Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":April 28, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
253091 9.3 危険 マイクロソフト - 複数の Microsoft 製品のテキストコンバーターにおける整数オーバーフローの脆弱性 CWE-94
コード・インジェクション
CVE-2009-2506 2010-01-22 10:27 2009-12-8 Show GitHub Exploit DB Packet Storm
253092 9 危険 マイクロソフト - Microsoft Windows の Active Directory フェデレーションサービスにおける任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2009-2509 2010-01-22 10:27 2009-12-8 Show GitHub Exploit DB Packet Storm
253093 6.9 警告 マイクロソフト - Microsoft Windows の Active Directory フェデレーションサービスのシングルサインオン実装における認証情報を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2009-2508 2010-01-22 10:27 2009-12-8 Show GitHub Exploit DB Packet Storm
253094 6.8 警告 マイクロソフト - Microsoft Windows の LSASS におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2009-3675 2010-01-22 10:27 2009-12-8 Show GitHub Exploit DB Packet Storm
253095 9.3 危険 マイクロソフト - Microsoft Project における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2009-0102 2010-01-22 10:26 2009-12-8 Show GitHub Exploit DB Packet Storm
253096 9.3 危険 マイクロソフト - Microsoft Internet Explorer におけるメモリ破損の脆弱性 CWE-94
コード・インジェクション
CVE-2009-3673 2010-01-22 10:26 2009-12-8 Show GitHub Exploit DB Packet Storm
253097 9.3 危険 マイクロソフト - Microsoft Internet Explorer におけるメモリ破損の脆弱性 CWE-399
リソース管理の問題
CVE-2009-3671 2010-01-22 10:26 2009-12-8 Show GitHub Exploit DB Packet Storm
253098 10 危険 マイクロソフト - Microsoft Windows のインターネット認証サービスにおけるネットワークリソースにアクセスされる脆弱性 CWE-255
CWE-94
CVE-2009-3677 2010-01-22 10:24 2009-12-8 Show GitHub Exploit DB Packet Storm
253099 10 危険 マイクロソフト - Microsoft Windows のインターネット認証サービスにおける任意のコードを実行される脆弱性 CWE-287
不適切な認証
CVE-2009-2505 2010-01-22 10:24 2009-12-8 Show GitHub Exploit DB Packet Storm
253100 6.9 警告 acpid - acpid の umask におけるサービス運用妨害 (DoS) の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-4235 2010-01-21 11:44 2009-12-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 28, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
251671 7.2 HIGH
Network
citrix netscaler_gateway_firmware
application_delivery_controller_firmware
A vulnerability has been identified in the management interface of Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway 10.1 before build 135.18, 10.5 before build 66.9, 10.5e… CWE-287
Improper Authentication
CVE-2017-14602 2024-11-21 12:13 2017-09-26 Show GitHub Exploit DB Packet Storm
251672 9.8 CRITICAL
Network
cashbackcomparisonscript cash_back_comparison SQL injection vulnerability in Cash Back Comparison Script 1.0 allows remote attackers to execute arbitrary SQL commands via the PATH_INFO to search/. CWE-89
SQL Injection
CVE-2017-14703 2024-11-21 12:13 2017-09-26 Show GitHub Exploit DB Packet Storm
251673 6.1 MEDIUM
Network
baidu ueditor UEditor 1.4.3.3 has XSS via the SRC attribute of an IFRAME element. CWE-79
Cross-site Scripting
CVE-2017-14744 2024-11-21 12:13 2017-09-26 Show GitHub Exploit DB Packet Storm
251674 8.1 HIGH
Network
faleemi fsc-880_firmware Faleemi FSC-880 00.01.01.0048P2 devices allow unauthenticated SQL injection via the Username element in an XML document to /onvif/device_service, as demonstrated by reading the admin password. CWE-89
SQL Injection
CVE-2017-14743 2024-11-21 12:13 2017-09-26 Show GitHub Exploit DB Packet Storm
251675 6.5 MEDIUM
Network
imagemagick imagemagick The ReadCAPTIONImage function in coders/caption.c in ImageMagick 7.0.7-3 allows remote attackers to cause a denial of service (infinite loop) via a crafted font file. CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2017-14741 2024-11-21 12:13 2017-09-26 Show GitHub Exploit DB Packet Storm
251676 7.5 HIGH
Network
imagemagick imagemagick The AcquireResampleFilterThreadSet function in magick/resample-private.h in ImageMagick 7.0.7-4 mishandles failed memory allocation, which allows remote attackers to cause a denial of service (NULL P… CWE-476
 NULL Pointer Dereference
CVE-2017-14739 2024-11-21 12:13 2017-09-26 Show GitHub Exploit DB Packet Storm
251677 5.5 MEDIUM
Local
botan_project
debian
botan
debian_linux
A cryptographic cache-based side channel in the RSA implementation in Botan before 1.10.17, and 1.11.x and 2.x before 2.3.0, allows a local attacker to recover information about RSA secret keys, as d… NVD-CWE-noinfo
CVE-2017-14737 2024-11-21 12:13 2017-09-26 Show GitHub Exploit DB Packet Storm
251678 6.1 MEDIUM
Network
antisamy_project antisamy OWASP AntiSamy before 1.5.7 allows XSS via HTML5 entities, as demonstrated by use of : to construct a javascript: URL. CWE-79
Cross-site Scripting
CVE-2017-14735 2024-11-21 12:13 2017-09-26 Show GitHub Exploit DB Packet Storm
251679 8.8 HIGH
Network
libbpg_project libbpg The build_msps function in libbpg.c in libbpg 0.9.7 allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact v… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-14734 2024-11-21 12:13 2017-09-26 Show GitHub Exploit DB Packet Storm
251680 6.5 MEDIUM
Network
graphicsmagick
debian
graphicsmagick
debian_linux
ReadRLEImage in coders/rle.c in GraphicsMagick 1.3.26 mishandles RLE headers that specify too few colors, which allows remote attackers to cause a denial of service (heap-based buffer over-read and a… CWE-125
Out-of-bounds Read
CVE-2017-14733 2024-11-21 12:13 2017-09-26 Show GitHub Exploit DB Packet Storm