Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
256231 9.3 危険 マイクロソフト - Microsoft Windows Movie Maker および Microsoft Producer におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-0265 2010-03-19 10:27 2010-03-9 Show GitHub Exploit DB Packet Storm
256232 8.5 危険 Samba Project - Samba の smbd におけるファイルパーミッションを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-0728 2010-03-18 12:09 2010-03-10 Show GitHub Exploit DB Packet Storm
256233 7.2 危険 IBM - IBM AIX および VIOS の qosmod におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-0960 2010-03-18 12:09 2010-03-5 Show GitHub Exploit DB Packet Storm
256234 7.2 危険 IBM - IBM AIX および VIOS の qoslist におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-0961 2010-03-18 12:09 2010-03-5 Show GitHub Exploit DB Packet Storm
256235 9 危険 マイクロソフト - Microsoft Virtual PC の VMM におけるゲスト OS 内で任意のカーネルモードコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-1542 2010-03-17 12:18 2009-07-14 Show GitHub Exploit DB Packet Storm
256236 6.8 警告 IBM - IBM Lotus Domino Web Access におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2010-0921 2010-03-16 11:15 2010-03-3 Show GitHub Exploit DB Packet Storm
256237 4.3 警告 IBM - IBM Lotus Domino Web Access におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-0920 2010-03-16 11:14 2010-03-3 Show GitHub Exploit DB Packet Storm
256238 10 危険 IBM - IBM Lotus Domino Web Access の UltraLite 機能における脆弱性 CWE-noinfo
情報不足
CVE-2010-0918 2010-03-16 11:14 2010-03-3 Show GitHub Exploit DB Packet Storm
256239 4.9 警告 サイバートラスト株式会社
レッドハット
SystemTap
- SystemTap の _get_argv および _get_compat_argv 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2010-0411 2010-03-16 11:14 2010-02-8 Show GitHub Exploit DB Packet Storm
256240 10 危険 サイバートラスト株式会社
レッドハット
SystemTap
- SystemTap の stap-server における任意のコマンドを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2009-4273 2010-03-16 11:14 2010-01-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
221841 9.8 CRITICAL
Network
nec sv8100_firmware On Aspire-derived NEC PBXes, including all versions of SV8100 devices, a set of documented, static login credentials may be used to access the DIM interface. CWE-287
Improper Authentication
CVE-2019-20033 2024-11-21 13:37 2020-07-30 Show GitHub Exploit DB Packet Storm
221842 6.5 MEDIUM
Network
nec sv8100_firmware
sv9100_firmware
sl1100_firmware
sl2100_firmware
An attacker with access to an InMail voicemail box equipped with the find me/follow me feature on Aspire-derived NEC PBXes, including all versions of SV8100, SV9100, SL1100 and SL2100 devices, may ac… NVD-CWE-noinfo
CVE-2019-20032 2024-11-21 13:37 2020-07-30 Show GitHub Exploit DB Packet Storm
221843 9.1 CRITICAL
Network
nec um8000_firmware
um4730_firmware
NEC UM8000, UM4730 and prior non-InMail voicemail systems with all known software versions may permit an infinite number of login attempts in the telephone user interface (TUI), effectively allowing … CWE-307
mproper Restriction of Excessive Authentication Attempts
CVE-2019-20031 2024-11-21 13:37 2020-07-30 Show GitHub Exploit DB Packet Storm
221844 7.8 HIGH
Local
nec um8000_firmware An attacker with knowledge of the modem access number on a NEC UM8000 voicemail system may use SSH tunneling or standard Linux utilities to gain access to the system's LAN port. All versions are affe… NVD-CWE-noinfo
CVE-2019-20030 2024-11-21 13:37 2020-07-30 Show GitHub Exploit DB Packet Storm
221845 8.8 HIGH
Network
nec sv8100_firmware
sv9100_firmware
sl1100_firmware
sl2100_firmware
An exploitable privilege escalation vulnerability exists in the WebPro functionality of Aspire-derived NEC PBXes, including all versions of SV8100, SV9100, SL1100 and SL2100 devices. A specially craf… NVD-CWE-noinfo
CVE-2019-20029 2024-11-21 13:37 2020-07-30 Show GitHub Exploit DB Packet Storm
221846 7.5 HIGH
Network
nec sv8100_firmware
sv9100_firmware
sl1100_firmware
sl2100_firmware
Aspire-derived NEC PBXes operating InMail software, including all versions of SV8100, SV9100, SL1100 and SL2100 devices allow unauthenticated read-only access to voicemails, greetings, and voice resp… NVD-CWE-noinfo
CVE-2019-20028 2024-11-21 13:37 2020-07-30 Show GitHub Exploit DB Packet Storm
221847 9.8 CRITICAL
Network
nec sv8100_firmware
sv9100_firmware
sl1100_firmware
sl2100_firmware
Aspire-derived NEC PBXes, including the SV8100, SV9100, SL1100 and SL2100 with software releases 7.0 or higher contain the possibility if incorrectly configured to allow a blank username and password… CWE-287
Improper Authentication
CVE-2019-20027 2024-11-21 13:37 2020-07-30 Show GitHub Exploit DB Packet Storm
221848 7.5 HIGH
Network
nec sv9100_firmware The WebPro interface in NEC SV9100 software releases 7.0 or higher allows unauthenticated remote attackers to reset all existing usernames and passwords to default values via a crafted request. NVD-CWE-noinfo
CVE-2019-20026 2024-11-21 13:37 2020-07-30 Show GitHub Exploit DB Packet Storm
221849 9.8 CRITICAL
Network
nec sv9100_firmware Certain builds of NEC SV9100 software could allow an unauthenticated, remote attacker to log into a device running an affected release with a hardcoded username and password, aka a Static Credential … CWE-798
 Use of Hard-coded Credentials
CVE-2019-20025 2024-11-21 13:37 2020-07-30 Show GitHub Exploit DB Packet Storm
221850 7.8 HIGH
Local
solarwinds webhelpdesk Formula Injection exists in the export feature in SolarWinds WebHelpDesk 12.7.1 via a value (provided by a low-privileged user in the Subject field of a help request form) that is mishandled in a Tic… CWE-1236
 Improper Neutralization of Formula Elements in a CSV File
CVE-2019-20002 2024-11-21 13:37 2020-04-28 Show GitHub Exploit DB Packet Storm