Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
255811 4.3 警告 リアルネットワークス - RealNetworks RealPlayer の複数のコンポーネントにおける RealOneActiveXObject プロセスにコードを挿入される脆弱性 CWE-20
不適切な入力確認
CVE-2010-4388 2011-01-11 14:31 2010-12-10 Show GitHub Exploit DB Packet Storm
255812 9.3 危険 リアルネットワークス - RealNetworks RealPlayer の RealAudio コーデックにおける任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2010-4387 2011-01-11 14:30 2010-12-10 Show GitHub Exploit DB Packet Storm
255813 9.3 危険 レッドハット
リアルネットワークス
- RealNetworks RealPlayer の RealMedia における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2010-4386 2011-01-11 14:30 2010-12-10 Show GitHub Exploit DB Packet Storm
255814 9.3 危険 レッドハット
リアルネットワークス
- RealNetworks RealPlayer の SIPR ストリームフレームサイズにおける整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2010-4385 2011-01-11 14:29 2010-12-10 Show GitHub Exploit DB Packet Storm
255815 9.3 危険 レッドハット
リアルネットワークス
- RealNetworks RealPlayer における RA5 ヒープオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-4383 2011-01-11 14:29 2010-12-10 Show GitHub Exploit DB Packet Storm
255816 9.3 危険 レッドハット
リアルネットワークス
- RealNetworks RealPlayer における RealMedia ヒープオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-4382 2011-01-11 14:28 2010-12-10 Show GitHub Exploit DB Packet Storm
255817 9.3 危険 リアルネットワークス - RealNetworks RealPlayer における AAC ヒープオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-4381 2011-01-11 14:28 2010-12-10 Show GitHub Exploit DB Packet Storm
255818 9.3 危険 リアルネットワークス - RealNetworks RealPlayer におけるサウンドヒープオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-4380 2011-01-11 14:27 2010-12-10 Show GitHub Exploit DB Packet Storm
255819 4.3 警告 WEBインベンター - SGX-SP Final および SGX-SP Final NE におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-3926 2011-01-11 14:05 2011-01-11 Show GitHub Exploit DB Packet Storm
255820 2.6 注意 WEBインベンター - Contents-Mall におけるパスワードの取扱いに関する脆弱性 CWE-Other
その他
CVE-2010-3925 2011-01-11 14:04 2011-01-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 4, 2026, 4:17 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
246471 9.8 CRITICAL
Network
gopro gpmf-parser An issue was discovered in gpmf-parser 1.1.2. There is a heap-based buffer over-read in GPMF_parser.c in the function GPMF_Next, related to certain checks for GPMF_KEY_END and nest_level (not conditi… CWE-125
Out-of-bounds Read
CVE-2018-13007 2024-11-21 12:46 2018-06-29 Show GitHub Exploit DB Packet Storm
246472 9.8 CRITICAL
Network
debian
gpac
canonical
debian_linux
gpac
ubuntu_linux
An issue was discovered in MP4Box in GPAC 0.7.1. There is a heap-based buffer over-read in the isomedia/box_dump.c function hdlr_dump. CWE-125
Out-of-bounds Read
CVE-2018-13006 2024-11-21 12:46 2018-06-29 Show GitHub Exploit DB Packet Storm
246473 9.8 CRITICAL
Network
debian
gpac
canonical
debian_linux
gpac
ubuntu_linux
An issue was discovered in MP4Box in GPAC 0.7.1. The function urn_Read in isomedia/box_code_base.c has a heap-based buffer over-read. CWE-125
Out-of-bounds Read
CVE-2018-13005 2024-11-21 12:46 2018-06-29 Show GitHub Exploit DB Packet Storm
246474 6.1 MEDIUM
Network
opentsdb opentsdb An issue was discovered in OpenTSDB 2.3.0. There is XSS in parameter 'type' to the /suggest URI. CWE-79
Cross-site Scripting
CVE-2018-13003 2024-11-21 12:46 2018-06-29 Show GitHub Exploit DB Packet Storm
246475 6.1 MEDIUM
Network
sandoba cp\ An XSS issue was discovered in Sandoba CP:Shop v2016.1. The vulnerability is located in the `admin.php` file of the `./cpshop/` module. Remote attackers are able to inject their own script codes to t… CWE-79
Cross-site Scripting
CVE-2018-13001 2024-11-21 12:46 2018-06-29 Show GitHub Exploit DB Packet Storm
246476 7.5 HIGH
Network
zohocorp manageengine_desktop_central Incorrect Access Control in AgentTrayIconServlet in Zoho ManageEngine Desktop Central 10.0.255 allows attackers to delete certain files on the web server without login by sending a specially crafted … CWE-20
 Improper Input Validation 
CVE-2018-12999 2024-11-21 12:46 2018-06-29 Show GitHub Exploit DB Packet Storm
246477 6.1 MEDIUM
Network
zohocorp manageengine_applications_manager A reflected Cross-site scripting (XSS) vulnerability in Zoho ManageEngine Applications Manager before 13 (Build 13800) allows remote attackers to inject arbitrary web script or HTML via the parameter… CWE-79
Cross-site Scripting
CVE-2018-12996 2024-11-21 12:46 2018-06-29 Show GitHub Exploit DB Packet Storm
246478 4.8 MEDIUM
Network
weblication cms_core_\&_grid An XSS issue was discovered in Inhaltsprojekte in Weblication CMS Core & Grid v12.6.24. The vulnerability is located in the `wFilemanager.php` and `index.php` files of the `/grid5/scripts/` modules. … CWE-79
Cross-site Scripting
CVE-2018-13002 2024-11-21 12:46 2018-06-29 Show GitHub Exploit DB Packet Storm
246479 4.8 MEDIUM
Network
anelectron advanced_electron_forum An XSS issue was discovered in Advanced Electron Forum (AEF) v1.0.9. A persistent XSS vulnerability is located in the `FTP Link` element of the `Private Message` module. The editor of the private mes… CWE-79
Cross-site Scripting
CVE-2018-13000 2024-11-21 12:46 2018-06-29 Show GitHub Exploit DB Packet Storm
246480 6.1 MEDIUM
Network
zohocorp manageengine_netflow_analyzer
firewall_analyzer
manageengine_opmanager
manageengine_oputils
manageengine_network_configuration_manager
A reflected Cross-site scripting (XSS) vulnerability in Zoho ManageEngine Netflow Analyzer before build 123137, Network Configuration Manager before build 123128, OpManager before build 123148, OpUti… CWE-79
Cross-site Scripting
CVE-2018-12998 2024-11-21 12:46 2018-06-29 Show GitHub Exploit DB Packet Storm