|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 18, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 256301 | 10 | 危険 | サイバートラスト株式会社 XEmacs |
- | XEmacs の glyphs-eimage.c における整数オーバーフローの脆弱性 |
CWE-189
数値処理の問題 |
CVE-2009-2688 | 2010-01-12 14:48 | 2009-08-5 | Show | GitHub Exploit DB Packet Storm |
| 256302 | 6.8 | 警告 | IBM | - | IBM WebSphere Application Server (WAS) におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2009-2746 | 2010-01-12 14:48 | 2009-11-13 | Show | GitHub Exploit DB Packet Storm |
| 256303 | 5 | 警告 | アップル | - | Apple Safari におけるローカル HTML ファイルを読まれる脆弱性 |
CWE-Other
その他 |
CVE-2009-2842 | 2010-01-7 12:09 | 2009-11-11 | Show | GitHub Exploit DB Packet Storm |
| 256304 | 5.5 | 警告 | シックス・アパート株式会社 | - | Movable Type におけるアクセス制限回避の脆弱性 |
CWE-264
認可・権限・アクセス制御 |
- | 2010-01-6 15:01 | 2010-01-6 | Show | GitHub Exploit DB Packet Storm |
| 256305 | 9.3 | 危険 | マイクロソフト | - | Microsoft Office Word および Open XML File Format Converter における、任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-3135 | 2010-01-6 14:44 | 2009-11-10 | Show | GitHub Exploit DB Packet Storm |
| 256306 | 5 | 警告 | トレンドマイクロ 日本電気 Apache Software Foundation 富士通 サイバートラスト株式会社 サン・マイクロシステムズ ヒューレット・パッカード レッドハット |
- | Apache Tomcat の Apache HTTP Server との組合せによるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2007-0450 | 2010-01-6 14:43 | 2007-03-16 | Show | GitHub Exploit DB Packet Storm |
| 256307 | 9.3 | 危険 | マイクロソフト | - | Microsoft Office Excel および Open XML File Format Converter におけるオブジェクトを含むスプレッドシートの処理に関する任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-3133 | 2010-01-5 16:18 | 2009-11-10 | Show | GitHub Exploit DB Packet Storm |
| 256308 | 9.3 | 危険 | マイクロソフト | - | Microsoft Office Excel および Open XML File Format Converter における BIFF レコードの処理に関する任意のコードを実行される脆弱性 |
CWE-119
バッファエラー |
CVE-2009-3130 | 2010-01-5 16:18 | 2009-11-10 | Show | GitHub Exploit DB Packet Storm |
| 256309 | 9.3 | 危険 | マイクロソフト | - | 複数の Microsoft 製品におけるエクセルファイルのフォーマットの処理に関する任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-3134 | 2010-01-5 16:18 | 2009-11-10 | Show | GitHub Exploit DB Packet Storm |
| 256310 | 9.3 | 危険 | マイクロソフト | - | 複数の Microsoft 製品における計算式を含むスプレッドシートの処理に関する任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-3132 | 2010-01-5 16:18 | 2009-11-10 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 18, 2026, 4:12 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 247561 | 7.8 |
HIGH
Local |
microsoft |
forefront_security malware_protection_engine windows_defender |
The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2017-8538 | 2024-11-21 12:34 | 2017-05-27 | Show | GitHub Exploit DB Packet Storm |
| 247562 | 5.5 |
MEDIUM
Local |
microsoft |
windows_defender forefront_endpoint_protection security_essentials endpoint_protection system_center_endpoint_protection windows_intune_endpoint_protection exchange_server |
The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and… |
CWE-119 CWE-369 CWE-476 CWE-674 Incorrect Access of Indexable Resource ('Range Error') Divide By Zero NULL Pointer Dereference Uncontrolled Recursion |
CVE-2017-8537 | 2024-11-21 12:34 | 2017-05-27 | Show | GitHub Exploit DB Packet Storm |
| 247563 | 5.5 |
MEDIUM
Local |
microsoft |
windows_defender forefront_endpoint_protection security_essentials endpoint_protection system_center_endpoint_protection windows_intune_endpoint_protection exchange_server |
The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and… |
CWE-119 CWE-369 CWE-476 CWE-674 Incorrect Access of Indexable Resource ('Range Error') Divide By Zero NULL Pointer Dereference Uncontrolled Recursion |
CVE-2017-8536 | 2024-11-21 12:34 | 2017-05-27 | Show | GitHub Exploit DB Packet Storm |
| 247564 | 5.5 |
MEDIUM
Local |
microsoft |
windows_defender forefront_endpoint_protection security_essentials endpoint_protection system_center_endpoint_protection windows_intune_endpoint_protection exchange_server |
The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and… |
CWE-119 CWE-369 CWE-476 CWE-674 Incorrect Access of Indexable Resource ('Range Error') Divide By Zero NULL Pointer Dereference Uncontrolled Recursion |
CVE-2017-8535 | 2024-11-21 12:34 | 2017-05-27 | Show | GitHub Exploit DB Packet Storm |
| 247565 | 7.5 |
HIGH
Network |
sap | hana_xs | sinopia, as used in SAP HANA XS 1.00 and 2.00, allows remote attackers to cause a denial of service (assertion failure and service crash) by pushing a package with a filename containing a $ (dollar s… |
CWE-617
Reachable Assertion |
CVE-2017-8915 | 2024-11-21 12:34 | 2017-05-23 | Show | GitHub Exploit DB Packet Storm |
| 247566 | 8.3 |
HIGH
Network |
sap | hana_xs | sinopia, as used in SAP HANA XS 1.00 and 2.00, allows remote attackers to hijack npm packages or host arbitrary files by leveraging an insecure user creation policy, aka SAP Security Note 2407694. |
NVD-CWE-noinfo
|
CVE-2017-8914 | 2024-11-21 12:34 | 2017-05-23 | Show | GitHub Exploit DB Packet Storm |
| 247567 | 8.8 |
HIGH
Network |
sap | netweaver_application_server_java | The Visual Composer VC70RUNTIME component in SAP NetWeaver AS JAVA 7.5 allows remote authenticated users to conduct XML External Entity (XXE) attacks via a crafted XML document in a request to irj/se… |
CWE-611
XXE |
CVE-2017-8913 | 2024-11-21 12:34 | 2017-05-23 | Show | GitHub Exploit DB Packet Storm |
| 247568 | 4.6 |
MEDIUM
Physics |
Facebook WhatsApp Messenger before 2.16.323 for Android uses the SD card for cleartext storage of files (Audio, Documents, Images, Video, and Voice Notes) associated with a chat, even after that chat… |
CWE-311
Missing Encryption of Sensitive Data |
CVE-2017-8769 | 2024-11-21 12:34 | 2017-05-18 | Show | GitHub Exploit DB Packet Storm | ||
| 247569 | 9.8 |
CRITICAL
Network |
joomla | joomla\! | SQL injection vulnerability in Joomla! 3.7.x before 3.7.1 allows attackers to execute arbitrary SQL commands via unspecified vectors. |
CWE-89
SQL Injection |
CVE-2017-8917 | 2024-11-21 12:34 | 2017-05-18 | Show | GitHub Exploit DB Packet Storm |
| 247570 | 7.8 |
HIGH
Local |
smb4k_project debian |
smb4k debian_linux |
smb4k before 2.0.1 allows local users to gain root privileges by leveraging failure to verify arguments to the mount helper DBUS service. |
CWE-20
Improper Input Validation |
CVE-2017-8849 | 2024-11-21 12:34 | 2017-05-17 | Show | GitHub Exploit DB Packet Storm |