Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227201 7.5 危険 phpcityportal - PHPCityPortal の login.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4870 2012-12-20 19:28 2010-05-11 Show GitHub Exploit DB Packet Storm
227202 4.3 警告 tony million - Tuniac におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-4867 2012-12-20 19:28 2010-05-11 Show GitHub Exploit DB Packet Storm
227203 4.3 警告 PunBB - PunBB の profile.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4894 2012-12-20 19:28 2009-05-20 Show GitHub Exploit DB Packet Storm
227204 9.3 危険 ultraplayer - UltraPlayer Media Player におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-4863 2012-12-20 19:28 2010-05-11 Show GitHub Exploit DB Packet Storm
227205 4.3 警告 supportpro - SupportPRO SupportDesk の shownews.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4861 2012-12-20 19:28 2010-05-11 Show GitHub Exploit DB Packet Storm
227206 4.3 警告 turnkeyforms - Yahoo Answers Clone の questiondetail.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4858 2012-12-20 19:28 2010-05-11 Show GitHub Exploit DB Packet Storm
227207 7.5 危険 scripts.oldguy - TalkBack の addons/import.php における任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2009-4854 2012-12-20 19:28 2010-05-7 Show GitHub Exploit DB Packet Storm
227208 6.8 警告 toutvirtual - ToutVirtual VirtualIQ Pro におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2009-4849 2012-12-20 19:28 2010-05-7 Show GitHub Exploit DB Packet Storm
227209 4.3 警告 toutvirtual - ToutVirtual VirtualIQ Pro におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4848 2012-12-20 19:28 2010-05-7 Show GitHub Exploit DB Packet Storm
227210 5 警告 toutvirtual - ToutVirtual VirtualIQ Pro の設定ページにおける重要な情報を取得される脆弱性 CWE-310
暗号の問題
CVE-2009-4845 2012-12-20 19:28 2010-05-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
224691 8.8 HIGH
Network
kkcms_project kkcms kkcms v1.3 has a CSRF vulnerablity that can add an user account via admin/cms_user_add.php. CWE-352
 Origin Validation Error
CVE-2019-16706 2024-11-21 13:31 2019-09-23 Show GitHub Exploit DB Packet Storm
224692 9.1 CRITICAL
Network
libming libming Ming (aka libming) 0.4.8 has an out of bounds read vulnerability in the function OpCode() in the decompile.c file in libutil.a. CWE-125
Out-of-bounds Read
CVE-2019-16705 2024-11-21 13:31 2019-09-23 Show GitHub Exploit DB Packet Storm
224693 4.8 MEDIUM
Network
phpmywind phpmywind admin/infoclass_update.php in PHPMyWind 5.6 has stored XSS. CWE-79
Cross-site Scripting
CVE-2019-16704 2024-11-21 13:31 2019-09-23 Show GitHub Exploit DB Packet Storm
224694 6.1 MEDIUM
Network
phpmywind phpmywind admin/infolist_add.php in PHPMyWind 5.6 has stored XSS. CWE-79
Cross-site Scripting
CVE-2019-16703 2024-11-21 13:31 2019-09-23 Show GitHub Exploit DB Packet Storm
224695 9.8 CRITICAL
Network
integard_pro_project integard_pro Integard Pro 2.2.0.9026 allows remote attackers to execute arbitrary code via a buffer overflow involving a long NoJs parameter to the /LoginAdmin URI. CWE-120
Classic Buffer Overflow
CVE-2019-16702 2024-11-21 13:31 2019-09-23 Show GitHub Exploit DB Packet Storm
224696 9.8 CRITICAL
Network
phpipam phpipam phpIPAM 1.4 allows SQL injection via the app/admin/custom-fields/edit.php table parameter when action=add is used. CWE-89
SQL Injection
CVE-2019-16696 2024-11-21 13:31 2019-09-23 Show GitHub Exploit DB Packet Storm
224697 7.8 HIGH
Local
adobe acrobat_dc
acrobat_reader_dc
Adobe Acrobat Reader versions 2019.021.20056 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. … CWE-787
 Out-of-bounds Write
CVE-2019-16470 2024-11-21 13:30 2023-09-11 Show GitHub Exploit DB Packet Storm
224698 - - - An issue was found on the Ruijie EG-2000 series gateway. There is a buffer overflow in client.so. Consequently, an attacker can use login.php to login to any account, without providing its password. … - CVE-2019-16641 2024-11-21 13:30 2024-07-17 Show GitHub Exploit DB Packet Storm
224699 - - - An issue was found in upload.php on the Ruijie EG-2000 series gateway. A parameter passed to the class UploadFile is mishandled (%00 and /var/./html are not checked), which can allow an attacker to u… - CVE-2019-16640 2024-11-21 13:30 2024-07-17 Show GitHub Exploit DB Packet Storm
224700 - - - An issue was found on the Ruijie EG-2000 series gateway. There is a newcli.php API interface without access control, which can allow an attacker (who only has web interface access) to use TELNET comm… - CVE-2019-16639 2024-11-21 13:30 2024-07-17 Show GitHub Exploit DB Packet Storm