Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 2, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
252501 4.3 警告 ApPHP - ApPHP Calendar の calendar.class.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-4880 2012-01-19 10:33 2011-10-7 Show GitHub Exploit DB Packet Storm
252502 7.5 危険 Hinnendahl - Kontakt Formular の formmailer.php における任意の PHP コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2010-4878 2012-01-19 10:32 2011-10-7 Show GitHub Exploit DB Packet Storm
252503 4.3 警告 InsaneVisions - OneCMS の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-4877 2012-01-19 10:31 2011-10-7 Show GitHub Exploit DB Packet Storm
252504 7.5 危険 got milk - mBlogger の viewpost.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-4876 2012-01-19 10:30 2011-10-7 Show GitHub Exploit DB Packet Storm
252505 4.3 警告 Xondie - WordPress 用 Vodpod Video Gallery プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-4875 2012-01-19 10:30 2011-10-7 Show GitHub Exploit DB Packet Storm
252506 4.3 警告 NinkoBB - NinkoBB の users.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-4874 2012-01-19 10:28 2011-10-7 Show GitHub Exploit DB Packet Storm
252507 4.3 警告 WeBid Support - WeBid におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-4873 2012-01-19 10:27 2011-10-7 Show GitHub Exploit DB Packet Storm
252508 7.5 危険 PilotCart - ASPilot Pilot Cart の newsroom.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-4872 2012-01-19 10:27 2011-10-7 Show GitHub Exploit DB Packet Storm
252509 10 危険 SmartSoft - SmartFTP における詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2010-4871 2012-01-19 10:26 2011-10-7 Show GitHub Exploit DB Packet Storm
252510 7.5 危険 bloofox - BloofoxCMS における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-4870 2012-01-19 10:25 2011-10-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 2, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
246571 7.8 HIGH
Local
google android In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, improper configuration of script may lead to unprivileged access. CWE-269
 Improper Privilege Management
CVE-2018-11911 2024-11-21 12:44 2018-11-28 Show GitHub Exploit DB Packet Storm
246572 7.8 HIGH
Local
google android In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, improper access control can lead to device node and executable to be run from /persist/ whic… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2018-11910 2024-11-21 12:44 2018-11-28 Show GitHub Exploit DB Packet Storm
246573 7.8 HIGH
Local
google android In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, improper access control can lead to device node and executable to be run from /cache/ which … CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2018-11909 2024-11-21 12:44 2018-11-28 Show GitHub Exploit DB Packet Storm
246574 7.8 HIGH
Local
google android In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, improper access control can lead to device node and executable to be run from /data/ which p… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2018-11908 2024-11-21 12:44 2018-11-28 Show GitHub Exploit DB Packet Storm
246575 7.8 HIGH
Local
google android In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, improper access control can lead to device node and executable to be run from /firmware/ whi… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2018-11907 2024-11-21 12:44 2018-11-28 Show GitHub Exploit DB Packet Storm
246576 7.8 HIGH
Local
google android In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, there is a security concern with default privileged access to ADB and debug-fs. CWE-276
Incorrect Default Permissions 
CVE-2018-11906 2024-11-21 12:44 2018-11-28 Show GitHub Exploit DB Packet Storm
246577 7.8 HIGH
Local
google android In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, freeing device memory in driver probe failure will result in double free issue in power modu… CWE-415
 Double Free
CVE-2018-11823 2024-11-21 12:44 2018-11-28 Show GitHub Exploit DB Packet Storm
246578 4.2 MEDIUM
Physics
samsung 840_evo_firmware An issue was discovered on Samsung 840 EVO devices. Vendor-specific commands may allow access to the disk-encryption key. CWE-522
 Insufficiently Protected Credentials
CVE-2018-12038 2024-11-21 12:44 2018-11-21 Show GitHub Exploit DB Packet Storm
246579 4.0 MEDIUM
Physics
samsung
micron
840_evo_firmware
850_evo_firmware
t3_firmware
t5_firmware
crucial_mx100_firmware
crucial_mx200_firmware
crucial_mx300_firmware
An issue was discovered on Samsung 840 EVO and 850 EVO devices (only in "ATA high" mode, not vulnerable in "TCG" or "ATA max" mode), Samsung T3 and T5 portable drives, and Crucial MX100, MX200 and MX… NVD-CWE-noinfo
CVE-2018-12037 2024-11-21 12:44 2018-11-21 Show GitHub Exploit DB Packet Storm
246580 7.8 HIGH
Local
intel parallel_studio_xe Heap overflow in Intel Trace Analyzer 2018 in Intel Parallel Studio XE 2018 Update 3 may allow an authenticated user to potentially escalate privileges via local access. CWE-787
 Out-of-bounds Write
CVE-2018-12174 2024-11-21 12:44 2018-11-14 Show GitHub Exploit DB Packet Storm