Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
258221 5 警告 アップル - Apple Mac OS X の AFP Server における共有名を列挙される脆弱性 CWE-DesignError
CVE-2010-1830 2010-11-25 15:17 2010-11-15 Show GitHub Exploit DB Packet Storm
258222 6 警告 アップル - Apple Mac OS X の AFP Server におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-1829 2010-11-25 15:17 2010-11-15 Show GitHub Exploit DB Packet Storm
258223 5 警告 アップル - Apple Mac OS X の AFP Server におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2010-1828 2010-11-25 15:17 2010-11-15 Show GitHub Exploit DB Packet Storm
258224 4.3 警告 アップル - Apple Mac OS X の Time Machine における重要な情報を取得される脆弱性 CWE-DesignError
CVE-2010-1803 2010-11-25 15:16 2010-11-15 Show GitHub Exploit DB Packet Storm
258225 7.5 危険 アップル - Apple Mac OS X の OpenSSL における X.509 証明書の認証を回避される脆弱性 CWE-310
暗号の問題
CVE-2010-1378 2010-11-25 15:15 2010-11-12 Show GitHub Exploit DB Packet Storm
258226 4.9 警告 アップル - Apple Mac OS X の hfs 実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-DesignError
CVE-2010-0105 2010-11-25 15:15 2010-04-27 Show GitHub Exploit DB Packet Storm
258227 9.3 危険 アップル
アドビシステムズ
レッドハット
- Adobe Flash の ActionScript の処理に脆弱性 CWE-94
コード・インジェクション
CVE-2010-0209 2010-11-25 15:14 2010-08-11 Show GitHub Exploit DB Packet Storm
258228 9.3 危険 アップル
アドビシステムズ
ターボリナックス
レッドハット
- Adobe Flash Player および Adobe AIR における任意のコードを実行される脆弱性 CWE-399
CWE-noinfo
CVE-2009-3793 2010-11-25 15:13 2010-06-10 Show GitHub Exploit DB Packet Storm
258229 6.8 警告 アップル
GNU Project
ターボリナックス
サイバートラスト株式会社
レッドハット
- GNU gzip における任意のコードを実行される脆弱性 CWE-189
数値処理の問題
CVE-2010-0001 2010-11-25 15:12 2010-01-29 Show GitHub Exploit DB Packet Storm
258230 2.6 注意 アップル
サン・マイクロシステムズ
Apache Software Foundation
- Apache HTTP Server 用 mod_perl の Status.pm におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-0796 2010-11-25 15:12 2009-04-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 21, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
248671 9.8 CRITICAL
Network
qualcomm mdm9150_firmware
mdm9206_firmware
mdm9607_firmware
mdm9635m_firmware
mdm9650_firmware
mdm9655_firmware
msm8909w_firmware
qcs605_firmware
qm215_firmware
sd_210_firmware
s…
Untrusted header fields in GNSS XTRA3 function can lead to integer overflow in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon W… CWE-190
 Integer Overflow or Wraparound
CVE-2018-13887 2024-11-21 12:48 2019-05-25 Show GitHub Exploit DB Packet Storm
248672 9.8 CRITICAL
Network
qualcomm mdm9150_firmware
mdm9206_firmware
mdm9607_firmware
mdm9615_firmware
mdm9635m_firmware
mdm9640_firmware
mdm9650_firmware
mdm9655_firmware
msm8909w_firmware
msm8996au_firmwar…
Unchecked OTA field in GNSS XTRA3 lead to integer overflow and then buffer overflow in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snap… CWE-190
 Integer Overflow or Wraparound
CVE-2018-13886 2024-11-21 12:48 2019-05-25 Show GitHub Exploit DB Packet Storm
248673 5.5 MEDIUM
Local
qualcomm mdm9150_firmware
mdm9206_firmware
mdm9607_firmware
mdm9615_firmware
mdm9625_firmware
mdm9635m_firmware
mdm9650_firmware
mdm9655_firmware
qcs605_firmware
qm215_firmware
s…
Possible memory overread may be lead to access of sensitive data in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in… CWE-200
