Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227991 7.5 危険 vivaprograms - VivaPrograms Infinity の cp/profile.php における管理アカウントを作成される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-3949 2012-12-20 19:28 2009-11-16 Show GitHub Exploit DB Packet Storm
227992 9.3 危険 tandberg - Tandberg MXP の FTP サービスにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-3947 2012-12-20 19:28 2009-11-16 Show GitHub Exploit DB Packet Storm
227993 2.1 注意 サン・マイクロシステムズ - Sun xVM VirtualBox および Sun VirtualBox の Guest Additions におけるゲスト OS 上でサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2009-3940 2012-12-20 19:28 2009-11-13 Show GitHub Exploit DB Packet Storm
227994 6.8 警告 freedesktop.org - Abiword pdftoabw utility で使用される Poppler におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-3938 2012-12-20 19:28 2009-11-13 Show GitHub Exploit DB Packet Storm
227995 4.9 警告 サン・マイクロシステムズ - Sun OpenSolaris の Solaris TCP ソケットにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2009-3937 2012-12-20 19:28 2009-11-13 Show GitHub Exploit DB Packet Storm
227996 5 警告 Webkit - Google Chrome で使用されている WebKit におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2009-3933 2012-12-20 19:28 2009-10-27 Show GitHub Exploit DB Packet Storm
227997 9.3 危険 raven software
punkbuster
- Soldier of Fortune II で使用される pbsv.dll におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-3924 2012-12-20 19:28 2009-11-9 Show GitHub Exploit DB Packet Storm
227998 7.5 危険 サン・マイクロシステムズ - Sun VDI の VirtualBox Web サービスにおける不特定のアクセス権を取得される脆弱性 CWE-287
不適切な認証
CVE-2009-3923 2012-12-20 19:28 2009-11-3 Show GitHub Exploit DB Packet Storm
227999 5 警告 Sean Robertson - Drupal 用の crmngp モジュールの管理ページにおけるログ情報を読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-3920 2012-12-20 19:28 2009-11-4 Show GitHub Exploit DB Packet Storm
228000 4.3 警告 Sean Robertson - Drupal 用の crmngp モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3919 2012-12-20 19:28 2009-11-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
220861 8.8 HIGH
Network
zte zxupn-9000e_firmware The 9000EV5.0R1B12 version, and all earlier versions of ZTE product ZXUPN-9000E are impacted by the input validation vulnerability. An attacker could exploit this vulnerability for unauthorized opera… CWE-20
 Improper Input Validation 
CVE-2019-3426 2024-11-21 13:42 2019-11-9 Show GitHub Exploit DB Packet Storm
220862 8.8 HIGH
Network
zte zxupn-9000e_firmware The 9000EV5.0R1B12 version, and all earlier versions of ZTE product ZXUPN-9000E are impacted by vulnerability of permission and access control. An attacker could exploit this vulnerability to directl… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2019-3425 2024-11-21 13:42 2019-11-9 Show GitHub Exploit DB Packet Storm
220863 5.5 MEDIUM
Local
redhat openstack-mistral An information-exposure vulnerability was discovered where openstack-mistral's undercloud log files containing clear-text information were made world readable. A malicious system user could exploit t… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2019-3866 2024-11-21 13:42 2019-11-9 Show GitHub Exploit DB Packet Storm
220864 8.8 HIGH
Network
xmlseclibs_project
debian
simplesamlphp
xmlseclibs
debian_linux
simplesamlphp
Rob Richards XmlSecLibs, all versions prior to v3.0.3, as used for example by SimpleSAMLphp, performed incorrect validation of cryptographic signatures in XML messages, allowing an authenticated atta… CWE-347
 Improper Verification of Cryptographic Signature
CVE-2019-3465 2024-11-21 13:42 2019-11-8 Show GitHub Exploit DB Packet Storm
220865 6.2 MEDIUM
Local
zte mf910s_firmware The Sec Consult Security Lab reported an information disclosure vulnerability in MF910S product to ZTE PSIRT in October 2019. Through the analysis of related product team, the information disclosure … CWE-200
Information Exposure
CVE-2019-3422 2024-11-21 13:42 2019-11-8 Show GitHub Exploit DB Packet Storm
220866 4.3 MEDIUM
Network
dell idrac8_firmware
idrac9_firmware
idrac7_firmware
Dell EMC iDRAC7 versions prior to 2.65.65.65, iDRAC8 versions prior to 2.70.70.70 and iDRAC9 versions prior to 3.36.36.36 contain an improper authorization vulnerability. A remote authenticated malic… NVD-CWE-Other
CVE-2019-3764 2024-11-21 13:42 2019-11-8 Show GitHub Exploit DB Packet Storm
220867 7.7 HIGH
Network
opensuse open_build_service Open Build Service before version 0.165.4 diddn't validate TLS certificates for HTTPS connections with the osc client binary CWE-295
Improper Certificate Validation 
CVE-2019-3685 2024-11-21 13:42 2019-11-5 Show GitHub Exploit DB Packet Storm
220868 8.0 HIGH
Adjacent
ztw zx297520v3_firmware The 7520V3V1.0.0B09P27 version, and all earlier versions of ZTE product ZX297520V3 are impacted by a Command Injection vulnerability. Unauthorized users can exploit this vulnerability to control the … CWE-77
Command Injection
CVE-2019-3421 2024-11-21 13:42 2019-11-1 Show GitHub Exploit DB Packet Storm
220869 5.7 MEDIUM
Adjacent
zte zxmp_m721_dx_firmware A security vulnerability exists in a management port in the version of ZTE's ZXMP M721V3.10P01B10_M2NCP. An attacker could exploit this vulnerability to build a link to the device and send specific p… NVD-CWE-noinfo
CVE-2019-3419 2024-11-21 13:42 2019-11-1 Show GitHub Exploit DB Packet Storm
220870 7.5 HIGH
Network
mikrotik routeros RouterOS versions 6.45.6 Stable, 6.44.5 Long-term, and below are vulnerable to a DNS unrelated data attack. The router adds all A records to its DNS cache even when the records are unrelated to the d… CWE-345
 Insufficient Verification of Data Authenticity
CVE-2019-3979 2024-11-21 13:42 2019-10-30 Show GitHub Exploit DB Packet Storm