Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 6, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
251631 10 危険 TIBCO Software - TIBCO ActiveMatrix Service Grid などで使用される ActiveMatrix Runtime コンポーネントにおける任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2010-3491 2012-03-27 18:42 2010-10-19 Show GitHub Exploit DB Packet Storm
251632 6.5 警告 FreePBX - FreePBX の設定インターフェース の System Recordings コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-3490 2012-03-27 18:42 2010-09-28 Show GitHub Exploit DB Packet Storm
251633 4.3 警告 digitalworkroom - CMS Digital Workroom の netautor/napro4/home/login2.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-3489 2012-03-27 18:42 2010-09-22 Show GitHub Exploit DB Packet Storm
251634 5 警告 houbysoft - QuickShare におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-3488 2012-03-27 18:42 2010-09-22 Show GitHub Exploit DB Packet Storm
251635 5 警告 yellosoft - YelloSoft Pinky におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-3487 2012-03-27 18:42 2010-09-22 Show GitHub Exploit DB Packet Storm
251636 5 警告 SmarterTools Inc. - SmarterMail の FileStorageUpload.ashx におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-3486 2012-03-27 18:42 2010-09-22 Show GitHub Exploit DB Packet Storm
251637 7.5 危険 LightNEasy - LightNEasy の common.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-3485 2012-03-27 18:42 2010-09-22 Show GitHub Exploit DB Packet Storm
251638 7.5 危険 LightNEasy - LightNEasy の common.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-3484 2012-03-27 18:42 2010-09-22 Show GitHub Exploit DB Packet Storm
251639 7.5 危険 bouzouste - Primitive CMS の cms_write.php における管理者権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-3483 2012-03-27 18:42 2010-09-22 Show GitHub Exploit DB Packet Storm
251640 6.5 警告 bouzouste - Primitive CMS の cms_write.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-3482 2012-03-27 18:42 2010-09-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 6, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
259081 8.8 HIGH
Network
tp-link tl-wvr300_firmware
tl-wvr302_firmware
tl-wvr450_firmware
tl-wvr450l_firmware
tl-wvr450g_firmware
tl-wvr458_firmware
tl-wvr458l_firmware
tl-wvr458p_firmware
tl-wvr900g_firmware…
TP-Link TL-WVR, TL-WAR, TL-ER, and TL-R devices allow remote authenticated users to execute arbitrary commands via shell metacharacters in the t_bindif field of an admin/bridge command to cgi-bin/luc… CWE-78
OS Command 
CVE-2017-16958 2024-11-21 12:17 2017-11-27 Show GitHub Exploit DB Packet Storm
259082 8.8 HIGH
Network
tp-link tl-wvr300_firmware
tl-wvr302_firmware
tl-wvr450_firmware
tl-wvr450l_firmware
tl-wvr450g_firmware
tl-wvr458_firmware
tl-wvr458l_firmware
tl-wvr458p_firmware
tl-wvr900g_firmware…
TP-Link TL-WVR, TL-WAR, TL-ER, and TL-R devices allow remote authenticated users to execute arbitrary commands via shell metacharacters in the iface field of an admin/diagnostic command to cgi-bin/lu… CWE-78
OS Command 
CVE-2017-16957 2024-11-21 12:17 2017-11-27 Show GitHub Exploit DB Packet Storm
259083 7.8 HIGH
Local
tgsoft vir.it_explorer TG Soft Vir.IT eXplorer Lite 8.5.42 allows local users to cause a denial of service (NULL pointer dereference) or possibly have unspecified other impact via a NULL value in a 0x82730008 DeviceIoContr… CWE-476
 NULL Pointer Dereference
CVE-2017-16948 2024-11-21 12:17 2017-11-27 Show GitHub Exploit DB Packet Storm
259084 4.9 MEDIUM
Network
misp misp The admin_edit function in app/Controller/UsersController.php in MISP 2.4.82 mishandles the enable_password field, which allows admins to discover a hashed password by reading the audit log. CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2017-16946 2024-11-21 12:17 2017-11-26 Show GitHub Exploit DB Packet Storm
259085 7.5 HIGH
Network
exim
debian
exim
debian_linux
The receive_msg function in receive.c in the SMTP daemon in Exim 4.88 and 4.89 allows remote attackers to cause a denial of service (infinite loop and stack exhaustion) via vectors involving BDAT com… CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2017-16944 2024-11-21 12:17 2017-11-26 Show GitHub Exploit DB Packet Storm
259086 9.8 CRITICAL
Network
exim
debian
exim
debian_linux
The receive_msg function in receive.c in the SMTP daemon in Exim 4.88 and 4.89 allows remote attackers to execute arbitrary code or cause a denial of service (use-after-free) via vectors involving BD… CWE-416
 Use After Free
CVE-2017-16943 2024-11-21 12:17 2017-11-26 Show GitHub Exploit DB Packet Storm
259087 6.5 MEDIUM
Network
libsndfile_project libsndfile In libsndfile 1.0.25 (fixed in 1.0.26), a divide-by-zero error exists in the function wav_w64_read_fmt_chunk() in wav_w64.c, which may lead to DoS when playing a crafted audio file. CWE-369
 Divide By Zero
CVE-2017-16942 2024-11-21 12:17 2017-11-26 Show GitHub Exploit DB Packet Storm
259088 8.8 HIGH
Network
octobercms october October CMS through 1.0.428 does not prevent use of .htaccess in themes, which allows remote authenticated users to execute arbitrary PHP code by downloading a theme ZIP archive from /backend/cms/the… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2017-16941 2024-11-21 12:17 2017-11-25 Show GitHub Exploit DB Packet Storm
259089 7.8 HIGH
Local
linux
debian
linux_kernel
debian_linux
The XFRM dump policy implementation in net/xfrm/xfrm_user.c in the Linux kernel before 4.13.11 allows local users to gain privileges or cause a denial of service (use-after-free) via a crafted SO_RCV… CWE-416
 Use After Free
CVE-2017-16939 2024-11-21 12:17 2017-11-24 Show GitHub Exploit DB Packet Storm
259090 7.8 HIGH
Local
optipng_project optipng A global buffer overflow in OptiPNG 0.7.6 allows remote attackers to cause a denial-of-service attack or other unspecified impact with a maliciously crafted GIF format file, related to an uncontrolle… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-16938 2024-11-21 12:17 2017-11-24 Show GitHub Exploit DB Packet Storm