|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 2, 2026, 2 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 253921 | 7.2 | 危険 | IBM | - | IBM DB2 の Install コンポーネントにおける脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-4331 | 2010-02-4 11:19 | 2009-12-16 | Show | GitHub Exploit DB Packet Storm |
| 253922 | 7.5 | 危険 | IBM | - | IBM DB2 の Relational Data Services コンポーネントにおけるパスワードの引数を取得される脆弱性 |
CWE-200
情報漏えい |
CVE-2009-4333 | 2010-02-4 11:19 | 2009-12-16 | Show | GitHub Exploit DB Packet Storm |
| 253923 | 7.2 | 危険 | IBM | - | IBM DB2 の Engine Utilities コンポーネントの db2licm における脆弱性 |
CWE-noinfo
情報不足 |
CVE-2009-4330 | 2010-02-4 11:18 | 2009-12-16 | Show | GitHub Exploit DB Packet Storm |
| 253924 | 4 | 警告 | IBM | - | IBM DB2 の Engine Utilities コンポーネントにおけるサービス運用妨害 (DoS) の脆弱性 |
CWE-noinfo
情報不足 |
CVE-2009-4329 | 2010-02-4 11:18 | 2009-12-16 | Show | GitHub Exploit DB Packet Storm |
| 253925 | 7.2 | 危険 | サイバートラスト株式会社 Linux |
- | Linux kernel の kvm_dev_ioctl_get_supported_cpuid 関数における整数オーバーフローの脆弱性 |
CWE-189
数値処理の問題 |
CVE-2009-3638 | 2010-02-3 14:35 | 2009-10-29 | Show | GitHub Exploit DB Packet Storm |
| 253926 | 5 | 警告 | Linear LLC S2 Security |
- | Linear eMerge のマネージメントコンポーネントにおけるサービス運用妨害 (DoS) |
CWE-noinfo
情報不足 |
CVE-2009-3734 | 2010-02-3 14:35 | 2010-01-5 | Show | GitHub Exploit DB Packet Storm |
| 253927 | 7.5 | 危険 | The PHP Group LibGD project サイバートラスト株式会社 レッドハット |
- | PHP および GD Graphics Library の _gdGetColors 関数におけるバッファオーバーフローの脆弱性 |
CWE-Other
その他 |
CVE-2009-3546 | 2010-02-3 14:34 | 2009-10-19 | Show | GitHub Exploit DB Packet Storm |
| 253928 | 6.8 | 警告 | GNU Project XEmacs サイバートラスト株式会社 |
- | Emacs および XEmacs における .flc ファイルの処理に関する任意のコードを実行される脆弱性 |
CWE-DesignError
|
CVE-2008-2142 | 2010-02-2 11:43 | 2008-05-12 | Show | GitHub Exploit DB Packet Storm |
| 253929 | 3.5 | 注意 | Drupal サイバートラスト株式会社 |
- | Drupal の Menu モジュールにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4370 | 2010-02-2 11:43 | 2009-12-16 | Show | GitHub Exploit DB Packet Storm |
| 253930 | 3.5 | 注意 | Drupal サイバートラスト株式会社 |
- | Drupal の Contact モジュールにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4369 | 2010-02-2 11:42 | 2009-12-16 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 2, 2026, 4:08 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 256831 | 5.0 |
MEDIUM
Local |
microsoft |
windows_rt_8.1 windows_server_2012 office windows_10 windows_8.1 windows_server_2016 windows_server_2008 windows_7 |
Uniscribe in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, Windows Server 2016, Microsoft Office … |
CWE-200
Information Exposure |
CVE-2017-0282 | 2024-11-21 12:02 | 2017-06-15 | Show | GitHub Exploit DB Packet Storm |
| 256832 | 7.8 |
HIGH
Local |
microsoft |
windows_server_2012 windows_10 windows_server_2016 windows_8.1 windows_server_2008 windows_7 |
Windows Hyper-V in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 201… |
CWE-755
Improper Handling of Exceptional Conditions |
CVE-2017-0193 | 2024-11-21 12:02 | 2017-06-15 | Show | GitHub Exploit DB Packet Storm |
| 256833 | 8.8 |
HIGH
Network |
