Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 2, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227941 10 危険 リアルネットワークス - Helix DNA Server の RTSP サービスにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
CWE-20
CVE-2007-4561 2012-12-20 18:33 2007-08-27 Show GitHub Exploit DB Packet Storm
227942 6.8 警告 Python Software Foundation - Python の tarfile モジュールにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-4559 2012-12-20 18:33 2007-08-27 Show GitHub Exploit DB Packet Storm
227943 4.3 警告 Tiki Software Community Association - Tikiwiki の tiki-remind_password.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-4554 2012-12-20 18:33 2007-08-27 Show GitHub Exploit DB Packet Storm
227944 5 警告 Thomson - Thomson ST 2030 SIP 電話機におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2007-4553 2012-12-20 18:33 2007-08-27 Show GitHub Exploit DB Packet Storm
227945 4.3 警告 symantec veritas - Windows 用の Symantec Veritas Storage Foundation におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2007-4516 2012-12-20 18:33 2008-02-20 Show GitHub Exploit DB Packet Storm
227946 4.3 警告 x-diesel - Unreal Commander における重要な情報 (メモリコンテンツ) を取得される脆弱性 CWE-noinfo
情報不足
CVE-2007-4547 2012-12-20 18:33 2007-08-27 Show GitHub Exploit DB Packet Storm
227947 5.8 警告 x-diesel - Unreal Commander におけるユーザに危険なファイルを上書きまたは作成させる脆弱性 CWE-DesignError
CVE-2007-4546 2012-12-20 18:33 2007-08-27 Show GitHub Exploit DB Packet Storm
227948 6.8 警告 x-diesel - Unreal Commander におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-4545 2012-12-20 18:33 2007-08-27 Show GitHub Exploit DB Packet Storm
227949 4.3 警告 WordPress.org - WordPress MU の wp-newblog.php におけるクロスサイトスクリプティングの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2007-4544 2012-12-20 18:33 2007-08-27 Show GitHub Exploit DB Packet Storm
227950 4.3 警告 university of minnesota - MapServer におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-4542 2012-12-20 18:33 2007-08-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 2, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
223531 8.8 HIGH
Network
cisco sf250-24_firmware
sf250-24p_firmware
sf250-48_firmware
sf250-48hp_firmware
sf250-08_firmware
sf250-08hp_firmware
sf250-10p_firmware
sf250-18_firmware
sf250-26_firmware
sf25…
A vulnerability in the web-based management interface of Cisco Small Business Smart and Managed Switches could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF)… CWE-352
 Origin Validation Error
CVE-2019-12636 2024-11-21 13:23 2019-10-17 Show GitHub Exploit DB Packet Storm
223532 7.5 HIGH
Network
gluehome glue_smart_lock_firmware Glue Smart Lock 2.7.8 devices do not properly block guest access in certain situations where the network connection is unavailable. CWE-862
 Missing Authorization
CVE-2019-12944 2024-11-21 13:23 2019-10-15 Show GitHub Exploit DB Packet Storm
223533 9.8 CRITICAL
Network
autopi wi-fi\/nb_firmware
4g\/lte_firmware
AutoPi Wi-Fi/NB and 4G/LTE devices before 2019-10-15 allows an attacker to perform a brute-force attack or dictionary attack to gain access to the WiFi network, which provides root access to the devi… CWE-307
mproper Restriction of Excessive Authentication Attempts
CVE-2019-12941 2024-11-21 13:23 2019-10-15 Show GitHub Exploit DB Packet Storm
223534 9.8 CRITICAL
Network
activesoft mybuilder MyBuilder viewer before 6.2.2019.814 allow an attacker to execute arbitrary command via specifically crafted configuration file. This can be leveraged for code execution. NVD-CWE-noinfo
CVE-2019-12812 2024-11-21 13:23 2019-10-8 Show GitHub Exploit DB Packet Storm
223535 9.8 CRITICAL
Network
activesoft mybuilder ActiveX Control in MyBuilder before 6.2.2019.814 allow an attacker to execute arbitrary command via the ShellOpen method. This can be leveraged for code execution CWE-78
OS Command 
CVE-2019-12811 2024-11-21 13:23 2019-10-8 Show GitHub Exploit DB Packet Storm
223536 5.3 MEDIUM
Network
jetbrains ktor UserHashedTableAuth in JetBrains Ktor framework before 1.2.0-rc uses a One-Way Hash with a Predictable Salt for storing user credentials. CWE-916
 Use of Password Hash With Insufficient Computational Effort
CVE-2019-12737 2024-11-21 13:23 2019-10-3 Show GitHub Exploit DB Packet Storm
223537 9.8 CRITICAL
Network
jetbrains ktor JetBrains Ktor framework before 1.2.0-rc does not sanitize the username provided by the user for the LDAP protocol, leading to command injection. CWE-77
Command Injection
CVE-2019-12736 2024-11-21 13:23 2019-10-3 Show GitHub Exploit DB Packet Storm
223538 6.1 MEDIUM
Network
cisco unified_communications_manager A vulnerability in the web-based interface of Cisco Unified Communications Manager and Cisco Unified Communications Manager Session Management Edition (SME) could allow an unauthenticated, remote att… CWE-79
Cross-site Scripting
CVE-2019-12716 2024-11-21 13:23 2019-10-3 Show GitHub Exploit DB Packet Storm
223539 6.1 MEDIUM
Network
cisco unified_communications_manager A vulnerability in the web-based interface of Cisco Unified Communications Manager and Cisco Unified Communications Manager Session Management Edition (SME) could allow an unauthenticated, remote att… CWE-79
Cross-site Scripting
CVE-2019-12715 2024-11-21 13:23 2019-10-3 Show GitHub Exploit DB Packet Storm
223540 6.5 MEDIUM
Network
cisco ic3000_industrial_compute_gateway_firmware A vulnerability in the web-based management interface of Cisco IC3000 Industrial Compute Gateway could allow an authenticated, remote attacker to cause a denial of service (DoS) condition on an affec… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2019-12714 2024-11-21 13:23 2019-10-3 Show GitHub Exploit DB Packet Storm