Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
253151 7.5 危険 MH Products - MH Products kleinanzeigenmarkt における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-5062 2011-11-25 11:50 2011-11-23 Show GitHub Exploit DB Packet Storm
253152 7.5 危険 RSStatic - RSStatic の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-5061 2011-11-25 11:49 2011-11-23 Show GitHub Exploit DB Packet Storm
253153 7.5 危険 Nus - NUs Newssystem の Nus.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-5060 2011-11-25 11:49 2011-11-23 Show GitHub Exploit DB Packet Storm
253154 7.5 危険 CMScout - CMScout の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-5059 2011-11-25 11:48 2011-11-23 Show GitHub Exploit DB Packet Storm
253155 7.5 危険 GBU grafici - GBU Facebook コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-5056 2011-11-25 11:47 2011-11-23 Show GitHub Exploit DB Packet Storm
253156 7.5 危険 Almnzm - Almnzm の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-5055 2011-11-25 11:46 2011-11-23 Show GitHub Exploit DB Packet Storm
253157 4.3 警告 JAMWiki - JAMWiki の Special:Login におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-5054 2011-11-25 11:46 2010-04-1 Show GitHub Exploit DB Packet Storm
253158 4.3 警告 The GetSimple Team - GetSimple CMS の admin/components.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-5052 2011-11-25 11:45 2011-11-23 Show GitHub Exploit DB Packet Storm
253159 4.3 警告 razorCMS - razorCMS の admin/core/admin_func.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-5051 2011-11-25 11:44 2011-11-23 Show GitHub Exploit DB Packet Storm
253160 4.3 警告 Zoho Corporation - ManageEngine ADManager Plus におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-5050 2011-11-25 11:43 2011-11-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
246481 5.3 MEDIUM
Local
intel data_migration_software DLL injection vulnerability in software installer for Intel Data Center Migration Center Software v3.1 and before may allow an authenticated user to potentially execute code using default directory p… CWE-427
CWE-276
 Uncontrolled Search Path Element
Incorrect Default Permissions 
CVE-2018-12160 2024-11-21 12:44 2018-09-13 Show GitHub Exploit DB Packet Storm
246482 5.5 MEDIUM
Local
intel extreme_tuning_utility Buffer overflow in installer for Intel Extreme Tuning Utility before 6.4.1.21 may allow an authenticated user to potentially cause a buffer overflow potentially leading to a denial of service via loc… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2018-12151 2024-11-21 12:44 2018-09-13 Show GitHub Exploit DB Packet Storm
246483 6.7 MEDIUM
Local
intel extreme_tuning_utility Escalation of privilege in Installer for Intel Extreme Tuning Utility before 6.4.1.21 may allow an authenticated user to potentially execute code or disclose information as administrator via local ac… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2018-12150 2024-11-21 12:44 2018-09-13 Show GitHub Exploit DB Packet Storm
246484 5.5 MEDIUM
Local
intel extreme_tuning_utility Buffer overflow in input handling in Intel Extreme Tuning Utility before 6.4.1.21 may allow an authenticated user to potentially deny service to the application via local access. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2018-12149 2024-11-21 12:44 2018-09-13 Show GitHub Exploit DB Packet Storm
246485 7.8 HIGH
Local
intel driver_\&_support_assistant Privilege escalation in file permissions in Intel Driver and Support Assistant before 3.5.0.1 may allow an authenticated user to potentially execute code as administrator via local access. CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2018-12148 2024-11-21 12:44 2018-09-13 Show GitHub Exploit DB Packet Storm
246486 7.4 HIGH
Network
apache
oracle
activemq
flexcube_private_banking
enterprise_repository
TLS hostname verification when using the Apache ActiveMQ Client before 5.15.6 was missing which could make the client vulnerable to a MITM attack between a Java application using the ActiveMQ client … CWE-295
Improper Certificate Validation 
CVE-2018-11775 2024-11-21 12:44 2018-09-11 Show GitHub Exploit DB Packet Storm
246487 6.1 MEDIUM
Network
myadrenalin adrenalin A Reflected Cross Site Scripting (XSS) Vulnerability was discovered in Adrenalin 5.4.0 HRMS Software. The user supplied input containing JavaScript is echoed back in JavaScript code in an HTML respon… CWE-79
Cross-site Scripting
CVE-2018-12234 2024-11-21 12:44 2018-09-7 Show GitHub Exploit DB Packet Storm
246488 5.9 MEDIUM
Network
symantec norton_password_manager The Norton Identity Safe product prior to 5.3.0.976 may be susceptible to a privilege escalation issue via a hard coded IV, which is a type of vulnerability that can potentially increase the likeliho… CWE-798
 Use of Hard-coded Credentials
CVE-2018-12240 2024-11-21 12:44 2018-08-30 Show GitHub Exploit DB Packet Storm
246489 8.1 HIGH
Network
apache
netapp
oracle
struts
snapcenter
oncommand_workflow_automation
oncommand_insight
active_iq_unified_manager
mysql_enterprise_monitor
enterprise_manager_base_platform
communications_policy_manage…
Apache Struts versions 2.3 to 2.3.34 and 2.5 to 2.5.16 suffer from possible Remote Code Execution when alwaysSelectFullNamespace is true (either by user or a plugin like Convention Plugin) and then: … NVD-CWE-noinfo
CVE-2018-11776 2024-11-21 12:44 2018-08-22 Show GitHub Exploit DB Packet Storm
246490 7.5 HIGH
Network
nodejs
redhat
node.js
openshift_container_platform
In all versions of Node.js prior to 6.14.4, 8.11.4 and 10.9.0 when used with UCS-2 encoding (recognized by Node.js under the names `'ucs2'`, `'ucs-2'`, `'utf16le'` and `'utf-16le'`), `Buffer#write()`… CWE-787
 Out-of-bounds Write
CVE-2018-12115 2024-11-21 12:44 2018-08-21 Show GitHub Exploit DB Packet Storm