Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
193101 4.3 警告 アップル
日本電気
OpenSSL Project
ヒューレット・パッカード・エンタープライズ
オラクル
- OpenSSL の crypto/bn/bn_gf2m.c の BN_GF2m_mod_inv 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2015-1788 2017-03-9 15:31 2015-06-11 Show GitHub Exploit DB Packet Storm
193102 7.5 危険 日本電気
OpenSSL Project
- OpenSSL の ssl/d1_lib.c の dtls1_clear_queues 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2014-8176 2017-03-9 15:31 2014-06-3 Show GitHub Exploit DB Packet Storm
193103 1.8 注意 アップル
日本電気
NTP Project
- NTP の ntpd の ntp_proto.c 内の receive の symmetric-key 機能におけるパケットを偽装される脆弱性 CWE-Other
その他
CVE-2015-1798 2017-03-9 15:30 2015-04-7 Show GitHub Exploit DB Packet Storm
193104 8.6 重要
Network
日本電気
openSUSE project
SUSE
オラクル
NTP Project
- NTP の ntpd におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-4957 2017-03-9 15:29 2016-06-2 Show GitHub Exploit DB Packet Storm
193105 7.5 危険 日本電気
日立
NTP Project
- NTP の ntpd におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-9295 2017-03-9 15:28 2014-11-3 Show GitHub Exploit DB Packet Storm
193106 5 警告 日本電気
日立
NTP Project
- NTP の ntpd の config_auth 機能における暗号保護メカニズムを破られる脆弱性 CWE-Other
その他
CVE-2014-9293 2017-03-9 15:28 2014-11-3 Show GitHub Exploit DB Packet Storm
193107 7.5 重要
Network
ISC, Inc.
日本電気
- ISC BIND 9 にサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-2776 2017-03-9 15:27 2016-09-27 Show GitHub Exploit DB Packet Storm
193108 6.1 警告
Network
Adcon Telemetry - Adcon Telemetry A850 Telemetry Gateway Base Station の Web インターフェースにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-2274 2017-03-9 13:56 2016-12-8 Show GitHub Exploit DB Packet Storm
193109 8.8 重要
Network
FATEK Automation Corporation - Fatek Automation PM Designer V3 および FV Designer におけるクラッシュを引き起こされる脆弱性 CWE-119
バッファエラー
CVE-2016-5796 2017-03-9 13:50 2016-10-13 Show GitHub Exploit DB Packet Storm
193110 7.5 重要
Network
FATEK Automation Corporation - Fatek Automation PM Designer V3 および FV Designer におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-5798 2017-03-9 13:50 2016-10-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 25, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
294041 - caupo.net cauposhop_classic SQL injection vulnerability in csc_article_details.php in Caupo.net CaupoShop Classic 1.3 allows remote attackers to execute arbitrary SQL commands via the saArticle[ID] parameter. CWE-89
SQL Injection
CVE-2008-2866 2017-09-29 10:31 2008-06-25 Show GitHub Exploit DB Packet Storm
294042 - e-topbiz viral_dx_1 SQL injection vulnerability in adclick.php in E-topbiz Viral DX 1 2.07 allows remote attackers to execute arbitrary SQL commands via the bannerid parameter. CWE-89
SQL Injection
CVE-2008-2867 2017-09-29 10:31 2008-06-27 Show GitHub Exploit DB Packet Storm
294043 - duware ducalendar SQL injection vulnerability in detail.asp in DUware DUcalendar 1.0 and possibly earlier allows remote attackers to execute arbitrary SQL commands via the iEve parameter. CWE-89
SQL Injection
CVE-2008-2868 2017-09-29 10:31 2008-06-27 Show GitHub Exploit DB Packet Storm
294044 - e-topbiz link_ads_1 SQL injection vulnerability in out.php in E-topbiz Link ADS 1 allows remote attackers to execute arbitrary SQL commands via the linkid parameter. CWE-89
SQL Injection
CVE-2008-2869 2017-09-29 10:31 2008-06-27 Show GitHub Exploit DB Packet Storm
294045 - sharecms sharecms Multiple SQL injection vulnerabilities in ShareCMS 0.1 Beta allow remote attackers to execute arbitrary SQL commands via the (1) eventID parameter to event_info.php and the (2) userID parameter to li… CWE-89
SQL Injection
CVE-2008-2870 2017-09-29 10:31 2008-06-27 Show GitHub Exploit DB Packet Storm
294046 - softbizscripts softbiz_jokes_and_funny_pics_script SQL injection vulnerability in index.php in Softbiz Jokes & Funny Pics Script allows remote attackers to execute arbitrary SQL commands via the sbjoke_id parameter, a different vector than CVE-2008-1… CWE-89
SQL Injection
CVE-2008-2874 2017-09-29 10:31 2008-06-27 Show GitHub Exploit DB Packet Storm
294047 - webdevindo-cms webdevindo-cms SQL injection vulnerability in index.php in Webdevindo-CMS 1.0.0 allows remote attackers to execute arbitrary SQL commands via the hal parameter. CWE-89
SQL Injection
CVE-2008-2875 2017-09-29 10:31 2008-06-27 Show GitHub Exploit DB Packet Storm
294048 - munky munky Directory traversal vulnerability in index.php in mUnky 0.0.1 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the zone parameter. CWE-22
Path Traversal
CVE-2008-2876 2017-09-29 10:31 2008-06-27 Show GitHub Exploit DB Packet Storm
294049 - cmsworks cmsworks PHP remote file inclusion vulnerability in admin/include/lib.module.php in cmsWorks 2.2 RC4, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the m… CWE-94
Code Injection
CVE-2008-2877 2017-09-29 10:31 2008-06-27 Show GitHub Exploit DB Packet Storm
294050 - relative_real_estate_systems relative_real_estate_systems Relative Real Estate Systems 3.0 and earlier stores passwords in cleartext in a MySQL database, which allows context-dependent attackers to obtain sensitive information. CWE-200
Information Exposure
CVE-2008-2881 2017-09-29 10:31 2008-06-27 Show GitHub Exploit DB Packet Storm