Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
190191 9.8 緊急
Network
Zoho Corporation - Zoho ManageEngine Applications Manager における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2017-16850 2017-11-28 11:59 2017-11-16 Show GitHub Exploit DB Packet Storm
190192 9.8 緊急
Network
Zoho Corporation - Zoho ManageEngine Applications Manager における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2017-16849 2017-11-28 11:59 2017-11-16 Show GitHub Exploit DB Packet Storm
190193 9.8 緊急
Network
Zoho Corporation - Zoho ManageEngine Applications Manager における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2017-16848 2017-11-28 11:59 2017-11-16 Show GitHub Exploit DB Packet Storm
190194 9.8 緊急
Network
Zoho Corporation - Zoho ManageEngine Applications Manager における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2017-16847 2017-11-28 11:59 2017-11-16 Show GitHub Exploit DB Packet Storm
190195 9.8 緊急
Network
Zoho Corporation - Zoho ManageEngine Applications Manager における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2017-16846 2017-11-28 11:59 2017-11-16 Show GitHub Exploit DB Packet Storm
190196 7.8 重要
Local
Evernote Corporation - Evernote for Windows のインストーラにおける任意の DLL 読み込みに関する脆弱性 CWE-Other
その他
CVE-2016-4900 2017-11-27 18:10 2016-10-19 Show GitHub Exploit DB Packet Storm
190197 4.4 警告
Local
株式会社マネーフォワード
ソースネクスト
- Android アプリ「マネーフォワード」における WebView クラスに関する脆弱性 CWE-Other
その他
CVE-2016-4839 2017-11-27 17:57 2016-09-20 Show GitHub Exploit DB Packet Storm
190198 5.4 警告
Network
独立行政法人情報処理推進機構 (IPA) - 定量的プロジェクト管理ツールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-2173 2017-11-27 17:51 2017-05-19 Show GitHub Exploit DB Packet Storm
190199 6.1 警告
Network
独立行政法人情報処理推進機構 (IPA) - 定量的プロジェクト管理ツールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-2174 2017-11-27 17:51 2017-05-19 Show GitHub Exploit DB Packet Storm
190200 7.8 重要
Local
独立行政法人情報処理推進機構 (IPA) - 定量的プロジェクト管理ツールのインストーラにおける任意の DLL 読み込みに関する脆弱性 CWE-Other
その他
CVE-2017-2175 2017-11-27 17:51 2017-05-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
347701 - windowmaker windowmaker Unspecified vulnerability in Window Maker 0.80.2 and earlier allows attackers to perform unknown actions via format string specifiers in a font specification in WMGLOBAL, probably a format string vul… CWE-134
Use of Externally-Controlled Format String
CVE-2004-2714 2017-07-29 10:29 2004-12-31 Show GitHub Exploit DB Packet Storm
347702 - php_heaven phpmychat edituser.php3 in PHPMyChat 0.14.5 allow remote attackers to bypass authentication and gain administrative privileges by setting the do_not_login parameter to false. CWE-287
Improper Authentication
CVE-2004-2715 2017-07-29 10:29 2004-12-31 Show GitHub Exploit DB Packet Storm
347703 - php_heaven phpmychat Multiple SQL injection vulnerabilities in usersL.php3 in PHPMyChat 0.14.5 allow remote attackers to execute arbitrary SQL commands via the (1) sortBy, (2) sortOrder, (3) startReg, (4) U, (5) LastChec… CWE-89
SQL Injection
CVE-2004-2716 2017-07-29 10:29 2004-12-31 Show GitHub Exploit DB Packet Storm
347704 - snitz_communications snitz_forums_2000 Cross-site scripting (XSS) vulnerability in register.asp in Snitz Forums 2000 3.4.04 and earlier allows remote attackers to inject arbitrary web script or HTML via javascript events in the Email para… CWE-79
Cross-site Scripting
CVE-2004-2720 2017-07-29 10:29 2004-12-31 Show GitHub Exploit DB Packet Storm
347705 - heiko_stamer openskat The CheckGroup function in openSkat VTMF before 2.1 generates public key pairs in which the "p" variable might not be prime, which allows remote attackers to determine the private key and decrypt mes… CWE-310
Cryptographic Issues
CVE-2004-2721 2017-07-29 10:29 2004-12-31 Show GitHub Exploit DB Packet Storm
347706 - nessus nessuswx NessusWX 1.4.4 stores account passwords in plaintext in .session files, which allows local users to obtain passwords. CWE-255
Credentials Management
CVE-2004-2723 2017-07-29 10:29 2004-12-31 Show GitHub Exploit DB Packet Storm
347707 - lionmax_software chat_anywhere LionMax Software Chat Anywhere 2.72a allows remote attackers to cause a denial of service (server crash and client CPU consumption) via a username beginning with percent (%) followed by a null charac… CWE-287
Improper Authentication
CVE-2004-2724 2017-07-29 10:29 2004-12-31 Show GitHub Exploit DB Packet Storm
347708 - aztek_forum aztek_forum Multiple cross-site scripting (XSS) vulnerabilities in Aztek Forum 4.0 allow remote attackers to inject arbitrary web script or HTML via (1) the search parameter in (a) search.php, (2) the email para… CWE-79
Cross-site Scripting
CVE-2004-2725 2017-07-29 10:29 2004-12-31 Show GitHub Exploit DB Packet Storm
347709 - mailenable mailenable Buffer overflow in MEHTTPS (HTTPMail) of MailEnable Professional 1.5 through 1.7 allows remote attackers to cause a denial of service (application crash) via a long HTTP GET request. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2004-2727 2017-07-29 10:29 2004-12-31 Show GitHub Exploit DB Packet Storm
347710 - hummingbird connectivity Buffer overflow in the FTP server of Hummingbird Connectivity 7.1 and 9.0 allows remote, authenticated users to cause a denial of service (application crash) via a long argument to the XCWD command. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2004-2728 2017-07-29 10:29 2004-12-31 Show GitHub Exploit DB Packet Storm