Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1 9.8 緊急
Network
scshr hr portal scshrのhr portalにおける信頼できないデータのデシリアライゼーションに関する脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2025-48780 2026-02-6 10:41 2025-06-6 Show GitHub Exploit DB Packet Storm
2 7.5 重要
Network
scshr hr portal scshrのhr portalにおけるファイル名やパス名の外部制御に関する脆弱性 CWE-73
ファイル名やパス名の外部制御
CVE-2025-48781 2026-02-6 10:41 2025-06-6 Show GitHub Exploit DB Packet Storm
3 9.8 緊急
Network
scshr hr portal scshrのhr portalにおける危険なタイプのファイルの無制限アップロードに関する脆弱性 CWE-434
危険なタイプのファイルの無制限アップロード
CVE-2025-48782 2026-02-6 10:41 2025-06-6 Show GitHub Exploit DB Packet Storm
4 7.5 重要
Network
scshr hr portal scshrのhr portalにおけるファイル名やパス名の外部制御に関する脆弱性 CWE-73
ファイル名やパス名の外部制御
CVE-2025-48783 2026-02-6 10:41 2025-06-6 Show GitHub Exploit DB Packet Storm
5 7.5 重要
Network
scshr hr portal scshrのhr portalにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2025-48784 2026-02-6 10:41 2025-06-6 Show GitHub Exploit DB Packet Storm
6 7.5 重要
Network
scshr hr portal scshrのhr portalにおける重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2025-5192 2026-02-6 10:41 2025-06-6 Show GitHub Exploit DB Packet Storm
7 6.8 警告
Physics
Elspec LTD G5DFR ファームウェア Elspec LTDのG5DFR ファームウェアにおける代替パスまたはチャネルを使用した認証回避に関する脆弱性 CWE-288
代替パスまたはチャネルを使用した認証回避
CVE-2025-59392 2026-02-6 10:41 2025-11-6 Show GitHub Exploit DB Packet Storm
8 7.2 重要
Network
Sangoma freepbx SangomaのfreepbxにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2025-64328 2026-02-6 10:41 2025-11-7 Show GitHub Exploit DB Packet Storm
9 6.5 警告
Network
Salesforce.com, inc. MuleSoft Anypoint Extension Pack Salesforce.com, inc.のMuleSoft Anypoint Extension Packにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2025-10875 2026-02-6 10:41 2025-11-4 Show GitHub Exploit DB Packet Storm
10 7.5 重要
Network
Intelbras ICIP 30 Firmware IntelbrasのICIP 30 Firmwareにおける複数の脆弱性 CWE-255
CWE-256
CWE-522
CVE-2025-13187 2026-02-6 10:41 2025-11-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 24, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
306551 - tiny_software tiny_personal_firewall Tiny Personal Firewall (TPF) 2.0.15, under certain configurations, will pop up an alert to the system even when the screen is locked, which could allow an attacker with physical access to the machine… NVD-CWE-Other
CVE-2002-0349 2016-10-18 11:19 2002-06-25 Show GitHub Exploit DB Packet Storm
306552 - hp procurve_switch_4000m HP Procurve Switch 4000M running firmware C.08.22 and C.09.09 allows remote attackers to cause a denial of service via a port scan of the management IP address, which disables the telnet service. NVD-CWE-Other
CVE-2002-0350 2016-10-18 11:19 2002-06-25 Show GitHub Exploit DB Packet Storm
306553 - phorum phorum Phorum 3.3.2 allows remote attackers to determine the email addresses of the 10 most active users via a direct HTTP request to the stats.php program, which does not require authentication. NVD-CWE-Other
CVE-2002-0352 2016-10-18 11:19 2002-06-25 Show GitHub Exploit DB Packet Storm
306554 - mozilla
netscape
mozilla
navigator
The XMLHttpRequest object (XMLHTTP) in Netscape 6.1 and Mozilla 0.9.7 allows remote attackers to read arbitrary files and list directories on a client system by opening a URL that redirects the brows… NVD-CWE-Other
CVE-2002-0354 2016-10-18 11:19 2002-06-25 Show GitHub Exploit DB Packet Storm
306555 - sgi irix xfsmd for IRIX 6.5 through 6.5.16 uses weak authentication, which allows remote attackers to call dangerous RPC functions, including those that can mount or unmount xfs file systems, to gain root pri… NVD-CWE-Other
CVE-2002-0359 2016-10-18 11:19 2002-07-3 Show GitHub Exploit DB Packet Storm
306556 - sun solaris_answerbook2 Buffer overflow in Sun AnswerBook2 1.4 through 1.4.3 allows remote attackers to execute arbitrary code via a long filename argument to the gettransbitmap CGI program. NVD-CWE-Other
CVE-2002-0360 2016-10-18 11:19 2002-06-25 Show GitHub Exploit DB Packet Storm
306557 - aol instant_messenger Buffer overflow in AOL Instant Messenger (AIM) 4.2 and later allows remote attackers to execute arbitrary code via a long AddExternalApp request and a TLV type greater than 0x2711. NVD-CWE-Other
CVE-2002-0362 2016-10-18 11:19 2002-05-29 Show GitHub Exploit DB Packet Storm
306558 - padl_software pam_ldap Format string vulnerability in the logging function for the pam_ldap PAM LDAP module before version 144 allows attackers to execute arbitrary code via format strings in the configuration file name. NVD-CWE-Other
CVE-2002-0374 2016-10-18 11:19 2002-05-29 Show GitHub Exploit DB Packet Storm
306559 - rob_flynn gaim Gaim 0.57 stores sensitive information in world-readable and group-writable files in the /tmp directory, which allows local users to access MSN web email accounts of other users who run Gaim by readi… NVD-CWE-Other
CVE-2002-0377 2016-10-18 11:19 2002-05-29 Show GitHub Exploit DB Packet Storm
306560 - lbl tcpdump Buffer overflow in tcpdump 3.6.2 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via an NFS packet. NVD-CWE-Other
CVE-2002-0380 2016-10-18 11:19 2002-06-18 Show GitHub Exploit DB Packet Storm