Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
194331 7.1 重要
Network
WordPress.org - WordPress の wp-admin/includes/ajax-actions.php の wp_ajax_update_plugin 関数におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2016-6896 2017-02-1 10:37 2016-08-20 Show GitHub Exploit DB Packet Storm
194332 4.3 警告
Network
WordPress.org - WordPress の wp-admin/includes/ajax-actions.php の wp_ajax_update_plugin 関数における読み取りアクセス制限を回避される脆弱性 CWE-254
CWE-284
CVE-2016-10148 2017-02-1 10:37 2016-07-27 Show GitHub Exploit DB Packet Storm
194333 4 警告
Local
Info-ZIP - Info-Zip UnZip の zipinfo.c の zi_short 関数におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-9844 2017-01-31 18:23 2016-12-2 Show GitHub Exploit DB Packet Storm
194334 5.5 警告
Local
Linux - Linux Kernel の crypto/mcryptd.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2016-10147 2017-01-31 18:16 2016-12-15 Show GitHub Exploit DB Packet Storm
194335 7.5 重要
Network
Artifex Software - Artifex Software MuJS におけるサービス運用妨害 (DoS) の脆弱性 CWE-125
境界外読み取り
CVE-2016-9109 2017-01-31 18:06 2016-09-20 Show GitHub Exploit DB Packet Storm
194336 7.5 重要
Network
Artifex Software - Artifex Software MuJS の jsfunction.c の Fp_toString 関数におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-7564 2017-01-31 18:06 2016-09-20 Show GitHub Exploit DB Packet Storm
194337 7.5 重要
Network
Artifex Software - Artifex Software MuJS の chartorune 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-125
境界外読み取り
CVE-2016-7563 2017-01-31 18:06 2016-09-20 Show GitHub Exploit DB Packet Storm
194338 8.1 重要
Network
CA Technologies - CA Service Desk Manager および CA Service Desk Management の RESTful Web サービスにおけるタスク情報を読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-10086 2017-01-31 18:02 2016-12-30 Show GitHub Exploit DB Packet Storm
194339 9.1 緊急
Network
Libical project - Libical におけるサービス運用妨害 (DoS) の脆弱性 CWE-416
解放済みメモリの使用
CVE-2016-9584 2017-01-31 17:53 2016-12-15 Show GitHub Exploit DB Packet Storm
194340 7.5 重要
Network
Belledonne Communications - Bzrtp ライブラリにおけるなりすまし攻撃を実行される脆弱性 CWE-254
セキュリティ機能
CVE-2016-6271 2017-01-31 17:50 2016-04-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 23, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293421 - xpweb xpweb Directory traversal vulnerability in Download.php in XPWeb 3.0.1, 3.3.2, and possibly other versions, allows remote attackers to read arbitrary files via a .. (dot dot) in the url parameter. CWE-22
Path Traversal
CVE-2008-0813 2017-09-29 10:30 2008-02-19 Show GitHub Exploit DB Packet Storm
293422 - truc truc Directory traversal vulnerability in download.php in Tracking Requirements & Use Cases (TRUC) 0.11.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the upload_filename paramete… CWE-22
Path Traversal
CVE-2008-0814 2017-09-29 10:30 2008-02-19 Show GitHub Exploit DB Packet Storm
293423 - freephpgallery freephpgallery Multiple directory traversal vulnerabilities in freePHPgallery 0.6 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the lang cookie to (1) comment.php, (2) in… CWE-22
Path Traversal
CVE-2008-0818 2017-09-29 10:30 2008-02-20 Show GitHub Exploit DB Packet Storm
293424 - osi_codes_inc. phplive SQL injection vulnerability in admin/traffic/knowledge_searchm.php in OSI Codes Inc. PHP Live! 3.2.2 allows remote attackers to execute arbitrary SQL commands via the questid parameter in an expand_q… CWE-89
SQL Injection
CVE-2008-0821 2017-09-29 10:30 2008-02-20 Show GitHub Exploit DB Packet Storm
293425 - phpnuke book SQL injection vulnerability in the Books module of PHP-Nuke allows remote attackers to execute arbitrary SQL commands via the cid parameter. CWE-89
SQL Injection
CVE-2008-0827 2017-09-29 10:30 2008-02-20 Show GitHub Exploit DB Packet Storm
293426 - joomla
joomlapixel
mambo
joomla
jooget
mambo
SQL injection vulnerability in jooget.php in the Joomlapixel Jooget! (com_jooget) 2.6.8 component for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the id parameter … CWE-89
SQL Injection
CVE-2008-0829 2017-09-29 10:30 2008-02-20 Show GitHub Exploit DB Packet Storm
293427 - apple iphoto The Digital Photo Access Protocol (DPAP) server for iPhoto 4.0.3 allows remote attackers to cause a denial of service (crash) via a malformed dpap: URI, a different vulnerability than CVE-2008-0043. CWE-20
 Improper Input Validation 
CVE-2008-0830 2017-09-29 10:30 2008-02-20 Show GitHub Exploit DB Packet Storm
293428 - joomla rapid_recipe Multiple SQL injection vulnerabilities in the Rapid Recipe (com_rapidrecipe) 1.6.5 and earlier component for Joomla! allow remote attackers to execute arbitrary SQL commands via the (1) user_id or (2… CWE-89
SQL Injection
CVE-2008-0831 2017-09-29 10:30 2008-02-21 Show GitHub Exploit DB Packet Storm
293429 - joomla
mambo
kemas_antonius_com_quran SQL injection vulnerability in index.php in the Kemas Antonius com_quran 1.1 and earlier component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the surano param… CWE-89
SQL Injection
CVE-2008-0832 2017-09-29 10:30 2008-02-21 Show GitHub Exploit DB Packet Storm
293430 - joomla com_galeria SQL injection vulnerability in index.php in the com_galeria component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail action. CWE-89
SQL Injection
CVE-2008-0833 2017-09-29 10:30 2008-02-21 Show GitHub Exploit DB Packet Storm