Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 19, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
246061 7.5 危険 almondsoft
Joomla!
- Joomla! の aclassf コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-3154 2012-06-26 16:18 2009-09-10 Show GitHub Exploit DB Packet Storm
246062 4.3 警告 curveriderhq - Elgg の _css/js.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-3149 2012-06-26 16:18 2009-09-10 Show GitHub Exploit DB Packet Storm
246063 4.3 警告 allenthusiast - ReviewPost Pro vB3 の showproduct.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3147 2012-06-26 16:18 2009-09-10 Show GitHub Exploit DB Packet Storm
246064 4.3 警告 articlefriend - ArticleFriend Script の search_advance.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3146 2012-06-26 16:18 2009-09-10 Show GitHub Exploit DB Packet Storm
246065 6.4 警告 Drupal
chris shattuck
- Drupal の Ajax Table モジュールにおける任意のユーザを削除される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-3122 2012-06-26 16:18 2009-08-26 Show GitHub Exploit DB Packet Storm
246066 4.3 警告 Drupal
chris shattuck
- Drupal の Ajax Table モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3121 2012-06-26 16:18 2009-08-26 Show GitHub Exploit DB Packet Storm
246067 4.3 警告 BIGACE - BIGACE Web CMS の public/index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3120 2012-06-26 16:18 2009-09-9 Show GitHub Exploit DB Packet Storm
246068 7.5 危険 danneo - Danneo CMS の mod/poll/comment.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-3118 2012-06-26 16:18 2009-09-9 Show GitHub Exploit DB Packet Storm
246069 10 危険 ASUSTeK Computer Inc. - ASUS WL-500W 無線ルータにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2009-3093 2012-06-26 16:18 2009-09-8 Show GitHub Exploit DB Packet Storm
246070 10 危険 ASUSTeK Computer Inc. - ASUS WL-500W 無線ルータにおけるバッファオーバーフローの脆弱性 CWE-noinfo
情報不足
CVE-2009-3092 2012-06-26 16:18 2009-09-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 20, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
253041 7.8 HIGH
Local
cisco nx-os A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker to perform a command-injection attack on an affected device. The vulnerability is due to insufficient i… CWE-78
OS Command 
CVE-2018-0307 2024-11-21 12:37 2018-06-21 Show GitHub Exploit DB Packet Storm
253042 9.8 CRITICAL
Network
cisco nexus_7000_firmware
nexus_5000_firmware
firepower_9000_firmware
nexus_9000_firmware
unified_computing_system_firmware
A vulnerability in the Cisco Fabric Services component of Cisco FXOS Software and Cisco NX-OS Software could allow an unauthenticated, remote attacker to read sensitive memory content, create a denia… CWE-125
Out-of-bounds Read
CVE-2018-0304 2024-11-21 12:37 2018-06-21 Show GitHub Exploit DB Packet Storm
253043 9.8 CRITICAL
Network
cisco nx-os A vulnerability in the NX-API feature of Cisco NX-OS Software could allow an unauthenticated, remote attacker to craft a packet to the management interface on an affected system, causing a buffer ove… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2018-0301 2024-11-21 12:37 2018-06-21 Show GitHub Exploit DB Packet Storm
253044 7.5 HIGH
Network
cisco nx-os A vulnerability in the Border Gateway Protocol (BGP) implementation of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition due to the dev… CWE-20
 Improper Input Validation 
CVE-2018-0295 2024-11-21 12:37 2018-06-21 Show GitHub Exploit DB Packet Storm
253045 6.7 MEDIUM
Local
cisco nx-os
firepower_extensible_operating_system
fxos
A vulnerability in the write-erase feature of Cisco FXOS Software and Cisco NX-OS Software could allow an authenticated, local attacker to configure an unauthorized administrator account for an affec… NVD-CWE-noinfo
CVE-2018-0294 2024-11-21 12:37 2018-06-21 Show GitHub Exploit DB Packet Storm
253046 8.8 HIGH
Network
cisco nx-os A vulnerability in role-based access control (RBAC) for Cisco NX-OS Software could allow an authenticated, remote attacker to execute CLI commands that should be restricted for a nonadministrative us… CWE-78
OS Command 
CVE-2018-0293 2024-11-21 12:37 2018-06-21 Show GitHub Exploit DB Packet Storm
253047 8.8 HIGH
Adjacent
cisco nx-os A vulnerability in the Internet Group Management Protocol (IGMP) Snooping feature of Cisco NX-OS Software could allow an unauthenticated, adjacent attacker to execute arbitrary code and gain full con… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2018-0292 2024-11-21 12:37 2018-06-21 Show GitHub Exploit DB Packet Storm
253048 6.5 MEDIUM
Network
cisco nx-os A vulnerability in the Simple Network Management Protocol (SNMP) input packet processor of Cisco NX-OS Software could allow an authenticated, remote attacker to cause the SNMP application on an affec… CWE-20
 Improper Input Validation 
CVE-2018-0291 2024-11-21 12:37 2018-06-21 Show GitHub Exploit DB Packet Storm
253049 9.8 CRITICAL
Network
cisco appdynamics_app_iq The Enterprise Console in Cisco AppDynamics App iQ Platform before 4.4.3.10598 (HF4) allows SQL injection, aka the Security Advisory 2089 issue. CWE-89
SQL Injection
CVE-2018-0225 2024-11-21 12:37 2018-06-9 Show GitHub Exploit DB Packet Storm
253050 7.5 HIGH
Network
cisco unified_ip_phone_firmware
ip_phone_firmware
A vulnerability in the Session Initiation Protocol (SIP) ingress packet processing of Cisco Unified IP Phone software could allow an unauthenticated, remote attacker to cause a denial of service (DoS… NVD-CWE-noinfo
CVE-2018-0332 2024-11-21 12:37 2018-06-8 Show GitHub Exploit DB Packet Storm