Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 11, 2026, 6:13 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
237381 7.5 危険 liviu mitrofan - TYPO3 用の myth_download エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4701 2012-09-25 17:38 2010-03-15 Show GitHub Exploit DB Packet Storm
237382 7.5 危険 hypersilence - Silentum Guestbook の silentum_guestbook.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4687 2012-09-25 17:38 2010-03-10 Show GitHub Exploit DB Packet Storm
237383 7.5 危険 inertialfate - Joomla! の inertialFATE if_nexus コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-4679 2012-09-25 17:38 2010-03-8 Show GitHub Exploit DB Packet Storm
237384 7.5 危険 mole-group - Restaurant Directory Script における admin パスワードを変更される脆弱性 CWE-287
不適切な認証
CVE-2009-4675 2012-09-25 17:38 2010-03-5 Show GitHub Exploit DB Packet Storm
237385 7.5 危険 mole-group - Mole Group Sky Hunter Airline Ticket Sale Script などにおける任意のパスワードを変更される脆弱性 CWE-255
証明書・パスワード管理
CVE-2009-4674 2012-09-25 17:38 2010-03-5 Show GitHub Exploit DB Packet Storm
237386 7.5 危険 mole-group - Mole Group Adult Portal Script の profile.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4673 2012-09-25 17:38 2010-03-5 Show GitHub Exploit DB Packet Storm
237387 4.3 警告 mp3-cutter - MP3-Cutter Ease Audio Cutter におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2009-4659 2012-09-25 17:38 2010-03-3 Show GitHub Exploit DB Packet Storm
237388 4 警告 omidrouhani - Xerver におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2009-4658 2012-09-25 17:38 2010-03-3 Show GitHub Exploit DB Packet Storm
237389 7.5 危険 omidrouhani - Xerver 用の管理者パッケージにおけるアプリケーション設定を変更される脆弱性 CWE-287
不適切な認証
CVE-2009-4657 2012-09-25 17:38 2010-03-3 Show GitHub Exploit DB Packet Storm
237390 9 危険 Novell - Novell eDirectory の dhost モジュールにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-4654 2012-09-25 17:38 2010-02-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 11, 2026, 5:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
3261 8.2 HIGH
Network
- - AiOPMSD Final 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the 'q' parameter. Attackers can… CWE-89
SQL Injection
CVE-2018-25413 2026-06-2 01:51 2026-05-31 Show GitHub Exploit DB Packet Storm
3262 8.2 HIGH
Network
- - AiOPMSD Final 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the actor parameter. Attackers c… CWE-89
SQL Injection
CVE-2018-25414 2026-06-2 01:51 2026-05-31 Show GitHub Exploit DB Packet Storm
3263 8.2 HIGH
Network
- - AiOPMSD Final 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the director parameter. Attacker… CWE-89
SQL Injection
CVE-2018-25415 2026-06-2 01:51 2026-05-31 Show GitHub Exploit DB Packet Storm
3264 8.2 HIGH
Network
- - AiOPMSD Final 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the country parameter. Attackers… CWE-89
SQL Injection
CVE-2018-25416 2026-06-2 01:51 2026-05-31 Show GitHub Exploit DB Packet Storm
3265 8.2 HIGH
Network
- - AiOPMSD Final 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the quality parameter. Attackers… CWE-89
SQL Injection
CVE-2018-25417 2026-06-2 01:51 2026-05-31 Show GitHub Exploit DB Packet Storm
3266 8.2 HIGH
Network
- - AiOPMSD Final 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the year parameter. Attackers ca… CWE-89
SQL Injection
CVE-2018-25418 2026-06-2 01:51 2026-05-31 Show GitHub Exploit DB Packet Storm
3267 8.2 HIGH
Network
- - AiOPMSD Final 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the genre parameter. Attackers c… CWE-89
SQL Injection
CVE-2018-25419 2026-06-2 01:51 2026-05-31 Show GitHub Exploit DB Packet Storm
3268 8.2 HIGH
Network
- - AiOPMSD Final 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the 'id' parameter. Attackers ca… CWE-89
SQL Injection
CVE-2018-25420 2026-06-2 01:51 2026-05-31 Show GitHub Exploit DB Packet Storm
3269 6.1 MEDIUM
Local
- - The SocketCAN implementation validates the length of a user-provided buffer containing a socketcan_frame object using only a NET_ASSERT statement in zcan_sendto_ctx() before dereferencing it in socke… CWE-125
Out-of-bounds Read
CVE-2026-5071 2026-06-2 01:48 2026-05-30 Show GitHub Exploit DB Packet Storm
3270 8.8 HIGH
Network
- - A security vulnerability has been detected in H3C Magic B0 up to 100R002. The affected element is the function SetMobileAPInfoById of the file /goform/aspForm. Such manipulation of the argument param… CWE-119
CWE-121
Incorrect Access of Indexable Resource ('Range Error') 
Stack-based Buffer Overflow
CVE-2026-10259 2026-06-2 01:41 2026-06-2 Show GitHub Exploit DB Packet Storm