Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
256151 4.3 警告 シスコシステムズ - Cisco Router and Security Device Manager におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-0594 2010-04-8 15:03 2010-04-8 Show GitHub Exploit DB Packet Storm
256152 4.3 警告 MODX - MODx におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1427 2010-04-8 15:02 2010-04-8 Show GitHub Exploit DB Packet Storm
256153 7.5 危険 MODX - MODx における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1426 2010-04-8 15:02 2010-04-8 Show GitHub Exploit DB Packet Storm
256154 7.8 危険 シスコシステムズ - Cisco IOS および Cisco ルータにおける IKE パケットの処理に関するサービス運用妨害 (DoS) の脆弱性 CWE-310
暗号の問題
CVE-2010-0578 2010-04-8 10:42 2010-03-24 Show GitHub Exploit DB Packet Storm
256155 7.8 危険 シスコシステムズ - Cisco IOS における SCCP パケットの処理に関するサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2010-0584 2010-04-8 10:42 2010-03-24 Show GitHub Exploit DB Packet Storm
256156 7.8 危険 シスコシステムズ - Cisco IOS における LDP パケットの処理に関するサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2010-0576 2010-04-8 10:42 2010-03-24 Show GitHub Exploit DB Packet Storm
256157 7.8 危険 シスコシステムズ - Cisco IOS の H.323 実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2010-0583 2010-04-8 10:42 2010-03-24 Show GitHub Exploit DB Packet Storm
256158 7.8 危険 シスコシステムズ - Cisco IOS における H.323 パケットの処理に関するサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2010-0582 2010-04-8 10:41 2010-03-24 Show GitHub Exploit DB Packet Storm
256159 7.8 危険 シスコシステムズ - Cisco IOS の SIP 実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2010-0579 2010-04-8 10:41 2010-03-24 Show GitHub Exploit DB Packet Storm
256160 10 危険 シスコシステムズ - Cisco IOS の SIP 実装における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2010-0581 2010-04-8 10:41 2010-03-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
224501 8.8 HIGH
Network
wikidsystems two_factor_authentication_enterprise_server WiKID Enterprise 2FA (two factor authentication) Enterprise Server through 4.2.0-b2047 is vulnerable to SQL injection through the searchDevices.jsp endpoint. The uid and domain parameters are used, u… CWE-89
SQL Injection
CVE-2019-16917 2024-11-21 13:31 2019-10-18 Show GitHub Exploit DB Packet Storm
224502 9.8 CRITICAL
Network
slub-dresden slub_events The slub_events (aka SLUB: Event Registration) extension through 3.0.2 for TYPO3 allows uploading of arbitrary files to the webserver. For versions 1.2.2 and below, this results in Remote Code Execut… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2019-16700 2024-11-21 13:31 2019-10-17 Show GitHub Exploit DB Packet Storm
224503 9.8 CRITICAL
Network
sr_freecap_project sr_freecap The sr_freecap (aka freeCap CAPTCHA) extension 2.4.5 and below and 2.5.2 and below for TYPO3 fails to sanitize user input, which allows execution of arbitrary Extbase actions, resulting in Remote Cod… CWE-20
 Improper Input Validation 
CVE-2019-16699 2024-11-21 13:31 2019-10-17 Show GitHub Exploit DB Packet Storm
224504 4.3 MEDIUM
Network
dkd direct_mail The direct_mail (aka Direct Mail) extension through 5.2.2 for TYPO3 has a missing access check in the backend module, allowing a user (with restricted permissions to the fe_users table) to view and e… CWE-862
 Missing Authorization
CVE-2019-16698 2024-11-21 13:31 2019-10-17 Show GitHub Exploit DB Packet Storm
224505 6.1 MEDIUM
Network
dolibarr dolibarr_erp\/crm There is HTML Injection in the Note field in Dolibarr ERP/CRM 10.0.2 via user/note.php. CWE-79
Cross-site Scripting
CVE-2019-17223 2024-11-21 13:31 2019-10-15 Show GitHub Exploit DB Packet Storm
224506 7.8 HIGH
Local
bmc patrol_agent An issue was discovered in BMC Patrol Agent 9.0.10i. Weak execution permissions on the PatrolAgent SUID binary could allow an attacker with "patrol" privileges to elevate his/her privileges to the on… CWE-276
Incorrect Default Permissions 
CVE-2019-17044 2024-11-21 13:31 2019-10-15 Show GitHub Exploit DB Packet Storm
224507 7.8 HIGH
Local
bmc patrol_agent An issue was discovered in BMC Patrol Agent 9.0.10i. Weak execution permissions on the best1collect.exe SUID binary could allow an attacker to elevate his/her privileges to the ones of the "patrol" u… CWE-276
Incorrect Default Permissions 
CVE-2019-17043 2024-11-21 13:31 2019-10-15 Show GitHub Exploit DB Packet Storm
224508 6.1 MEDIUM
Network
genesys eservices_chat Genesys PureEngage Digital (eServices) 8.1.x allows XSS via HtmlChatPanel.jsp or HtmlChatFrameSet.jsp (ActionColor, ClientNickNameColor, Email, email, or email_address parameter). CWE-79
Cross-site Scripting
CVE-2019-17176 2024-11-21 13:31 2019-10-12 Show GitHub Exploit DB Packet Storm
224509 9.8 CRITICAL
Network
connect2id
apache
oracle
nimbus_jose\+jwt
hadoop
solaris_cluster
weblogic_server
peoplesoft_enterprise_peopletools
enterprise_manager_base_platform
primavera_gateway
data_integrator
communications_pri…
Connect2id Nimbus JOSE+JWT before v7.9 can throw various uncaught exceptions while parsing a JWT, which could result in an application crash (potential information disclosure) or a potential authenti… CWE-755
 Improper Handling of Exceptional Conditions
CVE-2019-17195 2024-11-21 13:31 2019-10-15 Show GitHub Exploit DB Packet Storm
224510 9.8 CRITICAL
Network
sophos cyberoamos A shell injection vulnerability on the Sophos Cyberoam firewall appliance with CyberoamOS before 10.6.6 MR-6 allows remote attackers to execute arbitrary commands via the Web Admin and SSL VPN consol… CWE-78
OS Command 
CVE-2019-17059 2024-11-21 13:31 2019-10-12 Show GitHub Exploit DB Packet Storm