Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1381 6.1 警告
Local
Hitachi Energy microscada x sys600 Hitachi Energyのmicroscada x sys600における不適切なデフォルトパーミッションに関する脆弱性 CWE-276
不適切なデフォルトパーミッション
CVE-2025-39201 2026-01-28 12:31 2025-06-24 Show GitHub Exploit DB Packet Storm
1382 8.1 重要
Network
Hitachi Energy microscada x sys600 Hitachi Energyのmicroscada x sys600における権限管理に関する脆弱性 CWE-269
CWE-noinfo
CVE-2025-39202 2026-01-28 12:31 2025-06-24 Show GitHub Exploit DB Packet Storm
1383 6.5 警告
Network
Hitachi Energy microscada x sys600 Hitachi Energyのmicroscada x sys600におけるデータの整合性検証不備に関する脆弱性 CWE-354
データの整合性検証不備
CVE-2025-39203 2026-01-28 12:31 2025-06-24 Show GitHub Exploit DB Packet Storm
1384 6.5 警告
Network
Hitachi Energy microscada x sys600 Hitachi Energyのmicroscada x sys600における情報漏えいに関する脆弱性 CWE-200
CWE-noinfo
CVE-2025-39204 2026-01-28 12:31 2025-06-24 Show GitHub Exploit DB Packet Storm
1385 7.8 重要
Local
PDQ SmartDeploy PDQのSmartDeployにおける重要なリソースに対する不適切なパーミッションの割り当てに関する脆弱性 CWE-732
重要なリソースに対する不適切なパーミッションの割り当て
CVE-2025-52094 2026-01-28 12:31 2025-08-22 Show GitHub Exploit DB Packet Storm
1386 9.8 緊急
Network
PDQ SmartDeploy PDQのSmartDeployにおける認証情報の不十分な保護に関する脆弱性 CWE-522
認証情報の不十分な保護
CVE-2025-52095 2026-01-28 12:31 2025-08-22 Show GitHub Exploit DB Packet Storm
1387 8.8 重要
Network
aten eco DC atenのeco DCにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2025-6685 2026-01-28 12:31 2025-09-2 Show GitHub Exploit DB Packet Storm
1388 9.8 緊急
Network
SmarterTools Inc. SmarterMail SmarterTools Inc.のSmarterMailにおける代替パスまたはチャネルを使用した認証回避に関する脆弱性 CWE-288
代替パスまたはチャネルを使用した認証回避
CVE-2026-23760 2026-01-28 12:31 2026-01-22 Show GitHub Exploit DB Packet Storm
1389 7.6 重要
Network
ヒューレット・パッカード CZ175A Firmware
CZ183A Firmware
CZ184A Firmware
CZ178A Firmware
CZ177A Firmware
CZ182A Firmware
CZ187A Firmware
CZ181A Firmware
CZ172A&…
ヒューレット・パッカードのCZ172A Firmware等の複数製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-2301 2026-01-28 12:31 2024-05-23 Show GitHub Exploit DB Packet Storm
1390 4.8 警告
Network
EnGenius Technologies EWS356-FIT Firmware EnGenius TechnologiesのEWS356-FIT Firmwareにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-31975 2026-01-28 12:31 2024-10-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 22, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
283141 - level_platforms managed_workplace_service_center Level Platforms, Inc. (LPI) Managed Workplace Service Center 4.x, 5.x and 6.x allows remote attackers to obtain sensitive information via a direct request to About/SC_About.htm, which provides versio… CWE-200
Information Exposure
CVE-2008-0636 2018-10-16 07:02 2008-02-13 Show GitHub Exploit DB Packet Storm
283142 - symantec veritas_storage_foundation Heap-based buffer overflow in the Veritas Enterprise Administrator (VEA) service (aka vxsvc.exe) in Symantec Veritas Storage Foundation 5.0 allows remote attackers to execute arbitrary code via a pac… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2008-0638 2018-10-16 07:02 2008-02-22 Show GitHub Exploit DB Packet Storm
283143 - novell client Stack-based buffer overflow in the EnumPrinters function in the Spooler service (nwspool.dll) in Novell Client 4.91 SP2, SP3, and SP4 for Windows allows remote attackers to execute arbitrary code via… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2008-0639 2018-10-16 07:02 2008-02-14 Show GitHub Exploit DB Packet Storm
283144 - azucar_cms azucar_cms Multiple directory traversal vulnerabilities in Azucar CMS 1.3 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the _VIEW (view) parameter to (1) index.php, (… CWE-22
Path Traversal
CVE-2008-0654 2018-10-16 07:02 2008-02-8 Show GitHub Exploit DB Packet Storm
283145 - emc documentum_administrator
documentum_webtop
Unrestricted file upload vulnerability in dmclTrace.jsp in EMC Documentum Administrator 5.3.0.313 and Webtop 5.3.0.317 allows remote attackers to overwrite arbitrary files via the filename attribute. CWE-20
 Improper Input Validation 
CVE-2008-0656 2018-10-16 07:02 2008-02-8 Show GitHub Exploit DB Packet Storm
283146 - openldap openldap slapd/back-bdb/modrdn.c in the BDB backend for slapd in OpenLDAP 2.3.39 allows remote authenticated users to cause a denial of service (daemon crash) via a modrdn operation with a NOOP (LDAP_X_NO_OPE… CWE-399
 Resource Management Errors
CVE-2008-0658 2018-10-16 07:02 2008-02-14 Show GitHub Exploit DB Packet Storm
283147 - illustrate dbpoweramp_audio_player Buffer overflow in dBpowerAMP Audio Player Release 2 allows remote attackers to execute arbitrary code via a .M3U file with a long URI. NOTE: this might be the same issue as CVE-2004-1569. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2008-0661 2018-10-16 07:02 2008-02-8 Show GitHub Exploit DB Packet Storm
283148 - adobe acrobat_reader The DOC.print function in the Adobe JavaScript API, as used by Adobe Acrobat and Reader before 8.1.2, allows remote attackers to configure silent non-interactive printing, and trigger the printing of… CWE-399
 Resource Management Errors
CVE-2008-0667 2018-10-16 07:02 2008-02-12 Show GitHub Exploit DB Packet Storm
283149 - tintin tintin\+\+
wintin\+\+
Stack-based buffer overflow in the add_line_buffer function in TinTin++ 1.97.9 and WinTin++ 1.97.9 allows remote attackers to execute arbitrary code via a long chat message, related to conversion fro… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2008-0671 2018-10-16 07:02 2008-02-12 Show GitHub Exploit DB Packet Storm
283150 - tintin tintin\+\+
wintin\+\+
The process_chat_input function in TinTin++ 1.97.9 and WinTin++ 1.97.9 allows remote attackers to cause a denial of service (application crash) via a YES message without a newline character, which tr… CWE-20
 Improper Input Validation 
CVE-2008-0672 2018-10-16 07:02 2008-02-12 Show GitHub Exploit DB Packet Storm