Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
242741 6.8 警告 databay - MaxCMS における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2009-3424 2012-06-26 16:18 2009-09-25 Show GitHub Exploit DB Packet Storm
242742 8.5 危険 Craig Barratt - BackupPC の CgiUserConfigEdit における重要なファイルを読み書きされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-3369 2012-06-26 16:18 2009-09-24 Show GitHub Exploit DB Packet Storm
242743 9.3 危険 FTPShell - FTPShell Client におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-3364 2012-06-26 16:18 2009-09-24 Show GitHub Exploit DB Packet Storm
242744 4.3 警告 Datemill - Datemill におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3360 2012-06-26 16:18 2009-09-24 Show GitHub Exploit DB Packet Storm
242745 4.3 警告 datetopia - Match Agency BiZ におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3359 2012-06-26 16:18 2009-09-24 Show GitHub Exploit DB Packet Storm
242746 4.3 警告 datetopia - Datetopia Buy Dating Site の profile.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3355 2012-06-26 16:18 2009-09-24 Show GitHub Exploit DB Packet Storm
242747 10 危険 Drupal
andrew sterling hanenkamp
- Drupal の Rest API モジュールにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2009-3354 2012-06-26 16:18 2009-09-24 Show GitHub Exploit DB Packet Storm
242748 7.5 危険 datavore - Datavore Gyro における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-3349 2012-06-26 16:18 2009-09-24 Show GitHub Exploit DB Packet Storm
242749 4.3 警告 datavore - Datavore Gyro におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3348 2012-06-26 16:18 2009-09-24 Show GitHub Exploit DB Packet Storm
242750 10 危険 D-Link Systems, Inc. - D-Link DIR-400 無線ルータにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-3347 2012-06-26 16:18 2009-09-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
267371 7.8 HIGH
Local
apple mac_os_x The AppleGraphicsControlClient::checkArguments method in AppleGraphicsControl in Apple OS X before 10.11.5 allows attackers to execute arbitrary code in a privileged context or cause a denial of serv… NVD-CWE-Other
CVE-2016-1794 2024-11-21 11:47 2016-05-20 Show GitHub Exploit DB Packet Storm
267372 7.8 HIGH
Local
apple mac_os_x AppleGraphicsDeviceControlClient in Apple OS X before 10.11.5 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (NULL pointer dereference) via a crafted … NVD-CWE-Other
CVE-2016-1793 2024-11-21 11:47 2016-05-20 Show GitHub Exploit DB Packet Storm
267373 7.8 HIGH
Local
apple mac_os_x The AMD subsystem in Apple OS X before 10.11.5 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-1792 2024-11-21 11:47 2016-05-20 Show GitHub Exploit DB Packet Storm
267374 3.3 LOW
Local
apple mac_os_x The AMD subsystem in Apple OS X before 10.11.5 allows attackers to obtain sensitive kernel memory-layout information via a crafted app. CWE-200
Information Exposure
CVE-2016-1791 2024-11-21 11:47 2016-05-20 Show GitHub Exploit DB Packet Storm
267375 3.3 LOW
Local
apple iphone_os Buffer overflow in the Accessibility component in Apple iOS before 9.3.2 allows attackers to obtain sensitive kernel memory-layout information via a crafted app. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-1790 2024-11-21 11:47 2016-05-20 Show GitHub Exploit DB Packet Storm
267376 9.8 CRITICAL
Network
vmware player
workstation
VMware Workstation 11.x before 11.1.3 and VMware Player 7.x before 7.1.3 on Windows incorrectly access an executable file, which allows host OS users to gain host OS privileges via unspecified vector… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2077 2024-11-21 11:47 2016-05-18 Show GitHub Exploit DB Packet Storm
267377 5.5 MEDIUM
Local
hp base-vxfs-50
base-vxfs-501
base-vxfs-51
Base-VxFS-50 B.05.00.01 through B.05.00.02, Base-VxFS-501 B.05.01.0 through B.05.01.03, and Base-VxFS-51 B.05.10.00 through B.05.10.02 on HPE HP-UX 11iv3 with VxFS 5.0, VxFS 5.0.1, and VxFS 5.1SP1 mi… CWE-284
Improper Access Control
CVE-2016-2016 2024-11-21 11:47 2016-05-15 Show GitHub Exploit DB Packet Storm
267378 7.1 HIGH
Local
hp system_management_homepage HPE System Management Homepage before 7.5.5 allows local users to obtain sensitive information or modify data via unspecified vectors. CWE-200
Information Exposure
CVE-2016-2015 2024-11-21 11:47 2016-05-15 Show GitHub Exploit DB Packet Storm
267379 9.8 CRITICAL
Network
apache
opensuse
xerces-c\+\+
opensuse
Use-after-free vulnerability in validators/DTD/DTDScanner.cpp in Apache Xerces C++ 3.1.3 and earlier allows context-dependent attackers to have unspecified impact via an invalid character in an XML d… NVD-CWE-Other
CVE-2016-2099 2024-11-21 11:47 2016-05-13 Show GitHub Exploit DB Packet Storm
267380 7.8 HIGH
Local
google android server/TetherController.cpp in the tethering controller in netd, as distributed with Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, does not properly vali… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2060 2024-11-21 11:47 2016-05-9 Show GitHub Exploit DB Packet Storm