Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
195041 8.8 重要
Network
ネットギア - 複数の NETGEAR 製ルータに脆弱性 CWE-306
CWE-352
CWE-77
CVE-2016-6277 2016-12-27 14:16 2016-12-9 Show GitHub Exploit DB Packet Storm
195042 1.7 注意 MySQL AB
openSUSE project
Canonical
Debian
MariaDB Corporation Ab.
オラクル
レッドハット
- Oracle MySQL の MySQL Server および MariaDB における Privileges に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-0609 2016-12-27 10:52 2016-01-19 Show GitHub Exploit DB Packet Storm
195043 3.5 注意 MySQL AB
openSUSE project
Canonical
Debian
MariaDB Corporation Ab.
オラクル
レッドハット
- Oracle MySQL の MySQL Server および MariaDB における UDF に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-0608 2016-12-27 10:52 2016-01-19 Show GitHub Exploit DB Packet Storm
195044 3.5 注意 MySQL AB
openSUSE project
Canonical
Debian
MariaDB Corporation Ab.
オラクル
レッドハット
- Oracle MySQL の MySQL Server および MariaDB における Encryption に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-0606 2016-12-27 10:52 2016-01-19 Show GitHub Exploit DB Packet Storm
195045 3.5 注意 MySQL AB
openSUSE project
Canonical
Debian
MariaDB Corporation Ab.
オラクル
レッドハット
- Oracle MySQL の MySQL Server および MariaDB における InnoDB に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-0600 2016-12-27 10:52 2016-01-19 Show GitHub Exploit DB Packet Storm
195046 7.6 重要
Network
オラクル - Oracle Fusion Middleware の Oracle Platform Security for Java における Audit Reports に関する脆弱性 CWE-Other
その他
CVE-2016-8281 2016-12-27 10:23 2016-10-18 Show GitHub Exploit DB Packet Storm
195047 7.6 重要
Network
オラクル - Oracle Fusion Middleware の Oracle Platform Security for Java における Audit Schema に関する脆弱性 CWE-Other
その他
CVE-2016-5536 2016-12-27 10:22 2016-10-18 Show GitHub Exploit DB Packet Storm
195048 8.1 重要
Network
The PHP Group
日本電気
ヒューレット・パッカード・エンタープライズ
Fedora Project
オラクル
- PHP における任意のプロキシサーバにアプリケーションのアウトバウンド HTTP トラフィックをリダイレクトされる脆弱性 CWE-Other
CWE-Other
CVE-2016-5385 2016-12-27 10:18 2016-07-18 Show GitHub Exploit DB Packet Storm
195049 3.5 注意 MySQL AB
openSUSE project
Canonical
Debian
MariaDB Corporation Ab.
オラクル
レッドハット
- Oracle MySQL の MySQL Server および MariaDB における DML に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-0598 2016-12-27 10:14 2016-01-19 Show GitHub Exploit DB Packet Storm
195050 9.8 緊急
Network
The PHP Group
openSUSE project
Fedora Project
- PHP の ext/exif/exif.c の exif_process_IFD_in_JPEG 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2016-4543 2016-12-27 10:02 2016-04-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 25, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293951 - easyway cms Additional resources found during analysis: http://secunia.com/advisories/30494/ CWE-89
SQL Injection
CVE-2008-2555 2017-09-29 10:31 2008-06-6 Show GitHub Exploit DB Packet Storm
293952 - hessel_brouwer php_visit_counter SQL injection vulnerability in read.php in PHP Visit Counter 0.4 and earlier allows remote attackers to execute arbitrary SQL commands via the datespan parameter in a read action. CWE-89
SQL Injection
CVE-2008-2556 2017-09-29 10:31 2008-06-6 Show GitHub Exploit DB Packet Storm
293953 - fourtwosevenbb 427bb SQL injection vulnerability in showpost.php in 427BB 2.3.1 allows remote attackers to execute arbitrary SQL commands via the post parameter. CWE-89
SQL Injection
CVE-2008-2560 2017-09-29 10:31 2008-06-7 Show GitHub Exploit DB Packet Storm
293954 - fourtwosevenbb 427bb Multiple cross-site scripting (XSS) vulnerabilities in 427BB 2.3.1 allow remote attackers to inject arbitrary web script or HTML via the (1) PATH_INFO to (a) register.php, (b) reminder.php, and (c) s… CWE-79
Cross-site Scripting
CVE-2008-2561 2017-09-29 10:31 2008-06-7 Show GitHub Exploit DB Packet Storm
293955 - powerphlogger powerphlogger SQL injection vulnerability in edCss.php in PowerPhlogger 2.2.5 and earlier allows remote authenticated users to execute arbitrary SQL commands via the css_str parameter in an edit action. CWE-89
SQL Injection
CVE-2008-2562 2017-09-29 10:31 2008-06-7 Show GitHub Exploit DB Packet Storm
293956 - joomla com_jotloader
joomla
SQL injection vulnerability in the JotLoader (com_jotloader) component 1.2.1.a and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the cid parameter to index.php. CWE-89
SQL Injection
CVE-2008-2564 2017-09-29 10:31 2008-06-7 Show GitHub Exploit DB Packet Storm
293957 - php-address_book php-address_book Multiple cross-site scripting (XSS) vulnerabilities in PHP Address Book 3.1.5 and earlier allow remote attackers to inject arbitrary web script or HTML via the group parameter to (1) index.php or (2)… CWE-79
Cross-site Scripting
CVE-2008-2566 2017-09-29 10:31 2008-06-7 Show GitHub Exploit DB Packet Storm
293958 - joomla easybook_component SQL injection vulnerability in the EasyBook (com_easybook) component 1.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the gbid parameter in a deleteentry action to index.… CWE-89
SQL Injection
CVE-2008-2569 2017-09-29 10:31 2008-06-7 Show GitHub Exploit DB Packet Storm
293959 - oracle database_10g
database_9i
Unspecified vulnerability in the Oracle Internet Directory component in Oracle Application Server 9.0.4.3, 10.1.2.3, and 10.1.4.2 has unknown impact and remote attack vectors. NOTE: the previous inf… NVD-CWE-noinfo
CVE-2008-2595 2017-09-29 10:31 2008-07-16 Show GitHub Exploit DB Packet Storm
293960 - battleblog battleblog SQL injection vulnerability in comment.asp in Battle Blog 1.25 and earlier allows remote attackers to execute arbitrary SQL commands via the entry parameter. CWE-89
SQL Injection
CVE-2008-2626 2017-09-29 10:31 2008-06-10 Show GitHub Exploit DB Packet Storm