Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 26, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
255231 7.2 危険 VMware - 複数の VMware 製品の vmware-mount における権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-4296 2010-12-27 15:38 2010-12-2 Show GitHub Exploit DB Packet Storm
255232 6.9 警告 VMware - 複数の VMware 製品の vmware-mount における権限昇格の脆弱性 CWE-362
競合状態
CVE-2010-4295 2010-12-27 15:36 2010-12-2 Show GitHub Exploit DB Packet Storm
255233 9.3 危険 VMware - 複数の VMware 製品の VMnc メディアコーデック内にあるフレーム復元機能における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2010-4294 2010-12-27 15:33 2010-12-2 Show GitHub Exploit DB Packet Storm
255234 2.1 注意 アップル - Windows 上で稼働する Apple QuickTime における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-0530 2010-12-27 15:07 2010-12-9 Show GitHub Exploit DB Packet Storm
255235 9.3 危険 アップル - Windows 上で稼働する Apple QuickTime におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-1508 2010-12-27 15:06 2010-12-9 Show GitHub Exploit DB Packet Storm
255236 9.3 危険 アップル - Apple QuickTime における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2010-3800 2010-12-27 14:59 2010-12-9 Show GitHub Exploit DB Packet Storm
255237 9.3 危険 マイクロソフト - Microsoft Internet Explorer における無効なフラグ参照に起因する脆弱性 CWE-399
リソース管理の問題
CVE-2010-3962 2010-12-27 14:36 2010-11-4 Show GitHub Exploit DB Packet Storm
255238 10 危険 CA Technologies - CA PSFormX および CA WebScan ActiveX コントロールにおける任意のコードを実行される脆弱性 CWE-20
CWE-noinfo
CVE-2010-2193 2010-12-27 11:49 2010-06-8 Show GitHub Exploit DB Packet Storm
255239 2.6 注意 CA Technologies - CA eHealth Performance Manager におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-0640 2010-12-27 11:44 2010-02-24 Show GitHub Exploit DB Packet Storm
255240 9.3 危険 CA Technologies - CA eTrust PestPatrol の PestPatrol ActiveX コントロールにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-4225 2010-12-27 11:41 2009-12-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
221081 9.6 CRITICAL
Network
dell emc_isilonsd_management_server IsilonSD Management Server 1.1.0 contains a cross-site scripting vulnerability while uploading an OVA file. A remote attacker can trick an admin user to potentially exploit this vulnerability to exec… CWE-79
Cross-site Scripting
CVE-2019-3708 2024-11-21 13:42 2019-04-17 Show GitHub Exploit DB Packet Storm
221082 7.5 HIGH
Network
fedoraproject
debian
redhat
389_directory_server
debian_linux
enterprise_linux
In 389-ds-base up to version 1.4.1.2, requests are handled by workers threads. Each sockets will be waited by the worker for at most 'ioblocktimeout' seconds. However this timeout applies only for un… CWE-772
 Missing Release of Resource after Effective Lifetime
CVE-2019-3883 2024-11-21 13:42 2019-04-17 Show GitHub Exploit DB Packet Storm
221083 7.8 HIGH
Local
redhat satellite It was discovered that a world-readable log file belonging to Candlepin component of Red Hat Satellite 6.4 leaked the credentials of the Candlepin database. A malicious user with local access to a Sa… CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2019-3891 2024-11-21 13:42 2019-04-15 Show GitHub Exploit DB Packet Storm
221084 6.5 MEDIUM
Adjacent
linux
canonical
debian
redhat
linux_kernel
ubuntu_linux
debian_linux
enterprise_linux_desktop
enterprise_linux_workstation
enterprise_linux_server
enterprise_linux_for_real_time
enterprise_linux_for_real_time…
A heap data infoleak in multiple locations including L2CAP_PARSE_CONF_RSP was found in the Linux kernel before 5.1-rc1. CWE-20
 Improper Input Validation 
CVE-2019-3460 2024-11-21 13:42 2019-04-12 Show GitHub Exploit DB Packet Storm
221085 6.5 MEDIUM
Adjacent
linux
canonical
redhat
debian
linux_kernel
ubuntu_linux
enterprise_linux_desktop
enterprise_linux_workstation
enterprise_linux
enterprise_linux_server
enterprise_linux_for_real_time
enterprise_linux_for_real_…
A heap address information leak while using L2CAP_GET_CONF_OPT was discovered in the Linux kernel before 5.1-rc1. CWE-125
Out-of-bounds Read
CVE-2019-3459 2024-11-21 13:42 2019-04-12 Show GitHub Exploit DB Packet Storm
221086 7.5 HIGH
Network
verizon fios_quantum_gateway_g1100_firmware Information disclosure vulnerability in Verizon Fios Quantum Gateway (G1100) firmware version 02.01.00.05 allows an remote, unauthenticated attacker to retrieve the value of the password salt by simp… CWE-425
 Direct Request ('Forced Browsing')
CVE-2019-3916 2024-11-21 13:42 2019-04-12 Show GitHub Exploit DB Packet Storm
221087 8.0 HIGH
Adjacent
redhat satellite A lack of access control was found in the message queues maintained by Satellite's QPID broker and used by katello-agent in versions before Satellite 6.2, Satellite 6.1 optional and Satellite Capsule… NVD-CWE-Other
CVE-2019-3845 2024-11-21 13:42 2019-04-12 Show GitHub Exploit DB Packet Storm
221088 6.1 MEDIUM
Local
linux
redhat
linux_kernel
enterprise_linux
It was found that the net_dma code in tcp_recvmsg() in the 2.6.32 kernel as shipped in RHEL6 is thread-unsafe. So an unprivileged multi-threaded userspace application calling recvmsg() for the same n… CWE-362
CWE-401
Race Condition
 Missing Release of Memory after Effective Lifetime
CVE-2019-3837 2024-11-21 13:42 2019-04-12 Show GitHub Exploit DB Packet Storm
221089 7.2 HIGH
Network
verizon fios_quantum_gateway_g1100_firmware Remote command injection vulnerability in Verizon Fios Quantum Gateway (G1100) firmware version 02.01.00.05 allows a remote, authenticated attacker to execute arbitrary commands on the target device … CWE-78
OS Command 
CVE-2019-3914 2024-11-21 13:42 2019-04-11 Show GitHub Exploit DB Packet Storm
221090 8.1 HIGH
Network
mikrotik routeros MikroTik RouterOS versions Stable 6.43.12 and below, Long-term 6.42.12 and below, and Testing 6.44beta75 and below are vulnerable to an authenticated, remote directory traversal via the HTTP or Winbo… CWE-22
Path Traversal
CVE-2019-3943 2024-11-21 13:42 2019-04-11 Show GitHub Exploit DB Packet Storm