Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1381 6.1 警告
Local
Hitachi Energy microscada x sys600 Hitachi Energyのmicroscada x sys600における不適切なデフォルトパーミッションに関する脆弱性 CWE-276
不適切なデフォルトパーミッション
CVE-2025-39201 2026-01-28 12:31 2025-06-24 Show GitHub Exploit DB Packet Storm
1382 8.1 重要
Network
Hitachi Energy microscada x sys600 Hitachi Energyのmicroscada x sys600における権限管理に関する脆弱性 CWE-269
CWE-noinfo
CVE-2025-39202 2026-01-28 12:31 2025-06-24 Show GitHub Exploit DB Packet Storm
1383 6.5 警告
Network
Hitachi Energy microscada x sys600 Hitachi Energyのmicroscada x sys600におけるデータの整合性検証不備に関する脆弱性 CWE-354
データの整合性検証不備
CVE-2025-39203 2026-01-28 12:31 2025-06-24 Show GitHub Exploit DB Packet Storm
1384 6.5 警告
Network
Hitachi Energy microscada x sys600 Hitachi Energyのmicroscada x sys600における情報漏えいに関する脆弱性 CWE-200
CWE-noinfo
CVE-2025-39204 2026-01-28 12:31 2025-06-24 Show GitHub Exploit DB Packet Storm
1385 7.8 重要
Local
PDQ SmartDeploy PDQのSmartDeployにおける重要なリソースに対する不適切なパーミッションの割り当てに関する脆弱性 CWE-732
重要なリソースに対する不適切なパーミッションの割り当て
CVE-2025-52094 2026-01-28 12:31 2025-08-22 Show GitHub Exploit DB Packet Storm
1386 9.8 緊急
Network
PDQ SmartDeploy PDQのSmartDeployにおける認証情報の不十分な保護に関する脆弱性 CWE-522
認証情報の不十分な保護
CVE-2025-52095 2026-01-28 12:31 2025-08-22 Show GitHub Exploit DB Packet Storm
1387 8.8 重要
Network
aten eco DC atenのeco DCにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2025-6685 2026-01-28 12:31 2025-09-2 Show GitHub Exploit DB Packet Storm
1388 9.8 緊急
Network
SmarterTools Inc. SmarterMail SmarterTools Inc.のSmarterMailにおける代替パスまたはチャネルを使用した認証回避に関する脆弱性 CWE-288
代替パスまたはチャネルを使用した認証回避
CVE-2026-23760 2026-01-28 12:31 2026-01-22 Show GitHub Exploit DB Packet Storm
1389 7.6 重要
Network
ヒューレット・パッカード CZ175A Firmware
CZ183A Firmware
CZ184A Firmware
CZ178A Firmware
CZ177A Firmware
CZ182A Firmware
CZ187A Firmware
CZ181A Firmware
CZ172A&…
ヒューレット・パッカードのCZ172A Firmware等の複数製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-2301 2026-01-28 12:31 2024-05-23 Show GitHub Exploit DB Packet Storm
1390 4.8 警告
Network
EnGenius Technologies EWS356-FIT Firmware EnGenius TechnologiesのEWS356-FIT Firmwareにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-31975 2026-01-28 12:31 2024-10-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 23, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
304981 - entrust getaccess Directory traversal vulnerability in Entrust GetAccess allows remote attackers to read arbitrary files via a .. (dot dot) in the locale parameter to (1) helpwin.gas.bat or (2) AboutBox.gas.bat. NVD-CWE-Other
CVE-2001-0853 2017-07-11 10:29 2001-12-6 Show GitHub Exploit DB Packet Storm
304982 - oracle database_server Buffer overflow in dbsnmp in Oracle 8.0.6 through 9.0.1 allows local users to execute arbitrary code via a long ORACLE_HOME environment variable. NVD-CWE-Other
CVE-2001-0941 2017-07-11 10:29 2001-11-30 Show GitHub Exploit DB Packet Storm
304983 - oracle database_server dbsnmp in Oracle 8.1.6 and 8.1.7 uses the ORACLE_HOME environment variable to find and execute the dbsnmp program, which allows local users to execute arbitrary programs by pointing the ORACLE_HOME t… NVD-CWE-Other
CVE-2001-0942 2017-07-11 10:29 2001-11-29 Show GitHub Exploit DB Packet Storm
304984 - tdavid td_forum Cross-site scripting vulnerability in TDForum 1.2 CGI script (tdforum12.cgi) allows remote attackers to execute arbitrary script on other clients via a forum message that contains the script. NVD-CWE-Other
CVE-2001-0970 2017-07-11 10:29 2001-08-31 Show GitHub Exploit DB Packet Storm
304985 - surf-net asp_forum Surf-Net ASP Forum before 2.30 uses easily guessable cookies based on the UserID, which allows remote attackers to gain administrative privileges by calculating the value of the admin cookie (UserID … NVD-CWE-Other
CVE-2001-0972 2017-07-11 10:29 2001-08-31 Show GitHub Exploit DB Packet Storm
304986 - sco openserver Multiple buffer overflows in programs used by scoadmin and sysadmsh in SCO OpenServer 5.0.6a and earlier allow local users to gain privileges via a long TERM environment variable to (1) atcronsh, (2)… NVD-CWE-Other
CVE-2001-1148 2017-07-11 10:29 2001-06-13 Show GitHub Exploit DB Packet Storm
304987 - citrix ica_client Citrix Independent Computing Architecture (ICA) Client for Windows 6.1 allows remote malicious web sites to execute arbitrary code via a .ICA file, which is downloaded and automatically executed by t… NVD-CWE-Other
CVE-2001-1192 2017-07-11 10:29 2001-12-13 Show GitHub Exploit DB Packet Storm
304988 - zyxel prestige_1600
prestige_681
Zyxel Prestige 681 and 1600 SDSL Routers allow remote attackers to cause a denial of service via malformed packets with (1) an IP length less than actual packet size, or (2) fragmented packets whose … NVD-CWE-Other
CVE-2001-1194 2017-07-11 10:29 2001-12-14 Show GitHub Exploit DB Packet Storm
304989 - kde kdeutils klprfax_filter in KDE2 KDEUtils allows local users to overwrite arbitrary files via a symlink attack on the klprfax.filter temporary file. NVD-CWE-Other
CVE-2001-1197 2017-07-11 10:29 2001-12-14 Show GitHub Exploit DB Packet Storm
304990 - total_pc_solutions php_rocket_add-in Directory traversal vulnerability in phprocketaddin in Total PC Solutions PHP Rocket Add-in for FrontPage 1.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the page parameter. NVD-CWE-Other
CVE-2001-1204 2017-07-11 10:29 2001-12-28 Show GitHub Exploit DB Packet Storm