Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 17, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
255151 10 危険 日立 - Collaboration - Common Utility におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
- 2010-06-3 15:19 2010-05-12 Show GitHub Exploit DB Packet Storm
255152 10 危険 日立
CA Technologies
- CA ARCserve Backup および BrightStor ARCserve Backup における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
- 2010-06-3 15:19 2010-03-18 Show GitHub Exploit DB Packet Storm
255153 6.4 警告 サイバートラスト株式会社
MySQL AB
ターボリナックス
レッドハット
- MySQL における SSL サーバになりすまされる脆弱性 CWE-20
不適切な入力確認
CVE-2009-4028 2010-06-3 14:57 2009-11-4 Show GitHub Exploit DB Packet Storm
255154 4 警告 富士通九州システムズ - e-Pares におけるセッション固定の脆弱性 CWE-Other
その他
CVE-2010-2149 2010-06-2 15:05 2010-06-2 Show GitHub Exploit DB Packet Storm
255155 2.6 注意 富士通九州システムズ - e-Pares におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2010-2151 2010-06-2 15:04 2010-06-2 Show GitHub Exploit DB Packet Storm
255156 4.3 警告 富士通九州システムズ - e-Pares におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-2150 2010-06-2 15:02 2010-06-2 Show GitHub Exploit DB Packet Storm
255157 2.1 注意 アドビシステムズ - Adobe ColdFusion における重要な情報を取得される脆弱性 CWE-200
CWE-noinfo
CVE-2010-1294 2010-06-2 12:14 2010-05-11 Show GitHub Exploit DB Packet Storm
255158 4.3 警告 アドビシステムズ - Adobe ColdFusion の Administrator ページにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1293 2010-06-2 12:14 2010-05-11 Show GitHub Exploit DB Packet Storm
255159 4.3 警告 アドビシステムズ - Adobe ColdFusion におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3467 2010-06-2 12:13 2010-05-11 Show GitHub Exploit DB Packet Storm
255160 9.3 危険 アドビシステムズ - Adobe Shockwave Player の pami RIFF chunk 構文解析における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2010-1292 2010-06-2 12:13 2010-05-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 17, 2026, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
221511 7.8 HIGH
Local
ricoh streamline_nx_pc_client
streamline_nx_client_tool
An issue was discovered in RICOH Streamline NX Client Tool and RICOH Streamline NX PC Client that allows attackers to escalate local privileges. NVD-CWE-noinfo
CVE-2019-20001 2024-11-21 13:37 2020-08-4 Show GitHub Exploit DB Packet Storm
221512 9.8 CRITICAL
Network
nec sv8100_firmware On Aspire-derived NEC PBXes, including all versions of SV8100 devices, a set of documented, static login credentials may be used to access the DIM interface. CWE-287
Improper Authentication
CVE-2019-20033 2024-11-21 13:37 2020-07-30 Show GitHub Exploit DB Packet Storm
221513 6.5 MEDIUM
Network
nec sv8100_firmware
sv9100_firmware
sl1100_firmware
sl2100_firmware
An attacker with access to an InMail voicemail box equipped with the find me/follow me feature on Aspire-derived NEC PBXes, including all versions of SV8100, SV9100, SL1100 and SL2100 devices, may ac… NVD-CWE-noinfo
CVE-2019-20032 2024-11-21 13:37 2020-07-30 Show GitHub Exploit DB Packet Storm
221514 9.1 CRITICAL
Network
nec um8000_firmware
um4730_firmware
NEC UM8000, UM4730 and prior non-InMail voicemail systems with all known software versions may permit an infinite number of login attempts in the telephone user interface (TUI), effectively allowing … CWE-307
mproper Restriction of Excessive Authentication Attempts
CVE-2019-20031 2024-11-21 13:37 2020-07-30 Show GitHub Exploit DB Packet Storm
221515 7.8 HIGH
Local
nec um8000_firmware An attacker with knowledge of the modem access number on a NEC UM8000 voicemail system may use SSH tunneling or standard Linux utilities to gain access to the system's LAN port. All versions are affe… NVD-CWE-noinfo
CVE-2019-20030 2024-11-21 13:37 2020-07-30 Show GitHub Exploit DB Packet Storm
221516 8.8 HIGH
Network
nec sv8100_firmware
sv9100_firmware
sl1100_firmware
sl2100_firmware
An exploitable privilege escalation vulnerability exists in the WebPro functionality of Aspire-derived NEC PBXes, including all versions of SV8100, SV9100, SL1100 and SL2100 devices. A specially craf… NVD-CWE-noinfo
CVE-2019-20029 2024-11-21 13:37 2020-07-30 Show GitHub Exploit DB Packet Storm
221517 7.5 HIGH
Network
nec sv8100_firmware
sv9100_firmware
sl1100_firmware
sl2100_firmware
Aspire-derived NEC PBXes operating InMail software, including all versions of SV8100, SV9100, SL1100 and SL2100 devices allow unauthenticated read-only access to voicemails, greetings, and voice resp… NVD-CWE-noinfo
CVE-2019-20028 2024-11-21 13:37 2020-07-30 Show GitHub Exploit DB Packet Storm
221518 9.8 CRITICAL
Network
nec sv8100_firmware
sv9100_firmware
sl1100_firmware
sl2100_firmware
Aspire-derived NEC PBXes, including the SV8100, SV9100, SL1100 and SL2100 with software releases 7.0 or higher contain the possibility if incorrectly configured to allow a blank username and password… CWE-287
Improper Authentication
CVE-2019-20027 2024-11-21 13:37 2020-07-30 Show GitHub Exploit DB Packet Storm
221519 7.5 HIGH
Network
nec sv9100_firmware The WebPro interface in NEC SV9100 software releases 7.0 or higher allows unauthenticated remote attackers to reset all existing usernames and passwords to default values via a crafted request. NVD-CWE-noinfo
CVE-2019-20026 2024-11-21 13:37 2020-07-30 Show GitHub Exploit DB Packet Storm
221520 9.8 CRITICAL
Network
nec sv9100_firmware Certain builds of NEC SV9100 software could allow an unauthenticated, remote attacker to log into a device running an affected release with a hardcoded username and password, aka a Static Credential … CWE-798
 Use of Hard-coded Credentials
CVE-2019-20025 2024-11-21 13:37 2020-07-30 Show GitHub Exploit DB Packet Storm