Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 6, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
251041 4.3 警告 SolarWinds - SolarWinds Orion NPM におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-4828 2012-03-27 18:42 2011-08-24 Show GitHub Exploit DB Packet Storm
251042 4.3 警告 Snitz - Snitz Forums の members.asp におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-4827 2012-03-27 18:42 2011-08-24 Show GitHub Exploit DB Packet Storm
251043 7.5 危険 Snitz - Snitz Forums の members.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-4826 2012-03-27 18:42 2011-08-24 Show GitHub Exploit DB Packet Storm
251044 4.3 警告 WordPress.org
pleer
- WordPress 用の Twitter Feed プラグイン の magpie_debug.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-4825 2012-03-27 18:42 2011-08-24 Show GitHub Exploit DB Packet Storm
251045 7.5 危険 bestsoftinc - BSI Advance Hotel Booking System における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-4814 2012-03-27 18:42 2011-07-8 Show GitHub Exploit DB Packet Storm
251046 3.5 注意 Drupal
scheepers de bruin
- Drupal 用の Category Tokens モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-4813 2012-03-27 18:42 2011-07-8 Show GitHub Exploit DB Packet Storm
251047 6.5 警告 6kbbs - 6kbbs における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-4812 2012-03-27 18:42 2011-07-8 Show GitHub Exploit DB Packet Storm
251048 4.3 警告 6kbbs - 6kbbs の ajaxmember.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-4811 2012-03-27 18:42 2011-07-8 Show GitHub Exploit DB Packet Storm
251049 7.5 危険 awcm - AWCM における任意の PHP コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2010-4810 2012-03-27 18:42 2011-07-8 Show GitHub Exploit DB Packet Storm
251050 7.5 危険 liberologico - DBSite の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-4809 2012-03-27 18:42 2011-07-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 6, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
248231 9.8 CRITICAL
Network
zohocorp manageengine_desktop_central An issue was discovered in Zoho ManageEngine Desktop Central before 100230. There is unauthenticated remote access to all log files of a Desktop Central instance containing critical information (priv… CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2018-11716 2024-11-21 12:43 2018-07-16 Show GitHub Exploit DB Packet Storm
248232 9.8 CRITICAL
Network
zohocorp manageengine_desktop_central An issue was discovered in Zoho ManageEngine Desktop Central before 100251. By leveraging access to a log file, a context-dependent attacker can obtain (depending on the modules configured) the Base6… CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2018-11717 2024-11-21 12:43 2018-07-16 Show GitHub Exploit DB Packet Storm
248233 8.0 HIGH
Adjacent
debian
videolan
debian_linux
vlc_media_player
VideoLAN VLC media player 2.2.x is prone to a use after free vulnerability which an attacker can leverage to execute arbitrary code via crafted MKV files. Failed exploit attempts will likely result i… CWE-416
 Use After Free
CVE-2018-11529 2024-11-21 12:43 2018-07-12 Show GitHub Exploit DB Packet Storm
248234 6.1 MEDIUM
Network
siemens teamcenter_product_lifecycle_management A reflected Cross-Site-Scripting (XSS) vulnerability has been identified in Siemens PLM Software TEAMCENTER (V9.1.2.5). If a user visits the login portal through the URL crafted by the attacker, the … CWE-79
Cross-site Scripting
CVE-2018-11450 2024-11-21 12:43 2018-07-10 Show GitHub Exploit DB Packet Storm
248235 7.5 HIGH
Network
ribboncommunications sonus_sbc_1000_firmware
sonus_sbc_2000_firmware
sbc_swe_lite_firmware
A Local File Inclusion (LFI) vulnerability in the Sonus SBC 1000 / SBC 2000 / SBC SWe Lite web interface allows for the downloading of arbitrary files via an unspecified vector. It affects the 1000 a… CWE-22
Path Traversal
CVE-2018-11543 2024-11-21 12:43 2018-07-9 Show GitHub Exploit DB Packet Storm
248236 9.8 CRITICAL
Network
ribboncommunications sonus_sbc_1000_firmware
sonus_sbc_2000_firmware
sbc_swe_lite_firmware
A Remote Command Execution (RCE) vulnerability in the Sonus SBC 1000 / SBC 2000 / SBC SWe Lite web interface allows for the execution of arbitrary commands via an unspecified vector. It affects the 1… NVD-CWE-noinfo
CVE-2018-11542 2024-11-21 12:43 2018-07-9 Show GitHub Exploit DB Packet Storm
248237 9.8 CRITICAL
Network
ribboncommunications sonus_sbc_1000_firmware
sonus_sbc_2000_firmware
sbc_swe_lite_web
A root privilege escalation vulnerability in the Sonus SBC 1000 / SBC 2000 / SBC SWe Lite web interface allows unauthorised access to privileged content via an unspecified vector. It affects the 1000… CWE-862
 Missing Authorization
CVE-2018-11541 2024-11-21 12:43 2018-07-9 Show GitHub Exploit DB Packet Storm
248238 6.1 MEDIUM
Network
jirafeau jirafeau script.php in Jirafeau before 3.4.1 is affected by two stored Cross-Site Scripting (XSS) vulnerabilities. These are stored within the shared files description file and allow the execution of a JavaSc… CWE-79
Cross-site Scripting
CVE-2018-11351 2024-11-21 12:43 2018-07-8 Show GitHub Exploit DB Packet Storm
248239 6.1 MEDIUM
Network
jirafeau jirafeau An issue was discovered in Jirafeau before 3.4.1. The file "search by name" form is affected by one Cross-Site Scripting vulnerability via the name parameter. CWE-79
Cross-site Scripting
CVE-2018-11350 2024-11-21 12:43 2018-07-8 Show GitHub Exploit DB Packet Storm
248240 8.8 HIGH
Network
jirafeau jirafeau The administration panel of Jirafeau before 3.4.1 is vulnerable to three CSRF attacks on search functionalities: search_by_name, search_by_hash, and search_link. CWE-352
 Origin Validation Error
CVE-2018-11349 2024-11-21 12:43 2018-07-8 Show GitHub Exploit DB Packet Storm