Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 12, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
258101 7.5 危険 OpenBSD
FreeBSD
オラクル
NetBSD
- 複数の製品の ftpd におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2008-4247 2010-08-3 19:19 2008-09-25 Show GitHub Exploit DB Packet Storm
258102 7.5 危険 ターボリナックス
MySQL AB
- MySQL で使用される yaSSL における複数のスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-4484 2010-08-3 18:59 2009-12-30 Show GitHub Exploit DB Packet Storm
258103 2.1 注意 オラクル - Oracle Database Server の Export コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0901 2010-08-2 19:32 2010-07-13 Show GitHub Exploit DB Packet Storm
258104 2.6 注意 オラクル - Windows 上で稼働する Oracle Database Server の Network Layer コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0900 2010-08-2 19:32 2010-07-13 Show GitHub Exploit DB Packet Storm
258105 4.3 警告 オラクル - Oracle Database Server の Application Express コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0892 2010-08-2 19:32 2010-07-13 Show GitHub Exploit DB Packet Storm
258106 6 警告 オラクル - Oracle Database Server の Oracle OLAP コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0902 2010-08-2 19:31 2010-07-13 Show GitHub Exploit DB Packet Storm
258107 7.8 危険 オラクル - Windows 上で稼働する Oracle Database Server の Net Foundation Layer コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0903 2010-08-2 19:31 2010-07-13 Show GitHub Exploit DB Packet Storm
258108 7.8 危険 オラクル - Oracle Database Server の Listener コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0911 2010-08-2 19:30 2010-07-13 Show GitHub Exploit DB Packet Storm
258109 5.5 警告 PostgreSQL.org
サイバートラスト株式会社
サン・マイクロシステムズ
レッドハット
- PostgreSQL における任意のパラメータ設定を削除される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-1975 2010-08-2 17:13 2010-05-19 Show GitHub Exploit DB Packet Storm
258110 5 警告 MySQL AB - MySQL の mysql_uninstall_plugin 関数における任意のプラグインを削除される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-1621 2010-08-2 17:13 2010-04-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 12, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
246971 7.8 HIGH
Local
asus zenfone_v_live_firmware
zenfone_3_max_firmware
The ASUS Zenfone V Live Android device with a build fingerprint of asus/VZW_ASUS_A009/ASUS_A009:7.1.1/NMF26F/14.0610.1802.78-20180313:user/release-keys and the Asus ZenFone 3 Max Android device with … NVD-CWE-noinfo
CVE-2018-14993 2024-11-21 12:50 2019-04-26 Show GitHub Exploit DB Packet Storm
246972 9.8 CRITICAL
Network
coolpad
t-mobile
defiant_firmware
revvl_plus_firmware
zte_zmax_pro_firmware
The Coolpad Defiant device with a build fingerprint of Coolpad/cp3632a/cp3632a:7.1.1/NMF26F/099480857:user/release-keys, the ZTE ZMAX Pro with a build fingerprint of ZTE/P895T20/urd:6.0.1/MMB29M/2017… CWE-20
 Improper Input Validation 
CVE-2018-14991 2024-11-21 12:50 2019-04-26 Show GitHub Exploit DB Packet Storm
246973 7.5 HIGH
Network
coolpad
t-mobile
defiant_firmware
revvl_plus_firmware
zte_zmax_pro_firmware
The Coolpad Defiant device with a build fingerprint of Coolpad/cp3632a/cp3632a:7.1.1/NMF26F/099480857:user/release-keys, the ZTE ZMAX Pro with a build fingerprint of ZTE/P895T20/urd:6.0.1/MMB29M/2017… CWE-20
 Improper Input Validation 
CVE-2018-14990 2024-11-21 12:50 2019-04-26 Show GitHub Exploit DB Packet Storm
246974 7.5 HIGH
Network
plum-mobile compass_firmware The Plum Compass Android device with a build fingerprint of PLUM/c179_hwf_221/c179_hwf_221:6.0/MRA58K/W16.51.5-22:user/release-keys contains a pre-installed platform app with a package name of com.an… CWE-20
 Improper Input Validation 
CVE-2018-14989 2024-11-21 12:50 2019-04-26 Show GitHub Exploit DB Packet Storm
246975 5.5 MEDIUM
Local
sony xperia_l1_firmware The Sony Xperia L1 Android device with a build fingerprint of Sony/G3313/G3313:7.0/43.0.A.6.49/2867558199:user/release-keys contains the android framework (i.e., system_server) with a package name of… CWE-20
 Improper Input Validation 
CVE-2018-14983 2024-11-21 12:50 2019-04-26 Show GitHub Exploit DB Packet Storm
246976 7.1 HIGH
Local
asus zenfone_3_max_firmware The ASUS ZenFone 3 Max Android device with a build fingerprint of asus/US_Phone/ASUS_X008_1:7.0/NRD90M/US_Phone-14.14.1711.92-20171208:user/release-keys contains the android framework (i.e., system_s… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2018-14980 2024-11-21 12:50 2019-04-26 Show GitHub Exploit DB Packet Storm
246977 7.8 HIGH
Local
cyberark endpoint_privilege_manager CyberArk Endpoint Privilege Manager 10.2.1.603 and earlier allows an attacker (who is able to edit permissions of a file) to bypass intended access restrictions and execute blocked applications. CWE-269
 Improper Privilege Management
CVE-2018-14894 2024-11-21 12:50 2019-04-10 Show GitHub Exploit DB Packet Storm
246978 6.1 MEDIUM
Network
qasymphony qtest_manager qTest Portal in QASymphony qTest Manager 9.0.0 has an Open Redirect via the /portal/loginform redirect parameter. CWE-601
Open Redirect
CVE-2018-15180 2024-11-21 12:50 2019-04-3 Show GitHub Exploit DB Packet Storm
246979 7.5 HIGH
Network
five9 agent_desktop_plus Five9 Agent Desktop Plus 10.0.70 has Incorrect Access Control allowing a remote attackers to cause a denial of service via opening a connection on port 8083 to a device running the Five9 SoftPhone(is… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2018-15508 2024-11-21 12:50 2019-03-22 Show GitHub Exploit DB Packet Storm
246980 8.1 HIGH
Network
ysoft safeq_server_client YSoft SafeQ Server 6 allows a replay attack. CWE-294
Authentication Bypass by Capture-replay 
CVE-2018-15498 2024-11-21 12:50 2019-03-22 Show GitHub Exploit DB Packet Storm