Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
259241 6.8 警告 マイクロソフト - Microsoft Windows の kernel の Graphics Device Interface (GDI) における権限を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2009-2513 2010-01-4 15:24 2009-11-10 Show GitHub Exploit DB Packet Storm
259242 6.8 警告 マイクロソフト - Microsoft Windows の kernel における権限を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2009-1127 2010-01-4 15:24 2009-11-10 Show GitHub Exploit DB Packet Storm
259243 10 危険 マイクロソフト - Microsoft Windows の License Logging Server (llssrv.exe) における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2009-2523 2010-01-4 15:24 2009-11-10 Show GitHub Exploit DB Packet Storm
259244 9.3 危険 マイクロソフト - Microsoft Windows の Web Services on Devices API (WSDAPI) における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2009-2512 2010-01-4 15:23 2009-11-10 Show GitHub Exploit DB Packet Storm
259245 10 危険 アップル
VMware
サン・マイクロシステムズ
- Sun Java SE の Provider クラスにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2009-2722 2010-01-4 14:56 2009-08-10 Show GitHub Exploit DB Packet Storm
259246 10 危険 アップル
VMware
サン・マイクロシステムズ
- Sun Java SE の Provider クラスにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2009-2723 2010-01-4 14:55 2009-08-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 12, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
246711 5.4 MEDIUM
Network
advantech webaccess Advantech WebAccess 8.3.1 and 8.3.2 are vulnerable to cross-site scripting in the Bwmainleft.asp page. An attacker could leverage this vulnerability to disclose credentials amongst other things. CWE-79
Cross-site Scripting
CVE-2018-15707 2024-11-21 12:51 2018-11-1 Show GitHub Exploit DB Packet Storm
246712 6.5 MEDIUM
Network
advantech webaccess WADashboard API in Advantech WebAccess 8.3.1 and 8.3.2 allows remote authenticated attackers to read any file on the filesystem due to a directory traversal vulnerability in the readFile API. CWE-22
Path Traversal
CVE-2018-15706 2024-11-21 12:51 2018-11-1 Show GitHub Exploit DB Packet Storm
246713 6.5 MEDIUM
Network
advantech webaccess WADashboard API in Advantech WebAccess 8.3.1 and 8.3.2 allows remote authenticated attackers to write or overwrite any file on the filesystem due to a directory traversal vulnerability in the writeFi… CWE-22
Path Traversal
CVE-2018-15705 2024-11-21 12:51 2018-11-1 Show GitHub Exploit DB Packet Storm
246714 8.8 HIGH
Adjacent
systemd_project
debian
canonical
redhat
systemd
debian_linux
ubuntu_linux
enterprise_linux_desktop
enterprise_linux_workstation
enterprise_linux_server
enterprise_linux_server_tus
enterprise_linux_server_eus
enterpr…
A buffer overflow vulnerability in the dhcp6 client of systemd allows a malicious dhcp6 server to overwrite heap memory in systemd-networkd. Affected releases are systemd: versions up to and includin… CWE-120
Classic Buffer Overflow
CVE-2018-15688 2024-11-21 12:51 2018-10-26 Show GitHub Exploit DB Packet Storm
246715 7.0 HIGH
Local
canonical
systemd_project
ubuntu_linux
systemd
A race condition in chown_one() of systemd allows an attacker to cause systemd to set arbitrary permissions on arbitrary files. Affected releases are systemd versions up to and including 239. CWE-362
Race Condition
CVE-2018-15687 2024-11-21 12:51 2018-10-26 Show GitHub Exploit DB Packet Storm
246716 7.8 HIGH
Local
debian
canonical
systemd_project
oracle
debian_linux
ubuntu_linux
systemd
communications_cloud_native_core_network_function_cloud_native_environment
A vulnerability in unit_deserialize of systemd allows an attacker to supply arbitrary state across systemd re-execution via NotifyAccess. This can be used to improperly influence systemd execution an… CWE-502
 Deserialization of Untrusted Data
CVE-2018-15686 2024-11-21 12:51 2018-10-26 Show GitHub Exploit DB Packet Storm
246717 9.8 CRITICAL
Network
saltstack salt SaltStack Salt before 2017.7.8 and 2018.3.x before 2018.3.3 allow remote attackers to bypass authentication and execute arbitrary commands via salt-api(netapi). CWE-287
Improper Authentication
CVE-2018-15751 2024-11-21 12:51 2018-10-25 Show GitHub Exploit DB Packet Storm
246718 5.3 MEDIUM
Network
saltstack salt Directory Traversal vulnerability in salt-api in SaltStack Salt before 2017.7.8 and 2018.3.x before 2018.3.3 allows remote attackers to determine which files exist on the server. CWE-22
Path Traversal
CVE-2018-15750 2024-11-21 12:51 2018-10-25 Show GitHub Exploit DB Packet Storm
246719 8.8 HIGH
Network
advantech webaccess Advantech WebAccess 8.3.2 and below is vulnerable to a stack buffer overflow vulnerability. A remote authenticated attacker could potentially exploit this vulnerability by sending a crafted HTTP requ… CWE-787
 Out-of-bounds Write
CVE-2018-15704 2024-11-21 12:51 2018-10-23 Show GitHub Exploit DB Packet Storm
246720 6.1 MEDIUM
Network
advantech webaccess Advantech WebAccess 8.3.2 and below is vulnerable to multiple reflected cross site scripting vulnerabilities. A remote unauthenticated attacker could potentially exploit this vulnerability by trickin… CWE-79
Cross-site Scripting
CVE-2018-15703 2024-11-21 12:51 2018-10-23 Show GitHub Exploit DB Packet Storm