Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227181 9.3 危険 stonetrip - StoneTrip Ston3D StandalonePlayer および WebPlayer の system.openURL 関数における任意のコマンドを実行される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2009-1792 2012-12-20 19:10 2009-05-29 Show GitHub Exploit DB Packet Storm
227182 7.5 危険 phpdirsubmit - PHP Dir Submit における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-1787 2012-12-20 19:10 2009-05-26 Show GitHub Exploit DB Packet Storm
227183 4.3 警告 ulteo - Ulteo Open Virtual Desktop におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-1785 2012-12-20 19:10 2009-05-22 Show GitHub Exploit DB Packet Storm
227184 6.8 警告 roboform - Frax.dk Php Recommend の admin.php における phpre_config.php へ任意の PHP コードを挿入される脆弱性 CWE-94
コード・インジェクション
CVE-2009-1781 2012-12-20 19:10 2009-05-22 Show GitHub Exploit DB Packet Storm
227185 7.5 危険 roboform - Frax.dk Php Recommend の admin.php における管理者権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-1780 2012-12-20 19:10 2009-05-22 Show GitHub Exploit DB Packet Storm
227186 6.8 警告 roboform - Frax.dk Php Recommend の admin.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2009-1779 2012-12-20 19:10 2009-05-22 Show GitHub Exploit DB Packet Storm
227187 4.3 警告 ulteo - Ulteo Open Virtual Desktop におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-1775 2012-12-20 19:10 2009-05-22 Show GitHub Exploit DB Packet Storm
227188 9.3 危険 strawberry - Strawberry の plugins/ddb/foot.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-1774 2012-12-20 19:10 2009-05-22 Show GitHub Exploit DB Packet Storm
227189 5 警告 ramazeiten - Rama Zaiten CMS の download.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-1768 2012-12-20 19:10 2009-05-22 Show GitHub Exploit DB Packet Storm
227190 6.4 警告 teozkr - LightOpenCMS の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-1766 2012-12-20 19:10 2009-05-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
275121 7.5 HIGH
Network
huawei p7-l09_firmware Huawei Ascend P7 allows remote attackers to cause a denial of service (phone process crash). CWE-20
 Improper Input Validation 
CVE-2015-2245 2024-11-21 11:27 2017-06-28 Show GitHub Exploit DB Packet Storm
275122 10.0 CRITICAL
Network
adblock adblock AdBlock before 2.21 allows remote attackers to block arbitrary resources on arbitrary websites and to disable arbitrary blocking filters. CWE-284
Improper Access Control
CVE-2015-2692 2024-11-21 11:27 2017-06-9 Show GitHub Exploit DB Packet Storm
275123 5.9 MEDIUM
Network
huawei ar1220_firmware Huawei AR1220 routers with software before V200R005SPH006 allow remote attackers to cause a denial of service (board reset) via vectors involving a large amount of traffic from the GE port to the FE … CWE-19
 Data Processing Errors
CVE-2015-2255 2024-11-21 11:27 2017-06-9 Show GitHub Exploit DB Packet Storm
275124 5.0 MEDIUM
Local
huawei oceanstor_uds_firmware The XML interface in Huawei OceanStor UDS devices with software before V100R002C01SPC102 allows remote authenticated users to obtain sensitive information via a crafted XML document. CWE-200
Information Exposure
CVE-2015-2253 2024-11-21 11:27 2017-06-9 Show GitHub Exploit DB Packet Storm
275125 8.8 HIGH
Network
huawei oceanstor_uds_firmware Huawei OceanStor UDS devices with software before V100R002C01SPC102 might allow remote attackers to execute arbitrary code with root privileges via a crafted UDS patch with shell scripts. CWE-94
Code Injection
CVE-2015-2252 2024-11-21 11:27 2017-06-9 Show GitHub Exploit DB Packet Storm
275126 7.5 HIGH
Network
huawei oceanstor_uds_firmware The DeviceManager in Huawei OceanStor UDS devices with software before V100R002C01SPC102 might allow remote attackers to obtain sensitive information via a crafted UDS patch with JavaScript. CWE-200
Information Exposure
CVE-2015-2251 2024-11-21 11:27 2017-06-9 Show GitHub Exploit DB Packet Storm
275127 3.3 LOW
Local
huawei p7-l10_firmware The MeWidget module on Huawei P7 smartphones with software P7-L10 V100R001C00B136 and earlier versions could lead to the disclosure of contact information. CWE-200
Information Exposure
CVE-2015-2246 2024-11-21 11:27 2017-04-3 Show GitHub Exploit DB Packet Storm
275128 3.3 LOW
Local
cloudera cloudera_manager Cloudera Manager 4.x, 5.0.x before 5.0.6, 5.1.x before 5.1.5, 5.2.x before 5.2.5, and 5.3.x before 5.3.3 uses global read permissions for files in its configuration directory when starting YARN NodeM… CWE-264
Permissions, Privileges, and Access Controls
CVE-2015-2263 2024-11-21 11:27 2017-03-24 Show GitHub Exploit DB Packet Storm
275129 7.5 HIGH
Network
webkitgtk webkitgtk Late TLS certificate verification in WebKitGTK+ prior to 2.6.6 allows remote attackers to view a secure HTTP request, including, for example, secure cookies. CWE-295
Improper Certificate Validation 
CVE-2015-2330 2024-11-21 11:27 2017-03-10 Show GitHub Exploit DB Packet Storm
275130 7.8 HIGH
Local
linux linux_kernel net/socket.c in the Linux kernel 3.19 before 3.19.3 does not validate certain range data for (1) sendto and (2) recvfrom system calls, which allows local users to gain privileges by leveraging a subs… CWE-264
Permissions, Privileges, and Access Controls
CVE-2015-2686 2024-11-21 11:27 2016-05-2 Show GitHub Exploit DB Packet Storm