Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 11, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241121 7.5 危険 dan brown - Moa Gallery における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2009-4614 2012-06-26 16:19 2010-01-18 Show GitHub Exploit DB Packet Storm
241122 7.5 危険 fernando soares
Joomla!
- Joomla! 用 Fernando Soares Mamboleto コンポーネントの mamboleto.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2009-4604 2012-06-26 16:19 2010-01-12 Show GitHub Exploit DB Packet Storm
241123 7.5 危険 corephp
Joomla!
- Joomla! の jphoto コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4598 2012-06-26 16:19 2010-01-12 Show GitHub Exploit DB Packet Storm
241124 9.3 危険 awingsoft - AwingSoft Awakening Web3D Player などの WindsPlayerIE.View.1 ActiveX コントロールにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-4588 2012-06-26 16:19 2010-01-7 Show GitHub Exploit DB Packet Storm
241125 5 警告 Cherokee Project - Cherokee Web Server におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2009-4587 2012-06-26 16:19 2010-01-7 Show GitHub Exploit DB Packet Storm
241126 5 警告 ASP indir - UranyumSoft Listing Service におけるデータベースをダウンロードされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-4585 2012-06-26 16:19 2010-01-6 Show GitHub Exploit DB Packet Storm
241127 7.5 危険 dbmasters - dB Masters Multimedia Links Directory の admin.php における管理者アクセス権を取得される脆弱性 CWE-287
不適切な認証
CVE-2009-4584 2012-06-26 16:19 2010-01-6 Show GitHub Exploit DB Packet Storm
241128 4.3 警告 FacileForms
Joomla!
Mambo Foundation
- Mambo および Joomla! 用の Facileforms コンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4578 2012-06-26 16:19 2010-01-6 Show GitHub Exploit DB Packet Storm
241129 4.3 警告 Drupal - Drupal 用の Randomizer モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4602 2012-06-26 16:19 2009-12-9 Show GitHub Exploit DB Packet Storm
241130 7.5 危険 cmstactics
Joomla!
- Joomla! の beeheard コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4576 2012-06-26 16:19 2010-01-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 11, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
267151 5.9 MEDIUM
Network
hiteksoftware automize Information Disclosure can occur in sshProfiles.jsd in Hitek Software's Automize because of the Read attribute being set for Users. This allows an attacker to recover encrypted passwords for SSH/SFTP… CWE-326
Inadequate Encryption Strength
CVE-2016-10104 2024-11-21 11:43 2017-01-23 Show GitHub Exploit DB Packet Storm
267152 8.1 HIGH
Network
hiteksoftware automize Information Disclosure can occur in encryptionProfiles.jsd in Hitek Software's Automize because of the Read attribute being set for Users. This allows an attacker to recover encrypted passwords for G… CWE-255
CWE-326
Credentials Management
Inadequate Encryption Strength
CVE-2016-10103 2024-11-21 11:43 2017-01-23 Show GitHub Exploit DB Packet Storm
267153 8.1 HIGH
Network
hiteksoftware automize hitek.jar in Hitek Software's Automize uses weak encryption when encrypting SSH/SFTP and Encryption profile passwords. This allows an attacker to retrieve the encrypted passwords from sshProfiles.jsd… CWE-326
Inadequate Encryption Strength
CVE-2016-10102 2024-11-21 11:43 2017-01-23 Show GitHub Exploit DB Packet Storm
267154 8.1 HIGH
Network
hiteksoftware automize Information Disclosure can occur in Hitek Software's Automize 10.x and 11.x passManager.jsd. Users have the Read attribute, which allows an attacker to recover the encrypted password to access the Pa… CWE-255
CWE-326
Credentials Management
Inadequate Encryption Strength
CVE-2016-10101 2024-11-21 11:43 2017-01-23 Show GitHub Exploit DB Packet Storm
267155 7.5 HIGH
Network
tiki tikiwiki_cms\/groupware A vulnerability in Tiki Wiki CMS 15.2 could allow a remote attacker to read arbitrary files on a targeted system via a crafted pathname in a banner URL field. CWE-200
Information Exposure
CVE-2016-10143 2024-11-21 11:43 2017-01-20 Show GitHub Exploit DB Packet Storm
267156 7.8 HIGH
Local
tqdm_project tqdm The tqdm._version module in tqdm versions 4.4.1 and 4.10 allows local users to execute arbitrary code via a crafted repo with a malicious git log in the current working directory. CWE-17
Code
CVE-2016-10075 2024-11-21 11:43 2017-01-20 Show GitHub Exploit DB Packet Storm
267157 8.1 HIGH
Network
ca service_desk_management
service_desk_manager
RESTful web services in CA Service Desk Manager 12.9 and CA Service Desk Management 14.1 might allow remote authenticated users to read or modify task information by leveraging incorrect permissions … CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-10086 2024-11-21 11:43 2017-01-19 Show GitHub Exploit DB Packet Storm
267158 4.3 MEDIUM
Network
wordpress wordpress The wp_ajax_update_plugin function in wp-admin/includes/ajax-actions.php in WordPress before 4.6 makes a get_plugin_data call before checking the update_plugins capability, which allows remote authen… CWE-254
CWE-284
 7PK - Security Features
Improper Access Control
CVE-2016-10148 2024-11-21 11:43 2017-01-19 Show GitHub Exploit DB Packet Storm
267159 5.5 MEDIUM
Local
linux linux_kernel crypto/mcryptd.c in the Linux kernel before 4.8.15 allows local users to cause a denial of service (NULL pointer dereference and system crash) by using an AF_ALG socket with an incompatible algorithm… CWE-476
 NULL Pointer Dereference
CVE-2016-10147 2024-11-21 11:43 2017-01-19 Show GitHub Exploit DB Packet Storm
267160 8.6 HIGH
Network
ietf ipv6 An issue was discovered in the IPv6 protocol specification, related to ICMP Packet Too Big (PTB) messages. (The scope of this CVE is all affected IPv6 implementations from all vendors.) The security … CWE-17
Code
CVE-2016-10142 2024-11-21 11:43 2017-01-14 Show GitHub Exploit DB Packet Storm