Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
255081 5 警告 オラクル - BEA Product Suite の WebLogic Server コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0068 2010-02-15 19:32 2010-01-12 Show GitHub Exploit DB Packet Storm
255082 4.3 警告 オラクル - Oracle Application Server の J2EE コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0070 2010-02-15 19:31 2010-01-12 Show GitHub Exploit DB Packet Storm
255083 5 警告 オラクル - Oracle Application Server の J2EE コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0067 2010-02-15 19:31 2010-01-12 Show GitHub Exploit DB Packet Storm
255084 5 警告 オラクル - Oracle Application Server の Access Manager Identity Server コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0066 2010-02-15 19:31 2010-01-12 Show GitHub Exploit DB Packet Storm
255085 7.8 危険 サイバートラスト株式会社
Linux
レッドハット
- Linux kernel の e1000_clean_rx_irq 関数における整数アンダーフローの脆弱性 CWE-189
数値処理の問題
CVE-2009-1385 2010-02-15 11:03 2009-06-4 Show GitHub Exploit DB Packet Storm
255086 4.6 警告 サイバートラスト株式会社
Todd C. Miller
- sudo の Perl スクリプト実行時における権限昇格の脆弱性 - CVE-2005-4158 2010-02-15 11:03 2005-11-8 Show GitHub Exploit DB Packet Storm
255087 1 注意 オラクル - Oracle Database および Oracle Application Server の Unzip コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-3412 2010-02-12 12:22 2010-01-12 Show GitHub Exploit DB Packet Storm
255088 3.2 注意 オラクル - Oracle Database の Oracle Spatial コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-3413 2010-02-12 12:22 2010-01-12 Show GitHub Exploit DB Packet Storm
255089 3.6 注意 オラクル - Oracle Database の RDBMS コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-3410 2010-02-12 12:21 2010-01-12 Show GitHub Exploit DB Packet Storm
255090 4 警告 オラクル - Oracle Database の Logical Standby コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-1996 2010-02-12 12:21 2010-01-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 13, 2026, 5:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
249001 5.4 MEDIUM
Network
cambiumnetworks epmp_1000_firmware
epmp_2000_firmware
In version 3.5 and prior of Cambium Networks ePMP firmware, an attacker who knows (or guesses) the SNMP read/write (RW) community string can insert XSS strings in certain SNMP OIDs which will execute… CWE-79
Cross-site Scripting
CVE-2017-5257 2024-11-21 12:27 2017-12-21 Show GitHub Exploit DB Packet Storm
249002 8.8 HIGH
Network
cambiumnetworks cnpilot_r190v_firmware
cnpilot_e410_firmware
cnpilot_r190n_firmware
cnpilot_e400_firmware
cnpilot_e600_firmware
In versions 4.3.2-R4 and prior of Cambium Networks cnPilot firmware, although the option to access the configuration file is not available in the normal web administrative console for the 'user' acco… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2017-5260 2024-11-21 12:27 2017-12-21 Show GitHub Exploit DB Packet Storm
249003 5.4 MEDIUM
Network
cambiumnetworks epmp_1000_firmware
epmp_2000_firmware
In version 3.5 and prior of Cambium Networks ePMP firmware, all authenticated users have the ability to update the Device Name and System Description fields in the web administration console, and tho… CWE-79
Cross-site Scripting
CVE-2017-5256 2024-11-21 12:27 2017-12-21 Show GitHub Exploit DB Packet Storm
249004 8.8 HIGH
Network
cambiumnetworks epmp_1000_firmware
epmp_2000_firmware
In version 3.5 and prior of Cambium Networks ePMP firmware, a lack of input sanitation for certain parameters on the web management console allows any authenticated user (including the otherwise low-… CWE-78
OS Command 
CVE-2017-5255 2024-11-21 12:27 2017-12-21 Show GitHub Exploit DB Packet Storm
249005 8.8 HIGH
Network
cambiumnetworks epmp_1000_firmware
epmp_2000_firmware
In version 3.5 and prior of Cambium Networks ePMP firmware, the non-administrative users 'installer' and 'home' have the capability of changing passwords for other accounts, including admin, after di… CWE-269
 Improper Privilege Management
CVE-2017-5254 2024-11-21 12:27 2017-12-21 Show GitHub Exploit DB Packet Storm
249006 8.8 HIGH
Network
rapid7 nexpose Versions of Nexpose prior to 6.4.66 fail to adequately validate the source of HTTP requests intended for the Automated Actions administrative web application, and are susceptible to a cross-site requ… CWE-352
 Origin Validation Error
CVE-2017-5264 2024-11-21 12:27 2017-12-15 Show GitHub Exploit DB Packet Storm
249007 8.8 HIGH
Network
tibco tibbr The tibbr user profiles components of tibbr Community, and tibbr Enterprise expose a weakness in an improperly sandboxed third-party component. Affected releases are TIBCO Software Inc. tibbr Communi… NVD-CWE-noinfo
CVE-2017-5534 2024-11-21 12:27 2017-12-13 Show GitHub Exploit DB Packet Storm
249008 8.1 HIGH
Network
tibco tibbr The tibbr web server components of tibbr Community, and tibbr Enterprise contain SAML protocol handling errors which may allow authorized users to impersonate other users, and therefore escalate thei… NVD-CWE-noinfo
CVE-2017-5530 2024-11-21 12:27 2017-12-13 Show GitHub Exploit DB Packet Storm
249009 9.8 CRITICAL
Network
tibco jasperreports_server
jaspersoft
jaspersoft_reporting_and_analytics
A vulnerability in the server content cache of TIBCO JasperReports Server, TIBCO JasperReports Server Community Edition, TIBCO JasperReports Server for ActiveMatrix BPM, TIBCO Jaspersoft for AWS with… NVD-CWE-noinfo
CVE-2017-5533 2024-11-21 12:27 2017-11-16 Show GitHub Exploit DB Packet Storm
249010 5.4 MEDIUM
Network
tibco jasperreports_server
jasperreports_library
jaspersoft
jaspersoft_reporting_and_analytics
jaspersoft_studio
A vulnerability in the report renderer component of TIBCO JasperReports Server, TIBCO JasperReports Server Community Edition, TIBCO JasperReports Server for ActiveMatrix BPM, TIBCO JasperReports Libr… CWE-79
Cross-site Scripting
CVE-2017-5532 2024-11-21 12:27 2017-11-16 Show GitHub Exploit DB Packet Storm