|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 2, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 253931 | 7.5 | 危険 | 日立 | - | Cosminexus、Processing Kit for XML および Hitachi Developer's Kit for Java におけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
- | 2010-02-2 11:42 | 2009-12-22 | Show | GitHub Exploit DB Packet Storm |
| 253932 | 4.3 | 警告 | VMware | - | 複数の VMware 製品におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-3731 | 2010-02-1 11:52 | 2009-12-15 | Show | GitHub Exploit DB Packet Storm |
| 253933 | 10 | 危険 | サイバートラスト株式会社 Linux |
- | Linux kernel および gxsnmp パッケージの asn1 の実装における任意のコードを実行される脆弱性 |
CWE-119
バッファエラー |
CVE-2008-1673 | 2010-02-1 11:51 | 2008-06-10 | Show | GitHub Exploit DB Packet Storm |
| 253934 | 10 | 危険 | ヒューレット・パッカード | - | 複数の Symantec 製品の VRTSweb における任意のコードを実行される脆弱性 |
CWE-287
不適切な認証 |
CVE-2009-3027 | 2010-02-1 11:51 | 2009-12-8 | Show | GitHub Exploit DB Packet Storm |
| 253935 | 9.3 | 危険 | KDE project Glyph & Cog, LLC GNOME Project サイバートラスト株式会社 レッドハット |
- | Xpdf、gpdf および kpdf の FoFiType1::parse 関数における任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-4035 | 2010-01-29 09:54 | 2009-12-16 | Show | GitHub Exploit DB Packet Storm |
| 253936 | 7.8 | 危険 | Mozilla Foundation | - | Mozilla Firefox/SeaMonkey の GeckoActiveXObject 関数における重要な情報を取得される脆弱性 |
CWE-200
情報漏えい |
CVE-2009-3987 | 2010-01-29 09:54 | 2009-12-15 | Show | GitHub Exploit DB Packet Storm |
| 253937 | 7.6 | 危険 | サイバートラスト株式会社 Mozilla Foundation レッドハット |
- | Mozilla Firefox/SeaMonkey における任意の JavaScript を実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-3986 | 2010-01-29 09:54 | 2009-12-15 | Show | GitHub Exploit DB Packet Storm |
| 253938 | 6.8 | 警告 | サイバートラスト株式会社 Mozilla Foundation レッドハット |
- | Mozilla Firefox/SeaMonkey におけるコンテンツを偽装される脆弱性 |
CWE-Other
その他 |
CVE-2009-3985 | 2010-01-29 09:53 | 2009-12-15 | Show | GitHub Exploit DB Packet Storm |
| 253939 | 6.8 | 警告 | サイバートラスト株式会社 Mozilla Foundation レッドハット |
- | Mozilla Firefox/SeaMonkey における http URL または file URL の SSL インジケータを偽装される脆弱性 |
CWE-Other
その他 |
CVE-2009-3984 | 2010-01-29 09:53 | 2009-12-15 | Show | GitHub Exploit DB Packet Storm |
| 253940 | 6.8 | 警告 | サイバートラスト株式会社 Mozilla Foundation レッドハット |
- | Mozilla Firefox/SeaMonkey における認証されたリクエストを任意のアプリケーションに送信される脆弱性 |
CWE-Other
その他 |
CVE-2009-3983 | 2010-01-29 09:53 | 2009-12-15 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 2, 2026, 4:08 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 256831 | 5.0 |
MEDIUM
Local |
microsoft |
windows_rt_8.1 windows_server_2012 office windows_10 windows_8.1 windows_server_2016 windows_server_2008 windows_7 |
Uniscribe in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, Windows Server 2016, Microsoft Office … |
CWE-200
Information Exposure |
CVE-2017-0282 | 2024-11-21 12:02 | 2017-06-15 | Show | GitHub Exploit DB Packet Storm |
| 256832 | 7.8 |
HIGH
Local |
microsoft |
windows_server_2012 windows_10 windows_server_2016 windows_8.1 windows_server_2008 windows_7 |
Windows Hyper-V in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 201… |
CWE-755
Improper Handling of Exceptional Conditions |
CVE-2017-0193 | 2024-11-21 12:02 | 2017-06-15 | Show | GitHub Exploit DB Packet Storm |
