Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 24, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
190701 6.1 警告
Network
Apache Software Foundation - Apache CXF におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-6812 2017-09-15 12:02 2016-11-4 Show GitHub Exploit DB Packet Storm
190702 7.5 重要
Network
Apache Software Foundation - Apache CXF における XML 外部エンティティの脆弱性 CWE-611
XML 外部エンティティ参照の不適切な制限
CVE-2016-8739 2017-09-15 12:02 2016-12-19 Show GitHub Exploit DB Packet Storm
190703 7.5 重要
Network
Apache Software Foundation - Apache CXF における時間とステータスに関する脆弱性 CWE-361
時間とステータス
CVE-2017-3156 2017-09-15 12:02 2017-02-20 Show GitHub Exploit DB Packet Storm
190704 9.8 緊急
Network
アップル - Apple iPhone などで使用される Qualcomm Telephony におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2017-8248 2017-09-15 11:16 2017-07-19 Show GitHub Exploit DB Packet Storm
190705 7.8 重要
Local
Sierra Wireless - Sierra Wireless Windows Mobile Broadband Driver Package における引用されない検索パスまたは要素に関する脆弱性 CWE-428
引用されない検索パスまたは要素
CVE-2017-9247 2017-09-15 10:19 2017-07-12 Show GitHub Exploit DB Packet Storm
190706 8.1 重要
Network
ヒューレット・パッカード - HP Linux Imaging and Printing における鍵管理のエラーに関する脆弱性 CWE-320
鍵管理のエラー
CVE-2015-0839 2017-09-14 18:12 2015-03-16 Show GitHub Exploit DB Packet Storm
190707 9.8 緊急
Network
Zoho Corporation - Manage Engine Desktop Central における認可・権限・アクセス制御に関する脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-2560 2017-09-14 18:06 2015-02-18 Show GitHub Exploit DB Packet Storm
190708 7.5 重要
Network
varnish-cache.org - Varnish HTTP Cache における整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2017-12425 2017-09-14 17:38 2017-08-2 Show GitHub Exploit DB Packet Storm
190709 7.5 重要
Network
シスコシステムズ - Cisco Data Center Network Manager におけるリソース管理に関する脆弱性 CWE-399
リソース管理の問題
CVE-2011-4650 2017-09-14 17:30 2011-12-1 Show GitHub Exploit DB Packet Storm
190710 6.3 警告
Physics
NXP Semiconductors - 複数の NXP i.MX および Vybrid 製品におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2017-7936 2017-09-14 17:23 2017-07-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 24, 2026, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
350181 - virtual_programming vp-asp SQL injection vulnerability in shopadmin.asp in VP-ASP 4.0 allows remote attackers to execute arbitrary SQL commands and bypass authentication via the (1) username or (2) password fields. NVD-CWE-Other
CVE-2002-1919 2009-04-11 13:14 2002-12-31 Show GitHub Exploit DB Packet Storm
350182 - easyscripts easynews easyNews 1.5 and earlier stores administration passwords in cleartext in settings.php, which allows local users to obtain the passwords and gain access. NVD-CWE-Other
CVE-2001-1527 2009-04-3 13:11 2001-12-31 Show GitHub Exploit DB Packet Storm
350183 - newsscript.co.uk newsscript newsscript.pl for NewsScript allows remote attackers to gain privileges by setting the mode parameter to admin. CWE-264
Permissions, Privileges, and Access Controls
CVE-2005-0735 2009-04-3 13:00 2005-05-2 Show GitHub Exploit DB Packet Storm
350184 - php_heaven phpmychat Multiple directory traversal vulnerabilities in admin.php3 in PHPMyChat 0.14.5 allow remote attackers with administrative privileges to read arbitrary files via a .. (dot dot) in the (1) sheet and (2… CWE-22
Path Traversal
CVE-2004-2717 2009-04-3 13:00 2004-12-31 Show GitHub Exploit DB Packet Storm
350185 - phpmyadmin phpmyadmin phpMyAdmin 2.2.0rc3 and earlier allows remote attackers to execute arbitrary commands by inserting them into (1) the strCopyTableOK argument in tbl_copy.php, or (2) the strRenameTableOK argument in t… NVD-CWE-Other
CVE-2001-1060 2009-04-3 13:00 2001-07-31 Show GitHub Exploit DB Packet Storm
350186 - darren_reed ipfilter IPFilter 3.1.1 through 3.4.28 allows remote attackers to bypass firewall rules by sending a PASV command string as the argument of another command to an FTP server, which generates a response that co… CWE-264
Permissions, Privileges, and Access Controls
CVE-2002-1978 2009-04-3 13:00 2002-12-31 Show GitHub Exploit DB Packet Storm
350187 - watchguard legacy_rssa
soho
vclass
WatchGuard SOHO products running firmware 5.1.6 and earlier, and Vclass/RSSA using 3.2 SP1 and earlier, allows remote attackers to bypass firewall rules by sending a PASV command string as the argume… CWE-20
 Improper Input Validation 
CVE-2002-1979 2009-04-3 13:00 2002-12-31 Show GitHub Exploit DB Packet Storm
350188 - zipgenius zipgenius Multiple stack-based buffer overflows in ZipGenius 5.5.1.468 and 6.0.2.1041, and other versions before 6.0.2.1050, allow remote attackers to execute arbitrary code via (1) a ZIP archive that contains… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2005-3317 2009-03-25 13:00 2005-10-27 Show GitHub Exploit DB Packet Storm
350189 - openbsd openssh sshd in OpenSSH 3.5p1, when PermitRootLogin is disabled, immediately closes the TCP connection after a root login attempt with the correct password, but leaves the connection open after an attempt wi… CWE-16
Configuration
CVE-2004-2760 2009-01-29 14:37 2004-12-31 Show GitHub Exploit DB Packet Storm
350190 - netscape navigator Netscape 4 sends Referer headers containing https:// URLs in requests for http:// URLs, which allows remote attackers to obtain potentially sensitive information by reading Referer log data. CWE-200
Information Exposure
CVE-2003-1560 2009-01-29 14:28 2003-12-31 Show GitHub Exploit DB Packet Storm