Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 5, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228061 9.3 危険 portaplus - Porta+ FTP Client におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-3100 2012-12-20 19:29 2010-08-20 Show GitHub Exploit DB Packet Storm
228062 9.3 危険 SmartSoft - SmartSoft の SmartFTP Client におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-3099 2012-12-20 19:29 2010-08-20 Show GitHub Exploit DB Packet Storm
228063 9.3 危険 winfrigate - WinFrigate Frigate 3 FTP クライアントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-3097 2012-12-20 19:29 2010-08-20 Show GitHub Exploit DB Packet Storm
228064 9.3 危険 softx - SoftX FTP Client におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-3096 2012-12-20 19:29 2010-08-20 Show GitHub Exploit DB Packet Storm
228065 4.3 警告 The phpMyAdmin Project - phpMyAdmin におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-3056 2012-12-20 19:29 2010-08-20 Show GitHub Exploit DB Packet Storm
228066 7.5 危険 The phpMyAdmin Project - phpMyAdmin のコンフィギュレーション設定スクリプトにおける任意の PHP コードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-3055 2012-12-20 19:29 2010-08-20 Show GitHub Exploit DB Packet Storm
228067 10 危険 SAP - SAP Crystal Reports の ebus-3-3-2-6.dll モジュールにおける整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2010-3032 2012-12-20 19:29 2010-08-17 Show GitHub Exploit DB Packet Storm
228068 10 危険 ワイズテクノロジー - Wyse ThinOS HF におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-3031 2012-12-20 19:29 2010-08-17 Show GitHub Exploit DB Packet Storm
228069 6.8 警告 tomaz-muraus - Tomaz Muraus Open Blog におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2010-3030 2012-12-20 19:29 2010-08-17 Show GitHub Exploit DB Packet Storm
228070 7.5 危険 phpkick - PHPKick の statistics.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-3029 2012-12-20 19:29 2010-08-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 5, 2026, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
220271 9.8 CRITICAL
Network
signiant manager\+agents In Signiant Manager+Agents before 13.5, the implementation of the set command has a Buffer Overflow. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2019-8996 2024-11-21 13:50 2019-02-22 Show GitHub Exploit DB Packet Storm
220272 9.8 CRITICAL
Network
netis-systems wf2411_firmware
wf2880_firmware
On Netis WF2411 with firmware 2.1.36123 and other Netis WF2xxx devices (possibly WF2411 through WF2880), there is a stack-based buffer overflow that does not require authentication. This can cause de… CWE-787
CWE-306
 Out-of-bounds Write
Missing Authentication for Critical Function
CVE-2019-8985 2024-11-21 13:50 2019-02-22 Show GitHub Exploit DB Packet Storm
220273 6.1 MEDIUM
Network
altn mdaemon MDaemon Webmail 14.x through 18.x before 18.5.2 has XSS (issue 2 of 2). CWE-79
Cross-site Scripting
CVE-2019-8984 2024-11-21 13:50 2019-02-22 Show GitHub Exploit DB Packet Storm
220274 6.1 MEDIUM
Network
altn mdaemon MDaemon Webmail 14.x through 18.x before 18.5.2 has XSS (issue 1 of 2). CWE-79
Cross-site Scripting
CVE-2019-8983 2024-11-21 13:50 2019-02-22 Show GitHub Exploit DB Packet Storm
220275 9.6 CRITICAL
Network
wavemaker wavemarker_studio com/wavemaker/studio/StudioService.java in WaveMaker Studio 6.6 mishandles the studioService.download?method=getContent&inUrl= value, leading to disclosure of local files and SSRF. CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2019-8982 2024-11-21 13:50 2019-02-21 Show GitHub Exploit DB Packet Storm
220276 7.5 HIGH
Network
linux
canonical
opensuse
debian
linux_kernel
ubuntu_linux
leap
debian_linux
A memory leak in the kernel_read_file function in fs/exec.c in the Linux kernel through 4.20.11 allows attackers to cause a denial of service (memory consumption) by triggering vfs_read failures. CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2019-8980 2024-11-21 13:50 2019-02-21 Show GitHub Exploit DB Packet Storm
220277 9.8 CRITICAL
Network
kohanaframework kohana Kohana through 3.3.6 has SQL Injection when the order_by() parameter can be controlled. CWE-89
SQL Injection
CVE-2019-8979 2024-11-21 13:50 2019-02-21 Show GitHub Exploit DB Packet Storm
220278 8.8 HIGH
Network
indexhibit indexhibit In Indexhibit 2.1.5, remote attackers can execute arbitrary code via the v parameter (in conjunction with the id parameter) in a upd_jxcode=true action to the ndxzstudio/?a=system URI. CWE-20
 Improper Input Validation 
CVE-2019-8954 2024-11-21 13:50 2019-02-21 Show GitHub Exploit DB Packet Storm
220279 6.1 MEDIUM
Network
netgate haproxy The HAProxy package before 0.59_16 for pfSense has XSS via the desc (aka Description) or table_actionsaclN parameter, related to haproxy_listeners.php and haproxy_listeners_edit.php. CWE-79
Cross-site Scripting
CVE-2019-8953 2024-11-21 13:50 2019-02-21 Show GitHub Exploit DB Packet Storm
220280 9.8 CRITICAL
Network
dasannetworks h665_firmware The backdoor account dnsekakf2$$ in /bin/login on DASAN H665 devices with firmware 1.46p1-0028 allows an attacker to login to the admin account via TELNET. CWE-798
 Use of Hard-coded Credentials
CVE-2019-8950 2024-11-21 13:50 2019-02-20 Show GitHub Exploit DB Packet Storm