Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 24, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
256161 9.3 危険 マイクロソフト - 複数の Microsoft 製品の Excel ファイルにおける任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2010-0821 2010-07-2 16:23 2010-06-8 Show GitHub Exploit DB Packet Storm
256162 7.2 危険 マイクロソフト - 複数の Microsoft 製品の Windows OpenType Compact Font Format ドライバにおける任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2010-0819 2010-07-1 16:21 2010-06-8 Show GitHub Exploit DB Packet Storm
256163 6.8 警告 マイクロソフト - Microsoft Windows の win32k.sys における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2010-1255 2010-07-1 16:20 2010-06-8 Show GitHub Exploit DB Packet Storm
256164 6.8 警告 マイクロソフト - Microsoft Windows の win32k.sys における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2010-0485 2010-07-1 16:20 2010-06-8 Show GitHub Exploit DB Packet Storm
256165 6.8 警告 マイクロソフト - Microsoft Windows の win32k.sys における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2010-0484 2010-07-1 16:20 2010-06-8 Show GitHub Exploit DB Packet Storm
256166 4.3 警告 マイクロソフト - Microsoft SharePoint Server におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-0817 2010-07-1 16:02 2010-04-29 Show GitHub Exploit DB Packet Storm
256167 9.3 危険 マイクロソフト - Microsoft Windows の Microsoft Data Analyzer ActiveX コントロール における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2010-0252 2010-07-1 16:02 2010-02-9 Show GitHub Exploit DB Packet Storm
256168 9.3 危険 マイクロソフト - Microsoft Internet Explorer におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-0255 2010-07-1 16:01 2010-02-3 Show GitHub Exploit DB Packet Storm
256169 9.3 危険 マイクロソフト - Microsoft Internet Explorer における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2010-1262 2010-06-30 18:53 2010-06-8 Show GitHub Exploit DB Packet Storm
256170 9.3 危険 マイクロソフト - Microsoft Internet Explorer における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2010-1259 2010-06-30 18:53 2010-06-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 24, 2026, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
251251 9.6 CRITICAL
Network
google
redhat
chrome
enterprise_linux_desktop
enterprise_linux_server
enterprise_linux_workstation
An out-of-bounds read in V8 in Google Chrome prior to 57.0.2987.133 for Linux, Windows, and Mac, and 57.0.2987.132 for Android, allowed a remote attacker to execute arbitrary code inside a sandbox vi… CWE-125
Out-of-bounds Read
CVE-2017-5053 2024-11-21 12:26 2017-10-27 Show GitHub Exploit DB Packet Storm
251252 8.8 HIGH
Network
google
redhat
chrome
enterprise_linux_desktop
enterprise_linux_server
enterprise_linux_workstation
An incorrect assumption about block structure in Blink in Google Chrome prior to 57.0.2987.133 for Mac, Windows, and Linux, and 57.0.2987.132 for Android, allowed a remote attacker to potentially exp… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-5052 2024-11-21 12:26 2017-10-27 Show GitHub Exploit DB Packet Storm
251253 7.5 HIGH
Network
lenovo thinkcentre_m710s_firmware
thinkcentre_m710t_firmware
aio_e95_firmware
System boot process is not adequately secured In Lenovo E95 and ThinkCentre M710s/M710t because systems were shipped from factory without completing BIOS/UEFI initialization process. NVD-CWE-noinfo
CVE-2017-3771 2024-11-21 12:26 2017-10-27 Show GitHub Exploit DB Packet Storm
251254 9.8 CRITICAL
Network
lenovo service_framework The Lenovo Service Framework Android application executes some system commands without proper sanitization of external input. In certain cases, this could lead to command injection which, in turn, co… CWE-78
OS Command 
CVE-2017-3761 2024-11-21 12:26 2017-10-18 Show GitHub Exploit DB Packet Storm
251255 8.1 HIGH
Network
lenovo service_framework The Lenovo Service Framework Android application uses a set of nonsecure credentials when performing integrity verification of downloaded applications and/or data. This exposes the application to man… CWE-354
CWE-522
 Improper Validation of Integrity Check Value
 Insufficiently Protected Credentials
CVE-2017-3760 2024-11-21 12:26 2017-10-18 Show GitHub Exploit DB Packet Storm
251256 8.1 HIGH
Network
lenovo service_framework The Lenovo Service Framework Android application accepts some responses from the server without proper validation. This exposes the application to man-in-the-middle attacks leading to possible remote… CWE-20
 Improper Input Validation 
CVE-2017-3759 2024-11-21 12:26 2017-10-18 Show GitHub Exploit DB Packet Storm
251257 9.8 CRITICAL
Network
lenovo service_framework Improper access controls on several Android components in the Lenovo Service Framework application can be exploited to enable remote code execution. NVD-CWE-noinfo
CVE-2017-3758 2024-11-21 12:26 2017-10-18 Show GitHub Exploit DB Packet Storm
251258 8.6 HIGH
Network
cisco firepower_extensible_operating_system
fxos
nx-os
A vulnerability in the authentication, authorization, and accounting (AAA) implementation of Cisco Firepower Extensible Operating System (FXOS) and NX-OS System Software could allow an unauthenticate… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2017-3883 2024-11-21 12:26 2017-10-19 Show GitHub Exploit DB Packet Storm
251259 8.8 HIGH
Network
lenovo xclarity_administrator Privilege escalation vulnerability in LXCA versions earlier than 1.3.2 where an authenticated user may be able to abuse certain web interface functionality to execute privileged commands within the u… NVD-CWE-noinfo
CVE-2017-3770 2024-11-21 12:26 2017-09-22 Show GitHub Exploit DB Packet Storm
251260 6.7 MEDIUM
Local
lenovo xclarity_administrator An attacker who obtains access to the location where the LXCA file system is stored may be able to access credentials of local LXCA accounts in LXCA versions earlier than 1.3.2. NVD-CWE-noinfo
CVE-2017-3763 2024-11-21 12:26 2017-09-22 Show GitHub Exploit DB Packet Storm