Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229971 7.5 危険 musicboxv2 - MusicBox の genre_artists.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1499 2012-09-25 17:38 2010-04-23 Show GitHub Exploit DB Packet Storm
229972 7.5 危険 jolt - Joomla! 用の joltcard コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1496 2012-09-25 17:38 2010-04-23 Show GitHub Exploit DB Packet Storm
229973 7.5 危険 matamko - Joomla! 用の Matamko コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-1495 2012-09-25 17:38 2010-04-23 Show GitHub Exploit DB Packet Storm
229974 5 警告 PaloSanto Solutions - Elastix の help/frameRight.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-1492 2012-09-25 17:38 2010-04-23 Show GitHub Exploit DB Packet Storm
229975 5 警告 mms.pipp - Joomla! 用の MMS Blog コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-1491 2012-09-25 17:38 2010-04-23 Show GitHub Exploit DB Packet Storm
229976 10 危険 IBM - IBM Cognos 8 Business Intelligence における脆弱性 CWE-noinfo
情報不足
CVE-2010-1490 2012-09-25 17:38 2010-04-21 Show GitHub Exploit DB Packet Storm
229977 4.3 警告 マイクロソフト - Microsoft Internet Explorer 8 の XSS Filter におけるクロスサイトスクリプティング (XSS) 攻撃を実行される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1489 2012-09-25 17:38 2010-04-19 Show GitHub Exploit DB Packet Storm
229978 2.1 注意 Linux - Linux kernel の fs/proc/base.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2010-1488 2012-09-25 17:38 2010-04-1 Show GitHub Exploit DB Packet Storm
229979 2.1 注意 IBM - IBM Lotus Notes における重要な情報を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2010-1487 2012-09-25 17:38 2010-04-20 Show GitHub Exploit DB Packet Storm
229980 7.5 危険 martin hess - Joomla! 用の sermonspeaker コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1477 2012-09-25 17:38 2010-04-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 22, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
284291 - grisoft avg_antivirus avg7core.sys 7.5.0.444 in Grisoft AVG Anti-Virus 7.5.448 and Free Edition 7.5.446, provides an internal function that copies data to an arbitrary address, which allows local users to gain privileges … NVD-CWE-Other
CVE-2007-3777 2018-10-16 06:30 2007-07-16 Show GitHub Exploit DB Packet Storm
284292 - mysql community_server MySQL Community Server before 5.0.45 allows remote attackers to cause a denial of service (daemon crash) via a malformed password packet in the connection protocol. NVD-CWE-noinfo
CWE-20
 Improper Input Validation 
CVE-2007-3780 2018-10-16 06:30 2007-07-16 Show GitHub Exploit DB Packet Storm
284293 - mysql community_server MySQL Community Server before 5.0.45 does not require privileges such as SELECT for the source table in a CREATE TABLE LIKE statement, which allows remote authenticated users to obtain sensitive info… NVD-CWE-Other
CVE-2007-3781 2018-10-16 06:30 2007-07-16 Show GitHub Exploit DB Packet Storm
284294 - mysql community_server MySQL Community Server before 5.0.45 allows remote authenticated users to gain update privileges for a table in another database via a view that refers to this external table. CWE-264
Permissions, Privileges, and Access Controls
CVE-2007-3782 2018-10-16 06:30 2007-07-16 Show GitHub Exploit DB Packet Storm
284295 - envivosoft envivo_cms SQL injection vulnerability in default.asp in enVivo!CMS allows remote attackers to execute arbitrary SQL commands via the ID parameter in an article action. NOTE: this is probably different from CV… NVD-CWE-Other
CVE-2007-3783 2018-10-16 06:30 2007-07-16 Show GitHub Exploit DB Packet Storm
284296 - esoft instagate_ex2_utm The eSoft InstaGate EX2 UTM device does not require entry of the old password when changing the admin password, which might allow remote attackers to gain privileges by conducting a CSRF attack, maki… NVD-CWE-Other
CVE-2007-3787 2018-10-16 06:30 2007-07-16 Show GitHub Exploit DB Packet Storm
284297 - esoft instagate_ex2_utm The eSoft InstaGate EX2 UTM device stores the admin password within the settings HTML document, which might allow context-dependent attackers to obtain sensitive information by reading this document. NVD-CWE-Other
CVE-2007-3788 2018-10-16 06:30 2007-07-16 Show GitHub Exploit DB Packet Storm
284298 - azerbaijan_development_group azdgdating Multiple PHP remote file inclusion vulnerabilities in AzDG Dating Gold 3.0.5 allow remote attackers to execute arbitrary PHP code via a URL in the int_path parameter to (1) header.php, (2) footer.php… NVD-CWE-Other
CVE-2007-3792 2018-10-16 06:30 2007-07-16 Show GitHub Exploit DB Packet Storm
284299 - sun jdk
jre
sdk
Directory traversal vulnerability in the PersistenceService in Sun Java Web Start in JDK and JRE 5.0 Update 11 and earlier, and Java Web Start in SDK and JRE 1.4.2_13 and earlier, for Windows allows … CWE-22
Path Traversal
CVE-2007-3504 2018-10-16 06:29 2007-06-30 Show GitHub Exploit DB Packet Storm
284300 - flac123 flac123 Stack-based buffer overflow in the local__vcentry_parse_value function in vorbiscomment.c in flac123 (aka flac-tools or flac) before 0.0.10 allows user-assisted remote attackers to execute arbitrary … NVD-CWE-Other
CVE-2007-3507 2018-10-16 06:29 2007-07-3 Show GitHub Exploit DB Packet Storm