Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241991 9.3 危険 オートデスク株式会社 - 3DSMax における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2009-3577 2012-06-26 16:18 2009-11-24 Show GitHub Exploit DB Packet Storm
241992 9.3 危険 オートデスク株式会社 - Autodesk Softimage および Softimage XSI における任意の JavaScript コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2009-3576 2012-06-26 16:18 2009-11-24 Show GitHub Exploit DB Packet Storm
241993 9.3 危険 DELL EMC (旧 EMC Corporation) - EMC Captiva PixTools Distributed Imaging における任意のファイルを上書きされる脆弱性 CWE-noinfo
情報不足
CVE-2009-3573 2012-06-26 16:18 2009-10-6 Show GitHub Exploit DB Packet Storm
241994 5 警告 Drupal
gabor hojtsy
dave reid
- Drupal 用モジュールの Comment RSS におけるノードタイトルを取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-3568 2012-06-26 16:18 2009-09-16 Show GitHub Exploit DB Packet Storm
241995 4 警告 datawizard - DataWizard Technologies FtpXQ FTP Server におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2009-3545 2012-06-26 16:18 2009-10-5 Show GitHub Exploit DB Packet Storm
241996 7.5 危険 allisclear - Clear Content の thumb.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-3538 2012-06-26 16:18 2009-10-2 Show GitHub Exploit DB Packet Storm
241997 9.3 危険 epicdjsoftware - EpicDJSoftware EpicDJ におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-3537 2012-06-26 16:18 2009-10-2 Show GitHub Exploit DB Packet Storm
241998 9.3 危険 epicdjsoftware - EpicDJSoftware EpicVJ におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-3536 2012-06-26 16:18 2009-10-2 Show GitHub Exploit DB Packet Storm
241999 4.3 警告 allisclear - Clear Content の image.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-3535 2012-06-26 16:18 2009-10-2 Show GitHub Exploit DB Packet Storm
242000 6.5 警告 al4us - MyMsg の Profile.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-3528 2012-06-26 16:18 2009-10-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 18, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
266801 6.1 MEDIUM
Network
debian
horde
fedoraproject
debian_linux
horde_groupware
groupware
fedora
Cross-site scripting (XSS) vulnerability in horde/templates/topbar/_menubar.html.php in Horde Groupware before 5.2.12 and Horde Groupware Webmail Edition before 5.2.12 allows remote attackers to inje… CWE-79
Cross-site Scripting
CVE-2016-2228 2024-11-21 11:48 2016-04-14 Show GitHub Exploit DB Packet Storm
266802 6.5 MEDIUM
Network
optipng
canonical
debian
opensuse
optipng
ubuntu_linux
debian_linux
leap
opensuse
The bmp_read_rows function in pngxtern/pngxrbmp.c in OptiPNG before 0.7.6 allows remote attackers to cause a denial of service (invalid memory write and crash) via a series of delta escapes in a craf… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-2191 2024-11-21 11:48 2016-04-14 Show GitHub Exploit DB Packet Storm
266803 7.8 HIGH
Local
huawei utps_firmware Untrusted search path vulnerability in Huawei UTPS before UTPS-V200R003B015D15SP00C983 allows local users to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse DLL in an unsp… NVD-CWE-Other
CVE-2016-2780 2024-11-21 11:48 2016-04-13 Show GitHub Exploit DB Packet Storm
266804 8.8 HIGH
Network
huawei policy_center_firmware Huawei Policy Center with software before V100R003C10SPC020 allows remote authenticated users to gain privileges and cause a denial of service (system crash) via a crafted URL. CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2405 2024-11-21 11:48 2016-04-13 Show GitHub Exploit DB Packet Storm
266805 8.4 HIGH
Local
nvidia gpu_driver_r340
gpu_driver_r352
The Escape interface in the Kernel Mode Driver layer in the NVIDIA GPU graphics driver R340 before 341.95 and R352 before 354.74 on Windows allows local users to obtain sensitive information, cause a… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-2558 2024-11-21 11:48 2016-04-12 Show GitHub Exploit DB Packet Storm
266806 8.4 HIGH
Local
nvidia gpu_driver_r340
gpu_driver_r352
The Escape interface in the Kernel Mode Driver layer in the NVIDIA GPU graphics driver R340 before 341.95 and R352 before 354.74 on Windows allows local users to obtain sensitive information from ker… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2557 2024-11-21 11:48 2016-04-12 Show GitHub Exploit DB Packet Storm
266807 7.8 HIGH
Local
nvidia gpu_driver_r340
gpu_driver_r352
The Escape interface in the Kernel Mode Driver layer in the NVIDIA GPU graphics driver R340 before 341.95 and R352 before 354.74 on Windows improperly allows access to restricted functionality, which… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2556 2024-11-21 11:48 2016-04-12 Show GitHub Exploit DB Packet Storm
266808 8.4 HIGH
Local
qemu
canonical
debian
redhat
qemu
ubuntu_linux
debian_linux
openstack
virtualization
enterprise_linux_desktop
enterprise_linux_workstation
enterprise_linux_server
enterprise_linux_server_tus
enterprise…
The net_checksum_calculate function in net/checksum.c in QEMU allows local guest OS users to cause a denial of service (out-of-bounds heap read and crash) via the payload length in a crafted packet. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-2857 2024-11-21 11:48 2016-04-12 Show GitHub Exploit DB Packet Storm
266809 9.8 CRITICAL
Network
debian
kamailio
debian_linux
kamailio
Heap-based buffer overflow in the encode_msg function in encode_msg.c in the SEAS module in Kamailio (formerly OpenSER and SER) before 4.3.5 allows remote attackers to cause a denial of service (memo… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-2385 2024-11-21 11:48 2016-04-12 Show GitHub Exploit DB Packet Storm
266810 7.5 HIGH
Network
postgresql postgresql PostgreSQL before 9.5.x before 9.5.2 does not properly maintain row-security status in cached plans, which might allow attackers to bypass intended access restrictions by leveraging a session that pe… CWE-254
 7PK - Security Features
CVE-2016-2193 2024-11-21 11:48 2016-04-12 Show GitHub Exploit DB Packet Storm