Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 13, 2026, 12:06 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
255031 9.3 危険 VMware - 複数の VMware 製品の VMnc media コーデックにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-0199 2010-03-24 12:22 2009-09-4 Show GitHub Exploit DB Packet Storm
255032 5 警告 VMware - VMware Studio の Web インターフェースにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-2968 2010-03-24 12:22 2009-08-31 Show GitHub Exploit DB Packet Storm
255033 4 警告 VMware - 複数の VMware 製品の Descheduled Time Accounting ドライバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2009-1805 2010-03-24 12:22 2009-05-28 Show GitHub Exploit DB Packet Storm
255034 6.8 警告 VMware - 複数の VMware 製品の仮想マシン表示機能における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2009-1244 2010-03-24 12:21 2009-04-10 Show GitHub Exploit DB Packet Storm
255035 7.2 危険 VMware - 複数の VMware 製品の仮想マシン通信インターフェイスにおける権限昇格の脆弱性 CWE-noinfo
情報不足
CVE-2009-1147 2010-03-24 12:21 2009-04-3 Show GitHub Exploit DB Packet Storm
255036 4.9 警告 VMware - 複数の VMware 製品の ioctl におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2009-1146 2010-03-23 14:11 2010-04-3 Show GitHub Exploit DB Packet Storm
255037 6.8 警告 VMware - 複数の VMware 製品の VNnc コーデックにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-0910 2010-03-23 14:11 2010-04-3 Show GitHub Exploit DB Packet Storm
255038 9.3 危険 VMware - 複数の VMware 製品の VNnc コーデックにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-0909 2010-03-23 14:10 2010-04-3 Show GitHub Exploit DB Packet Storm
255039 6.4 警告 VMware - VMware ACE の ACE 共有フォルダ実装における無効にされた共有フォルダを有効にされる脆弱性 CWE-noinfo
情報不足
CVE-2009-0908 2010-03-23 14:10 2010-04-3 Show GitHub Exploit DB Packet Storm
255040 2.1 注意 VMware - 複数の VMware 製品の VI Client におけるパスワードを取得される脆弱性 CWE-200
情報漏えい
CVE-2009-0518 2010-03-23 14:10 2010-04-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 13, 2026, 5:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
257371 8.2 HIGH
Local
ucopia ucopia_wireless_appliance The chroothole_client executable in UCOPIA Wireless Appliance before 5.1.8 allows remote attackers to gain root privileges via a dollar sign ($) metacharacter in the argument to chroothole_client. CWE-78
OS Command 
CVE-2017-11322 2024-11-21 12:07 2017-10-3 Show GitHub Exploit DB Packet Storm
257372 7.2 HIGH
Network
ucopia wireless_appliance The restricted shell interface in UCOPIA Wireless Appliance before 5.1.8 allows remote authenticated users to gain 'admin' privileges via shell metacharacters in the less command. CWE-78
OS Command 
CVE-2017-11321 2024-11-21 12:07 2017-10-3 Show GitHub Exploit DB Packet Storm
257373 6.1 MEDIUM
Network
elasticsearch
elastic
kibana Kibana versions prior to 5.6.1 had a cross-site scripting (XSS) vulnerability in Timelion that could allow an attacker to obtain sensitive information from or perform destructive actions on behalf of… CWE-79
Cross-site Scripting
CVE-2017-11479 2024-11-21 12:07 2017-09-29 Show GitHub Exploit DB Packet Storm
257374 8.8 HIGH
Network
freeipa freeipa FreeIPA 4.x with API version 2.213 allows a remote authenticated users to bypass intended account-locking restrictions via an unlock action with an old session ID (for the same user account) that had… CWE-384
 Session Fixation
CVE-2017-11191 2024-11-21 12:07 2017-09-28 Show GitHub Exploit DB Packet Storm
257375 9.8 CRITICAL
Network
broadcom
apple
bcm4355c0_firmware
iphone_os
tvos
On Broadcom BCM4355C0 Wi-Fi chips 9.44.78.27.0.1.56 and other chips, properly crafted malicious over-the-air Fast Transition frames can potentially trigger internal Wi-Fi firmware heap and/or stack o… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-11121 2024-11-21 12:07 2017-09-28 Show GitHub Exploit DB Packet Storm
257376 9.8 CRITICAL
Network
broadcom
apple
bcm4355c0_firmware
iphone_os
tvos
On Broadcom BCM4355C0 Wi-Fi chips 9.44.78.27.0.1.56 and other chips, an attacker can craft a malformed RRM neighbor report frame to trigger an internal buffer overflow in the Wi-Fi firmware, aka B-V2… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-11120 2024-11-21 12:07 2017-09-28 Show GitHub Exploit DB Packet Storm
257377 7.2 HIGH
Network
trendmicro interscan_web_security_virtual_appliance Vulnerability issues with the web service inspection of input parameters in Trend Micro Web Security Virtual Appliance 6.5 may allow potential attackers who already have administration rights to the … NVD-CWE-noinfo
CVE-2017-11396 2024-11-21 12:07 2017-09-23 Show GitHub Exploit DB Packet Storm
257378 8.8 HIGH
Network
trendmicro smart_protection_server Command injection vulnerability in Trend Micro Smart Protection Server (Standalone) 3.1 and 3.2 server administration UI allows attackers with authenticated access to execute arbitrary code on vulner… CWE-78
OS Command 
CVE-2017-11395 2024-11-21 12:07 2017-09-23 Show GitHub Exploit DB Packet Storm
257379 9.8 CRITICAL
Network
mit
fedoraproject
kerberos_5
fedora
Double free vulnerability in MIT Kerberos 5 (aka krb5) allows attackers to have unspecified impact via vectors involving automatic deletion of security contexts on error. CWE-415
 Double Free
CVE-2017-11462 2024-11-21 12:07 2017-09-14 Show GitHub Exploit DB Packet Storm
257380 9.8 CRITICAL
Network
axesstel mu553s_firmware Axesstel MU553S MU55XS-V1.14 devices have a default password of admin for the admin account. CWE-798
 Use of Hard-coded Credentials
CVE-2017-11351 2024-11-21 12:07 2017-09-13 Show GitHub Exploit DB Packet Storm