Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 31, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228951 10 危険 xvid - Windows Media Player などで使用される Xvid の xvidcore/src/decoder.c の初期化機能におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-0894 2012-12-20 19:10 2007-04-16 Show GitHub Exploit DB Packet Storm
228952 10 危険 xvid - Windows Media Player など使用される Xvid の xvidcore/src/decoder.c におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-0893 2012-12-20 19:10 2007-04-16 Show GitHub Exploit DB Packet Storm
228953 4.3 警告 Scriptsez.net - ScriptsEz Ez PHP Comment におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-0762 2012-12-20 19:10 2009-03-6 Show GitHub Exploit DB Packet Storm
228954 4.3 警告 team5.team board - Team Board の online.asp におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-0761 2012-12-20 19:10 2009-03-6 Show GitHub Exploit DB Packet Storm
228955 5 警告 team5 - Team Board における資格情報を含むデータベースをダウンロードされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-0760 2012-12-20 19:10 2009-03-6 Show GitHub Exploit DB Packet Storm
228956 6.5 警告 ZNC - ZNC の webadmin における CRLF インジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2009-0759 2012-12-20 19:10 2009-02-24 Show GitHub Exploit DB Packet Storm
228957 5 警告 freedesktop.org - Poppler の JBIG2Stream::readSymbolDictSeg 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2009-0756 2012-12-20 19:10 2009-01-23 Show GitHub Exploit DB Packet Storm
228958 5 警告 freedesktop.org - Poppler の FormWidgetChoice::loadDefaults 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2009-0755 2012-12-20 19:10 2009-03-3 Show GitHub Exploit DB Packet Storm
228959 10 危険 シックス・アパート株式会社 - Movable Type Pro などにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-0752 2012-12-20 19:10 2009-03-2 Show GitHub Exploit DB Packet Storm
228960 5 警告 Yaws - Yaws におけるサービス運用妨害 (メモリ消費およびクラッシュ) の脆弱性 CWE-399
リソース管理の問題
CVE-2009-0751 2012-12-20 19:10 2009-03-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
225461 7.8 HIGH
Local
lenovo ideacentre_510-15ikl_firmware
ideacentre_510s-08ikl_firmware
ideacentre_300s-11ish_firmware
ideacentre_310-15asr_firmware
ideacentre_310-15iap_firmware
ideacentre_310a-15iap_firmware
Realtek Audio Drivers for Windows, as used on the Lenovo ThinkPad X1 Carbon 20A7, 20A8, 20BS, and 20BT before 6.0.8882.1 and 20KH and 20KG before 6.0.8907.1 (and on many other Lenovo and non-Lenovo p… CWE-428
 Unquoted Search Path or Element
CVE-2019-19705 2024-11-21 13:35 2022-12-27 Show GitHub Exploit DB Packet Storm
225462 10.0 CRITICAL
Network
eleveo call_recording Zoom Call Recording 6.3.1 from Eleveo is vulnerable to Java Deserialization attacks targeting the inbuilt RMI service. A remote unauthenticated attacker can exploit this vulnerability by sending craf… CWE-502
 Deserialization of Untrusted Data
CVE-2019-19810 2024-11-21 13:35 2021-10-28 Show GitHub Exploit DB Packet Storm
225463 7.5 HIGH
Network
br-automation industrial_automation_aprol An issue was discovered in B&R Industrial Automation APROL before R4.2 V7.08. An attacker can get access to historical data from AprolSqlServer by bypassing authentication, a different vulnerability … NVD-CWE-noinfo
CVE-2019-19878 2024-11-21 13:35 2020-11-28 Show GitHub Exploit DB Packet Storm
225464 5.3 MEDIUM
Network
br-automation industrial_automation_aprol An issue was discovered in B&R Industrial Automation APROL before R4.2 V7.08. An attacker can get access to sensitive information outside the working directory via Directory Traversal attacks against… CWE-22
Path Traversal
CVE-2019-19877 2024-11-21 13:35 2020-11-28 Show GitHub Exploit DB Packet Storm
225465 9.8 CRITICAL
Network
br-automation industrial_automation_aprol An issue was discovered in B&R Industrial Automation APROL before R4.2 V7.08. An EnMon PHP script was vulnerable to SQL injection, a different vulnerability than CVE-2019-10006. CWE-89
SQL Injection
CVE-2019-19876 2024-11-21 13:35 2020-11-28 Show GitHub Exploit DB Packet Storm
225466 9.8 CRITICAL
Network
br-automation industrial_automation_aprol An issue was discovered in B&R Industrial Automation APROL before R4.2 V7.08. Arbitrary commands could be injected (using Python scripts) via the AprolCluster script that is invoked via sudo and thus… CWE-77
Command Injection
CVE-2019-19875 2024-11-21 13:35 2020-11-28 Show GitHub Exploit DB Packet Storm
225467 9.8 CRITICAL
Network
br-automation industrial_automation_aprol An issue was discovered in B&R Industrial Automation APROL before R4.2 V7.08. Some web scripts in the web interface allowed injection and execution of arbitrary unintended commands on the web server,… CWE-77
Command Injection
CVE-2019-19874 2024-11-21 13:35 2020-11-28 Show GitHub Exploit DB Packet Storm
225468 7.5 HIGH
Network
br-automation industrial_automation_aprol An issue was discovered in B&R Industrial Automation APROL before R4.2 V7.08. An attacker can get information from the AprolSqlServer DBMS by bypassing authentication, a different vulnerability than … NVD-CWE-noinfo
CVE-2019-19873 2024-11-21 13:35 2020-11-28 Show GitHub Exploit DB Packet Storm
225469 9.8 CRITICAL
Network
br-automation industrial_automation_aprol An issue was discovered in B&R Industrial Automation APROL before R4.2 V7.08. The AprolLoader could be used to inject and execute arbitrary unintended commands via an unspecified attack scenario, a d… CWE-77
Command Injection
CVE-2019-19872 2024-11-21 13:35 2020-11-28 Show GitHub Exploit DB Packet Storm
225470 7.5 HIGH
Network
br-automation industrial_automation_aprol An issue was discovered in B&R Industrial Automation APROL before R4.2 V7.08. PVs could be changed (unencrypted) by using the IosHttp service and the JSON interface. NVD-CWE-noinfo
CVE-2019-19869 2024-11-21 13:35 2020-11-28 Show GitHub Exploit DB Packet Storm