Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241531 7.5 危険 codefixer - LinksPro Standard Edition の Default.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0431 2012-06-26 16:10 2009-02-4 Show GitHub Exploit DB Packet Storm
241532 4.3 警告 Activewebsoftwares - Active Bids におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-0430 2012-06-26 16:10 2009-02-4 Show GitHub Exploit DB Packet Storm
241533 7.5 危険 Activewebsoftwares - Active Bids における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0429 2012-06-26 16:10 2009-02-4 Show GitHub Exploit DB Packet Storm
241534 7.5 危険 DMXReady - DMXReady Secure Document Library の CategoryManager/upload_image_category.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0428 2012-06-26 16:10 2009-02-4 Show GitHub Exploit DB Packet Storm
241535 7.5 危険 DMXReady - DMXReady Member Directory Manager の CategoryManager/upload_image_category.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0427 2012-06-26 16:10 2009-02-4 Show GitHub Exploit DB Packet Storm
241536 7.5 危険 DMXReady - DMXReady Classified Listings Manager の CategoryManager/upload_image_category.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0426 2012-06-26 16:10 2009-02-4 Show GitHub Exploit DB Packet Storm
241537 7.5 危険 blue eye cms - Blue Eye CMS の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0425 2012-06-26 16:10 2009-02-4 Show GitHub Exploit DB Packet Storm
241538 4.3 警告 an guestbook - AN Guestbook (ANG) の sign1.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-0424 2012-06-26 16:10 2009-02-4 Show GitHub Exploit DB Packet Storm
241539 4.3 警告 agavi - Agavi の AgaviWebRouting::gen(null) メソッドにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-0417 2012-06-26 16:10 2009-02-10 Show GitHub Exploit DB Packet Storm
241540 7.5 危険 community cms - Community CMS の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0406 2012-06-26 16:10 2009-02-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
268281 7.8 HIGH
Local
microsoft windows_server_2012
windows_8.1
windows_10
Windows Reader in Microsoft Windows 8.1, Windows Server 2012 Gold and R2, and Windows 10 allows remote attackers to execute arbitrary code via a crafted Reader file, aka "Microsoft Windows Reader Vul… CWE-20
 Improper Input Validation 
CVE-2016-0046 2024-11-21 11:40 2016-02-10 Show GitHub Exploit DB Packet Storm
268282 7.5 HIGH
Network
microsoft windows_server_2012
windows_8.1
windows_rt_8.1
Sync Framework in Microsoft Windows 8.1, Windows Server 2012 R2, and Windows RT 8.1 allows remote attackers to cause a denial of service (SyncShareSvc service outage) via crafted "change batch" data,… CWE-20
 Improper Input Validation 
CVE-2016-0044 2024-11-21 11:40 2016-02-10 Show GitHub Exploit DB Packet Storm
268283 7.8 HIGH
Local
microsoft windows_rt_8.1
windows_server_2012
windows_7
windows_10
windows_8.1
windows_server_2008
windows_vista
Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 mishandle DLL loading, which… NVD-CWE-Other
CVE-2016-0042 2024-11-21 11:40 2016-02-10 Show GitHub Exploit DB Packet Storm
268284 7.8 HIGH
Local
microsoft windows_rt_8.1
internet_explorer
windows_server_2012
windows_7
windows_10
windows_8.1
windows_server_2008
windows_vista
Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold and 1511, and Internet Explorer 10 and 11… NVD-CWE-Other
CVE-2016-0041 2024-11-21 11:40 2016-02-10 Show GitHub Exploit DB Packet Storm
268285 6.1 MEDIUM
Network
microsoft sharepoint_foundation Cross-site scripting (XSS) vulnerability in SharePoint Server in Microsoft SharePoint Foundation 2013 SP1 allows remote attackers to inject arbitrary web script or HTML via a crafted request, aka "Mi… CWE-79
Cross-site Scripting
CVE-2016-0039 2024-11-21 11:40 2016-02-10 Show GitHub Exploit DB Packet Storm
268286 7.8 HIGH
Local
microsoft windows_server_2008
windows_server_2012
windows_10
windows_8.1
windows_7
windows_vista
Windows Journal in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, and Windows 10 Gold and 1511 allows remote attackers t… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-0038 2024-11-21 11:40 2016-02-10 Show GitHub Exploit DB Packet Storm
268287 7.5 HIGH
Network
microsoft windows_server_2012 The forms-based authentication implementation in Active Directory Federation Services (ADFS) 3.0 in Microsoft Windows Server 2012 R2 allows remote attackers to cause a denial of service (daemon outag… CWE-20
 Improper Input Validation 
CVE-2016-0037 2024-11-21 11:40 2016-02-10 Show GitHub Exploit DB Packet Storm
268288 8.1 HIGH
Network
microsoft windows_server_2012
windows_8.1
windows_7
windows_10
The Remote Desktop Protocol (RDP) implementation in Microsoft Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, and Windows 10 allows remote authenticated users to execute arbitrary code v… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-0036 2024-11-21 11:40 2016-02-10 Show GitHub Exploit DB Packet Storm
268289 7.5 HIGH
Network
microsoft .net_framework Microsoft .NET Framework 2.0 SP2, 3.5, 3.5.1, 4.5.2, 4.6, and 4.6.1 does not prevent recursive compilation of XSLT transforms, which allows remote attackers to cause a denial of service (performance … CWE-94
Code Injection
CVE-2016-0033 2024-11-21 11:40 2016-02-10 Show GitHub Exploit DB Packet Storm
268290 7.8 HIGH
Local
microsoft word
word_for_mac
office_web_apps_server
sharepoint_server
office_compatibility_pack
word_viewer
Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Word 2016, Word for Mac 2011, Word 2016 for Mac, Office Compatibility Pack SP3, Word Viewer, Word Automation … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-0022 2024-11-21 11:40 2016-02-10 Show GitHub Exploit DB Packet Storm