Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
254181 9.3 危険 マイクロソフト - Microsoft Windows の Microsoft Paint における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2010-0028 2010-03-3 11:54 2010-02-9 Show GitHub Exploit DB Packet Storm
254182 7.2 危険 マイクロソフト - Microsoft Windows の kernel における権限昇格の脆弱性 CWE-Other
その他
CVE-2010-0233 2010-03-3 11:54 2010-02-9 Show GitHub Exploit DB Packet Storm
254183 6.3 警告 マイクロソフト - Microsoft Windows の KDC におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2010-0035 2010-03-3 11:54 2010-02-9 Show GitHub Exploit DB Packet Storm
254184 7.1 危険 マイクロソフト - Microsoft Windows の SMB 実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-362
競合状態
CVE-2010-0021 2010-03-3 11:54 2010-02-9 Show GitHub Exploit DB Packet Storm
254185 10 危険 マイクロソフト - Microsoft Windows の SMB 実装におけるアクセス権を取得される脆弱性 CWE-264
CWE-310
CVE-2010-0231 2010-03-3 11:54 2010-02-9 Show GitHub Exploit DB Packet Storm
254186 7.8 危険 マイクロソフト - Microsoft Windows の SMB 実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2010-0022 2010-03-3 11:53 2010-02-9 Show GitHub Exploit DB Packet Storm
254187 9 危険 マイクロソフト - Microsoft Windows の SMB 実装における任意のコードを実行される脆弱性 CWE-20
CWE-94
CVE-2010-0020 2010-03-3 11:53 2010-02-9 Show GitHub Exploit DB Packet Storm
254188 6.9 警告 マイクロソフト - Microsoft Windows の Client/Server Run-time Subsystem における権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-0023 2010-03-3 11:53 2010-02-9 Show GitHub Exploit DB Packet Storm
254189 4 警告 マイクロソフト - Microsoft Windows の Hyper-V サーバ実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2010-0026 2010-03-3 11:53 2010-02-9 Show GitHub Exploit DB Packet Storm
254190 9.3 危険 日本電気
アップル
富士通
古河電気工業
ヒューレット・パッカード
インターネットイニシアティブ
アラクサラネットワークス
日立
- IPv6 NDP 実装における Neighbor Discovery メッセージの送信元検証処理に関する脆弱性 CWE-20
不適切な入力確認
CVE-2008-2476 2010-03-3 11:43 2008-10-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
214311 8.8 HIGH
Network
libsdl
debian
opensuse
canonical
fedoraproject
simple_directmedia_layer
debian_linux
leap
ubuntu_linux
fedora
SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a buffer over-read in IMA_ADPCM_nibble in audio/SDL_wave.c. CWE-125
Out-of-bounds Read
CVE-2019-7572 2024-11-21 13:48 2019-02-7 Show GitHub Exploit DB Packet Storm
214312 6.5 MEDIUM
Network
pbootcms pbootcms A CSRF vulnerability was found in PbootCMS v1.3.6 that can delete users via an admin.php/User/del/ucode/ URI. CWE-352
 Origin Validation Error
CVE-2019-7570 2024-11-21 13:48 2019-02-7 Show GitHub Exploit DB Packet Storm
214313 8.8 HIGH
Network
wdoyo doyo An issue was discovered in DOYO (aka doyocms) 2.3(20140425 update). There is a CSRF vulnerability that can add a super administrator account via admin.php?c=a_adminuser&a=add&run=1. CWE-352
 Origin Validation Error
CVE-2019-7569 2024-11-21 13:48 2019-02-7 Show GitHub Exploit DB Packet Storm
214314 9.8 CRITICAL
Network
baijiacms_project baijiacms An issue was discovered in baijiacms V4 that can result in time-based blind SQL injection to get data via the cate parameter in an index.php?act=index request. CWE-89
SQL Injection
CVE-2019-7568 2024-11-21 13:48 2019-02-7 Show GitHub Exploit DB Packet Storm
214315 6.1 MEDIUM
Network
bijiadao waimai_super_cms An issue was discovered in Waimai Super Cms 20150505. admin.php?m=Member&a=adminaddsave has XSS via the username or password parameter. CWE-79
Cross-site Scripting
CVE-2019-7567 2024-11-21 13:48 2019-02-7 Show GitHub Exploit DB Packet Storm
214316 8.8 HIGH
Network
cszcms csz_cms CSZ CMS 1.1.8 has CSRF via admin/users/new/add. CWE-352
 Origin Validation Error
CVE-2019-7566 2024-11-21 13:48 2019-02-7 Show GitHub Exploit DB Packet Storm
214317 5.5 MEDIUM
Local
boolector_project boolector In parser/btorsmt2.c in Boolector 3.0.0, opening a specially crafted input file leads to a use after free in get_failed_assumptions or btor_delete. CWE-416
 Use After Free
CVE-2019-7560 2024-11-21 13:48 2019-02-7 Show GitHub Exploit DB Packet Storm
214318 5.5 MEDIUM
Local
btor2tools_project btor2tools In btor2parser/btor2parser.c in Boolector Btor2Tools before 2019-01-15, opening a specially crafted input file leads to an out of bounds write in pusht_bfr. CWE-787
 Out-of-bounds Write
CVE-2019-7559 2024-11-21 13:48 2019-02-7 Show GitHub Exploit DB Packet Storm
214319 7.8 HIGH
Local
sqlalchemy
debian
opensuse
redhat
oracle
sqlalchemy
debian_linux
leap
backports_sle
enterprise_linux_eus
enterprise_linux_server_tus
enterprise_linux_server_aus
enterprise_linux
communications_operations_monitor
SQLAlchemy 1.2.17 has SQL Injection when the group_by parameter can be controlled. CWE-89
SQL Injection
CVE-2019-7548 2024-11-21 13:48 2019-02-7 Show GitHub Exploit DB Packet Storm
214320 4.8 MEDIUM
Network
topnew sidu An issue was discovered in SIDU 6.0. Because the database name is not strictly filtered, the attacker can insert a name containing an XSS Payload, leading to stored XSS. CWE-79
Cross-site Scripting
CVE-2019-7547 2024-11-21 13:48 2019-02-7 Show GitHub Exploit DB Packet Storm