Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
191861 4.5 警告
Network
マカフィー - McAfee Network Data Loss Prevention のサーバにおけるクリックジャッキングの脆弱性 CWE-20
不適切な入力確認
CVE-2017-4015 2017-06-15 17:54 2017-05-16 Show GitHub Exploit DB Packet Storm
191862 8 重要
Network
マカフィー - McAfee Network Data Loss Prevention のサーバにおけるセッションサイドジャッキングの脆弱性 CWE-384
セッションの固定化
CVE-2017-4014 2017-06-15 17:54 2017-05-16 Show GitHub Exploit DB Packet Storm
191863 5.3 警告
Network
マカフィー - McAfee Network Data Loss Prevention のサーバにおけるバナーを公開される脆弱性 CWE-200
情報漏えい
CVE-2017-4013 2017-06-15 17:54 2017-05-16 Show GitHub Exploit DB Packet Storm
191864 6.5 警告
Network
マカフィー - McAfee Network Data Loss Prevention のサーバにおける権限を昇格される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-4012 2017-06-15 17:54 2017-05-16 Show GitHub Exploit DB Packet Storm
191865 6.1 警告
Network
マカフィー - McAfee Network Data Loss Prevention のサーバの HTTP ヘッダにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-4011 2017-06-15 17:53 2017-05-16 Show GitHub Exploit DB Packet Storm
191866 7 重要
Local
Google - Android における競合状態に関する脆弱性 CWE-362
競合状態
CVE-2016-10242 2017-06-15 16:58 2017-04-3 Show GitHub Exploit DB Packet Storm
191867 7.8 重要
Local
Google - Android におけるバッファエラーの脆弱性 CWE-119
CWE-190
CVE-2016-10239 2017-06-15 16:58 2017-04-3 Show GitHub Exploit DB Packet Storm
191868 7.8 重要
Local
Google - Android における認可・権限・アクセス制御に関する脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-10238 2017-06-15 16:56 2017-04-3 Show GitHub Exploit DB Packet Storm
191869 7.8 重要
Local
Google - Android におけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2016-10237 2017-06-15 16:56 2017-04-3 Show GitHub Exploit DB Packet Storm
191870 7.8 重要
Local
Google - Android における暗号に関する脆弱性 CWE-310
暗号の問題
CVE-2015-9003 2017-06-15 16:56 2017-04-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
348501 - dream4 koobi_cms SQL injection vulnerability in Dream4 Koobi CMS 4.2.3 allows remote attackers to execute arbitrary SQL commands via the area parameter. NVD-CWE-Other
CVE-2005-0890 2008-09-6 05:47 2005-05-2 Show GitHub Exploit DB Packet Storm
348502 - instance_four
sacred
ubi_soft
tincat
sacred
the_settlersheritage_of_kings
Buffer overflow in a player logging function in the Tincat network library 2.x before 2.0.28, as used in games such as Sacred and The Settlers: Heritage of Kings, allows remote attackers to execute a… NVD-CWE-Other
CVE-2005-0906 2008-09-6 05:47 2005-05-2 Show GitHub Exploit DB Packet Storm
348503 - valdersoft shopping_cart Multiple SQL injection vulnerabilities in Valdersoft Shopping Cart 3.0 allow remote attackers to execute arbitrary SQL commands via (1) the id parameter to category.php, (2) the id parameter to item.… NVD-CWE-Other
CVE-2005-0907 2008-09-6 05:47 2005-05-2 Show GitHub Exploit DB Packet Storm
348504 - valdersoft valdersoft_shopping_cart Multiple cross-site scripting (XSS) vulnerabilities in Valdersoft Shopping Cart 3.0 allow remote attackers to inject arbitrary web script or HTML via (1) the lang parameter to index.php or (2) the se… NVD-CWE-Other
CVE-2005-0908 2008-09-6 05:47 2005-03-28 Show GitHub Exploit DB Packet Storm
348505 - e-xoops e-xoops Multiple cross-site scripting (XSS) vulnerabilities in exoops allow remote attackers to inject arbitrary web script or HTML via (1) the sortdays parameter to viewforum.php or (2) the viewcat paramete… NVD-CWE-Other
CVE-2005-0910 2008-09-6 05:47 2005-05-2 Show GitHub Exploit DB Packet Storm
348506 - e-xoops e-xoops Multiple SQL injection vulnerabilities in exoops may allow remote attackers to execute arbitrary SQL commands via (1) the viewcat parameter to index.php or (2) the artid parameter in the viewarticle … NVD-CWE-Other
CVE-2005-0911 2008-09-6 05:47 2005-03-28 Show GitHub Exploit DB Packet Storm
348507 - deplate deplate Unknown vulnerabilities in deplate before 0.7.2 have unknown impact, possibly involving elements.rb. NVD-CWE-Other
CVE-2005-0912 2008-09-6 05:47 2005-03-24 Show GitHub Exploit DB Packet Storm
348508 - cpg-nuke cpg_dragonfly_cms Multiple cross-site scripting (XSS) vulnerabilities in CPG Dragonfly 9.0.2.0 allow remote attackers to inject arbitrary web script or HTML via (1) the profile parameter to index.php or (2) the cat pa… NVD-CWE-Other
CVE-2005-0914 2008-09-6 05:47 2005-03-26 Show GitHub Exploit DB Packet Storm
348509 - webmasters-debutants wd_guestbook Webmasters-Debutants WD Guestbook 2.8 allows remote attackers to bypass authentication and perform certain administrator actions via a direct HTTP POST request to (1) ajout_admin2.php or (2) suppr.ph… NVD-CWE-Other
CVE-2005-0915 2008-09-6 05:47 2005-05-2 Show GitHub Exploit DB Packet Storm
348510 - linux linux_kernel AIO in the Linux kernel 2.6.11 on the PPC64 or IA64 architectures with CONFIG_HUGETLB_PAGE enabled allows local users to cause a denial of service (system panic) via a process that executes the io_qu… NVD-CWE-Other
CVE-2005-0916 2008-09-6 05:47 2005-05-2 Show GitHub Exploit DB Packet Storm