Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 3, 2026, 6:08 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230171 7.5 危険 Vastal I-Tech & Co. - Vastal I-Tech Visa Zone の view_news.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4462 2012-12-20 18:52 2008-10-6 Show GitHub Exploit DB Packet Storm
230172 7.5 危険 Vastal I-Tech & Co. - Vastal I-Tech Dating Zone の advanced_search_results.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4461 2012-12-20 18:52 2008-10-6 Show GitHub Exploit DB Packet Storm
230173 7.5 危険 Vastal I-Tech & Co. - Vastal I-Tech MMORPG Zone の game.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4460 2012-12-20 18:52 2008-10-6 Show GitHub Exploit DB Packet Storm
230174 6.8 警告 positive software - Positive Software H-Sphere WebShell の actions.php におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2008-4448 2012-12-20 18:52 2008-10-6 Show GitHub Exploit DB Packet Storm
230175 4.3 警告 positive software - Positive Software H-Sphere WebShell の actions.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4447 2012-12-20 18:52 2008-10-6 Show GitHub Exploit DB Packet Storm
230176 4.3 警告 rmsoft - Xoops 用の rmdp モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4435 2012-12-20 18:52 2008-10-3 Show GitHub Exploit DB Packet Storm
230177 7.5 危険 rmsoft - Xoops 用の RMSOFT MiniShop モジュールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4433 2012-12-20 18:52 2008-10-3 Show GitHub Exploit DB Packet Storm
230178 4.3 警告 rmsoft - Xoops 用の RMSOFT MiniShop モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4432 2012-12-20 18:52 2008-10-3 Show GitHub Exploit DB Packet Storm
230179 5 警告 トレンドマイクロ - Trend Micro OfficeScan のサーバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2008-4403 2012-12-20 18:52 2008-09-30 Show GitHub Exploit DB Packet Storm
230180 10 危険 トレンドマイクロ - Trend Micro OfficeScan のサーバにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-4402 2012-12-20 18:52 2008-09-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 3, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
224151 7.3 HIGH
Local
google android In LockTaskController.lockKeyguardIfNeeded of the LockTaskController.java, there was a difference in the handling of the default case between the WindowManager and the Settings. This could lead to a … CWE-264
Permissions, Privileges, and Access Controls
CVE-2019-2122 2024-11-21 13:40 2019-08-21 Show GitHub Exploit DB Packet Storm
224152 7.0 HIGH
Local
google android In ActivityManagerService.attachApplication of ActivityManagerService, there is a possible race condition. This could lead to local escalation of privilege with no additional execution privileges nee… CWE-362
Race Condition
CVE-2019-2121 2024-11-21 13:40 2019-08-21 Show GitHub Exploit DB Packet Storm
224153 7.8 HIGH
Local
google android In OatFileAssistant::GenerateOatFile of oat_file_assistant.cc, there is a possible file corruption issue due to an insecure default value. This could lead to local escalation of privilege with no add… CWE-1188
 Insecure Default Initialization of Resource
CVE-2019-2120 2024-11-21 13:40 2019-08-21 Show GitHub Exploit DB Packet Storm
224154 7.1 HIGH
Network
mongodb mongodb After user deletion in MongoDB Server the improper invalidation of authorization sessions allows an authenticated user's session to persist and become conflated with new accounts, if those accounts r… CWE-613
 Insufficient Session Expiration
CVE-2019-2386 2024-11-21 13:40 2019-08-7 Show GitHub Exploit DB Packet Storm
224155 7.8 HIGH
Local
qualcomm ipq8074_firmware
qca8081_firmware
qcs404_firmware
qcs405_firmware
qcs605_firmware
sd_425_firmware
sd_427_firmware
sd_430_firmware
sd_435_firmware
sd_450_firmware
sd_625_…
Firmware is getting into loop of overwriting memory when scan command is given from host because of improper validation. in Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Sna… CWE-129
 Improper Validation of Array Index
CVE-2019-2346 2024-11-21 13:40 2019-07-26 Show GitHub Exploit DB Packet Storm
224156 7.0 HIGH
Local
qualcomm msm8909w_firmware
msm8996au_firmware
qcs605_firmware
sd_425_firmware
sd_427_firmware
sd_430_firmware
sd_435_firmware
sd_450_firmware
sd_625_firmware
sd_636_firmware
sd_7…
Race condition while accessing DMA buffer in jpeg driver in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in MS… CWE-362
Race Condition
CVE-2019-2345 2024-11-21 13:40 2019-07-26 Show GitHub Exploit DB Packet Storm
224157 5.5 MEDIUM
Local
qualcomm msm8909w_firmware
msm8996au_firmware
qcs605_firmware
qualcomm_215_firmware
sd_210_firmware
sd_212_firmware
sd_205_firmware
sd_425_firmware
sd_427_firmware
sd_430_firmware
Out of bound read and information disclosure in firmware due to insufficient checking of an embedded structure that can be sent from a kernel driver in Snapdragon Auto, Snapdragon Compute, Snapdragon… CWE-125
Out-of-bounds Read
CVE-2019-2343 2024-11-21 13:40 2019-07-26 Show GitHub Exploit DB Packet Storm
224158 7.5 HIGH
Network
qualcomm mdm9150_firmware
mdm9206_firmware
mdm9607_firmware
mdm9650_firmware
msm8909w_firmware
msm8996au_firmware
qcs405_firmware
qcs605_firmware
qualcomm_215_firmware
sd_210_firmwa…
Null pointer dereferencing can happen when playing the clip with wrong block group id in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapd… CWE-476
 NULL Pointer Dereference
CVE-2019-2334 2024-11-21 13:40 2019-07-26 Show GitHub Exploit DB Packet Storm
224159 5.5 MEDIUM
Local
qualcomm ipq4019_firmware
ipq8064_firmware
ipq8074_firmware
mdm9150_firmware
mdm9640_firmware
mdm9650_firmware
msm8909w_firmware
msm8996au_firmware
qcs405_firmware
qcs605_firmware
improper input validation in allocation request for secure allocations can lead to page fault. in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon M… CWE-20
 Improper Input Validation 
CVE-2019-2330 2024-11-21 13:40 2019-07-26 Show GitHub Exploit DB Packet Storm
224160 7.8 HIGH
Local
qualcomm mdm9150_firmware
mdm9206_firmware
mdm9607_firmware
mdm9640_firmware
mdm9650_firmware
msm8909w_firmware
msm8996au_firmware
qcs405_firmware
qcs605_firmware
qualcomm_215_firmw…
Possible buffer overflow when number of channels passed is more than size of channel mapping array in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdrag… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2019-2328 2024-11-21 13:40 2019-07-26 Show GitHub Exploit DB Packet Storm