Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 4, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
252261 6.4 警告 ヒューレット・パッカード
レッドハット
日立
オラクル
- Oracle Sun Products Suite の Oracle Communications Messaging Server コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-3564 2010-12-16 15:22 2010-10-12 Show GitHub Exploit DB Packet Storm
252262 9.3 危険 アップル - Apple Safari の WebKit における任意のコードを実行される脆弱性 CWE-DesignError
CVE-2010-3817 2010-12-16 14:18 2010-11-22 Show GitHub Exploit DB Packet Storm
252263 9.3 危険 アップル - Apple Safari の WebKit における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2010-3816 2010-12-16 14:18 2010-11-22 Show GitHub Exploit DB Packet Storm
252264 9.3 危険 アップル - Apple Safari の WebKit における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2010-3811 2010-12-16 14:16 2010-11-22 Show GitHub Exploit DB Packet Storm
252265 5 警告 The PHP Group
サイバートラスト株式会社
レッドハット
- PHP のセッションシリアライザにおける任意のセッション変数に変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-3065 2010-12-15 15:28 2010-05-31 Show GitHub Exploit DB Packet Storm
252266 5 警告 日立 - JP1/NETM 製品 におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
- 2010-12-15 15:27 2010-07-30 Show GitHub Exploit DB Packet Storm
252267 5 警告 The PHP Group
サイバートラスト株式会社
ターボリナックス
レッドハット
- PHP におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2010-1917 2010-12-15 15:27 2010-05-11 Show GitHub Exploit DB Packet Storm
252268 5 警告 The PHP Group
アップル
ターボリナックス
サイバートラスト株式会社
レッドハット
- PHP の xmlrpc 拡張におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2010-0397 2010-12-15 15:27 2010-03-16 Show GitHub Exploit DB Packet Storm
252269 6.4 警告 The PHP Group
サイバートラスト株式会社
レッドハット
- PHP の Linear Congruential Generator における値を推測される脆弱性 CWE-310
暗号の問題
CVE-2010-1128 2010-12-15 15:26 2010-03-26 Show GitHub Exploit DB Packet Storm
252270 6.9 警告 GNU Project
日本電気
ターボリナックス
サイバートラスト株式会社
レッドハット
- GNU Libtool の libltdl における権限昇格の脆弱性 CWE-DesignError
CVE-2009-3736 2010-12-15 15:26 2009-11-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 4, 2026, 4:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
249881 7.8 HIGH
Local
qualcomm mdm9206_firmware
mdm9607_firmware
mdm9650_firmware
sd_210_firmware
sd_212_firmware
sd_205_firmware
sd_425_firmware
sd_430_firmware
sd_450_firmware
sd_625_firmware
sd_650…
An integer underflow may occur due to lack of check when received data length from font_mgr_qsee_request_service is bigger than the minimal value of the segment header, which may result in a buffer o… CWE-191
 Integer Underflow (Wrap or Wraparound)
CVE-2017-18278 2024-11-21 12:19 2019-05-7 Show GitHub Exploit DB Packet Storm
249882 5.5 MEDIUM
Local
qualcomm mdm9206_firmware
mdm9607_firmware
mdm9650_firmware
msm8909w_firmware
sd_210_firmware
sd_212_firmware
sd_205_firmware
sd_425_firmware
sd_430_firmware
sd_450_firmware
sd_6…
A new account can be inserted into simContacts service using Android command line tool in Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear in MDM9206, MDM9607, MDM9650, MSM8909W, SD 210/SD 2… NVD-CWE-noinfo
CVE-2017-18275 2024-11-21 12:19 2019-05-7 Show GitHub Exploit DB Packet Storm
249883 7.8 HIGH
Local
qualcomm mdm9206_firmware
mdm9607_firmware
mdm9650_firmware
sd_210_firmware
sd_212_firmware
sd_205_firmware
sd_425_firmware
sd_430_firmware
sd_450_firmware
sd_617_firmware
sd_625…
