Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241401 7.5 危険 creloaded - CRE Loaded の product_info.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-1403 2012-06-26 16:10 2009-04-24 Show GitHub Exploit DB Packet Storm
241402 10 危険 forkosh - mimeTeX の mimetex.cgi におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-1382 2012-06-26 16:10 2009-07-14 Show GitHub Exploit DB Packet Storm
241403 4.3 警告 DNN - DNN の Website\admin\Sales\paypalipn.aspx におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-1366 2012-06-26 16:10 2009-04-1 Show GitHub Exploit DB Packet Storm
241404 6.8 警告 chcounter - chCounter の administration/index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-1362 2012-06-26 16:10 2009-04-22 Show GitHub Exploit DB Packet Storm
241405 10 危険 gscripts - GScripts.net DNS Tools の dig.php における任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2009-1361 2012-06-26 16:10 2009-04-22 Show GitHub Exploit DB Packet Storm
241406 9.3 危険 elecard - Elecard AVC HD Player におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-1356 2012-06-26 16:10 2009-04-21 Show GitHub Exploit DB Packet Storm
241407 9.3 危険 dawningsoft - Dawningsoft PowerCHM におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-1352 2012-06-26 16:10 2009-04-21 Show GitHub Exploit DB Packet Storm
241408 6.8 警告 chcounter - chCounter の stats/index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-1347 2012-06-26 16:10 2009-04-20 Show GitHub Exploit DB Packet Storm
241409 7.5 危険 cpcommerce - cpCommerce の document.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-1345 2012-06-26 16:10 2009-04-20 Show GitHub Exploit DB Packet Storm
241410 4.3 警告 Drupal - Drupal 用の Localization クライアントモジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-1344 2012-06-26 16:10 2009-04-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 10, 2026, 4:58 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
267041 7.5 HIGH
Network
zoneminder zoneminder Information disclosure and authentication bypass vulnerability exists in the Apache HTTP Server configuration bundled with ZoneMinder v1.30 and v1.29, which allows a remote unauthenticated attacker t… CWE-200
Information Exposure
CVE-2016-10140 2024-11-21 11:43 2017-01-13 Show GitHub Exploit DB Packet Storm
267042 7.8 HIGH
Local
adups adups_fota An issue was discovered on BLU R1 HD devices with Shanghai Adups software. The two package names involved in the exfiltration are com.adups.fota and com.adups.fota.sysoper. In the com.adups.fota.syso… CWE-310
Cryptographic Issues
CVE-2016-10139 2024-11-21 11:43 2017-01-13 Show GitHub Exploit DB Packet Storm
267043 7.8 HIGH
Local
adups adups_fota An issue was discovered on BLU Advance 5.0 and BLU R1 HD devices with Shanghai Adups software. The com.adups.fota.sysoper app is installed as a system app and cannot be disabled by the user. In the c… CWE-310
Cryptographic Issues
CVE-2016-10138 2024-11-21 11:43 2017-01-13 Show GitHub Exploit DB Packet Storm
267044 7.8 HIGH
Local
adups adups_fota An issue was discovered on BLU R1 HD devices with Shanghai Adups software. The content provider named com.adups.fota.sysoper.provider.InfoProvider in the app with a package name of com.adups.fota.sys… CWE-310
Cryptographic Issues
CVE-2016-10137 2024-11-21 11:43 2017-01-13 Show GitHub Exploit DB Packet Storm
267045 7.8 HIGH
Local
adups adups_fota An issue was discovered on BLU R1 HD devices with Shanghai Adups software. The content provider named com.adups.fota.sysoper.provider.InfoProvider in the app with a package name of com.adups.fota.sys… CWE-310
Cryptographic Issues
CVE-2016-10136 2024-11-21 11:43 2017-01-13 Show GitHub Exploit DB Packet Storm
267046 5.5 MEDIUM
Local
lg lg_mobile An issue was discovered on LG devices using the MTK chipset with L(5.0/5.1), M(6.0/6.0.1), and N(7.0) software, and RCA Voyager Tablet, BLU Advance 5.0, and BLU R1 HD devices. The MTKLogger app with … CWE-200
Information Exposure
CVE-2016-10135 2024-11-21 11:43 2017-01-13 Show GitHub Exploit DB Packet Storm
267047 5.9 MEDIUM
Network
igniterealtime
fedoraproject
smack
fedora
Race condition in the XMPP library in Smack before 4.1.9, when the SecurityMode.required TLS setting has been set, allows man-in-the-middle attackers to bypass TLS protections and trigger use of clea… CWE-362
Race Condition
CVE-2016-10027 2024-11-21 11:43 2017-01-13 Show GitHub Exploit DB Packet Storm
267048 9.8 CRITICAL
Network
codeigniter codeigniter system/libraries/Email.php in CodeIgniter before 3.1.3 allows remote attackers to execute arbitrary code by leveraging control over the email->from field to insert sendmail command-line arguments. CWE-74
Injection
CVE-2016-10131 2024-11-21 11:43 2017-01-12 Show GitHub Exploit DB Packet Storm
267049 9.8 CRITICAL
Network
splunk splunk Splunk Web in Splunk Enterprise 5.0.x before 5.0.17, 6.0.x before 6.0.13, 6.1.x before 6.1.12, 6.2.x before 6.2.12, 6.3.x before 6.3.8, and 6.4.x before 6.4.4 allows remote attackers to conduct HTTP … CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-10126 2024-11-21 11:43 2017-01-10 Show GitHub Exploit DB Packet Storm
267050 8.1 HIGH
Network
dlink dgs-1100_firmware D-Link DGS-1100 devices with Rev.B firmware 1.01.018 have a hardcoded SSL private key, which allows man-in-the-middle attackers to spoof devices by hijacking an HTTPS session. CWE-798
 Use of Hard-coded Credentials
CVE-2016-10125 2024-11-21 11:43 2017-01-10 Show GitHub Exploit DB Packet Storm