Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 2:09 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
252271 4.3 警告 Google - Android の Dalvik API におけるサービス運用妨害 (DoS) 脆弱性 CWE-noinfo
情報不足
CVE-2009-3698 2011-02-21 14:54 2009-10-14 Show GitHub Exploit DB Packet Storm
252272 5 警告 CollabNet, Inc. - CollabNet ScrumWorks Basic Server における認証情報取り扱いに関する問題 CWE-310
暗号の問題
CVE-2011-0410 2011-02-21 14:54 2011-01-24 Show GitHub Exploit DB Packet Storm
252273 5 警告 The PHP Group
レッドハット
- Libmbfl の mb_strcut 関数における重要な情報を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2010-4156 2011-02-18 15:07 2010-11-10 Show GitHub Exploit DB Packet Storm
252274 6.8 警告 The PHP Group
サイバートラスト株式会社
レッドハット
- PHP の xml_utf8_decode 関数における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2009-5016 2011-02-18 15:03 2010-11-12 Show GitHub Exploit DB Packet Storm
252275 6.8 警告 The PHP Group - PHP の set_magic_quotes_runtime 関数における SQL インジェクション攻撃を誘導される脆弱性 CWE-89
SQLインジェクション
CVE-2010-4700 2011-02-18 14:42 2010-07-1 Show GitHub Exploit DB Packet Storm
252276 7.5 危険 The PHP Group - PHP の iconv_mime_decode_headers 関数におけるスパムの検出を回避される脆弱性 CWE-189
数値処理の問題
CVE-2010-4699 2011-02-18 14:40 2010-09-28 Show GitHub Exploit DB Packet Storm
252277 5 警告 The PHP Group - PHP の GD 拡張モジュールにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-4698 2011-02-18 14:38 2010-12-7 Show GitHub Exploit DB Packet Storm
252278 6.8 警告 The PHP Group - PHP の Zend Engine におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2010-4697 2011-02-18 14:35 2010-09-18 Show GitHub Exploit DB Packet Storm
252279 1 注意 サン・マイクロシステムズ - Oracle Sun Java System Portal Server のプロキシにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-4431 2011-02-18 14:30 2011-01-18 Show GitHub Exploit DB Packet Storm
252280 3.6 注意 オラクル - Oracle Solaris 9 の XScreenSaver における脆弱性 CWE-noinfo
情報不足
CVE-2010-3586 2011-02-18 14:28 2011-01-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
223181 8.8 HIGH
Network
adremsoft netcrunch AdRem NetCrunch 10.6.0.4587 allows Remote Code Execution. In the NetCrunch web client, a read-only administrator can execute arbitrary code on the server running the NetCrunch server software. CWE-78
OS Command 
CVE-2019-14479 2024-11-21 13:26 2020-12-17 Show GitHub Exploit DB Packet Storm
223182 5.4 MEDIUM
Network
adremsoft netcrunch AdRem NetCrunch 10.6.0.4587 has a stored Cross-Site Scripting (XSS) vulnerability in the NetCrunch web client. The user's input data is not properly encoded when being echoed back to the user. This d… CWE-79
Cross-site Scripting
CVE-2019-14478 2024-11-21 13:26 2020-12-17 Show GitHub Exploit DB Packet Storm
223183 6.5 MEDIUM
Network
adremsoft netcrunch AdRem NetCrunch 10.6.0.4587 has a Server-Side Request Forgery (SSRF) vulnerability in the NetCrunch server. Every user can trick the server into performing SMB requests to other systems. CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2019-14476 2024-11-21 13:26 2020-12-17 Show GitHub Exploit DB Packet Storm
223184 8.8 HIGH
Network
adremsoft netcrunch AdRem NetCrunch 10.6.0.4587 allows Credentials Disclosure. Every user can read the BSD, Linux, MacOS and Solaris private keys, private keys' passwords, and root passwords stored in the credential man… NVD-CWE-noinfo
CVE-2019-14483 2024-11-21 13:26 2020-12-17 Show GitHub Exploit DB Packet Storm
223185 9.8 CRITICAL
Network
adremsoft netcrunch AdRem NetCrunch 10.6.0.4587 has a hardcoded SSL private key vulnerability in the NetCrunch web client. The same hardcoded SSL private key is used across different customers' installations when no oth… CWE-798
 Use of Hard-coded Credentials
CVE-2019-14482 2024-11-21 13:26 2020-12-17 Show GitHub Exploit DB Packet Storm
223186 9.8 CRITICAL
Network
adremsoft netcrunch AdRem NetCrunch 10.6.0.4587 has an Improper Session Handling vulnerability in the NetCrunch web client, which can lead to an authentication bypass or escalation of privileges. CWE-200
CWE-338
CWE-311
CWE-522
CWE-732
Information Exposure
 Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)
Missing Encryption of Sensitive Data
 Insufficiently Protected Credentials
 Incorrect Permission Assignment for Critical Resource
CVE-2019-14480 2024-11-21 13:26 2020-12-17 Show GitHub Exploit DB Packet Storm
223187 5.5 MEDIUM
Local
adremsoft netcrunch AdRem NetCrunch 10.6.0.4587 has Improper Credential Storage since the internal user database is readable by low-privileged users and passwords in the database are weakly encoded or encrypted. CWE-522
 Insufficiently Protected Credentials
CVE-2019-14477 2024-11-21 13:26 2020-12-17 Show GitHub Exploit DB Packet Storm
223188 6.5 MEDIUM
Adjacent
tianocore
debian
edk2
debian_linux
Logic issue EDK II may allow an unauthenticated user to potentially enable denial of service via adjacent access. NVD-CWE-noinfo
CVE-2019-14587 2024-11-21 13:26 2020-11-24 Show GitHub Exploit DB Packet Storm
223189 8.0 HIGH
Adjacent
tianocore
debian
edk2
debian_linux
Use after free vulnerability in EDK II may allow an authenticated user to potentially enable escalation of privilege, information disclosure and/or denial of service via adjacent access. CWE-416
 Use After Free
CVE-2019-14586 2024-11-21 13:26 2020-11-24 Show GitHub Exploit DB Packet Storm
223190 7.8 HIGH
Local
tianocore
debian
edk2
debian_linux
Logic issue in DxeImageVerificationHandler() for EDK II may allow an authenticated user to potentially enable escalation of privilege via local access. NVD-CWE-noinfo
CVE-2019-14575 2024-11-21 13:26 2020-11-24 Show GitHub Exploit DB Packet Storm