Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 17, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
254721 10 危険 VMware - 複数の VMware 製品の ActiveX コントロールにおける脆弱性 CWE-noinfo
情報不足
CVE-2008-3692 2010-09-13 15:58 2008-08-28 Show GitHub Exploit DB Packet Storm
254722 10 危険 VMware - 複数の VMware 製品の ActiveX コントロールにおける脆弱性 CWE-noinfo
情報不足
CVE-2008-3691 2010-09-13 15:58 2008-08-28 Show GitHub Exploit DB Packet Storm
254723 10 危険 VMware - 複数の VMware 製品のデフォルト設定における脆弱性 CWE-16
環境設定
CVE-2008-1392 2010-09-13 15:57 2008-03-20 Show GitHub Exploit DB Packet Storm
254724 10 危険 VMware - 複数の VMware 製品の ActiveX コントロールにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-3892 2010-09-13 15:57 2008-09-3 Show GitHub Exploit DB Packet Storm
254725 7.2 危険 VMware - 複数の VMware 製品の VIX API におけるバッファオーバーフローの脆弱性 CWE-119
CWE-noinfo
CVE-2008-2100 2010-09-13 15:56 2008-06-4 Show GitHub Exploit DB Packet Storm
254726 7.8 危険 VMware - 複数の VMware 製品の DHCP サービスにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
CWE-noinfo
CVE-2008-1364 2010-09-13 15:56 2008-03-17 Show GitHub Exploit DB Packet Storm
254727 6.8 警告 VMware - 複数の VMware 製品における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-1363 2010-09-13 15:56 2008-03-17 Show GitHub Exploit DB Packet Storm
254728 7.2 危険 VMware - 複数の VMware 製品における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-1362 2010-09-13 15:55 2008-03-17 Show GitHub Exploit DB Packet Storm
254729 6.8 警告 VMware - 複数の VMware 製品における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-1361 2010-09-13 15:55 2008-03-17 Show GitHub Exploit DB Packet Storm
254730 7.1 危険 VMware - 複数の VMware 製品の Virtual Machine Communication Interface (VMCI) におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2008-1340 2010-09-13 15:55 2008-03-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 17, 2026, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
254481 9.8 CRITICAL
Network
exim
debian
exim
debian_linux
The receive_msg function in receive.c in the SMTP daemon in Exim 4.88 and 4.89 allows remote attackers to execute arbitrary code or cause a denial of service (use-after-free) via vectors involving BD… CWE-416
 Use After Free
CVE-2017-16943 2024-11-21 12:17 2017-11-26 Show GitHub Exploit DB Packet Storm
254482 6.5 MEDIUM
Network
libsndfile_project libsndfile In libsndfile 1.0.25 (fixed in 1.0.26), a divide-by-zero error exists in the function wav_w64_read_fmt_chunk() in wav_w64.c, which may lead to DoS when playing a crafted audio file. CWE-369
 Divide By Zero
CVE-2017-16942 2024-11-21 12:17 2017-11-26 Show GitHub Exploit DB Packet Storm
254483 8.8 HIGH
Network
octobercms october October CMS through 1.0.428 does not prevent use of .htaccess in themes, which allows remote authenticated users to execute arbitrary PHP code by downloading a theme ZIP archive from /backend/cms/the… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2017-16941 2024-11-21 12:17 2017-11-25 Show GitHub Exploit DB Packet Storm
254484 7.8 HIGH
Local
linux
debian
linux_kernel
debian_linux
The XFRM dump policy implementation in net/xfrm/xfrm_user.c in the Linux kernel before 4.13.11 allows local users to gain privileges or cause a denial of service (use-after-free) via a crafted SO_RCV… CWE-416
 Use After Free
CVE-2017-16939 2024-11-21 12:17 2017-11-24 Show GitHub Exploit DB Packet Storm
254485 7.8 HIGH
Local
optipng_project optipng A global buffer overflow in OptiPNG 0.7.6 allows remote attackers to cause a denial-of-service attack or other unspecified impact with a maliciously crafted GIF format file, related to an uncontrolle… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-16938 2024-11-21 12:17 2017-11-24 Show GitHub Exploit DB Packet Storm
254486 6.5 MEDIUM
Adjacent
tenda ac9_firmware
ac15_firmware
ac18_firmware
Directory Traversal vulnerability in app_data_center on Shenzhen Tenda Ac9 US_AC9V1.0BR_V15.03.05.14_multi_TD01, Ac9 ac9_kf_V15.03.05.19(6318_)_cn, Ac15 US_AC15V1.0BR_V15.03.05.18_multi_TD01, Ac15 US… CWE-22
Path Traversal
CVE-2017-16936 2024-11-21 12:17 2017-11-24 Show GitHub Exploit DB Packet Storm
254487 9.8 CRITICAL
Network
ametys ametys Ametys before 4.0.3 requires authentication only for URIs containing a /cms/ substring, which allows remote attackers to bypass intended access restrictions via a direct request to /plugins/core-ui/s… CWE-20
 Improper Input Validation 
CVE-2017-16935 2024-11-21 12:17 2017-11-24 Show GitHub Exploit DB Packet Storm
254488 9.8 CRITICAL
Network
dbltek web_server The web server on DBL DBLTek devices allows remote attackers to execute arbitrary OS commands by obtaining the admin password via a frame.html?content=/dev/mtdblock/5 request, and then using this pas… CWE-78
OS Command 
CVE-2017-16934 2024-11-21 12:17 2017-11-24 Show GitHub Exploit DB Packet Storm
254489 7.0 HIGH
Local
icinga icinga etc/initsystem/prepare-dirs in Icinga 2.x through 2.8.1 has a chown call for a filename in a user-writable directory, which allows local users to gain privileges by leveraging access to the $ICINGA2_… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2017-16933 2024-11-21 12:17 2017-11-24 Show GitHub Exploit DB Packet Storm
254490 7.5 HIGH
Network
xmlsoft libxml2 parser.c in libxml2 before 2.9.5 does not prevent infinite recursion in parameter entities. CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2017-16932 2024-11-21 12:17 2017-11-24 Show GitHub Exploit DB Packet Storm