Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 28, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
191641 8.8 重要
Network
Chyrp Lite project - Chyrp Lite におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2017-1000008 2017-08-31 15:29 2017-01-7 Show GitHub Exploit DB Packet Storm
191642 7 重要
Local
The Foreman
レッドハット
- Foreman における情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2016-4996 2017-08-31 15:29 2016-06-22 Show GitHub Exploit DB Packet Storm
191643 4.7 警告
Local
OpenLDAP Foundation - openldap-servers における競合状態に関する脆弱性 CWE-362
競合状態
CVE-2016-4984 2017-08-31 15:29 2016-06-13 Show GitHub Exploit DB Packet Storm
191644 7.5 重要
Network
Betterment Holdings Inc. - TestTrack サーバにおける認証に関する脆弱性 CWE-287
不適切な認証
CVE-2017-1000068 2017-08-31 15:24 2017-04-6 Show GitHub Exploit DB Packet Storm
191645 9.8 緊急
Network
Kubernetes - Kubernetes における認可・権限・アクセス制御に関する脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-1000056 2017-08-31 15:24 2017-03-22 Show GitHub Exploit DB Packet Storm
191646 7.5 重要
Network
qs project - qs モジュールにおける入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2017-1000048 2017-08-31 15:24 2017-03-6 Show GitHub Exploit DB Packet Storm
191647 8.8 重要
Network
MetInfo - MetInfo における認可・権限・アクセス制御に関する脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-11347 2017-08-31 14:43 2017-07-17 Show GitHub Exploit DB Packet Storm
191648 6.1 警告
Network
MetInfo - MetInfo におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-9764 2017-08-31 14:43 2017-07-19 Show GitHub Exploit DB Packet Storm
191649 6.1 警告
Network
Kopano - Kopano WebApp におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-11666 2017-08-31 14:29 2017-07-26 Show GitHub Exploit DB Packet Storm
191650 8.8 重要
Network
Koha - Koha Library におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2015-4639 2017-08-31 14:15 2015-06-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
346941 - perfectnav perfectnav The PerfectNav plugin for Microsoft Internet Explorer allows remote attackers to cause a denial of service (browser crash) via a malformed URL such as "?". NVD-CWE-Other
CVE-2004-2382 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
346942 - nullsoft winamp NullSoft Winamp 5.02 allows remote attackers to cause a denial of service (crash) by creating a file with a long filename, which causes the victim's player to crash when the file is opened from the c… NVD-CWE-Other
CVE-2004-2384 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
346943 - emumail emu_webmail EMU Webmail 5.2.7 allows remote attackers to obtain sensitive path information (home directory) via an HTTP request for init.emu. NVD-CWE-Other
CVE-2004-2385 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
346944 - denis_sbragion
peter_astrand
sredird
sercd
Format string vulnerability in the LogMsg function in sercd before 2.3.1 and sredird 2.2.1 and earlier allows remote attackers to execute arbitrary code via format string specifiers passed from the H… CWE-134
Use of Externally-Controlled Format String
CVE-2004-2386 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
346945 - denis_sbragion
peter_astrand
sredird
sercd
Buffer overflow in the HandleCPCCommand function of sercd before 2.3.1 and sredird 2.2.1 and earlier allows remote attackers to execute arbitrary code. NVD-CWE-Other
CVE-2004-2387 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
346946 - ibm aix rexecd for AIX 4.3.3 does not properly use a local copy of the pwd structure when calling getpwnam, which may cause the structure to be overwritten by the authenticate function and assign privileges … NVD-CWE-Other
CVE-2004-2388 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
346947 - jabberstudio jabber_gadu-gadu_transport Unknown vulnerability in Jabber Gadu-Gadu Transport (a.k.a. jabber-gg-transport) 2.0.x before 2.0.8 allows remote attackers to cause a denial of service (infinite loop) via user re-registration. NVD-CWE-Other
CVE-2004-2389 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
346948 - jabberstudio jabber_gadu-gadu_transport The roster import functionality in Jabber Gadu-Gadu Transport (a.k.a. jabber-gg-transport) 2.0.x before 2.0.8, when using libgadu 1.0 and later, allows attackers to cause a denial of service via unkn… NVD-CWE-Other
CVE-2004-2390 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
346949 - jabberstudio jabber_gadu-gadu_transport Jabber Gadu-Gadu Transport (a.k.a. jabber-gg-transport) 2.0.x before 2.0.8 allows remote attackers to cause a denial of service a message with an empty <priority/> tag. NVD-CWE-Other
CVE-2004-2391 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
346950 - mandrakesoft mandrake_linux
mandrake_linux_corporate_server
libuser 0.51.7 allows attackers to cause a denial of service (crash or disk consumption) via unknown attack vectors, related to read failures and other bugs. NVD-CWE-Other
CVE-2004-2392 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm