Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 26, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
260921 9.3 危険 マイクロソフト - Microsoft Windows の Web Services on Devices API (WSDAPI) における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2009-2512 2010-01-4 15:23 2009-11-10 Show GitHub Exploit DB Packet Storm
260922 10 危険 アップル
VMware
サン・マイクロシステムズ
- Sun Java SE の Provider クラスにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2009-2722 2010-01-4 14:56 2009-08-10 Show GitHub Exploit DB Packet Storm
260923 10 危険 アップル
VMware
サン・マイクロシステムズ
- Sun Java SE の Provider クラスにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2009-2723 2010-01-4 14:55 2009-08-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 27, 2026, 4:35 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
247281 7.8 HIGH
Local
lcds laquis_scada LCDS Laquis SCADA prior to version 4.1.0.4150 allows improper control of generation of code when opening a specially crafted project file, which may allow remote code execution, data exfiltration, or… CWE-94
Code Injection
CVE-2018-19002 2024-11-21 12:57 2019-02-6 Show GitHub Exploit DB Packet Storm
247282 5.3 MEDIUM
Network
lcds laquis_scada LCDS Laquis SCADA prior to version 4.1.0.4150 allows an authentication bypass, which may allow an attacker access to sensitive data. CWE-287
Improper Authentication
CVE-2018-19000 2024-11-21 12:57 2019-02-6 Show GitHub Exploit DB Packet Storm
247283 9.8 CRITICAL
Network
lcds laquis_scada LCDS Laquis SCADA prior to version 4.1.0.4150 uses hard coded credentials, which may allow an attacker unauthorized access to the system with high privileges. CWE-798
 Use of Hard-coded Credentials
CVE-2018-18998 2024-11-21 12:57 2019-02-6 Show GitHub Exploit DB Packet Storm
247284 9.8 CRITICAL
Network
lcds laquis_scada LCDS Laquis SCADA prior to version 4.1.0.4150 allows taking in user input without proper authorization or sanitation, which may allow an attacker to execute remote code on the server. CWE-862
 Missing Authorization
CVE-2018-18996 2024-11-21 12:57 2019-02-6 Show GitHub Exploit DB Packet Storm
247285 8.8 HIGH
Network
lcds laquis_scada LCDS Laquis SCADA prior to version 4.1.0.4150 allows taking in user input without proper sanitation, which may allow an attacker to execute remote code on the server. CWE-74
Injection
CVE-2018-18992 2024-11-21 12:57 2019-02-6 Show GitHub Exploit DB Packet Storm
247286 3.3 LOW
Local
lcds laquis_scada LCDS Laquis SCADA prior to version 4.1.0.4150 allows out of bounds read when opening a specially crafted project file, which may allow data exfiltration. CWE-125
Out-of-bounds Read
CVE-2018-19004 2024-11-21 12:57 2019-02-2 Show GitHub Exploit DB Packet Storm
247287 5.3 MEDIUM
Network
media_file_manager_project media_file_manager The Media File Manager plugin 1.4.2 for WordPress allows arbitrary file renaming (specifying a "from" and "to" filename) via a ../ directory traversal in the dir parameter of an mrelocator_rename act… CWE-22
Path Traversal
CVE-2018-19043 2024-11-21 12:57 2019-02-1 Show GitHub Exploit DB Packet Storm
247288 5.3 MEDIUM
Network
media_file_manager_project media_file_manager The Media File Manager plugin 1.4.2 for WordPress allows arbitrary file movement via a ../ directory traversal in the dir_from and dir_to parameters of an mrelocator_move action to the wp-admin/admin… CWE-22
Path Traversal
CVE-2018-19042 2024-11-21 12:57 2019-02-1 Show GitHub Exploit DB Packet Storm
247289 6.1 MEDIUM
Network
media_file_manager_project media_file_manager The Media File Manager plugin 1.4.2 for WordPress allows XSS via the dir parameter of an mrelocator_getdir action to the wp-admin/admin-ajax.php URI. CWE-79
Cross-site Scripting
CVE-2018-19041 2024-11-21 12:57 2019-02-1 Show GitHub Exploit DB Packet Storm
247290 5.3 MEDIUM
Network
media_file_manager_project media_file_manager The Media File Manager plugin 1.4.2 for WordPress allows directory listing via a ../ directory traversal in the dir parameter of an mrelocator_getdir action to the wp-admin/admin-ajax.php URI. CWE-22
Path Traversal
CVE-2018-19040 2024-11-21 12:57 2019-02-1 Show GitHub Exploit DB Packet Storm