Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 28, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227261 7.5 危険 The phpMyAdmin Project - phpMyAdmin のコンフィギュレーション設定スクリプトにおける任意の PHP コードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-3055 2012-12-20 19:29 2010-08-20 Show GitHub Exploit DB Packet Storm
227262 10 危険 SAP - SAP Crystal Reports の ebus-3-3-2-6.dll モジュールにおける整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2010-3032 2012-12-20 19:29 2010-08-17 Show GitHub Exploit DB Packet Storm
227263 10 危険 ワイズテクノロジー - Wyse ThinOS HF におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-3031 2012-12-20 19:29 2010-08-17 Show GitHub Exploit DB Packet Storm
227264 6.8 警告 tomaz-muraus - Tomaz Muraus Open Blog におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2010-3030 2012-12-20 19:29 2010-08-17 Show GitHub Exploit DB Packet Storm
227265 7.5 危険 phpkick - PHPKick の statistics.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-3029 2012-12-20 19:29 2010-08-16 Show GitHub Exploit DB Packet Storm
227266 3.6 注意 Simon Phillips - Joomla! 用の Aardvertiser コンポーネントにおける特定のファイルを変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-3028 2012-12-20 19:29 2010-08-16 Show GitHub Exploit DB Packet Storm
227267 7.5 危険 tycoon - Tycoon Baseball Script の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-3027 2012-12-20 19:29 2010-08-16 Show GitHub Exploit DB Packet Storm
227268 5 警告 Wireshark - Wireshark の GSM A RR 解析子におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2010-2992 2012-12-20 19:29 2010-06-21 Show GitHub Exploit DB Packet Storm
227269 9.3 危険 raphael assenat - libmikmod の loaders/load_it.c におけるバッファオーバーリードを誘発される脆弱性 CWE-119
バッファエラー
CVE-2010-2971 2012-12-20 19:29 2010-08-5 Show GitHub Exploit DB Packet Storm
227270 7.8 危険 ウインドリバー株式会社 - Wind River VxWorks の FTP デーモンにおけるアクセス権を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-2968 2012-12-20 19:29 2010-08-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
221211 5.5 MEDIUM
Local
ibm watson_studio_local IBM Watson Studio Local 1.2.3 stores key files in the user's home directory which could be obtained by another local user. IBM X-Force ID: 161413. CWE-522
 Insufficiently Protected Credentials
CVE-2019-4335 2024-11-21 13:43 2019-12-31 Show GitHub Exploit DB Packet Storm
221212 5.4 MEDIUM
Network
ibm cognos_analytics IBM Cognos Analytics 11.0 and 11.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality pot… CWE-79
Cross-site Scripting
CVE-2019-4555 2024-11-21 13:43 2019-12-21 Show GitHub Exploit DB Packet Storm
221213 4.3 MEDIUM
Network
ibm
netapp
cognos_analytics
oncommand_insight
IBM Cognos Analytics 11.0 and 11.1 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website tru… CWE-352
 Origin Validation Error
CVE-2019-4231 2024-11-21 13:43 2019-12-21 Show GitHub Exploit DB Packet Storm
221214 7.5 HIGH
Network
ibm api_connect IBM API Connect 2018.4.1.7 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 168510. CWE-327
 Use of a Broken or Risky Cryptographic Algorithm
CVE-2019-4609 2024-11-21 13:43 2019-12-19 Show GitHub Exploit DB Packet Storm
221215 4.8 MEDIUM
Network
hcltech appscan_source HCL AppScan Source 9.0.3.13 and earlier is susceptible to cross-site scripting (XSS) attacks by allowing users to embed arbitrary JavaScript code in the Web UI. CWE-79
Cross-site Scripting
CVE-2019-4388 2024-11-21 13:43 2019-12-18 Show GitHub Exploit DB Packet Storm
221216 6.5 MEDIUM
Network
elog_project
fedoraproject
elog
fedora
ELOG 3.1.4-57bea22 and below can be used as an HTTP GET request proxy when unauthenticated remote attackers send crafted HTTP POST requests. CWE-610
Externally Controlled Reference to a Resource in Another Sphere
CVE-2019-3996 2024-11-21 13:43 2019-12-18 Show GitHub Exploit DB Packet Storm
221217 7.5 HIGH
Network
elog_project
fedoraproject
elog
fedora
ELOG 3.1.4-57bea22 and below is affected by a denial of service vulnerability due to a NULL pointer dereference. A remote unauthenticated attacker can crash the ELOG server by sending a crafted HTTP … CWE-476
 NULL Pointer Dereference
CVE-2019-3995 2024-11-21 13:43 2019-12-18 Show GitHub Exploit DB Packet Storm
221218 7.5 HIGH
Network
elog_project
fedoraproject
elog
fedora
ELOG 3.1.4-57bea22 and below is affected by a denial of service vulnerability due to a use after free. A remote unauthenticated attacker can crash the ELOG server by sending multiple HTTP POST reques… CWE-416
 Use After Free
CVE-2019-3994 2024-11-21 13:43 2019-12-18 Show GitHub Exploit DB Packet Storm
221219 7.5 HIGH
Network
elog_project
fedoraproject
elog
fedora
ELOG 3.1.4-57bea22 and below is affected by an information disclosure vulnerability. A remote unauthenticated attacker can recover a user's password hash by sending a crafted HTTP POST request. CWE-319
Cleartext Transmission of Sensitive Information
CVE-2019-3993 2024-11-21 13:43 2019-12-18 Show GitHub Exploit DB Packet Storm
221220 7.5 HIGH
Network
elog_project
fedoraproject
elog
fedora
ELOG 3.1.4-57bea22 and below is affected by an information disclosure vulnerability. A remote unauthenticated attacker can access the server's configuration file by sending an HTTP GET request. Among… CWE-319
Cleartext Transmission of Sensitive Information
CVE-2019-3992 2024-11-21 13:43 2019-12-18 Show GitHub Exploit DB Packet Storm