While iterating through the models contained in a fixed-size array in the actData structure, which also stores an incorrect number of models that is greater than the size of the array, a buffer overf… CWE-129
 Improper Validation of Array Index
CVE-2017-18274 2024-11-21 12:19 2019-05-7 Show GitHub Exploit DB Packet Storm
249884 7.8 HIGH
Local
qualcomm sd_425_firmware
sd_427_firmware
sd_430_firmware
sd_435_firmware
sd_450_firmware
sd_625_firmware
sd_810_firmware
sd_820_firmware
sd_835_firmware
sdm630_firmware
sdm636_fi…
In case of using an invalid android verified boot signature with very large length, an integer underflow occurs in Snapdragon Mobile in SD 425, SD 427, SD 430, SD 435, SD 450, SD 625, SD 810, SD 820,… CWE-190
 Integer Overflow or Wraparound
CVE-2017-18173 2024-11-21 12:19 2019-05-7 Show GitHub Exploit DB Packet Storm
249885 7.8 HIGH
Local
qualcomm mdm9206_firmware
mdm9607_firmware
mdm9650_firmware
msm8909w_firmware
msm8996au_firmware
sd_210_firmware
sd_212_firmware
sd_205_firmware
sd_425_firmware
sd_450_firmware
s…
A Use After Free Condition can occur in Thermal Engine in Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear in MDM9206, MDM9607, MDM9650, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 425, SD… CWE-416
 Use After Free
CVE-2017-18157 2024-11-21 12:19 2019-05-7 Show GitHub Exploit DB Packet Storm
249886 7.8 HIGH
Local
qualcomm mdm9206_firmware
mdm9607_firmware
msm8996au_firmware
sd_210_firmware
sd_212_firmware
sd_205_firmware
sd_410_firmware
sd_412_firmware
sd_425_firmware
sd_427_firmware
sd_4…
In QTEE, an incorrect fuse value can be blown in Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear in version MDM9206, MDM9607, MSM8996AU, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 427, SD … CWE-665
 Improper Initialization
CVE-2017-18131 2024-11-21 12:19 2019-05-7 Show GitHub Exploit DB Packet Storm
249887 8.8 HIGH
Network
billion
zyxel
5200w-t_firmware
p660hn-t1a_v2_firmware
p660hn-t1a_v1_firmware
The ZyXEL P660HN-T1A v1 TCLinux Fw $7.3.15.0 v001 / 3.40(ULM.0)b31 router distributed by TrueOnline has two user accounts with default passwords, including a hardcoded service account with the userna… CWE-798
 Use of Hard-coded Credentials
CVE-2017-18374 2024-11-21 12:19 2019-05-3 Show GitHub Exploit DB Packet Storm
249888 8.8 HIGH
Network
billion
zyxel
5200w-t_firmware
p660hn-t1a_v2_firmware
p660hn-t1a_v1_firmware
The Billion 5200W-T TCLinux Fw $7.3.8.0 v008 130603 router distributed by TrueOnline has a command injection vulnerability in the Time Setting function, which is only accessible by an authenticated u… CWE-78
OS Command 
CVE-2017-18372 2024-11-21 12:19 2019-05-3 Show GitHub Exploit DB Packet Storm
249889 8.8 HIGH
Network
billion
zyxel
5200w-t_firmware
p660hn-t1a_v2_firmware
p660hn-t1a_v1_firmware
The ZyXEL P660HN-T1A v2 TCLinux Fw #7.3.37.6 router distributed by TrueOnline has a command injection vulnerability in the Remote System Log forwarding function, which is only accessible by an authen… CWE-78
OS Command 
CVE-2017-18370 2024-11-21 12:19 2019-05-3 Show GitHub Exploit DB Packet Storm
249890 9.8 CRITICAL
Network
billion 5200w-t_firmware The Billion 5200W-T 1.02b.rc5.dt49 router distributed by TrueOnline has a command injection vulnerability in the Remote System Log forwarding function, which is accessible by an unauthenticated user.… CWE-78
OS Command 
CVE-2017-18369 2024-11-21 12:19 2019-05-3 Show GitHub Exploit DB Packet Storm