Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 25, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
193191 6.5 警告
Network
Lenovo
IBM
- Lenovo System x サーバの IMM2 ファームウェアにおけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2017-3744 2017-07-20 17:33 2017-06-8 Show GitHub Exploit DB Packet Storm
193192 5.3 警告
Network
IBM - IBM API Connect における API のセキュリティ制限を回避される脆弱性 CWE-284
不適切なアクセス制御
CVE-2017-1328 2017-07-20 17:29 2017-06-23 Show GitHub Exploit DB Packet Storm
193193 8.2 重要
Network
IBM - IBM API Connect における XML 外部エンティティインジェクションの脆弱性 CWE-611
XML 外部エンティティ参照の不適切な制限
CVE-2017-1322 2017-07-20 17:29 2017-06-22 Show GitHub Exploit DB Packet Storm
193194 5.3 警告
Network
IBM - IBM Tivoli Monitoring における重要な情報を含む可能性のある SOAP クエリにアクセスされる脆弱性 CWE-200
情報漏えい
CVE-2016-6083 2017-07-20 17:29 2016-06-29 Show GitHub Exploit DB Packet Storm
193195 5.5 警告
Local
AudioCoding - Freeware Advanced Audio Coder の frontend/input.c の wav_open_read 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-400
リソースの枯渇
CVE-2017-9129 2017-07-20 17:14 2017-06-20 Show GitHub Exploit DB Packet Storm
193196 6.1 警告
Network
Tiki Software Community Association - Tiki Wiki CMS Groupware の TikiFilter.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-9145 2017-07-20 17:00 2017-04-30 Show GitHub Exploit DB Packet Storm
193197 7.8 重要
Local
レッドハット - 自動バグ報告ツールにおける任意のファイルを読まれ所有権を変更される脆弱性 CWE-59
リンク解釈の問題
CVE-2015-3315 2017-07-20 16:58 2015-04-15 Show GitHub Exploit DB Packet Storm
193198 5.7 警告
Network
Horde - Horde_Image におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2017-9773 2017-07-20 16:54 2017-06-21 Show GitHub Exploit DB Packet Storm
193199 7.5 重要
Network
VIVOTEK Inc. - 複数の VIVOTEK Network Camera 製品の Web サービスの /cgi-bin/admin/downloadMedias.cgi における任意のファイルを読まれる脆弱性 CWE-22
パス・トラバーサル
CVE-2017-9829 2017-07-20 16:50 2017-06-22 Show GitHub Exploit DB Packet Storm
193200 9.8 緊急
Network
VIVOTEK Inc. - 複数の VIVOTEK Network Camera 製品の Web サービスの /cgi-bin/admin/testserver.cgi におけるシェルコマンドを挿入される脆弱性 CWE-77
コマンドインジェクション
CVE-2017-9828 2017-07-20 16:50 2017-06-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 25, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
345981 - adobe acrobat
acrobat_reader
Adobe Reader 6.0 does not properly handle null characters when splitting a filename path into components, which allows remote attackers to execute arbitrary code via a file with a long extension that… NVD-CWE-Other
CVE-2004-0632 2017-07-11 10:30 2004-07-27 Show GitHub Exploit DB Packet Storm
345982 - aol instant_messenger Buffer overflow in the goaway function in the aim:goaway URI handler for AOL Instant Messenger (AIM) 5.5, including 5.5.3595, allows remote attackers to execute arbitrary code via a long Away message. NVD-CWE-Other
CVE-2004-0636 2017-07-11 10:30 2004-11-23 Show GitHub Exploit DB Packet Storm
345983 - oracle oracle8i
oracle9i
Buffer overflow in the KSDWRTB function in the dbms_system package (dbms_system.ksdwrt) for Oracle 9i Database Server Release 2 9.2.0.3 and 9.2.0.4, 9i Release 1 9.0.1.4 and 9.0.1.5, and 8i Release 1… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2004-0638 2017-07-11 10:30 2004-12-31 Show GitHub Exploit DB Packet Storm
345984 - open_webmail
sgi
squirrelmail
open_webmail
propack
squirrelmail
Multiple cross-site scripting (XSS) vulnerabilities in Squirrelmail 1.2.10 and earlier allow remote attackers to inject arbitrary HTML or script via (1) the $mailer variable in read_body.php, (2) the… NVD-CWE-Other
CVE-2004-0639 2017-07-11 10:30 2004-08-6 Show GitHub Exploit DB Packet Storm
345985 - netkit
ssltelnetd
linux_netkit
secure_telnet
Format string vulnerability in the SSL_set_verify function in telnetd.c for SSLtelnet daemon (SSLtelnetd) 0.13 allows remote attackers to execute arbitrary code. NVD-CWE-Other
CVE-2004-0640 2017-07-11 10:30 2004-08-6 Show GitHub Exploit DB Packet Storm
345986 - thomson speedtouch Thomson SpeedTouch 510 ADSL Router with firmware GV8BAA3.270, and possibly earlier versions, generates predictable TCP Initial Sequence Numbers (ISNs), which allows remote attackers to spoof or hijac… NVD-CWE-Other
CVE-2004-0641 2017-07-11 10:30 2004-08-5 Show GitHub Exploit DB Packet Storm
345987 - abisource
wvware
community_abiword
wvware
Buffer overflow in the wvHandleDateTimePicture function in wv library (wvWare) 0.7.4 through 0.7.6 and 1.0.0 allows remote attackers to execute arbitrary code via a document with a long DateTime fiel… NVD-CWE-Other
CVE-2004-0645 2017-07-11 10:30 2004-08-6 Show GitHub Exploit DB Packet Storm
345988 - macromedia coldfusion
jrun
Buffer overflow in the WriteToLog function for JRun 3.0 through 4.0 web server connectors, such as (1) mod_jrun and (2) mod_jrun20 for Apache, with verbose logging enabled, allows remote attackers to… NVD-CWE-Other
CVE-2004-0646 2017-07-11 10:30 2004-12-23 Show GitHub Exploit DB Packet Storm
345989 - shorewall shorewall shorewall 1.4.10c and earlier, and 2.0.x before 2.0.3a, allows local users to overwrite arbitrary files via a symlink attack on the chains-$$ temporary file. NVD-CWE-Other
CVE-2004-0647 2017-07-11 10:30 2004-08-6 Show GitHub Exploit DB Packet Storm
345990 - mozilla firefox
mozilla
thunderbird
Mozilla (Suite) before 1.7.1, Firefox before 0.9.2, and Thunderbird before 0.7.2 allow remote attackers to launch arbitrary programs via a URI referencing the shell: protocol. NVD-CWE-Other
CVE-2004-0648 2017-07-11 10:30 2004-08-6 Show GitHub Exploit DB Packet Storm