Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":April 28, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
253141 9.3 危険 マイクロソフト - Microsoft Windows の kernel における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2009-2514 2010-01-4 15:24 2009-11-10 Show GitHub Exploit DB Packet Storm
253142 6.8 警告 マイクロソフト - Microsoft Windows の kernel の Graphics Device Interface (GDI) における権限を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2009-2513 2010-01-4 15:24 2009-11-10 Show GitHub Exploit DB Packet Storm
253143 6.8 警告 マイクロソフト - Microsoft Windows の kernel における権限を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2009-1127 2010-01-4 15:24 2009-11-10 Show GitHub Exploit DB Packet Storm
253144 10 危険 マイクロソフト - Microsoft Windows の License Logging Server (llssrv.exe) における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2009-2523 2010-01-4 15:24 2009-11-10 Show GitHub Exploit DB Packet Storm
253145 9.3 危険 マイクロソフト - Microsoft Windows の Web Services on Devices API (WSDAPI) における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2009-2512 2010-01-4 15:23 2009-11-10 Show GitHub Exploit DB Packet Storm
253146 10 危険 アップル
VMware
サン・マイクロシステムズ
- Sun Java SE の Provider クラスにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2009-2722 2010-01-4 14:56 2009-08-10 Show GitHub Exploit DB Packet Storm
253147 10 危険 アップル
VMware
サン・マイクロシステムズ
- Sun Java SE の Provider クラスにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2009-2723 2010-01-4 14:55 2009-08-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 28, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
213101 7.4 HIGH
Network
netkit
debian
netkit
debian_linux
An issue was discovered in rcp in NetKit through 0.17. For an rcp operation, the server chooses which files/directories are sent to the client. However, the rcp client only performs cursory validatio… NVD-CWE-noinfo
CVE-2019-7283 2024-11-21 13:47 2019-02-1 Show GitHub Exploit DB Packet Storm
213102 5.9 MEDIUM
Network
netkit
debian
fedoraproject
netkit
debian_linux
fedora
In NetKit through 0.17, rcp.c in the rcp client allows remote rsh servers to bypass intended access restrictions via the filename of . or an empty filename. The impact is modifying the permissions of… NVD-CWE-noinfo
CVE-2019-7282 2024-11-21 13:47 2019-02-1 Show GitHub Exploit DB Packet Storm
213103 6.1 MEDIUM
Network
cross_reference_project cross_reference An issue was discovered in the Cross Reference Add-on 36 for Google Docs. Stored XSS in the preview boxes in the configuration panel may allow a malicious user to use both label text and references t… CWE-79
Cross-site Scripting
CVE-2019-7250 2024-11-21 13:47 2019-01-31 Show GitHub Exploit DB Packet Storm
213104 9.8 CRITICAL
Network
keybase keybase In Keybase before 2.12.6 on macOS, the move RPC to the Helper was susceptible to time-to-check-time-to-use bugs and would also allow one user of the system (who didn't have root access) to tamper wit… CWE-367
 Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2019-7249 2024-11-21 13:47 2019-01-31 Show GitHub Exploit DB Packet Storm
213105 7.8 HIGH
Local
encodable filechucker An issue was discovered in FileChucker 4.99e-free-e02. filechucker.cgi has a filter bypass that allows a malicious user to upload any type of file by using % characters within the extension, e.g., fi… NVD-CWE-noinfo
CVE-2019-7216 2024-11-21 13:47 2019-01-31 Show GitHub Exploit DB Packet Storm
213106 7.5 HIGH
Network
idreamsoft icms An issue was discovered in idreamsoft iCMS 7.0.13 on Windows. editor/editor.admincp.php allows admincp.php?app=files&do=browse ..\ Directory Traversal. CWE-22
Path Traversal
CVE-2019-7237 2024-11-21 13:47 2019-01-31 Show GitHub Exploit DB Packet Storm
213107 7.5 HIGH
Network
idreamsoft icms An issue was discovered in idreamsoft iCMS 7.0.13. editor/editor.admincp.php allows admincp.php?app=editor&do=fileManager dir=../ Directory Traversal. CWE-22
Path Traversal
CVE-2019-7236 2024-11-21 13:47 2019-01-31 Show GitHub Exploit DB Packet Storm
213108 7.5 HIGH
Network
idreamsoft icms An issue was discovered in idreamsoft iCMS 7.0.13. admincp.php?app=apps&do=save allows directory traversal via _app=/../ to designate an arbitrary directory because of an apps.admincp.php error. This… CWE-22
Path Traversal
CVE-2019-7235 2024-11-21 13:47 2019-01-31 Show GitHub Exploit DB Packet Storm
213109 9.1 CRITICAL
Network
idreamsoft icms An issue was discovered in idreamsoft iCMS 7.0.13. admincp.php?app=apps&do=save allows directory traversal via _app=/../ to begin the process of creating a ZIP archive file with the complete contents… CWE-22
Path Traversal
CVE-2019-7234 2024-11-21 13:47 2019-01-31 Show GitHub Exploit DB Packet Storm
213110 8.8 HIGH
Network
libdoc_project libdoc In libdoc through 2019-01-28, doc2text in catdoc.c has a NULL pointer dereference. CWE-476
 NULL Pointer Dereference
CVE-2019-7233 2024-11-21 13:47 2019-01-31 Show GitHub Exploit DB Packet Storm