Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
258591 7.5 危険 金子 勇 - Winny におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-2360 2010-08-20 12:02 2010-08-20 Show GitHub Exploit DB Packet Storm
258592 5 警告 金子 勇 - Winny におけるノード情報の処理に関する脆弱性 CWE-Other
その他
CVE-2010-2362 2010-08-20 12:01 2010-08-20 Show GitHub Exploit DB Packet Storm
258593 5 警告 金子 勇 - Winny における BBS 情報の処理に関する脆弱性 CWE-Other
その他
CVE-2010-2361 2010-08-20 12:01 2010-08-20 Show GitHub Exploit DB Packet Storm
258594 10 危険 シマンテック
IBM
- Autonomy KeyView Filter SDK の kvolefio.dll における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2009-3032 2010-08-19 18:22 2010-03-5 Show GitHub Exploit DB Packet Storm
258595 5 警告 The PHP Group - PHP の phar 拡張における重要な情報を取得される脆弱性 CWE-134
書式文字列の問題
CVE-2010-2094 2010-08-18 18:26 2010-05-14 Show GitHub Exploit DB Packet Storm
258596 7.5 危険 The PHP Group - PHP の sqlite_single_query および sqlite_array_query 関数における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2010-1868 2010-08-18 18:26 2010-05-7 Show GitHub Exploit DB Packet Storm
258597 7.5 危険 The PHP Group - PHP の dechunk フィルタにおけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2010-1866 2010-08-18 18:26 2010-05-2 Show GitHub Exploit DB Packet Storm
258598 5 警告 The PHP Group - PHP の chunk_split 関数における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2010-1862 2010-08-18 18:25 2010-05-4 Show GitHub Exploit DB Packet Storm
258599 5 警告 The PHP Group - PHP の addcslashes 関数における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2010-1864 2010-08-17 17:37 2010-05-3 Show GitHub Exploit DB Packet Storm
258600 5 警告 The PHP Group - PHP における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2010-2190 2010-08-17 17:36 2010-05-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
246451 5.3 MEDIUM
Network
circontrol circarlife_scada An issue was discovered in CIRCONTROL CirCarLife before 4.3. There is PLC status disclosure due to lack of authentication for /html/devstat.html. CWE-287
Improper Authentication
CVE-2018-16670 2024-11-21 12:53 2018-09-19 Show GitHub Exploit DB Packet Storm
246452 9.8 CRITICAL
Network
circontrol open_charge_point_protocol An issue was discovered in CIRCONTROL Open Charge Point Protocol (OCPP) before 1.5.0, as used in CirCarLife, PowerStudio, and other products. Due to storage of credentials in XML files, an unprivileg… CWE-522
 Insufficiently Protected Credentials
CVE-2018-16669 2024-11-21 12:53 2018-09-19 Show GitHub Exploit DB Packet Storm
246453 5.3 MEDIUM
Network
circontrol circarlife_scada An issue was discovered in CIRCONTROL CirCarLife before 4.3. There is internal installation path disclosure due to the lack of authentication for /html/repository. CWE-287
Improper Authentication
CVE-2018-16668 2024-11-21 12:53 2018-09-19 Show GitHub Exploit DB Packet Storm
246454 9.8 CRITICAL
Network
western_digital my_cloud_wdbctl0020hwt_firmware
my_cloud_pr4100
my_cloud_pr2100_firmware
my_cloud_mirror_gen_2_firmware
my_cloud_mirror_firmware
my_cloud_ex4100
my_cloud_ex4_firmware
my_cloud_ex…
It was discovered that the Western Digital My Cloud device before 2.30.196 is affected by an authentication bypass vulnerability. An unauthenticated attacker can exploit this vulnerability to authent… CWE-287
Improper Authentication
CVE-2018-17153 2024-11-21 12:53 2018-09-19 Show GitHub Exploit DB Packet Storm
246455 6.1 MEDIUM
Network
oracle webcenter_interaction The login function of Oracle WebCenter Interaction Portal 10.3.3 is vulnerable to reflected cross-site scripting (XSS). The content of the in_hi_redirect parameter, when prefixed with the https:// sc… CWE-79
Cross-site Scripting
CVE-2018-16955 2024-11-21 12:53 2018-09-18 Show GitHub Exploit DB Packet Storm
246456 6.1 MEDIUM
Network
oracle webcenter_interaction An issue was discovered in Oracle WebCenter Interaction Portal 10.3.3. The login function of the portal is vulnerable to insecure redirection (also called an open redirect). The in_hi_redirect parame… CWE-601
Open Redirect
CVE-2018-16954 2024-11-21 12:53 2018-09-18 Show GitHub Exploit DB Packet Storm
246457 6.1 MEDIUM
Network
oracle webcenter_interaction The AjaxView::DisplayResponse() function of the portalpages.dll assembly in Oracle WebCenter Interaction Portal 10.3.3 is vulnerable to reflected cross-site scripting (XSS). User input from the name … CWE-79
Cross-site Scripting
CVE-2018-16953 2024-11-21 12:53 2018-09-18 Show GitHub Exploit DB Packet Storm
246458 5.3 MEDIUM
Network
oracle webcenter_interaction An issue was discovered in Oracle WebCenter Interaction Portal 10.3.3. The portal component is delivered with an insecure default User Profile community configuration that allows anonymous users to r… CWE-200
Information Exposure
CVE-2018-16959 2024-11-21 12:53 2018-09-18 Show GitHub Exploit DB Packet Storm
246459 5.4 MEDIUM
Network
oracle webcenter_interaction An issue was discovered in Oracle WebCenter Interaction Portal 10.3.3. The ASP.NET_SessionID primary session cookie, when Internet Information Services (IIS) with ASP.NET is used, is not protected wi… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2018-16958 2024-11-21 12:53 2018-09-18 Show GitHub Exploit DB Packet Storm
246460 9.8 CRITICAL
Network
oracle webcenter_interaction The Oracle WebCenter Interaction 10.3.3 search service queryd.exe binary is compiled with the i1g2s3c4 hardcoded password. Authentication to the Oracle WCI search service uses this hardcoded password… CWE-798
 Use of Hard-coded Credentials
CVE-2018-16957 2024-11-21 12:53 2018-09-18 Show GitHub Exploit DB Packet Storm