| 256833 | 8.8 |
HIGH
Network |
ibm | maximo_asset_management | IBM Maximo Asset Management 7.5 and 7.6 could allow a remote authenticated attacker to execute arbitrary commands on the system as administrator. IBM X-Force ID: 120276. |
CWE-264
Permissions, Privileges, and Access Controls |
CVE-2016-9984 | 2024-11-21 12:02 | 2017-06-14 | Show | GitHub Exploit DB Packet Storm |
| 256834 | 5.4 |
MEDIUM
Network |
ibm |
rational_collaborative_lifecycle_management rational_quality_manager rational_team_concert rational_doors_next_generation rational_engineering_lifecycle_manager rational_rhapsody_desig… |
IBM Jazz Foundation is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leadin… |
CWE-79
Cross-site Scripting |
CVE-2016-9973 | 2024-11-21 12:02 | 2017-06-14 | Show | GitHub Exploit DB Packet Storm |
| 256835 | 7.5 |
HIGH
Network |
torproject debian |
tor debian_linux |
The hidden-service feature in Tor before 0.3.0.8 allows a denial of service (assertion failure and daemon exit) in the connection_edge_process_relay_cell function via a BEGIN_DIR cell on a rendezvous… |
CWE-617
Reachable Assertion |
CVE-2017-0376 | 2024-11-21 12:02 | 2017-06-10 | Show | GitHub Exploit DB Packet Storm |
| 256836 | 7.5 |
HIGH
Network |
torproject | tor | The hidden-service feature in Tor before 0.3.0.8 allows a denial of service (assertion failure and daemon exit) in the relay_send_end_cell_from_edge_ function via a malformed BEGIN cell. |
CWE-617
Reachable Assertion |
CVE-2017-0375 | 2024-11-21 12:02 | 2017-06-10 | Show | GitHub Exploit DB Packet Storm |
| 256837 | 8.0 |
HIGH
Network |
ibm | sterling_selling_and_fulfillment_foundation | IBM Sterling Order Management 9.2 through 9.5 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the … |
CWE-352
Origin Validation Error |
CVE-2016-9991 | 2024-11-21 12:02 | 2017-06-9 | Show | GitHub Exploit DB Packet Storm |
| 256838 | 8.8 |
HIGH
Network |
ibm |
maximo_asset_management maximo_asset_management_essentials |
IBM Maximo Asset Management 7.1, 7.5, and 7.6 could allow a remote attacker to hijack a user's session, caused by the failure to invalidate an existing session identifier. An attacker could exploit t… |
CWE-20
Improper Input Validation |
CVE-2016-9977 | 2024-11-21 12:02 | 2017-06-8 | Show | GitHub Exploit DB Packet Storm |
| 256839 | 9.8 |
CRITICAL
Network |
game-music-emu_project fedoraproject opensuse_project opensuse novell |
game-music-emu fedora leap suse_linux_enterprise_software_development_kit suse_linux_enterprise_desktop suse_linux_enterprise_server |
game-music-emu before 0.6.1 mishandles unspecified integer values. |
CWE-189
Numeric Errors |
CVE-2016-9961 | 2024-11-21 12:02 | 2017-06-7 | Show | GitHub Exploit DB Packet Storm |
| 256840 | 5.5 |
MEDIUM
Local |
game-music-emu_project fedoraproject opensuse_project opensuse novell |
game-music-emu fedora leap suse_linux_enterprise_software_development_kit suse_linux_enterprise_desktop suse_linux_enterprise_server |
game-music-emu before 0.6.1 allows local users to cause a denial of service (divide by zero and process crash). |
CWE-369
Divide By Zero |
CVE-2016-9960 | 2024-11-21 12:02 | 2017-06-7 | Show | GitHub Exploit DB Packet Storm |