Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 12, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226651 9.3 危険 シマンテック - SSS などで使用される AMS の IAO.EXE におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-1430 2012-12-20 19:10 2009-04-28 Show GitHub Exploit DB Packet Storm
226652 10 危険 シマンテック - SSS などで使用される AMS の CBA における任意のコマンドを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2009-1429 2012-12-20 19:10 2009-04-28 Show GitHub Exploit DB Packet Storm
226653 4.3 警告 シマンテック - SAV などで使用される Symantec Log Viewer におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-1428 2012-12-20 19:10 2009-04-28 Show GitHub Exploit DB Packet Storm
226654 4.3 警告 webSPELL - webSPELL におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-1408 2012-12-20 19:10 2009-04-14 Show GitHub Exploit DB Packet Storm
226655 6.8 警告 wonko - NotFTP の config.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-1407 2012-12-20 19:10 2009-04-24 Show GitHub Exploit DB Packet Storm
226656 6.8 警告 sweetphp - TotalCalendar の cms_detect.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-1406 2012-12-20 19:10 2009-04-24 Show GitHub Exploit DB Packet Storm
226657 10 危険 forkosh - mathTex の mathtex.cgi における任意のコマンドを実行される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2009-1383 2012-12-20 19:10 2009-07-14 Show GitHub Exploit DB Packet Storm
226658 4.3 警告 レッドハット - Red Hat JBoss Enterprise Application Platform の JBossAs におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-1380 2012-12-20 19:10 2009-12-9 Show GitHub Exploit DB Packet Storm
226659 9.3 危険 xilisoft - Xilisoft Video Converter の ape_plugin.plg におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-1370 2012-12-20 19:10 2009-04-22 Show GitHub Exploit DB Packet Storm
226660 4.9 警告 サン・マイクロシステムズ - Sun OpenSolaris の SCTP におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2009-1359 2012-12-20 19:10 2009-04-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 12, 2026, 5:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
213611 9.8 CRITICAL
Network
putty
fedoraproject
debian
opensuse
netapp
putty
fedora
debian_linux
leap
oncommand_unified_manager
Potential recycling of random numbers used in cryptography exists within PuTTY before 0.71. CWE-330
 Use of Insufficiently Random Values
CVE-2019-9898 2024-11-21 13:52 2019-03-22 Show GitHub Exploit DB Packet Storm
213612 7.5 HIGH
Network
putty
fedoraproject
debian
netapp
opensuse
putty
fedora
debian_linux
oncommand_unified_manager
leap
Multiple denial-of-service attacks that can be triggered by writing to the terminal exist in PuTTY versions before 0.71. NVD-CWE-noinfo
CVE-2019-9897 2024-11-21 13:52 2019-03-22 Show GitHub Exploit DB Packet Storm
213613 7.8 HIGH
Local
putty
opensuse
putty
leap
backports_sle
In PuTTY versions before 0.71 on Windows, local attackers could hijack the application by putting a malicious help file in the same directory as the executable. CWE-427
 Uncontrolled Search Path Element
CVE-2019-9896 2024-11-21 13:52 2019-03-22 Show GitHub Exploit DB Packet Storm
213614 9.8 CRITICAL
Network
putty
fedoraproject
putty
fedora
In PuTTY versions before 0.71 on Unix, a remotely triggerable buffer overflow exists in any kind of server-to-client forwarding. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2019-9895 2024-11-21 13:52 2019-03-22 Show GitHub Exploit DB Packet Storm
213615 7.5 HIGH
Network
putty
fedoraproject
debian
netapp
opensuse
putty
fedora
debian_linux
oncommand_unified_manager
leap
A remotely triggerable memory overwrite in RSA key exchange in PuTTY before 0.71 can occur before host key verification. CWE-320
 Key Management Errors
CVE-2019-9894 2024-11-21 13:52 2019-03-22 Show GitHub Exploit DB Packet Storm
213616 9.8 CRITICAL
Network
libseccomp_project libseccomp libseccomp before 2.4.0 did not correctly generate 64-bit syscall argument comparisons using the arithmetic operators (LT, GT, LE, GE), which might able to lead to bypassing seccomp filters and poten… NVD-CWE-noinfo
CVE-2019-9893 2024-11-21 13:52 2019-03-22 Show GitHub Exploit DB Packet Storm
213617 2.7 LOW
Network
vanillaforums vanilla In Vanilla before 2.6.4, a flaw exists within the getSingleIndex function of the AddonManager class. The issue results in a require call using a crafted type value, leading to Directory Traversal wit… CWE-22
Path Traversal
CVE-2019-9889 2024-11-21 13:52 2019-03-22 Show GitHub Exploit DB Packet Storm
213618 7.8 HIGH
Local
pdfalto_project
xpdfreader
pdfalto
xpdf
There is an invalid memory access in the function GfxIndexedColorSpace::mapColorToBase() located in GfxState.cc in Xpdf 4.0.0, as used in pdfalto 0.2. It can be triggered by (for example) sending a c… CWE-125
Out-of-bounds Read
CVE-2019-9878 2024-11-21 13:52 2019-03-22 Show GitHub Exploit DB Packet Storm
213619 7.8 HIGH
Local
xpdfreader xpdf There is an invalid memory access vulnerability in the function TextPage::findGaps() located at TextOutputDev.c in Xpdf 4.01, which can (for example) be triggered by sending a crafted pdf file to the… CWE-125
CWE-787
Out-of-bounds Read
 Out-of-bounds Write
CVE-2019-9877 2024-11-21 13:52 2019-03-22 Show GitHub Exploit DB Packet Storm
213620 9.8 CRITICAL
Network
oembed_project oembed plugin.js in the w8tcha oEmbed plugin before 2019-03-14 for CKEditor mishandles SCRIPT elements. CWE-19
 Data Processing Errors
CVE-2019-9870 2024-11-21 13:52 2019-03-22 Show GitHub Exploit DB Packet Storm