Information Exposure
CVE-2018-13885 2024-11-21 12:48 2019-05-25 Show GitHub Exploit DB Packet Storm
248674 7.5 HIGH
Network
phoenixcontact fl_switch_3005_firmware
fl_switch_3005t_firmware
fl_switch_3004t-fx_firmware
fl_switch_3004t-fx_st_firmware
fl_switch_3008_firmware
fl_switch_3008t_firmware
fl_switch_3006t-2fx_firm…
The WebUI of PHOENIX CONTACT FL SWITCH 3xxx, 4xxx, 48xx versions 1.0 to 1.34 is vulnerable to a denial-of-service attack by making more than 120 connections. CWE-400
 Uncontrolled Resource Consumption
CVE-2018-13994 2024-11-21 12:48 2019-05-8 Show GitHub Exploit DB Packet Storm
248675 8.8 HIGH
Network
phoenixcontact fl_switch_3005_firmware
fl_switch_3005t_firmware
fl_switch_3004t-fx_firmware
fl_switch_3004t-fx_st_firmware
fl_switch_3008_firmware
fl_switch_3008t_firmware
fl_switch_3006t-2fx_firm…
The WebUI of PHOENIX CONTACT FL SWITCH 3xxx, 4xxx, 48xx versions 1.0 to 1.34 is prone to CSRF. CWE-352
 Origin Validation Error
CVE-2018-13993 2024-11-21 12:48 2019-05-8 Show GitHub Exploit DB Packet Storm
248676 9.8 CRITICAL
Network
phoenixcontact fl_switch_3005_firmware
fl_switch_3005t_firmware
fl_switch_3004t-fx_firmware
fl_switch_3004t-fx_st_firmware
fl_switch_3008_firmware
fl_switch_3008t_firmware
fl_switch_3006t-2fx_firm…
The WebUI of PHOENIX CONTACT FL SWITCH 3xxx, 4xxx, 48xx versions 1.0 to 1.34 allows for plaintext transmission (HTTP) of user credentials by default. CWE-311
Missing Encryption of Sensitive Data
CVE-2018-13992 2024-11-21 12:48 2019-05-8 Show GitHub Exploit DB Packet Storm
248677 5.3 MEDIUM
Network
phoenixcontact fl_switch_3005_firmware
fl_switch_3005t_firmware
fl_switch_3004t-fx_firmware
fl_switch_3004t-fx_st_firmware
fl_switch_3008_firmware
fl_switch_3008t_firmware
fl_switch_3006t-2fx_firm…
The WebUI of PHOENIX CONTACT FL SWITCH 3xxx, 4xxx, 48xx versions 1.0 to 1.34 leaks private information in firmware images. CWE-200
Information Exposure
CVE-2018-13991 2024-11-21 12:48 2019-05-8 Show GitHub Exploit DB Packet Storm
248678 6.1 MEDIUM
Network
impresscms impresscms ImpressCMS 1.3.10 has XSS via the PATH_INFO to htdocs/install/index.php, htdocs/install/page_langselect.php, or htdocs/install/page_modcheck.php. CWE-79
Cross-site Scripting
CVE-2018-13983 2024-11-21 12:48 2019-05-7 Show GitHub Exploit DB Packet Storm
248679 9.8 CRITICAL
Network
phoenixcontact fl_switch_3005_firmware
fl_switch_3005t_firmware
fl_switch_3004t-fx_firmware
fl_switch_3004t-fx_st_firmware
fl_switch_3008_firmware
fl_switch_3008t_firmware
fl_switch_3006t-2fx_firm…
The WebUI of PHOENIX CONTACT FL SWITCH 3xxx, 4xxx, 48xx versions prior to 1.35 is vulnerable to brute-force attacks, because of Improper Restriction of Excessive Authentication Attempts. CWE-287
Improper Authentication
CVE-2018-13990 2024-11-21 12:48 2019-05-7 Show GitHub Exploit DB Packet Storm
248680 6.5 MEDIUM
Network
siemens cp_1604_firmware
cp_1616_firmware
A vulnerability has been identified in CP 1604 (All versions), CP 1616 (All versions). The integrated configuration web server of the affected CP devices could allow a Cross-Site Request Forgery (CSR… CWE-352
 Origin Validation Error
CVE-2018-13810 2024-11-21 12:48 2019-04-17 Show GitHub Exploit DB Packet Storm