allows remote attackers to affect integrity via unknown vectors. NVD-CWE-noinfo
CVE-2009-3762 2024-11-21 10:08 2010-07-14 Show GitHub Exploit DB Packet Storm
313173 - oracle opensso_enterprise Unspecified vulnerability in the OpenSSO component in Oracle OpenSSO Enterprise 8.0 allows remote attackers to affect integrity via unknown vectors. NVD-CWE-noinfo
CVE-2009-3764 2024-11-21 10:08 2010-07-14 Show GitHub Exploit DB Packet Storm
313174 - oracle opensso_enterprise Unspecified vulnerability in the Access Manager / OpenSSO component in Oracle OpenSSO Enterprise 7.1, 7, 2005Q4, and 8.0 allows remote attackers to affect integrity via unknown vectors. NVD-CWE-noinfo
CVE-2009-3763 2024-11-21 10:08 2010-07-14 Show GitHub Exploit DB Packet Storm
313175 - adobe
macromedia
flash_player
air
Unspecified vulnerability in Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64, and Adobe AIR before 2.0.2.12610, allows attackers to cause a denial of service (memory consumption) or po… CWE-399
NVD-CWE-noinfo
 Resource Management Errors
CVE-2009-3793 2024-11-21 10:08 2010-06-16 Show GitHub Exploit DB Packet Storm
313176 3.3 LOW
Local
noping
debian
liboping
debian_linux
liboping 1.3.2 allows users reading arbitrary files upon the local system. CWE-20
 Improper Input Validation 
CVE-2009-3614 2024-11-21 10:07 2019-11-9 Show GitHub Exploit DB Packet Storm
313177 3.1 LOW
Adjacent
redhat enterprise_virtualization_manager In RHEV-M VDC 2.2.0, it was found that the SSL certificate was not verified when using the client-side Red Hat Enterprise Virtualization Manager interface (a Windows Presentation Foundation (WPF) XAM… CWE-295
Improper Certificate Validation 
CVE-2009-3552 2024-11-21 10:07 2019-11-9 Show GitHub Exploit DB Packet Storm
313178 - vmware hyperic_hq The monitor perl script in the Sybase database plug-in in SpringSource Hyperic HQ before 4.3 allows local users to obtain the database password by listing the process and its arguments. CWE-200
Information Exposure
CVE-2009-2899 2024-11-21 10:06 2012-12-6 Show GitHub Exploit DB Packet Storm
313179 - symantec altiris_deployment_solution
altiris_notification_server
management_platform
The Altiris eXpress NS SC Download ActiveX control in AeXNSPkgDLLib.dll, as used in Symantec Altiris Deployment Solution 6.9.x, Notification Server 6.0.x, and Symantec Management Platform 7.0.x expos… NVD-CWE-Other
CVE-2009-3028 2024-11-21 10:06 2011-03-8 Show GitHub Exploit DB Packet Storm
313180 6.1 MEDIUM
Network
mantisbt mantisbt MantisBT 1.2.x before 1.2.2 insecurely handles attachments and MIME types. Arbitrary inline attachment rendering could lead to cross-domain scripting or other browser attacks. CWE-79
Cross-site Scripting
CVE-2009-2802 2024-11-21 10:05 2019-11-9 Show GitHub Exploit DB Packet Storm