Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
194531 7.5 重要
Network
NTP Project - NTP の read_mru_list 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-7434 2017-01-26 11:44 2016-11-21 Show GitHub Exploit DB Packet Storm
194532 3.7
Network
NTP Project - NTP におけるサービス運用妨害 (DoS) の脆弱性 CWE-18
CWE-605
CVE-2016-7429 2017-01-26 11:44 2016-11-21 Show GitHub Exploit DB Packet Storm
194533 4.3 警告
Adjacent
NTP Project - NTP の ntpd におけるサービス運用妨害 (DoS) の脆弱性 CWE-400
リソースの枯渇
CVE-2016-7428 2017-01-26 11:43 2016-11-21 Show GitHub Exploit DB Packet Storm
194534 4.3 警告
Adjacent
NTP Project - NTP の ntpd のブロードキャストモードのリプレイ制限機能におけるサービス運用妨害 (DoS) の脆弱性 CWE-400
リソースの枯渇
CVE-2016-7427 2017-01-26 11:43 2016-11-21 Show GitHub Exploit DB Packet Storm
194535 5.3 警告
Network
NTP Project - NTP におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
CWE-410
CVE-2016-7426 2017-01-26 11:43 2016-11-21 Show GitHub Exploit DB Packet Storm
194536 7.5 重要
Network
WordPress.org - WordPress のマルチサイト WordPress API の wp-includes/ms-functions.php におけるアクセス制限を回避される脆弱性 CWE-310
暗号の問題
CVE-2017-5493 2017-01-26 10:13 2017-01-11 Show GitHub Exploit DB Packet Storm
194537 8.8 重要
Network
WordPress.org - WordPress のウィジェット編集のアクセシビリティモード機能におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2017-5492 2017-01-26 10:13 2017-01-11 Show GitHub Exploit DB Packet Storm
194538 5.3 警告
Network
WordPress.org - WordPress の wp-mail.php における投稿の制限を回避される脆弱性 CWE-254
セキュリティ機能
CVE-2017-5491 2017-01-26 10:13 2017-01-11 Show GitHub Exploit DB Packet Storm
194539 6.1 警告
Network
WordPress.org - WordPress の wp-includes/class-wp-theme.php のテーマ名のフォールバック機能におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-5490 2017-01-26 10:13 2017-01-11 Show GitHub Exploit DB Packet Storm
194540 8.8 重要
Network
WordPress.org - WordPress におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2017-5489 2017-01-26 10:13 2017-01-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 24, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
294501 - mercuryaudio audio_player Multiple stack-based buffer overflows in Mercury Audio Player 1.21 allow remote attackers to execute arbitrary code via a long string in a malformed (1) .b4s or (2) .pls playlist file. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2009-4755 2017-09-19 10:30 2010-03-30 Show GitHub Exploit DB Packet Storm
294502 - beatport beatport_player Stack-based buffer overflow in TraktorBeatport.exe 1.0.0.283 in Beatport Player 1.0.0.0 allows remote attackers to execute arbitrary code via a long string in a malformed playlist (.m3u) file. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2009-4756 2017-09-19 10:30 2010-03-30 Show GitHub Exploit DB Packet Storm
294503 - evils-world ew-musicplayer Stack-based buffer overflow in BrotherSoft EW-MusicPlayer 0.8 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long string in a malfor… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2009-4757 2017-09-19 10:30 2010-03-30 Show GitHub Exploit DB Packet Storm
294504 - dicas mpegable_player Stack-based buffer overflow in dicas Mpegable Player 2.12 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long string in a .YUV file. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2009-4758 2017-09-19 10:30 2010-03-30 Show GitHub Exploit DB Packet Storm
294505 - joric bmxplay Buffer overflow in BrotherSoft BMXPlay 0.4.4b allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long string in a .BMX file. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2009-4759 2017-09-19 10:30 2010-03-30 Show GitHub Exploit DB Packet Storm
294506 - winn asp_guestbook Winn ASP Guestbook 1.01 Beta stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for data/guest… CWE-264
Permissions, Privileges, and Access Controls
CVE-2009-4760 2017-09-19 10:30 2010-03-30 Show GitHub Exploit DB Packet Storm
294507 - mini-stream rm_downloader Stack-based buffer overflow in Mini-stream RM Downloader allows remote attackers to execute arbitrary code via a long string in a .smi file. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2009-4761 2017-09-19 10:30 2010-03-30 Show GitHub Exploit DB Packet Storm
294508 - adobe acrobat_reader Adobe Reader 8.x and 9.x on Windows is able to execute EXE files that are embedded in a PDF document, which makes it easier for remote attackers to trick users into executing arbitrary code via a cra… CWE-94
Code Injection
CVE-2009-4764 2017-09-19 10:30 2010-04-6 Show GitHub Exploit DB Packet Storm
294509 - ipswitch ws_ftp Format string vulnerability in Ipswitch WS_FTP Professional 12 before 12.2 allows remote attackers to cause a denial of service (crash) via format string specifiers in the status code portion of an H… CWE-134
Use of Externally-Controlled Format String
CVE-2009-4775 2017-09-19 10:30 2010-04-21 Show GitHub Exploit DB Packet Storm
294510 - karl_core bandsite_cms SQL injection vulnerability in includes/content/member_content.php in BandSite CMS 1.1.4 allows remote attackers to execute arbitrary SQL commands via the memid parameter to members.php. CWE-89
SQL Injection
CVE-2009-4792 2017-09-19 10:30 2010-04-22 Show GitHub Exploit DB Packet Storm