Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230011 7.5 危険 IBM - IBM Web Interface for Content Management における脆弱性 CWE-noinfo
情報不足
CVE-2010-1243 2012-09-25 17:38 2010-03-31 Show GitHub Exploit DB Packet Storm
230012 4.3 警告 IBM - IBM Web Interface for Content Management におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1242 2012-09-25 17:38 2010-03-31 Show GitHub Exploit DB Packet Storm
230013 5 警告 MoinMoin - MoinMoin における textcha の保護メカニズムを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-1238 2012-09-25 17:38 2010-04-5 Show GitHub Exploit DB Packet Storm
230014 9.3 危険 マイクロソフト - Microsoft Virtual PC 2007 などの Virtual Machine Monitor におけるデータ漏洩保護メカニズムを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-1225 2012-09-25 17:38 2010-04-1 Show GitHub Exploit DB Packet Storm
230015 4.3 警告 mm forum - TYPO3 用の mm_forum エクステンションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1218 2012-09-25 17:38 2010-03-30 Show GitHub Exploit DB Packet Storm
230016 4.3 警告 je form creator - Joomla! 用の JE Form Creator コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-1217 2012-09-25 17:38 2010-03-30 Show GitHub Exploit DB Packet Storm
230017 6.8 警告 notsopureedit - notsoPureEdit の templates/template.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2010-1216 2012-09-25 17:38 2010-03-30 Show GitHub Exploit DB Packet Storm
230018 5 警告 Mozilla Foundation - Bugzilla の Search.pm におけるタイムトラッキング情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-1204 2012-09-25 17:38 2010-06-24 Show GitHub Exploit DB Packet Storm
230019 4.3 警告 ikiwiki - ikiwiki の htmlscrubber コンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1195 2012-09-25 17:38 2010-03-31 Show GitHub Exploit DB Packet Storm
230020 4.3 警告 MediaWiki - MediaWiki の thumb.php におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-1190 2012-09-25 17:38 2010-03-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 25, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
285901 - microsoft content_management_server Web authoring command in Microsoft Content Management Server (MCMS) 2001 allows attackers to authenticate and upload executable content, by modifying the upload location, aka "Program Execution via M… NVD-CWE-Other
CVE-2002-0718 2018-10-13 06:31 2002-08-12 Show GitHub Exploit DB Packet Storm
285902 - microsoft content_management_server SQL injection vulnerability in the function that services for Microsoft Content Management Server (MCMS) 2001 allows remote attackers to execute arbitrary commands via an MCMS resource request for im… NVD-CWE-Other
CVE-2002-0719 2018-10-13 06:31 2002-08-12 Show GitHub Exploit DB Packet Storm
285903 - microsoft data_engine
sql_server
Microsoft SQL Server 7.0 and 2000 installs with weak permissions for extended stored procedures that are associated with helper functions, which could allow unprivileged users, and possibly remote at… NVD-CWE-Other
CVE-2002-0721 2018-10-13 06:31 2002-09-5 Show GitHub Exploit DB Packet Storm
285904 - microsoft tsac_activex_control Buffer overflow in Microsoft Terminal Services Advanced Client (TSAC) ActiveX control allows remote attackers to execute arbitrary code via a long server name field. NVD-CWE-Other
CVE-2002-0726 2018-10-13 06:31 2002-09-24 Show GitHub Exploit DB Packet Storm
285905 - microsoft office_web_components
project
The Host function in Microsoft Office Web Components (OWC) 2000 and 2002 is exposed in components that are marked as safe for scripting, which allows remote attackers to execute arbitrary commands vi… NVD-CWE-Other
CVE-2002-0727 2018-10-13 06:31 2002-09-24 Show GitHub Exploit DB Packet Storm
285906 - microsoft office_web_components
project
The LoadText method in the spreadsheet component in Microsoft Office Web Components (OWC) 2000 and 2002 allows remote attackers to read arbitrary files through Internet Explorer via a URL that redire… NVD-CWE-Other
CVE-2002-0860 2018-10-13 06:31 2002-09-24 Show GitHub Exploit DB Packet Storm
285907 - microsoft office_web_components
project
Microsoft Office Web Components (OWC) 2000 and 2002 allows remote attackers to bypass the "Allow paste operations via script" setting, even when it is disabled, via the (1) Copy method of the Cell ob… NVD-CWE-Other
CVE-2002-0861 2018-10-13 06:31 2002-09-24 Show GitHub Exploit DB Packet Storm
285908 - microsoft virtual_machine A certain class that supports XML (Extensible Markup Language) in Microsoft Virtual Machine (VM) 5.0.3805 and earlier, probably com.ms.osp.ospmrshl, exposes certain unsafe methods, which allows remot… NVD-CWE-Other
CVE-2002-0865 2018-10-13 06:31 2002-10-11 Show GitHub Exploit DB Packet Storm
285909 - microsoft virtual_machine Java Database Connectivity (JDBC) classes in Microsoft Virtual Machine (VM) up to and including 5.0.3805 allow remote attackers to load and execute DLLs (dynamic link libraries) via a Java applet tha… NVD-CWE-Other
CVE-2002-0866 2018-10-13 06:31 2002-10-11 Show GitHub Exploit DB Packet Storm
285910 - microsoft virtual_machine Microsoft Virtual Machine (VM) up to and including build 5.0.3805 allows remote attackers to cause a denial of service (crash) in Internet Explorer via invalid handle data in a Java applet, aka "Hand… NVD-CWE-Other
CVE-2002-0867 2018-10-13 06:31 2002-10-11 Show GitHub Exploit DB Packet Storm