Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
243031 7.5 危険 fernando soares
Joomla!
- Joomla! 用 Fernando Soares Mamboleto コンポーネントの mamboleto.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2009-4604 2012-06-26 16:19 2010-01-12 Show GitHub Exploit DB Packet Storm
243032 7.5 危険 corephp
Joomla!
- Joomla! の jphoto コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4598 2012-06-26 16:19 2010-01-12 Show GitHub Exploit DB Packet Storm
243033 9.3 危険 awingsoft - AwingSoft Awakening Web3D Player などの WindsPlayerIE.View.1 ActiveX コントロールにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-4588 2012-06-26 16:19 2010-01-7 Show GitHub Exploit DB Packet Storm
243034 5 警告 Cherokee Project - Cherokee Web Server におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2009-4587 2012-06-26 16:19 2010-01-7 Show GitHub Exploit DB Packet Storm
243035 5 警告 ASP indir - UranyumSoft Listing Service におけるデータベースをダウンロードされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-4585 2012-06-26 16:19 2010-01-6 Show GitHub Exploit DB Packet Storm
243036 7.5 危険 dbmasters - dB Masters Multimedia Links Directory の admin.php における管理者アクセス権を取得される脆弱性 CWE-287
不適切な認証
CVE-2009-4584 2012-06-26 16:19 2010-01-6 Show GitHub Exploit DB Packet Storm
243037 4.3 警告 FacileForms
Joomla!
Mambo Foundation
- Mambo および Joomla! 用の Facileforms コンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4578 2012-06-26 16:19 2010-01-6 Show GitHub Exploit DB Packet Storm
243038 4.3 警告 Drupal - Drupal 用の Randomizer モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4602 2012-06-26 16:19 2009-12-9 Show GitHub Exploit DB Packet Storm
243039 7.5 危険 cmstactics
Joomla!
- Joomla! の beeheard コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4576 2012-06-26 16:19 2010-01-6 Show GitHub Exploit DB Packet Storm
243040 7.5 危険 elkagroup - elkagroup Image Gallery における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4569 2012-06-26 16:19 2010-01-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
267351 6.9 MEDIUM
Network
oracle applications_framework Unspecified vulnerability in the Oracle Applications Framework component in Oracle E-Business Suite 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote attackers to affect confidentiality and integrity … NVD-CWE-noinfo
CVE-2016-3447 2024-11-21 11:50 2016-04-21 Show GitHub Exploit DB Packet Storm
267352 9.6 CRITICAL
Network
oracle jdk
jre
Unspecified vulnerability in Oracle Java SE 6u113, 7u99, and 8u77 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to 2D. NOTE: the previous informa… NVD-CWE-noinfo
CVE-2016-3443 2024-11-21 11:50 2016-04-21 Show GitHub Exploit DB Packet Storm
267353 5.4 MEDIUM
Network
oracle peoplesoft_enterprise_peopletools Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.53, 8.54, and 8.55 allows remote authenticated users to affect confidentiality and integri… NVD-CWE-noinfo
CVE-2016-3442 2024-11-21 11:50 2016-04-21 Show GitHub Exploit DB Packet Storm
267354 7.8 HIGH
Local
oracle solaris Unspecified vulnerability in Oracle Sun Solaris 10 and 11.3 allows local users to affect confidentiality, integrity, and availability via vectors related to Filesystem. NVD-CWE-noinfo
CVE-2016-3441 2024-11-21 11:50 2016-04-21 Show GitHub Exploit DB Packet Storm
267355 8.2 HIGH
Network
oracle crm_technical_foundation Unspecified vulnerability in the Oracle CRM Wireless component in Oracle E-Business Suite 12.1.3 allows remote attackers to affect confidentiality and integrity via vectors related to Call Phone Numb… NVD-CWE-noinfo
CVE-2016-3439 2024-11-21 11:50 2016-04-21 Show GitHub Exploit DB Packet Storm
267356 8.2 HIGH
Network
oracle crm_technical_foundation Unspecified vulnerability in the Oracle CRM Wireless component in Oracle E-Business Suite 12.1.3 allows remote attackers to affect confidentiality and integrity via vectors related to Person Address … NVD-CWE-noinfo
CVE-2016-3437 2024-11-21 11:50 2016-04-21 Show GitHub Exploit DB Packet Storm
267357 8.2 HIGH
Network
oracle common_applications_calendar Unspecified vulnerability in the Oracle Common Applications Calendar component in Oracle E-Business Suite 12.1.1, 12.1.2, and 12.1.3 allows remote attackers to affect confidentiality and integrity vi… NVD-CWE-noinfo
CVE-2016-3436 2024-11-21 11:50 2016-04-21 Show GitHub Exploit DB Packet Storm
267358 4.7 MEDIUM
Network
oracle peoplesoft_enterprise_peopletools Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.53, 8.54, and 8.55 allows remote attackers to affect availability via vectors related to P… NVD-CWE-noinfo
CVE-2016-3435 2024-11-21 11:50 2016-04-21 Show GitHub Exploit DB Packet Storm
267359 4.7 MEDIUM
Network
oracle application_object_library Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote attackers to affect integrity via vectors rela… NVD-CWE-noinfo
CVE-2016-3434 2024-11-21 11:50 2016-04-21 Show GitHub Exploit DB Packet Storm
267360 8.2 HIGH
Network
oracle configurator Unspecified vulnerability in the Oracle Configurator component in Oracle Supply Chain Products Suite 12.0.6, 12.1, and 12.2 allows remote attackers to affect confidentiality and integrity via vectors… NVD-CWE-noinfo
CVE-2016-3438 2024-11-21 11:50 2016-04-21 Show GitHub Exploit DB Packet Storm