Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 17, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
191131 3.3
Local
IBM - IBM WebSphere Application Server Proxy Server または On-demand-router における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2017-1381 2017-08-10 17:14 2017-07-18 Show GitHub Exploit DB Packet Storm
191132 6.5 警告
Network
Apache Software Foundation - Apache Struts 2 におけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2017-9787 2017-08-10 17:06 2017-07-13 Show GitHub Exploit DB Packet Storm
191133 5.9 警告
Network
Apache Software Foundation - Apache Struts 2 における入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2017-7672 2017-08-10 17:05 2017-07-13 Show GitHub Exploit DB Packet Storm
191134 5.5 警告
Local
Stuart Caie - ClamAV などの製品で使用される libmspack の mspack/cabd.c の cabd_read_string 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2017-11423 2017-08-10 17:05 2017-07-24 Show GitHub Exploit DB Packet Storm
191135 5.9 警告
Network
NixOS - NixOS における証明書検証に関する脆弱性 CWE-295
不正な証明書検証
CVE-2017-11501 2017-08-10 16:58 2017-07-19 Show GitHub Exploit DB Packet Storm
191136 6.1 警告
Network
Apache Software Foundation - Apache Spark におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-7678 2017-08-10 16:48 2017-07-12 Show GitHub Exploit DB Packet Storm
191137 7.5 重要
Network
Apache Software Foundation - Apache Traffic Control project の Traffic Router コンポーネントにおけるリソース管理に関する脆弱性 CWE-399
リソース管理の問題
CVE-2017-7670 2017-08-10 16:48 2017-07-8 Show GitHub Exploit DB Packet Storm
191138 9.8 緊急
Network
Technicolor - Technicolor DPC3928AD DOCSIS デバイスにおける任意のファイルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2017-11502 2017-08-10 16:41 2017-05-10 Show GitHub Exploit DB Packet Storm
191139 5.5 警告
Local
GNOME Project - gnome-session におけるファイル記述子の枯渇に関する脆弱性 CWE-769
ファイル記述子の枯渇
CVE-2017-11171 2017-08-10 16:40 2017-02-13 Show GitHub Exploit DB Packet Storm
191140 7.5 重要
Network
ATutor - ATutor におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2016-10400 2017-08-10 16:29 2016-07-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 17, 2026, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
350951 - - - MRV Communications In-Reach LX-8000S, LX-4000S, and LX-1000S 3.5.0, when using SSH public key authentication, does not properly restrict access to ports, which allows remote authenticated users to ac… NVD-CWE-Other
CVE-2005-2329 2008-09-6 05:51 2005-07-20 Show GitHub Exploit DB Packet Storm
350952 - php.warpedweb.net phppageprotect Cross-site scripting (XSS) vulnerability in PHPPageProtect 1.0.0a allows remote attackers to inject arbitrary web script or HTML via the username parameter to (1) admin.php or (2) login.php. NVD-CWE-Other
CVE-2005-2332 2008-09-6 05:51 2005-07-20 Show GitHub Exploit DB Packet Storm
350953 - y.sak y.sak Y.SAK allows remote attackers to execute arbitrary commands via shell metacharacters in the $no variable to (1) w_s3mbfm.cgi, (2) w_s3adix.cgi, or (3) w_s3sbfm.cgi. NVD-CWE-Other
CVE-2005-2334 2008-09-6 05:51 2005-07-20 Show GitHub Exploit DB Packet Storm
350954 - msearch unicode_msearch Cross-site scripting (XSS) vulnerability in the Unicode version of msearch (unicode-msearch) 1.51(U1)-beta1, 1.51(U1), and 1.52(U1) allows remote attackers to inject arbitrary web script or HTML via … NVD-CWE-Other
CVE-2005-2339 2008-09-6 05:51 2005-11-22 Show GitHub Exploit DB Packet Storm
350955 - emc navisphere_manager EMC Navisphere Manager 6.4.1.0.0 allows remote attackers to list arbitrary directories via an HTTP request for a directory that ends in a "." (trailing dot). NVD-CWE-Other
CVE-2005-2358 2008-09-6 05:51 2005-08-16 Show GitHub Exploit DB Packet Storm
350956 - alwil avast_antivirus Directory traversal vulnerability in a third-party compression library (UNACEV2.DLL), as used in avast! Antivirus Home/Professional Edition 4.6.665 and Server Edition 4.6.460, allows remote attackers… NVD-CWE-Other
CVE-2005-2384 2008-09-6 05:51 2005-07-27 Show GitHub Exploit DB Packet Storm
350957 - alwil avast_antivirus Buffer overflow in a third-party compression library (UNACEV2.DLL), as used in avast! Antivirus Home/Professional Edition 4.6.665 and Server Edition 4.6.460, allows remote attackers to execute arbitr… NVD-CWE-Other
CVE-2005-2385 2008-09-6 05:51 2005-07-27 Show GitHub Exploit DB Packet Storm
350958 - elemental_software cartwiz Cross-site scripting (XSS) vulnerability in viewCart.asp in CartWIZ 1.20 allows remote attackers to inject arbitrary web script or HTML via the message parameter. NVD-CWE-Other
CVE-2005-2386 2008-09-6 05:51 2005-07-27 Show GitHub Exploit DB Packet Storm
350959 - goodtech_systems goodtech_smtp_server Multiple stack-based buffer overflows in GoodTech SMTP server 5.16 allow remote attackers to execute arbitrary code via (1) a RCPT TO command with a long DNS name, or (2) a large number of RCPT TO co… NVD-CWE-Other
CVE-2005-2387 2008-09-6 05:51 2005-07-27 Show GitHub Exploit DB Packet Storm
350960 - symantec_veritas netbackup_enterprise_server
netbackup_server
NDMP server in Veritas NetBackup 5.1 allows attackers to cause a denial of service via a CONFIG message with an out-of-range timestamp, which triggers a null dereference. NVD-CWE-Other
CVE-2005-2389 2008-09-6 05:51 2005-07-27 Show GitHub Exploit DB Packet Storm