Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 11, 2026, 12:16 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227481 8.8 危険 visagesoft - VISAGESOFT eXPert PDF Viewer X ActiveX コントロールにおける任意のファイルを上書きされる脆弱性 CWE-20
不適切な入力確認
CVE-2008-4919 2012-12-20 18:52 2008-11-4 Show GitHub Exploit DB Packet Storm
227482 4.3 警告 SonicWALL - SonicWALL Pro 2040 などで使用されている SonicWALL SonicOS Enhanced におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4918 2012-12-20 18:52 2008-11-4 Show GitHub Exploit DB Packet Storm
227483 7.5 危険 rs maxsoft - RS MAXSOFT の fotogalerie モジュールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4912 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
227484 10 危険 サン・マイクロシステムズ - Sun Java Web Start の BasicService におけるクライアントマシン上で任意のプログラムを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-4910 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
227485 7.5 危険 w1n78 - e107 用の Lyrics プラグインにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4906 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
227486 5 警告 typosphere - Typo におけるパスワードを推測される脆弱性 CWE-310
暗号の問題
CVE-2008-4905 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
227487 6 警告 typosphere - Typo の "ページを管理する" 機能における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4904 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
227488 4.3 警告 typosphere - Typo のコメントを残す機能におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4903 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
227489 7.5 危険 scripts frenzy - Article Publisher Pro の contact_author.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4902 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
227490 7.5 危険 scripts frenzy - Article Publisher Pro の admin/admin.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4901 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 11, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
222171 7.8 HIGH
Local
bitdefender endpoint_security_tools An Untrusted Search Path vulnerability in EPSecurityService.exe as used in Bitdefender Endpoint Security Tools versions prior to 6.6.11.163 allows an attacker to load an arbitrary DLL file from the s… CWE-426
 Untrusted Search Path
CVE-2019-17099 2024-11-21 13:31 2020-01-28 Show GitHub Exploit DB Packet Storm
222172 9.8 CRITICAL
Network
bitdefender box_2_firmware A command injection vulnerability has been discovered in the bootstrap stage of Bitdefender BOX 2, versions 2.1.47.42 and 2.1.53.45. The API method `/api/download_image` unsafely handles the producti… CWE-78
OS Command 
CVE-2019-17095 2024-11-21 13:31 2020-01-28 Show GitHub Exploit DB Packet Storm
222173 7.8 HIGH
Local
belkin wemo_insight_switch_firmware A Stack-based Buffer Overflow vulnerability in libbelkin_api.so component of Belkin WeMo Insight Switch firmware allows a local attacker to obtain code execution on the device. This issue affects: Be… CWE-787
 Out-of-bounds Write
CVE-2019-17094 2024-11-21 13:31 2020-01-28 Show GitHub Exploit DB Packet Storm
222174 9.8 CRITICAL
Network
bitdefender box_2_firmware
central
A OS Command Injection vulnerability in the bootstrap stage of Bitdefender BOX 2 allows the manipulation of the `get_image_url()` function in special circumstances to inject a system command. CWE-78
OS Command 
CVE-2019-17096 2024-11-21 13:31 2020-01-28 Show GitHub Exploit DB Packet Storm
222175 7.8 HIGH
Local
avast secure_browser A Local Privilege Escalation issue was discovered in Avast Secure Browser 76.0.1659.101. The vulnerability is due to an insecure ACL set by the AvastBrowserUpdate.exe (which is running as NT AUTHORIT… CWE-863
 Incorrect Authorization
CVE-2019-17190 2024-11-21 13:31 2020-01-28 Show GitHub Exploit DB Packet Storm
222176 5.5 MEDIUM
Local
bitdefender antivirus An Incorrect Default Permissions vulnerability in the BDLDaemon component of Bitdefender AV for Mac allows an attacker to elevate permissions to read protected directories. This issue affects: Bitdef… CWE-276
Incorrect Default Permissions 
CVE-2019-17103 2024-11-21 13:31 2020-01-27 Show GitHub Exploit DB Packet Storm
222177 8.1 HIGH
Network
bitdefender box_2_firmware An exploitable command execution vulnerability exists in the recovery partition of Bitdefender BOX 2, version 2.0.1.91. The API method `/api/update_setup` does not perform firmware signature checks a… CWE-367
 Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2019-17102 2024-11-21 13:31 2020-01-27 Show GitHub Exploit DB Packet Storm
222178 6.5 MEDIUM
Local
bitdefender total_security_2020 An Untrusted Search Path vulnerability in bdserviceshost.exe as used in Bitdefender Total Security 2020 allows an attacker to execute arbitrary code. This issue does not affect: Bitdefender Total Sec… CWE-426
 Untrusted Search Path
CVE-2019-17100 2024-11-21 13:31 2020-01-27 Show GitHub Exploit DB Packet Storm
222179 7.8 HIGH
Local
fasttracksoftware admin_by_request FastTrack Admin By Request 6.1.0.0 supports group policies that are supposed to allow only a select range of users to elevate to Administrator privilege at will. If a user does not have direct access… CWE-269
 Improper Privilege Management
CVE-2019-17202 2024-11-21 13:31 2020-01-24 Show GitHub Exploit DB Packet Storm
222180 7.8 HIGH
Local
fasttracksoftware admin_by_request FastTrack Admin By Request 6.1.0.0 supports group policies that are supposed to allow only a select range of users to elevate to Administrator privilege at will. When a user requests elevation using … NVD-CWE-noinfo
CVE-2019-17201 2024-11-21 13:31 2020-01-24 Show GitHub Exploit DB Packet Storm