Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 25, 2026, 12:07 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
256371 6.4 警告 OpenSSL Project - OpenSSL の EVP_PKEY_verify_recover 関数における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-1633 2010-06-15 18:26 2010-06-1 Show GitHub Exploit DB Packet Storm
256372 3.6 注意 レッドハット - RHEL の yum-rhn-plugin における Red Hat Network プロファイルを閲覧される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-1439 2010-06-15 18:25 2010-06-1 Show GitHub Exploit DB Packet Storm
256373 9.3 危険 アドビシステムズ - Adobe Photoshop CS4 におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-1296 2010-06-15 18:25 2010-05-26 Show GitHub Exploit DB Packet Storm
256374 5 警告 日立 - Groupmax World Wide Web Desktop におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
- 2010-06-14 16:24 2010-05-26 Show GitHub Exploit DB Packet Storm
256375 4.3 警告 日立 - Hitachi Web Server の SSL クライアント認証における CRL 失効確認不可の脆弱性 CWE-287
不適切な認証
- 2010-06-14 16:24 2010-05-17 Show GitHub Exploit DB Packet Storm
256376 5 警告 日立 - TP1/Message Control におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
- 2010-06-14 16:23 2010-05-17 Show GitHub Exploit DB Packet Storm
256377 10 危険 日立
CA Technologies
- CA XOsoft におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-1223 2010-06-14 16:23 2010-04-6 Show GitHub Exploit DB Packet Storm
256378 5 警告 日立
CA Technologies
- CA XOsoft における重要な情報を取得される脆弱性 CWE-287
不適切な認証
CVE-2010-1222 2010-06-14 16:23 2010-04-6 Show GitHub Exploit DB Packet Storm
256379 5 警告 日立
CA Technologies
- CA XOsoft におけるユーザ名を列挙される脆弱性 CWE-287
不適切な認証
CVE-2010-1221 2010-06-14 16:23 2010-04-6 Show GitHub Exploit DB Packet Storm
256380 6.8 警告 フェンリル株式会社 - ActiveGeckoBrowser における複数の脆弱性 CWE-Other
その他
CVE-2010-2420 2010-06-14 12:01 2010-06-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 25, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
251091 6.2 MEDIUM
Local
sendquick entera_sms_gateway_firmware
avera_sms_gateway_firmware
An issue was discovered on SendQuick Entera and Avera devices before 2HF16. An attacker could request and download the SMS logs from an unauthenticated perspective. CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2017-5137 2024-11-21 12:27 2017-02-6 Show GitHub Exploit DB Packet Storm
251092 7.5 HIGH
Network
sendquick entera_sms_gateway_firmware
avera_sms_gateway_firmware
An issue was discovered on SendQuick Entera and Avera devices before 2HF16. The application failed to check the access control of the request which could result in an attacker being able to shutdown … CWE-862
 Missing Authorization
CVE-2017-5136 2024-11-21 12:27 2017-02-6 Show GitHub Exploit DB Packet Storm
251093 9.8 CRITICAL
Network
netapp oncommand_insight The Data Warehouse component in NetApp OnCommand Insight before 7.2.3 allows remote attackers to obtain administrative access by leveraging a default privileged account. CWE-798
 Use of Hard-coded Credentials
CVE-2017-5600 2024-11-21 12:27 2017-02-3 Show GitHub Exploit DB Packet Storm
251094 9.8 CRITICAL
Network
sagecrm sagecrm An issue was discovered in SageCRM 7.x before 7.3 SP3. The Component Manager functionality, provided by SageCRM, permits additional components to be added to the application to enhance provided funct… CWE-22
Path Traversal
CVE-2017-5219 2024-11-21 12:27 2017-02-2 Show GitHub Exploit DB Packet Storm
251095 8.8 HIGH
Network
sagecrm sagecrm A SQL Injection issue was discovered in SageCRM 7.x before 7.3 SP3. The AP_DocumentUI.asp web resource includes Utilityfuncs.js when the file is opened or viewed. This file crafts a SQL statement to … CWE-89
SQL Injection
CVE-2017-5218 2024-11-21 12:27 2017-02-2 Show GitHub Exploit DB Packet Storm
251096 4.9 MEDIUM
Network
citrix xenserver An issue was discovered in Linux Foundation xapi in Citrix XenServer through 7.0. An authenticated read-only administrator can cancel tasks of other administrators. NVD-CWE-noinfo
CVE-2017-5573 2024-11-21 12:27 2017-01-31 Show GitHub Exploit DB Packet Storm
251097 6.5 MEDIUM
Network
citrix xenserver An issue was discovered in Linux Foundation xapi in Citrix XenServer through 7.0. An authenticated read-only administrator can corrupt the host database. CWE-269
 Improper Privilege Management
CVE-2017-5572 2024-11-21 12:27 2017-01-31 Show GitHub Exploit DB Packet Storm
251098 6.1 MEDIUM
Network
piwigo piwigo Cross-site scripting (XSS) vulnerability in the image upload function in Piwigo before 2.8.6 allows remote attackers to inject arbitrary web script or HTML via a crafted image filename. CWE-79
Cross-site Scripting
CVE-2017-5608 2024-11-21 12:27 2017-01-29 Show GitHub Exploit DB Packet Storm
251099 9.8 CRITICAL
Network
tcpdump tcpdump The ISO CLNS parser in tcpdump before 4.9.0 has a buffer overflow in print-isoclns.c:clnp_print(). CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-5486 2024-11-21 12:27 2017-01-28 Show GitHub Exploit DB Packet Storm
251100 9.8 CRITICAL
Network
tcpdump tcpdump The ISO CLNS parser in tcpdump before 4.9.0 has a buffer overflow in addrtoname.c:lookup_nsap(). CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-5485 2024-11-21 12:27 2017-01-28 Show GitHub Exploit DB Packet Storm