Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
257081 6.8 警告 マイクロソフト - Microsoft Windows の kernel の Graphics Device Interface (GDI) における権限を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2009-2513 2010-01-4 15:24 2009-11-10 Show GitHub Exploit DB Packet Storm
257082 6.8 警告 マイクロソフト - Microsoft Windows の kernel における権限を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2009-1127 2010-01-4 15:24 2009-11-10 Show GitHub Exploit DB Packet Storm
257083 10 危険 マイクロソフト - Microsoft Windows の License Logging Server (llssrv.exe) における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2009-2523 2010-01-4 15:24 2009-11-10 Show GitHub Exploit DB Packet Storm
257084 9.3 危険 マイクロソフト - Microsoft Windows の Web Services on Devices API (WSDAPI) における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2009-2512 2010-01-4 15:23 2009-11-10 Show GitHub Exploit DB Packet Storm
257085 10 危険 アップル
VMware
サン・マイクロシステムズ
- Sun Java SE の Provider クラスにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2009-2722 2010-01-4 14:56 2009-08-10 Show GitHub Exploit DB Packet Storm
257086 10 危険 アップル
VMware
サン・マイクロシステムズ
- Sun Java SE の Provider クラスにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2009-2723 2010-01-4 14:55 2009-08-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
247171 6.1 MEDIUM
Network
cybozu mailwise Stored cross-site scripting vulnerability in Cybozu Mailwise 5.0.0 to 5.4.1 allows remote attackers to inject arbitrary web script or HTML 'E-mail Details Screen' via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2018-0557 2024-11-21 12:38 2018-06-26 Show GitHub Exploit DB Packet Storm
247172 4.3 MEDIUM
Network
cybozu office Cybozu Office 10.0.0 to 10.7.0 allows remote attackers to cause a denial of service via unspecified vectors. CWE-20
 Improper Input Validation 
CVE-2018-0529 2024-11-21 12:38 2018-06-26 Show GitHub Exploit DB Packet Storm
247173 4.3 MEDIUM
Network
cybozu office Cybozu Office 10.0.0 to 10.7.0 allows authenticated attackers to bypass authentication to view the schedules that are not permitted to access via unspecified vectors. CWE-287
CWE-200
Improper Authentication
Information Exposure
CVE-2018-0528 2024-11-21 12:38 2018-06-26 Show GitHub Exploit DB Packet Storm
247174 6.1 MEDIUM
Network
cybozu office Cross-site scripting vulnerability in Cybozu Office 10.0.0 to 10.7.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2018-0527 2024-11-21 12:38 2018-06-26 Show GitHub Exploit DB Packet Storm
247175 4.3 MEDIUM
Network
cybozu office Cybozu Office 10.0.0 to 10.7.0 allow remote attackers to display an image located in an external server via unspecified vectors. CWE-200
Information Exposure
CVE-2018-0526 2024-11-21 12:38 2018-06-26 Show GitHub Exploit DB Packet Storm
247176 9.8 CRITICAL
Network
qnap qts Command injection vulnerability in LDAP Server in QNAP QTS 4.2.6 build 20171208, QTS 4.3.3 build 20180402, QTS 4.3.4 build 20180413 and their earlier versions could allow remote attackers to run arbi… CWE-77
Command Injection
CVE-2018-0712 2024-11-21 12:38 2018-06-21 Show GitHub Exploit DB Packet Storm
247177 5.5 MEDIUM
Local
cisco anyconnect_secure_mobility_client A vulnerability in vpnva-6.sys for 32-bit Windows and vpnva64-6.sys for 64-bit Windows of Cisco AnyConnect Secure Mobility Client for Windows Desktop could allow an authenticated, local attacker to c… CWE-20
 Improper Input Validation 
CVE-2018-0373 2024-11-21 12:38 2018-06-21 Show GitHub Exploit DB Packet Storm
247178 6.5 MEDIUM
Network
cisco meeting_server A vulnerability in the Web Admin Interface of Cisco Meeting Server could allow an authenticated, remote attacker to cause a denial of service (DoS) condition. The vulnerability is due to insufficient… CWE-20
 Improper Input Validation 
CVE-2018-0371 2024-11-21 12:38 2018-06-21 Show GitHub Exploit DB Packet Storm
247179 8.8 HIGH
Network
cisco firepower_management_center
firepower_appliance_8360_firmware
firepower_management_center_2500_firmware
firepower_appliance_8120_firmware
firepower_appliance_8260_firmware
firepower_ap…
A vulnerability in the web-based management interface of Cisco Firepower Management Center could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack and pe… CWE-352
 Origin Validation Error
CVE-2018-0365 2024-11-21 12:38 2018-06-21 Show GitHub Exploit DB Packet Storm
247180 8.8 HIGH
Network
cisco unified_communications_domain_manager A vulnerability in the web-based management interface of Cisco Unified Communications Domain Manager could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) att… CWE-352
 Origin Validation Error
CVE-2018-0364 2024-11-21 12:38 2018-06-21 Show GitHub Exploit DB Packet Storm