Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 30, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
258601 7.8 危険 Imperva Inc. - Imperva SecureSphere の Web Application Firewall および Database Firewall における intrusion-prevention 機能を回避される脆弱性 CWE-noinfo
情報不足
CVE-2010-1329 2011-06-6 14:29 2010-04-5 Show GitHub Exploit DB Packet Storm
258602 4.3 警告 Imperva Inc. - Imperva SecureSphere MX Management Server の management GUI におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1463 2011-06-6 14:27 2008-03-18 Show GitHub Exploit DB Packet Storm
258603 6.5 警告 バラクーダネットワークス - Barracuda Spam Firewall の Account View ページ内にある index.cgi における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1094 2011-06-6 14:23 2008-12-15 Show GitHub Exploit DB Packet Storm
258604 3.5 注意 バラクーダネットワークス - 複数の Barracuda 製品の index.cgi におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-0971 2011-06-6 14:21 2008-12-15 Show GitHub Exploit DB Packet Storm
258605 4.3 警告 バラクーダネットワークス - Barracuda Spam Firewall の ldap_test.cgi におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2333 2011-06-6 14:20 2008-05-22 Show GitHub Exploit DB Packet Storm
258606 10 危険 7-Technologies - 7-Technologies Interactive Graphical SCADA System の logText 関数における任意のコードを実行される脆弱性 CWE-134
書式文字列の問題
CVE-2011-1568 2011-06-6 14:19 2011-04-5 Show GitHub Exploit DB Packet Storm
258607 10 危険 サイバートラスト株式会社
Mozilla Foundation
レッドハット
- 複数の Mozilla 製品のブラウザエンジンにおける任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2011-0075 2011-06-6 13:56 2011-04-28 Show GitHub Exploit DB Packet Storm
258608 5 警告 サイバートラスト株式会社
Mozilla Foundation
レッドハット
- Windows 上で稼働する複数の Mozilla 製品におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2011-0071 2011-06-6 10:36 2011-04-28 Show GitHub Exploit DB Packet Storm
258609 5 警告 サイバートラスト株式会社
Mozilla Foundation
- Mozilla Firefox および SeaMonkey におけるフォームの入力履歴を読まれる脆弱性 CWE-20
不適切な入力確認
CVE-2011-0067 2011-06-6 10:35 2011-04-28 Show GitHub Exploit DB Packet Storm
258610 10 危険 サイバートラスト株式会社
Mozilla Foundation
レッドハット
- Mozilla Firefox および SeaMonkey における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2011-0073 2011-06-6 10:34 2011-04-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 30, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
247681 7.8 HIGH
Local
comparex miss_marple COMPAREX Miss Marple Enterprise Edition before 2.0 allows local users to execute arbitrary code by reading the user name and encrypted password hard-coded in an Inventory Agent configuration file. CWE-798
 Use of Hard-coded Credentials
CVE-2018-19233 2024-11-21 12:57 2018-12-21 Show GitHub Exploit DB Packet Storm
247682 7.3 HIGH
Network
advantech webaccess\/scada WebAccess/SCADA, WebAccess/SCADA Version 8.3.2 installed on Windows 2008 R2 SP1. Lack of proper validation of user supplied input may allow an attacker to cause the overflow of a buffer on the stack. CWE-787
 Out-of-bounds Write
CVE-2018-18999 2024-11-21 12:57 2018-12-20 Show GitHub Exploit DB Packet Storm
247683 9.8 CRITICAL
Network
bosch common_product_platform_4_firmware
common_product_platform_6_firmware
common_product_platform_7_firmware
common_product_platform_7.3_firmware
An issue was discovered in several Bosch IP cameras for firmware versions 6.32 and higher. A malicious client could potentially succeed in the unauthorized execution of code on the device via the net… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2018-19036 2024-11-21 12:57 2018-12-18 Show GitHub Exploit DB Packet Storm
247684 7.8 HIGH
Local
sylabs singularity Sylabs Singularity 2.4 to 2.6 allows local users to conduct Improper Input Validation attacks. CWE-20
 Improper Input Validation 
CVE-2018-19295 2024-11-21 12:57 2018-12-18 Show GitHub Exploit DB Packet Storm
247685 9.8 CRITICAL
Network
geutebrueck g-cam\/efd-2251_firmware
g-cam\/ewpc-2275_firmware
In Geutebrueck GmbH E2 Camera Series versions prior to 1.12.0.25 the DDNS configuration (in the Network Configuration panel) is vulnerable to an OS system command injection as root. CWE-78
OS Command 
CVE-2018-19007 2024-11-21 12:57 2018-12-15 Show GitHub Exploit DB Packet Storm
247686 4.3 MEDIUM
Network
sonarsource sonarqube A vulnerability in the API of SonarSource SonarQube before 7.4 could allow an authenticated user to discover sensitive information such as valid user-account logins in the web application. The vulner… CWE-200
Information Exposure
CVE-2018-19413 2024-11-21 12:57 2018-12-15 Show GitHub Exploit DB Packet Storm
247687 7.5 HIGH
Network
ge ex2100e_firmware
ls2100e_firmware
mark_vle_firmware
GE Mark VIe, EX2100e, EX2100e_Reg, and LS2100e Versions 03.03.28C to 05.02.04C, EX2100e All versions prior to v04.09.00C, EX2100e_Reg All versions prior to v04.09.00C, and LS2100e All versions prior … CWE-22
Path Traversal
CVE-2018-19003 2024-11-21 12:57 2018-12-15 Show GitHub Exploit DB Packet Storm
247688 6.1 MEDIUM
Network
oracle secure_global_desktop XSS exists in the Administration Console in Oracle Secure Global Desktop 4.4 20080807152602 (but was fixed in later versions including 5.4). helpwindow.jsp has reflected XSS via all parameters, as de… CWE-79
Cross-site Scripting
CVE-2018-19439 2024-11-21 12:57 2018-12-14 Show GitHub Exploit DB Packet Storm
247689 5.5 MEDIUM
Local
qemu
canonical
debian
fedoraproject
opensuse
qemu
ubuntu_linux
debian_linux
fedora
leap
hw/9pfs/cofile.c and hw/9pfs/9p.c in QEMU can modify an fid path while it is being accessed by a second thread, leading to (for example) a use-after-free outcome. CWE-416
 Use After Free
CVE-2018-19364 2024-11-21 12:57 2018-12-14 Show GitHub Exploit DB Packet Storm
247690 7.5 HIGH
Network
zohocorp manageengine_adaudit_plus Zoho ManageEngine ADAudit before 5.1 build 5120 allows remote attackers to cause a denial of service (stack-based buffer overflow) via the 'Domain Name' field when adding a new domain. CWE-787
 Out-of-bounds Write
CVE-2018-19118 2024-11-21 12:57 2018-12-14 Show GitHub Exploit DB Packet Storm