Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 22, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
256251 9.3 危険 マイクロソフト - Microsoft Windows の Windows Mail および Windows Meeting Space における権限昇格の脆弱性 CWE-Other
その他
CVE-2011-2016 2011-11-14 11:24 2011-11-8 Show GitHub Exploit DB Packet Storm
256252 9 危険 マイクロソフト - Microsoft Windows の LDAP over SSL 実装における証明書の制限を回避される脆弱性 CWE-287
不適切な認証
CVE-2011-2014 2011-11-14 11:22 2011-11-8 Show GitHub Exploit DB Packet Storm
256253 10 危険 マイクロソフト - Microsoft Windows の TCP/IP 実装における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2011-2013 2011-11-14 11:21 2011-11-8 Show GitHub Exploit DB Packet Storm
256254 7.1 危険 マイクロソフト - Microsoft Windows の win32k.sys におけるにおけるサービス運用妨害 (リブート) の脆弱性 CWE-20
不適切な入力確認
CVE-2011-2004 2011-11-14 11:19 2011-11-8 Show GitHub Exploit DB Packet Storm
256255 6.8 警告 Stichting NLnet Labs - ldns の ldns_rr_new_frm_str_internal 関数におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-3581 2011-11-11 11:21 2011-08-24 Show GitHub Exploit DB Packet Storm
256256 5 警告 ヒューレット・パッカード - HP OpenVMS の SMTP 実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2011-3169 2011-11-11 11:19 2011-11-3 Show GitHub Exploit DB Packet Storm
256257 5 警告 ヒューレット・パッカード - HP OpenVMS の POP および IMAP 実装における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2011-3168 2011-11-11 11:18 2011-11-3 Show GitHub Exploit DB Packet Storm
256258 9.3 危険 Investintech.com Inc. - Investintech.com Absolute PDF Server におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2011-4223 2011-11-10 16:40 2011-11-1 Show GitHub Exploit DB Packet Storm
256259 9.3 危険 Investintech.com Inc. - Investintech.com Able2Extract および Able2Extract Server におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2011-4222 2011-11-10 16:39 2011-11-1 Show GitHub Exploit DB Packet Storm
256260 9.3 危険 Investintech.com Inc. - Investintech.com の SlimPDF Reader におけるサービス運用妨害 (DoS) の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-4220 2011-11-10 16:33 2011-11-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 22, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
246171 9.8 CRITICAL
Network
control-webpanel webpanel CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.480 has Command Injection via shell metacharacters in the admin/index.php service_start, service_restart, service_fullstatus, or service_stop para… CWE-78
OS Command 
CVE-2018-18322 2024-11-21 12:55 2018-10-15 Show GitHub Exploit DB Packet Storm
246172 7.5 HIGH
Network
qiku 360_mobile_phone_n6_pro_firmware The /dev/block/mmcblk0rpmb driver kernel module on Qiku 360 Phone N6 Pro 1801-A01 devices allows attackers to cause a denial of service (NULL pointer dereference and device crash) via a crafted 0xc0d… CWE-476
 NULL Pointer Dereference
CVE-2018-18318 2024-11-21 12:55 2018-10-15 Show GitHub Exploit DB Packet Storm
246173 8.8 HIGH
Network
dscms_project dscms DESHANG DSCMS 1.1 has CSRF via the public/index.php/admin/admin/add.html URI. CWE-352
 Origin Validation Error
CVE-2018-18317 2024-11-21 12:55 2018-10-15 Show GitHub Exploit DB Packet Storm
246174 8.8 HIGH
Network
emlog emlog emlog v6.0.0 has CSRF via the admin/user.php?action=new URI. CWE-352
 Origin Validation Error
CVE-2018-18316 2024-11-21 12:55 2018-10-15 Show GitHub Exploit DB Packet Storm
246175 7.5 HIGH
Network
mossle lemon com/mossle/cdn/CdnController.java in lemon 1.9.0 allows attackers to upload arbitrary files because the copyMultipartFileToFile method in CdnUtils only checks for a ../ substring, and does not valida… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2018-18315 2024-11-21 12:55 2018-10-15 Show GitHub Exploit DB Packet Storm
246176 5.5 MEDIUM
Local
elfutils_project
debian
redhat
opensuse
canonical
elfutils
debian_linux
enterprise_linux_desktop
enterprise_linux_workstation
enterprise_linux_server
leap
ubuntu_linux
An invalid memory address dereference was discovered in dwfl_segment_report_module.c in libdwfl in elfutils through v0.174. The vulnerability allows attackers to cause a denial of service (applicatio… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2018-18310 2024-11-21 12:55 2018-10-15 Show GitHub Exploit DB Packet Storm
246177 5.5 MEDIUM
Local
gnu binutils An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.31. An invalid memory address dereference was discovered in read_reloc in reloc.c. T… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2018-18309 2024-11-21 12:55 2018-10-15 Show GitHub Exploit DB Packet Storm
246178 6.1 MEDIUM
Network
metinfo metinfo MetInfo 6.1.2 has XSS via the /admin/index.php bigclass parameter in an n=column&a=doadd action. CWE-79
Cross-site Scripting
CVE-2018-18296 2024-11-21 12:55 2018-10-15 Show GitHub Exploit DB Packet Storm
246179 6.1 MEDIUM
Network
asus rt-ac58u_firmware A cross site scripting (XSS) vulnerability on ASUS RT-AC58U 3.0.0.4.380_6516 devices allows remote attackers to inject arbitrary web script or HTML via Advanced_ASUSDDNS_Content.asp, Advanced_WSecuri… CWE-79
Cross-site Scripting
CVE-2018-18291 2024-11-21 12:55 2018-10-15 Show GitHub Exploit DB Packet Storm
246180 4.8 MEDIUM
Network
nconsulting nc-cms An issue was discovered in nc-cms through 2017-03-10. index.php?action=edit_html&name=home_content allows XSS via the HTML Source Editor. NOTE: the vendor disputes this because the form requires admi… CWE-79
Cross-site Scripting
CVE-2018-18290 2024-11-21 12:55 2018-10-15 Show GitHub Exploit DB Packet Storm