Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
254101 9.3 危険 アドビシステムズ - Adobe Shockwave Player におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-1288 2010-06-1 15:45 2010-05-11 Show GitHub Exploit DB Packet Storm
254102 9.3 危険 アドビシステムズ - Adobe Shockwave Player における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2010-1287 2010-06-1 15:45 2010-05-11 Show GitHub Exploit DB Packet Storm
254103 9.3 危険 アドビシステムズ - Adobe Shockwave Player における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2010-1286 2010-06-1 15:44 2010-05-11 Show GitHub Exploit DB Packet Storm
254104 9.3 危険 アドビシステムズ - Adobe Shockwave Player における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2010-1284 2010-06-1 15:44 2010-05-11 Show GitHub Exploit DB Packet Storm
254105 9.3 危険 アドビシステムズ - Adobe Shockwave Player における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2010-1283 2010-06-1 15:44 2010-05-11 Show GitHub Exploit DB Packet Storm
254106 4.3 警告 レッドハット
Glyph & Cog, LLC
ターボリナックス
サイバートラスト株式会社
CUPS
- Xpdf および CUPS の JBIG2 デコーダーにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2009-0166 2010-06-1 12:01 2009-04-16 Show GitHub Exploit DB Packet Storm
254107 4.3 警告 Glyph & Cog, LLC
アップル
サイバートラスト株式会社
CUPS
ターボリナックス
レッドハット
- Xpdf および CUPS の JBIG2 デコーダーにおける整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2009-0147 2010-06-1 12:01 2009-04-16 Show GitHub Exploit DB Packet Storm
254108 4.3 警告 Glyph & Cog, LLC
アップル
サイバートラスト株式会社
CUPS
ターボリナックス
レッドハット
- Xpdf および CUPS の JBIG2 デコーダーにおけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2009-0146 2010-06-1 12:01 2009-04-16 Show GitHub Exploit DB Packet Storm
254109 4.3 警告 アドビシステムズ - Adobe Shockwave Player におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2010-1282 2010-05-31 18:27 2010-05-11 Show GitHub Exploit DB Packet Storm
254110 9.3 危険 アドビシステムズ - Adobe Shockwave Player の iml32.dll における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2010-1281 2010-05-31 18:26 2010-05-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
252421 8.8 HIGH
Network
tp-link tl-wvr300_firmware
tl-wvr302_firmware
tl-wvr450_firmware
tl-wvr450l_firmware
tl-wvr450g_firmware
tl-wvr458_firmware
tl-wvr458l_firmware
tl-wvr458p_firmware
tl-wvr900g_firmware…
TP-Link TL-WVR, TL-WAR, TL-ER, and TL-R devices allow remote authenticated users to execute arbitrary commands via shell metacharacters in the t_bindif field of an admin/bridge command to cgi-bin/luc… CWE-78
OS Command 
CVE-2017-16958 2024-11-21 12:17 2017-11-27 Show GitHub Exploit DB Packet Storm
252422 8.8 HIGH
Network
tp-link tl-wvr300_firmware
tl-wvr302_firmware
tl-wvr450_firmware
tl-wvr450l_firmware
tl-wvr450g_firmware
tl-wvr458_firmware
tl-wvr458l_firmware
tl-wvr458p_firmware
tl-wvr900g_firmware…
TP-Link TL-WVR, TL-WAR, TL-ER, and TL-R devices allow remote authenticated users to execute arbitrary commands via shell metacharacters in the iface field of an admin/diagnostic command to cgi-bin/lu… CWE-78
OS Command 
CVE-2017-16957 2024-11-21 12:17 2017-11-27 Show GitHub Exploit DB Packet Storm
252423 7.8 HIGH
Local
tgsoft vir.it_explorer TG Soft Vir.IT eXplorer Lite 8.5.42 allows local users to cause a denial of service (NULL pointer dereference) or possibly have unspecified other impact via a NULL value in a 0x82730008 DeviceIoContr… CWE-476
 NULL Pointer Dereference
CVE-2017-16948 2024-11-21 12:17 2017-11-27 Show GitHub Exploit DB Packet Storm
252424 4.9 MEDIUM
Network
misp misp The admin_edit function in app/Controller/UsersController.php in MISP 2.4.82 mishandles the enable_password field, which allows admins to discover a hashed password by reading the audit log. CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2017-16946 2024-11-21 12:17 2017-11-26 Show GitHub Exploit DB Packet Storm
252425 7.5 HIGH
Network
exim
debian
exim
debian_linux
The receive_msg function in receive.c in the SMTP daemon in Exim 4.88 and 4.89 allows remote attackers to cause a denial of service (infinite loop and stack exhaustion) via vectors involving BDAT com… CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2017-16944 2024-11-21 12:17 2017-11-26 Show GitHub Exploit DB Packet Storm
252426 9.8 CRITICAL
Network
exim
debian
exim
debian_linux
The receive_msg function in receive.c in the SMTP daemon in Exim 4.88 and 4.89 allows remote attackers to execute arbitrary code or cause a denial of service (use-after-free) via vectors involving BD… CWE-416
 Use After Free
CVE-2017-16943 2024-11-21 12:17 2017-11-26 Show GitHub Exploit DB Packet Storm
252427 6.5 MEDIUM
Network
libsndfile_project libsndfile In libsndfile 1.0.25 (fixed in 1.0.26), a divide-by-zero error exists in the function wav_w64_read_fmt_chunk() in wav_w64.c, which may lead to DoS when playing a crafted audio file. CWE-369
 Divide By Zero
CVE-2017-16942 2024-11-21 12:17 2017-11-26 Show GitHub Exploit DB Packet Storm
252428 8.8 HIGH
Network
octobercms october October CMS through 1.0.428 does not prevent use of .htaccess in themes, which allows remote authenticated users to execute arbitrary PHP code by downloading a theme ZIP archive from /backend/cms/the… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2017-16941 2024-11-21 12:17 2017-11-25 Show GitHub Exploit DB Packet Storm
252429 7.8 HIGH
Local
linux
debian
linux_kernel
debian_linux
The XFRM dump policy implementation in net/xfrm/xfrm_user.c in the Linux kernel before 4.13.11 allows local users to gain privileges or cause a denial of service (use-after-free) via a crafted SO_RCV… CWE-416
 Use After Free
CVE-2017-16939 2024-11-21 12:17 2017-11-24 Show GitHub Exploit DB Packet Storm
252430 7.8 HIGH
Local
optipng_project optipng A global buffer overflow in OptiPNG 0.7.6 allows remote attackers to cause a denial-of-service attack or other unspecified impact with a maliciously crafted GIF format file, related to an uncontrolle… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-16938 2024-11-21 12:17 2017-11-24 Show GitHub Exploit DB Packet Storm