Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230281 4.3 警告 mntechsolutions - Theeta CMS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4782 2012-09-25 17:38 2010-04-21 Show GitHub Exploit DB Packet Storm
230282 4.3 警告 Ipswitch, Inc. - Ipswitch WS_FTP におけるフォーマットストリングの脆弱性 CWE-134
書式文字列の問題
CVE-2009-4775 2012-09-25 17:38 2010-04-21 Show GitHub Exploit DB Packet Storm
230283 7.5 危険 JasPer Project - httpdx の FTP サーバコンポーネントにおける特権アクセスを取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2009-4770 2012-09-25 17:38 2010-04-20 Show GitHub Exploit DB Packet Storm
230284 9.3 危険 JasPer Project - httpdx の tolog 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-134
書式文字列の問題
CVE-2009-4769 2012-09-25 17:38 2010-04-20 Show GitHub Exploit DB Packet Storm
230285 9.3 危険 Mini-stream Software - Mini-stream RM Downloader におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-4761 2012-09-25 17:38 2010-03-29 Show GitHub Exploit DB Packet Storm
230286 9.3 危険 joric - BrotherSoft BMXPlay におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-4759 2012-09-25 17:38 2010-03-29 Show GitHub Exploit DB Packet Storm
230287 9.3 危険 mercuryaudio - Mercury Audio Player におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-4755 2012-09-25 17:38 2010-03-29 Show GitHub Exploit DB Packet Storm
230288 9.3 危険 mercuryaudio - Mercury Audio Player におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-4754 2012-09-25 17:38 2010-03-29 Show GitHub Exploit DB Packet Storm
230289 7.1 危険 nas adapter - Addonics NAS Adapter NASU2FW41 の FTP サーバにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-4753 2012-09-25 17:38 2010-03-29 Show GitHub Exploit DB Packet Storm
230290 4.3 警告 Exponent CMS project - Exponent CMS の Contact モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4744 2012-09-25 17:38 2010-03-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 23, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
284291 - grisoft avg_antivirus avg7core.sys 7.5.0.444 in Grisoft AVG Anti-Virus 7.5.448 and Free Edition 7.5.446, provides an internal function that copies data to an arbitrary address, which allows local users to gain privileges … NVD-CWE-Other
CVE-2007-3777 2018-10-16 06:30 2007-07-16 Show GitHub Exploit DB Packet Storm
284292 - mysql community_server MySQL Community Server before 5.0.45 allows remote attackers to cause a denial of service (daemon crash) via a malformed password packet in the connection protocol. NVD-CWE-noinfo
CWE-20
 Improper Input Validation 
CVE-2007-3780 2018-10-16 06:30 2007-07-16 Show GitHub Exploit DB Packet Storm
284293 - mysql community_server MySQL Community Server before 5.0.45 does not require privileges such as SELECT for the source table in a CREATE TABLE LIKE statement, which allows remote authenticated users to obtain sensitive info… NVD-CWE-Other
CVE-2007-3781 2018-10-16 06:30 2007-07-16 Show GitHub Exploit DB Packet Storm
284294 - mysql community_server MySQL Community Server before 5.0.45 allows remote authenticated users to gain update privileges for a table in another database via a view that refers to this external table. CWE-264
Permissions, Privileges, and Access Controls
CVE-2007-3782 2018-10-16 06:30 2007-07-16 Show GitHub Exploit DB Packet Storm
284295 - envivosoft envivo_cms SQL injection vulnerability in default.asp in enVivo!CMS allows remote attackers to execute arbitrary SQL commands via the ID parameter in an article action. NOTE: this is probably different from CV… NVD-CWE-Other
CVE-2007-3783 2018-10-16 06:30 2007-07-16 Show GitHub Exploit DB Packet Storm
284296 - esoft instagate_ex2_utm The eSoft InstaGate EX2 UTM device does not require entry of the old password when changing the admin password, which might allow remote attackers to gain privileges by conducting a CSRF attack, maki… NVD-CWE-Other
CVE-2007-3787 2018-10-16 06:30 2007-07-16 Show GitHub Exploit DB Packet Storm
284297 - esoft instagate_ex2_utm The eSoft InstaGate EX2 UTM device stores the admin password within the settings HTML document, which might allow context-dependent attackers to obtain sensitive information by reading this document. NVD-CWE-Other
CVE-2007-3788 2018-10-16 06:30 2007-07-16 Show GitHub Exploit DB Packet Storm
284298 - azerbaijan_development_group azdgdating Multiple PHP remote file inclusion vulnerabilities in AzDG Dating Gold 3.0.5 allow remote attackers to execute arbitrary PHP code via a URL in the int_path parameter to (1) header.php, (2) footer.php… NVD-CWE-Other
CVE-2007-3792 2018-10-16 06:30 2007-07-16 Show GitHub Exploit DB Packet Storm
284299 - sun jdk
jre
sdk
Directory traversal vulnerability in the PersistenceService in Sun Java Web Start in JDK and JRE 5.0 Update 11 and earlier, and Java Web Start in SDK and JRE 1.4.2_13 and earlier, for Windows allows … CWE-22
Path Traversal
CVE-2007-3504 2018-10-16 06:29 2007-06-30 Show GitHub Exploit DB Packet Storm
284300 - flac123 flac123 Stack-based buffer overflow in the local__vcentry_parse_value function in vorbiscomment.c in flac123 (aka flac-tools or flac) before 0.0.10 allows user-assisted remote attackers to execute arbitrary … NVD-CWE-Other
CVE-2007-3507 2018-10-16 06:29 2007-07-3 Show GitHub Exploit DB Packet Storm