ibm | maximo_asset_management | IBM Maximo Asset Management 7.5 and 7.6 could allow a remote authenticated attacker to execute arbitrary commands on the system as administrator. IBM X-Force ID: 120276. |
CWE-264
Permissions, Privileges, and Access Controls |
CVE-2016-9984 | 2024-11-21 12:02 | 2017-06-14 | Show | GitHub Exploit DB Packet Storm |
| 256834 | 5.4 |
MEDIUM
Network |
ibm |
rational_collaborative_lifecycle_management rational_quality_manager rational_team_concert rational_doors_next_generation rational_engineering_lifecycle_manager rational_rhapsody_desig… |
IBM Jazz Foundation is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leadin… |
CWE-79
Cross-site Scripting |
CVE-2016-9973 | 2024-11-21 12:02 | 2017-06-14 | Show | GitHub Exploit DB Packet Storm |
| 256835 | 7.5 |
HIGH
Network |
torproject debian |
tor debian_linux |
The hidden-service feature in Tor before 0.3.0.8 allows a denial of service (assertion failure and daemon exit) in the connection_edge_process_relay_cell function via a BEGIN_DIR cell on a rendezvous… |
CWE-617
Reachable Assertion |
CVE-2017-0376 | 2024-11-21 12:02 | 2017-06-10 | Show | GitHub Exploit DB Packet Storm |
| 256836 | 7.5 |
HIGH
Network |
torproject | tor | The hidden-service feature in Tor before 0.3.0.8 allows a denial of service (assertion failure and daemon exit) in the relay_send_end_cell_from_edge_ function via a malformed BEGIN cell. |
CWE-617
Reachable Assertion |
CVE-2017-0375 | 2024-11-21 12:02 | 2017-06-10 | Show | GitHub Exploit DB Packet Storm |
| 256837 | 8.0 |
HIGH
Network |
ibm | sterling_selling_and_fulfillment_foundation | IBM Sterling Order Management 9.2 through 9.5 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the … |
CWE-352
Origin Validation Error |
CVE-2016-9991 | 2024-11-21 12:02 | 2017-06-9 | Show | GitHub Exploit DB Packet Storm |
| 256838 | 8.8 |
HIGH
Network |
ibm |
maximo_asset_management maximo_asset_management_essentials |
IBM Maximo Asset Management 7.1, 7.5, and 7.6 could allow a remote attacker to hijack a user's session, caused by the failure to invalidate an existing session identifier. An attacker could exploit t… |
CWE-20
Improper Input Validation |
CVE-2016-9977 | 2024-11-21 12:02 | 2017-06-8 | Show | GitHub Exploit DB Packet Storm |
| 256839 | 9.8 |
CRITICAL
Network |
game-music-emu_project fedoraproject opensuse_project opensuse novell |
game-music-emu fedora leap suse_linux_enterprise_software_development_kit suse_linux_enterprise_desktop suse_linux_enterprise_server |
game-music-emu before 0.6.1 mishandles unspecified integer values. |
CWE-189
Numeric Errors |
CVE-2016-9961 | 2024-11-21 12:02 | 2017-06-7 | Show | GitHub Exploit DB Packet Storm |
| 256840 | 5.5 |
MEDIUM
Local |
game-music-emu_project fedoraproject opensuse_project opensuse novell |
game-music-emu fedora leap suse_linux_enterprise_software_development_kit suse_linux_enterprise_desktop suse_linux_enterprise_server |
game-music-emu before 0.6.1 allows local users to cause a denial of service (divide by zero and process crash). |
CWE-369
Divide By Zero |
CVE-2016-9960 | 2024-11-21 12:02 | 2017-06-7 | Show | GitHub Exploit DB Packet Storm |