Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230491 4.3 警告 Patrick Przybilla - Drupal の AddToAny におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4043 2012-09-25 17:38 2009-11-11 Show GitHub Exploit DB Packet Storm
230492 4.3 警告 marek sotak - Drupal 用の RootCandy theme におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4042 2012-09-25 17:38 2009-11-11 Show GitHub Exploit DB Packet Storm
230493 4.3 警告 NCH - NCH Software Axon Virtual PBX におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4038 2012-09-25 17:38 2009-11-20 Show GitHub Exploit DB Packet Storm
230494 7.8 危険 Linux - Linux kernel の mac80211 サブシステムにおけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2009-4026 2012-09-25 17:38 2009-11-22 Show GitHub Exploit DB Packet Storm
230495 10 危険 PEAR - PEAR の Net_Traceroute パッケージにおける任意のシェルコマンドを実行される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2009-4025 2012-09-25 17:38 2009-11-14 Show GitHub Exploit DB Packet Storm
230496 10 危険 PEAR - PEAR の Net_Ping パッケージにおける任意のシェルコマンドを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2009-4024 2012-09-25 17:38 2009-11-14 Show GitHub Exploit DB Packet Storm
230497 7.5 危険 PEAR - PEAR の Mail パッケージにおける任意のファイルを読まれる脆弱性 CWE-94
コード・インジェクション
CVE-2009-4023 2012-09-25 17:38 2009-05-7 Show GitHub Exploit DB Packet Storm
230498 5 警告 OpenTTD - OpenTTD の src/train_cmd.cpp の NormaliseTrainConsist 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2009-4007 2012-09-25 17:38 2009-12-11 Show GitHub Exploit DB Packet Storm
230499 7.2 危険 Linux - Linux kernel の KVM サブシステムにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-4004 2012-09-25 17:38 2009-10-23 Show GitHub Exploit DB Packet Storm
230500 4.3 警告 Mozilla Foundation - Bugzilla における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-3989 2012-09-25 17:38 2010-01-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 22, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
284711 - microsoft data_engine
sql_server
The installation of Microsoft Data Engine 1.0 (MSDE 1.0), and Microsoft SQL Server 2000 creates setup.iss files with insecure permissions and does not delete them after installation, which allows loc… NVD-CWE-Other
CVE-2002-0643 2018-10-13 06:31 2002-07-23 Show GitHub Exploit DB Packet Storm
284712 - microsoft data_engine
sql_server
Buffer overflow in several Database Consistency Checkers (DBCCs) for Microsoft SQL Server 2000 and Microsoft Desktop Engine (MSDE) 2000 allows members of the db_owner and db_ddladmin roles to execute… NVD-CWE-Other
CVE-2002-0644 2018-10-13 06:31 2002-08-12 Show GitHub Exploit DB Packet Storm
284713 - microsoft data_engine
sql_server
SQL injection vulnerability in stored procedures for Microsoft SQL Server 2000 and Microsoft Desktop Engine (MSDE) 2000 may allow authenticated users to execute arbitrary commands. NVD-CWE-Other
CVE-2002-0645 2018-10-13 06:31 2002-08-12 Show GitHub Exploit DB Packet Storm
284714 - microsoft sql_server The keep-alive mechanism for Microsoft SQL Server 2000 allows remote attackers to cause a denial of service (bandwidth consumption) via a "ping" style packet to the Resolution Service (UDP port 1434)… NVD-CWE-Other
CVE-2002-0650 2018-10-13 06:31 2002-08-12 Show GitHub Exploit DB Packet Storm
284715 - microsoft data_access_components
microsoft_data_access_components
Buffer overflow in the Transact-SQL (T-SQL) OpenRowSet component of Microsoft Data Access Components (MDAC) 2.5 through 2.7 for SQL Server 7.0 or 2000 allows remote attackers to execute arbitrary cod… NVD-CWE-Other
CVE-2002-0695 2018-10-13 06:31 2002-08-12 Show GitHub Exploit DB Packet Storm
284716 - microsoft visual_foxpro Microsoft Visual FoxPro 6.0 does not register its associated files with Internet Explorer, which allows remote attackers to execute Visual FoxPro applications without warning via HTML that references… NVD-CWE-Other
CVE-2002-0696 2018-10-13 06:31 2002-10-4 Show GitHub Exploit DB Packet Storm
284717 - microsoft metadirectory_services Microsoft Metadirectory Services (MMS) 2.2 allows remote attackers to bypass authentication and modify sensitive data by using an LDAP client to directly connect to MMS and bypass the checks for MMS … NVD-CWE-Other
CVE-2002-0697 2018-10-13 06:31 2002-08-12 Show GitHub Exploit DB Packet Storm
284718 - microsoft windows_2000
windows_98
windows_98se
windows_me
windows_nt
windows_xp
Unknown vulnerability in the Certificate Enrollment ActiveX Control in Microsoft Windows 98, Windows 98 Second Edition, Windows Millennium, Windows NT 4.0, Windows 2000, and Windows XP allow remote a… NVD-CWE-Other
CVE-2002-0699 2018-10-13 06:31 2002-10-4 Show GitHub Exploit DB Packet Storm
284719 - microsoft content_management_server Buffer overflow in a system function that performs user authentication for Microsoft Content Management Server (MCMS) 2001 allows attackers to execute code in the Local System context by authenticati… NVD-CWE-Other
CVE-2002-0700 2018-10-13 06:31 2002-08-12 Show GitHub Exploit DB Packet Storm
284720 - microsoft content_management_server Web authoring command in Microsoft Content Management Server (MCMS) 2001 allows attackers to authenticate and upload executable content, by modifying the upload location, aka "Program Execution via M… NVD-CWE-Other
CVE-2002-0718 2018-10-13 06:31 2002-08-12 Show GitHub Exploit DB Packet Storm