Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
252471 2.6 注意 アップル - 複数の Apple 製品上で稼働する Application-Level Gateway におけるデバイスの IP アドレスを使用される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-0039 2011-01-19 16:34 2010-12-22 Show GitHub Exploit DB Packet Storm
252472 - - Invensys - Wonderware InBatch と I/A Series Batch の database lock manager service (lm_tcp) にバッファオーバーフローの脆弱性 - - 2011-01-19 15:54 2010-12-16 Show GitHub Exploit DB Packet Storm
252473 6.9 警告 Exim Development
レッドハット
- Exim における権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-4345 2011-01-19 15:41 2010-12-14 Show GitHub Exploit DB Packet Storm
252474 4 警告 マイクロソフト - x64 プラットフォーム上で稼働している Microsoft Exchange Server 2007 におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2010-3937 2011-01-19 15:31 2010-12-14 Show GitHub Exploit DB Packet Storm
252475 9.3 危険 マイクロソフト - Microsoft Office XP および Office Converter Pack における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2010-3952 2011-01-19 15:28 2010-12-14 Show GitHub Exploit DB Packet Storm
252476 9.3 危険 マイクロソフト - Microsoft Office XP および Office Converter Pack におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-3951 2011-01-18 14:26 2010-12-14 Show GitHub Exploit DB Packet Storm
252477 9.3 危険 マイクロソフト - 複数の Microsoft 製品における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2010-3950 2011-01-18 14:24 2010-12-14 Show GitHub Exploit DB Packet Storm
252478 9.3 危険 マイクロソフト - Microsoft Windows XP および Office Converter Pack におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-3949 2011-01-18 14:22 2010-12-14 Show GitHub Exploit DB Packet Storm
252479 9.3 危険 マイクロソフト - 複数の Microsoft 製品におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-3947 2011-01-18 14:20 2010-12-14 Show GitHub Exploit DB Packet Storm
252480 9.3 危険 マイクロソフト - 複数の Microsoft 製品における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2010-3946 2011-01-18 14:18 2010-12-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
279031 5.4 MEDIUM
Network
oxid-esales eshop OXID eShop Professional Edition before 4.7.13 and 4.8.x before 4.8.7, Enterprise Edition before 5.0.13 and 5.1.x before 5.1.7, and Community Edition before 4.7.13 and 4.8.x before 4.8.7 allow remote … CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-4919 2024-11-21 11:11 2018-01-20 Show GitHub Exploit DB Packet Storm
279032 8.8 HIGH
Network
microsemi s350i_firmware Symmetricom s350i 2.70.15 allows remote authenticated users to gain privileges via vectors related to pushing unauthenticated users to the login page. CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-5070 2024-11-21 11:11 2018-01-12 Show GitHub Exploit DB Packet Storm
279033 7.5 HIGH
Network
microsemi s350i_firmware Directory traversal vulnerability in the web application in Symmetricom s350i 2.70.15 allows remote attackers to read arbitrary files via a (1) ../ (dot dot slash) or (2) ..\ (dot dot forward slash) … CWE-22
Path Traversal
CVE-2014-5068 2024-11-21 11:11 2018-01-12 Show GitHub Exploit DB Packet Storm
279034 7.8 HIGH
Local
brbackup_project brbackup lib/brbackup.rb in the brbackup gem 0.1.1 for Ruby places the database password on the mysql command line, which allows local users to obtain sensitive information by listing the process. CWE-200
Information Exposure
CVE-2014-5004 2024-11-21 11:11 2018-01-11 Show GitHub Exploit DB Packet Storm
279035 5.5 MEDIUM
Local
ciborg_project ciborg chef/travis-cookbooks/ci_environment/perlbrew/recipes/default.rb in the ciborg gem 3.0.0 for Ruby allows local users to write to arbitrary files and gain privileges via a symlink attack on /tmp/perlb… CWE-20
 Improper Input Validation 
CVE-2014-5003 2024-11-21 11:11 2018-01-11 Show GitHub Exploit DB Packet Storm
279036 7.8 HIGH
Local
lynx_project lynx The lynx gem before 1.0.0 for Ruby places the configured password on command lines, which allows local users to obtain sensitive information by listing processes. CWE-255
Credentials Management
CVE-2014-5002 2024-11-21 11:11 2018-01-11 Show GitHub Exploit DB Packet Storm
279037 7.8 HIGH
Local
kcapifony_project kcapifony lib/ksymfony1.rb in the kcapifony gem 2.1.6 for Ruby places database user passwords on the (1) mysqldump, (2) pg_dump, (3) mysql, and (4) psql command lines, which allows local users to obtain sensit… CWE-200
Information Exposure
CVE-2014-5001 2024-11-21 11:11 2018-01-11 Show GitHub Exploit DB Packet Storm
279038 7.8 HIGH
Local
lawn-login_project lawn-login The login function in lib/lawn.rb in the lawn-login gem 0.0.7 for Ruby places credentials on the curl command line, which allows local users to obtain sensitive information by listing the process. CWE-200
Information Exposure
CVE-2014-5000 2024-11-21 11:11 2018-01-11 Show GitHub Exploit DB Packet Storm
279039 7.8 HIGH
Local
kajam_project kajam vendor/plugins/dataset/lib/dataset/database/mysql.rb in the kajam gem 1.0.3.rc2 for Ruby places the mysql user password on the (1) mysqldump command line in the capture function and (2) mysql command… CWE-200
Information Exposure
CVE-2014-4999 2024-11-21 11:11 2018-01-11 Show GitHub Exploit DB Packet Storm
279040 7.8 HIGH
Local
lean-ruport_project lean-ruport test/tc_database.rb in the lean-ruport gem 0.3.8 for Ruby places the mysql user password on the mysqldump command line, which allows local users to obtain sensitive information by listing the process. CWE-200
Information Exposure
CVE-2014-4998 2024-11-21 11:11 2018-01-11 Show GitHub Exploit DB Packet Storm