Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
255121 9.3 危険 アドビシステムズ
レッドハット
- Adobe Reader および Acrobat における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2011-0563 2011-03-8 12:36 2011-02-8 Show GitHub Exploit DB Packet Storm
255122 6.9 警告 アドビシステムズ
レッドハット
- Adobe Reader および Acrobat における権限昇格の脆弱性 CWE-Other
その他
CVE-2011-0562 2011-03-8 12:36 2011-02-8 Show GitHub Exploit DB Packet Storm
255123 6.4 警告 マイクロソフト - 複数の Microsoft 製品の Kerberos 実装における権限昇格の脆弱性 CWE-287
不適切な認証
CVE-2011-0091 2011-03-7 15:08 2011-02-8 Show GitHub Exploit DB Packet Storm
255124 7.2 危険 マイクロソフト - 複数の Microsoft 製品の Kerberos 実装における権限昇格の脆弱性 CWE-310
暗号の問題
CVE-2011-0043 2011-03-7 15:05 2011-02-8 Show GitHub Exploit DB Packet Storm
255125 7.2 危険 マイクロソフト - 複数の Microsoft 製品の win32k.sys における権限昇格の脆弱性 CWE-20
不適切な入力確認
CVE-2011-0090 2011-03-7 15:03 2011-02-8 Show GitHub Exploit DB Packet Storm
255126 7.2 危険 マイクロソフト - 複数の Microsoft 製品の win32k.sys における権限昇格の脆弱性 CWE-20
不適切な入力確認
CVE-2011-0089 2011-03-7 15:00 2011-02-8 Show GitHub Exploit DB Packet Storm
255127 7.2 危険 マイクロソフト - 複数の Microsoft 製品の win32k.sys における権限昇格の脆弱性 CWE-20
不適切な入力確認
CVE-2011-0088 2011-03-7 14:57 2011-02-8 Show GitHub Exploit DB Packet Storm
255128 7.2 危険 マイクロソフト - 複数の Microsoft 製品の win32k.sys における権限昇格の脆弱性 CWE-20
不適切な入力確認
CVE-2011-0087 2011-03-7 14:54 2011-02-8 Show GitHub Exploit DB Packet Storm
255129 7.2 危険 マイクロソフト - 複数の Microsoft 製品の win32k.sys における権限昇格の脆弱性 CWE-20
不適切な入力確認
CVE-2011-0086 2011-03-7 14:52 2011-02-8 Show GitHub Exploit DB Packet Storm
255130 7.2 危険 マイクロソフト - Microsoft Windows XP の Trace Events 機能における権限昇格の脆弱性 CWE-119
バッファエラー
CVE-2011-0045 2011-03-7 14:49 2011-02-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 29, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
246671 9.8 CRITICAL
Network
quest kace_system_management_appliance The 'reportID' parameter received by the '/common/run_report.php' script in the Quest KACE System Management Appliance 8.0.318 is not sanitized, leading to SQL injection (in particular, an error-base… CWE-89
SQL Injection
CVE-2018-11140 2024-11-21 12:42 2018-06-1 Show GitHub Exploit DB Packet Storm
246672 8.8 HIGH
Network
quest kace_system_management_appliance The '/common/ajax_email_connection_test.php' script in the Quest KACE System Management Appliance 8.0.318 is accessible by any authenticated user and can be abused to execute arbitrary commands on th… CWE-78
OS Command 
CVE-2018-11139 2024-11-21 12:42 2018-06-1 Show GitHub Exploit DB Packet Storm
246673 9.8 CRITICAL
Network
quest kace_system_management_appliance The '/common/download_agent_installer.php' script in the Quest KACE System Management Appliance 8.0.318 is accessible by anonymous users and can be abused to execute arbitrary commands on the system. CWE-78
OS Command 
CVE-2018-11138 2024-11-21 12:42 2018-06-1 Show GitHub Exploit DB Packet Storm
246674 6.5 MEDIUM
Network
quest kace_system_management_appliance The 'checksum' parameter of the '/common/download_attachment.php' script in the Quest KACE System Management Appliance 8.0.318 can be abused to read arbitrary files with 'www' privileges via Director… CWE-22
Path Traversal
CVE-2018-11137 2024-11-21 12:42 2018-06-1 Show GitHub Exploit DB Packet Storm
246675 9.8 CRITICAL
Network
quest kace_system_management_appliance The 'orgID' parameter received by the '/common/download_agent_installer.php' script in the Quest KACE System Management Appliance 8.0.318 is not sanitized, leading to SQL injection (in particular, a … CWE-89
SQL Injection
CVE-2018-11136 2024-11-21 12:42 2018-06-1 Show GitHub Exploit DB Packet Storm
246676 8.8 HIGH
Network
quest kace_system_management_appliance The script '/adminui/error_details.php' in the Quest KACE System Management Appliance 8.0.318 allows authenticated users to conduct PHP object injection attacks. CWE-1321
 Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
CVE-2018-11135 2024-11-21 12:42 2018-06-1 Show GitHub Exploit DB Packet Storm
246677 8.8 HIGH
Network
quest kace_system_management_appliance In order to perform actions that requires higher privileges, the Quest KACE System Management Appliance 8.0.318 relies on a message queue managed that runs with root privileges and only allows a set … CWE-640
 Weak Password Recovery Mechanism for Forgotten Password
CVE-2018-11134 2024-11-21 12:42 2018-06-1 Show GitHub Exploit DB Packet Storm
246678 6.1 MEDIUM
Network
quest kace_system_management_appliance The 'fmt' parameter of the '/common/run_cross_report.php' script in the the Quest KACE System Management Appliance 8.0.318 is vulnerable to cross-site scripting. CWE-79
Cross-site Scripting
CVE-2018-11133 2024-11-21 12:42 2018-06-1 Show GitHub Exploit DB Packet Storm
246679 8.8 HIGH
Network
quest kace_system_management_appliance In order to perform actions that require higher privileges, the Quest KACE System Management Appliance 8.0.318 relies on a message queue that runs daemonized with root privileges and only allows a se… CWE-78
OS Command 
CVE-2018-11132 2024-11-21 12:42 2018-06-1 Show GitHub Exploit DB Packet Storm
246680 8.8 HIGH
Network
bitmain antminer_d3_firmware
antminer_l3\+_firmware
antminer_s9_firmware
Bitmain Antminer D3, L3+, and S9 devices allow Remote Command Execution via the system restore function. NVD-CWE-noinfo
CVE-2018-11220 2024-11-21 12:42 2018-06-1 Show GitHub Exploit DB Packet Storm