Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228521 6.8 警告 サン・マイクロシステムズ - Sun Java System Directory Server Enterprise Edition の DPS における認証されたユーザのバックエンドの接続をハイジャックされる脆弱性 CWE-362
競合状態
CVE-2009-4440 2012-12-20 19:28 2009-12-23 Show GitHub Exploit DB Packet Storm
228522 7.5 危険 VirtueMart - VirtueMart の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4430 2012-12-20 19:28 2009-12-28 Show GitHub Exploit DB Packet Storm
228523 7.5 危険 weentech - weenCompany の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4423 2012-12-20 19:28 2009-12-24 Show GitHub Exploit DB Packet Storm
228524 5 警告 Zend Technologies Ltd. - Zend Framework の Zend_Log_Writer_Mail クラスにおける任意の電子メールメッセージを送信される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-4417 2012-12-20 19:28 2009-12-24 Show GitHub Exploit DB Packet Storm
228525 4.3 警告 phpgroupware - phpGroupWare の login.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4416 2012-12-20 19:28 2009-12-24 Show GitHub Exploit DB Packet Storm
228526 7.5 危険 phpgroupware - phpGroupWare におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-4415 2012-12-20 19:28 2009-12-24 Show GitHub Exploit DB Packet Storm
228527 6.8 警告 phpgroupware - phpGroupWare の phpgwapi /inc/class.auth_sql.inc.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4414 2012-12-20 19:28 2009-12-24 Show GitHub Exploit DB Packet Storm
228528 5 警告 pps.jussieu - Polipo の client.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2009-4413 2012-12-20 19:28 2009-12-24 Show GitHub Exploit DB Packet Storm
228529 6 警告 s9y - Serendipity における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2009-4412 2012-12-20 19:28 2009-12-21 Show GitHub Exploit DB Packet Storm
228530 3.7 注意 xfs - XFS acl の setfacl および getfacl コマンドにおける任意のファイルなど対する ACL を変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-4411 2012-12-20 19:28 2009-12-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 5, 2026, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
194681 7.8 HIGH
Local
suse hawk2 A Creation of Temporary File With Insecure Permissions vulnerability in hawk2 of SUSE Linux Enterprise High Availability 12-SP3, SUSE Linux Enterprise High Availability 12-SP5, SUSE Linux Enterprise … - CVE-2021-25314 2024-11-21 14:54 2021-04-15 Show GitHub Exploit DB Packet Storm
194682 3.3 LOW
Local
suse s390-tools A Insecure Temporary File vulnerability in s390-tools of SUSE Linux Enterprise Server 12-SP5, SUSE Linux Enterprise Server 15-SP2 allows local attackers to prevent VM live migrations This issue affec… - CVE-2021-25316 2024-11-21 14:54 2021-04-14 Show GitHub Exploit DB Packet Storm
194683 7.8 HIGH
Local
trendmicro officescan
apex_one
An improper access control vulnerability in Trend Micro Apex One, Trend Micro Apex One as a Service and OfficeScan XG SP1 on a resource used by the service could allow a local attacker to escalate pr… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2021-25253 2024-11-21 14:54 2021-04-13 Show GitHub Exploit DB Packet Storm
194684 7.8 HIGH
Local
trendmicro officescan
apex_one
An improper access control vulnerability in Trend Micro Apex One, Trend Micro Apex One as a Service and OfficeScan XG SP1 on a sensitive file could allow a local attacker to escalate privileges on af… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2021-25250 2024-11-21 14:54 2021-04-13 Show GitHub Exploit DB Packet Storm
194685 7.8 HIGH
Local
samsung account Using unsafe PendingIntent in Samsung Account in versions 10.8.0.4 in Android P(9.0) and below, and 12.1.1.3 in Android Q(10.0) and above allows local attackers to perform unauthorized action without… CWE-276
Incorrect Default Permissions 
CVE-2021-25381 2024-11-21 14:54 2021-04-10 Show GitHub Exploit DB Packet Storm
194686 7.3 HIGH
Network
samsung bixby Improper handling of exceptional conditions in Bixby prior to version 3.0.53.02 allows attacker to execute the actions registered by the user. CWE-755
 Improper Handling of Exceptional Conditions
CVE-2021-25380 2024-11-21 14:54 2021-04-10 Show GitHub Exploit DB Packet Storm
194687 3.3 LOW
Local
samsung gallery Intent redirection vulnerability in Gallery prior to version 5.4.16.1 allows attacker to execute privileged action. NVD-CWE-Other
CVE-2021-25379 2024-11-21 14:54 2021-04-10 Show GitHub Exploit DB Packet Storm
194688 5.3 MEDIUM
Network
samsung smartthings Improper access control of certain port in SmartThings prior to version 1.7.63.6 allows remote temporary denial of service. NVD-CWE-Other
CVE-2021-25378 2024-11-21 14:54 2021-04-10 Show GitHub Exploit DB Packet Storm
194689 7.8 HIGH
Local
samsung experience_service Intent redirection in Samsung Experience Service versions 10.8.0.4 in Android P(9.0) below, and 12.2.0.5 in Android Q(10.0) above allows attacker to execute privileged action. CWE-269
 Improper Privilege Management
CVE-2021-25377 2024-11-21 14:54 2021-04-10 Show GitHub Exploit DB Packet Storm
194690 5.3 MEDIUM
Network
samsung email An improper synchronization logic in Samsung Email prior to version 6.1.41.0 can leak messages in certain mailbox in plain text when STARTTLS negotiation is failed. CWE-662
 Improper Synchronization
CVE-2021-25376 2024-11-21 14:54 2021-04-10 Show GitHub Exploit DB Packet Storm