Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 2, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
251561 5 警告 アップル
サイバートラスト株式会社
レッドハット
オラクル
NTP Project
- NTP における証明書チェーンの有効性を回避される脆弱性 CWE-287
不適切な認証
CVE-2009-0021 2012-03-27 11:01 2009-01-7 Show GitHub Exploit DB Packet Storm
251562 5 警告 アップル
サイバートラスト株式会社
PNG Development Group
オラクル
VMware
レッドハット
- libpng に含まれる pngrutil.c におけるメモリリークの脆弱性 CWE-399
リソース管理の問題
CVE-2010-2249 2012-03-27 10:32 2010-06-26 Show GitHub Exploit DB Packet Storm
251563 7.5 危険 アップル
サイバートラスト株式会社
Mozilla Foundation
PNG Development Group
オラクル
VMware
フェンリル株式会社
レッドハット
- libpng に脆弱性 CWE-119
バッファエラー
CVE-2010-1205 2012-03-27 10:29 2010-07-6 Show GitHub Exploit DB Packet Storm
251564 7.8 危険 アップル
サイバートラスト株式会社
PNG Development Group
Lunascape
オラクル
VMware
フェンリル株式会社
レッドハット
- libpng における圧縮された補助チャンクの処理に脆弱性 CWE-399
リソース管理の問題
CVE-2010-0205 2012-03-27 10:22 2010-03-4 Show GitHub Exploit DB Packet Storm
251565 7.5 危険 クアンタム
デル
IBM
- 複数のテープライブラリ製品におけるアクセス権を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2012-1844 2012-03-26 18:12 2012-03-22 Show GitHub Exploit DB Packet Storm
251566 5 警告 クアンタム
デル
- Quantum Scalar i500 および Dell ML6000 における絶対パストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-1841 2012-03-26 18:08 2012-03-22 Show GitHub Exploit DB Packet Storm
251567 5 警告 LG-Nortel - LG-Nortel ELO GS24M に複数の脆弱性 CWE-287
不適切な認証
CVE-2012-1838 2012-03-26 16:29 2012-03-22 Show GitHub Exploit DB Packet Storm
251568 7.5 危険 Webglimpse - WebGlimpse に OS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2012-1795 2012-03-26 16:24 2012-03-20 Show GitHub Exploit DB Packet Storm
251569 7.5 危険 Pydio - AjaXplorer におけるログインのアクセス権を取得される脆弱性 CWE-287
不適切な認証
CVE-2012-1840 2012-03-26 16:08 2012-03-22 Show GitHub Exploit DB Packet Storm
251570 7.5 危険 Pydio - AjaXplorer の Get Template 機能におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-1839 2012-03-26 16:08 2012-03-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 2, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
274331 8.8 HIGH
Network
adobe flash_player
air
air_sdk
air_sdk_\&_compiler
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on Linux, Adobe AIR before 20.0.0.233, Adobe AIR S… NVD-CWE-Other
CVE-2015-8635 2024-11-21 11:38 2015-12-29 Show GitHub Exploit DB Packet Storm
274332 8.8 HIGH
Network
adobe flash_player
air_sdk
air_sdk_\&_compiler
air
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on Linux, Adobe AIR before 20.0.0.233, Adobe AIR S… NVD-CWE-Other
CVE-2015-8634 2024-11-21 11:38 2015-12-29 Show GitHub Exploit DB Packet Storm
274333 6.7 MEDIUM
Local
linux linux_kernel The ovl_setattr function in fs/overlayfs/inode.c in the Linux kernel through 4.3.3 attempts to merge distinct setattr operations, which allows local users to bypass intended access restrictions and m… CWE-264
Permissions, Privileges, and Access Controls
CVE-2015-8660 2024-11-21 11:38 2015-12-28 Show GitHub Exploit DB Packet Storm
274334 2.3 LOW
Local
linux linux_kernel The (1) pptp_bind and (2) pptp_connect functions in drivers/net/ppp/pptp.c in the Linux kernel through 4.3.3 do not verify an address length, which allows local users to obtain sensitive information … CWE-200
Information Exposure
CVE-2015-8569 2024-11-21 11:38 2015-12-28 Show GitHub Exploit DB Packet Storm
274335 7.0 HIGH
Local
linux linux_kernel The networking implementation in the Linux kernel through 4.3.3, as used in Android and other products, does not validate protocol identifiers for certain protocol families, which allows local users … NVD-CWE-Other
CVE-2015-8543 2024-11-21 11:38 2015-12-28 Show GitHub Exploit DB Packet Storm
274336 4.0 MEDIUM
Local
linux linux_kernel fs/btrfs/inode.c in the Linux kernel before 4.3.3 mishandles compressed inline extents, which allows local users to obtain sensitive pre-truncation information from a file via a clone action. CWE-200
Information Exposure
CVE-2015-8374 2024-11-21 11:38 2015-12-28 Show GitHub Exploit DB Packet Storm
274337 8.6 HIGH
Network
netgear wnr1000v3_firmware
wnr1000v3
NETGEAR WNR1000v3 devices with firmware 1.0.2.68 use the same source port number for every DNS query, which makes it easier for remote attackers to spoof responses by selecting that number for the de… NVD-CWE-Other
CVE-2015-8263 2024-11-21 11:38 2015-12-27 Show GitHub Exploit DB Packet Storm
274338 6.8 MEDIUM
Network
buffalotech airstation_extreme_n600_firmware
airstation_extreme_n600
Buffalo WZR-600DHP2 devices with firmware 2.09, 2.13, and 2.16 use an improper algorithm for selecting the ID value in the header of a DNS query, which makes it easier for remote attackers to spoof r… NVD-CWE-Other
CVE-2015-8262 2024-11-21 11:38 2015-12-27 Show GitHub Exploit DB Packet Storm
274339 5.9 MEDIUM
Network
rsi_video_technologies frontel_protocol The Frontel protocol before 3 on RSI Video Technologies Videofied devices does not use integrity protection, which makes it easier for man-in-the-middle attackers to (1) initiate a false alarm or (2)… CWE-345
 Insufficient Verification of Data Authenticity
CVE-2015-8254 2024-11-21 11:38 2015-12-27 Show GitHub Exploit DB Packet Storm
274340 3.7 LOW
Network
rsi_video_technologies frontel_protocol The Frontel protocol before 3 on RSI Video Technologies Videofied devices sets up AES encryption but sends all traffic in cleartext, which allows remote attackers to obtain sensitive (1) message or (… CWE-200
Information Exposure
CVE-2015-8253 2024-11-21 11:38 2015-12-27 Show GitHub Exploit DB Packet Storm