Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
195671 5.9 警告
Network
profanity - profanity の複数の XMPP クライアントの "XEP-0280: Message Carbons" の実装における連絡先を含むユーザになりすまされる脆弱性 CWE-20
CWE-346
CVE-2017-5592 2017-03-8 15:04 2017-01-24 Show GitHub Exploit DB Packet Storm
195672 5.9 警告
Network
SleekXMPP project
Slixmpp project
- SleekXMPP および Slixmpp の複数の XMPP クライアントの "XEP-0280: Message Carbons" の実装における連絡先を含むユーザになりすまされる脆弱性 CWE-20
CWE-346
CVE-2017-5591 2017-03-8 15:04 2017-01-28 Show GitHub Exploit DB Packet Storm
195673 5.9 警告
Network
Georg Lukas - yaxim および Bruno の複数の XMPP クライアントの "XEP-0280: Message Carbons" の実装における連絡先を含むユーザになりすまされる脆弱性 CWE-20
CWE-346
CVE-2017-5589 2017-03-8 15:04 2017-01-30 Show GitHub Exploit DB Packet Storm
195674 6.1 警告
Network
Schneider Electric - Schneider Electric homeLYnk Controller におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-5157 2017-03-8 15:03 2017-01-18 Show GitHub Exploit DB Packet Storm
195675 9.8 緊急
Network
Schneider Electric - Schneider Electric PowerLogic PM8ECC におけるデバイスへのアクセスを許容される脆弱性 CWE-798
ハードコードされた認証情報の使用
CVE-2016-5818 2017-03-8 15:03 2016-10-18 Show GitHub Exploit DB Packet Storm
195676 7.5 重要
Network
Mobile App Native project - WordPress 用 Mobile App Native プラグインにおけるリモートでファイルをアップロードされる脆弱性 CWE-254
セキュリティ機能
CVE-2017-6104 2017-03-8 14:30 2017-02-27 Show GitHub Exploit DB Packet Storm
195677 6.1 警告
Network
AnyVar project - WordPress 用 AnyVar プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-6103 2017-03-8 14:30 2017-02-21 Show GitHub Exploit DB Packet Storm
195678 6.1 警告
Network
Blair Jordan - WordPress 用 Rockhoist Badges プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-6102 2017-03-8 14:30 2017-02-20 Show GitHub Exploit DB Packet Storm
195679 7.8 重要
Local
IBM - IBM AIX における root 権限を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2016-8972 2017-03-8 14:20 2016-12-15 Show GitHub Exploit DB Packet Storm
195680 5.5 警告
Local
IBM - IBM AIX におけるシステムクラッシュを引き起こされる脆弱性 CWE-20
不適切な入力確認
CVE-2016-8944 2017-03-8 14:20 2016-10-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
347631 - redhat linux netcfg 2.16-1 in Red Hat Linux 4.2 allows the Ethernet interface to be controlled by users on reboot when an option is set, which allows local users to cause a denial of service by shutting down the … NVD-CWE-Other
CVE-1999-1331 2008-09-11 04:01 1999-12-31 Show GitHub Exploit DB Packet Storm
347632 - ibm tivoli_opc_tracker_agent IBM/Tivoli OPC Tracker Agent version 2 release 1 creates files, directories, and IPC message queues with insecure permissions (world-readable and world-writable), which could allow local users to dis… NVD-CWE-Other
CVE-1999-1403 2008-09-11 04:01 1998-10-2 Show GitHub Exploit DB Packet Storm
347633 - ibm tivoli_opc_tracker_agent IBM/Tivoli OPC Tracker Agent version 2 release 1 allows remote attackers to cause a denial of service (resource exhaustion) via malformed data to the localtracker client port (5011), which prevents t… NVD-CWE-Other
CVE-1999-1404 2008-09-11 04:01 1998-10-2 Show GitHub Exploit DB Packet Storm
347634 - inso dwhttpd AnswerBook2 (AB2) web server dwhttpd 3.1a4 allows remote attackers to cause a denial of service (resource exhaustion) via an HTTP POST request with a large content-length. NVD-CWE-Other
CVE-1999-1416 2008-09-11 04:01 1998-08-23 Show GitHub Exploit DB Packet Storm
347635 - inso answerbook2 Format string vulnerability in AnswerBook2 (AB2) web server dwhttpd 3.1a4 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via encoded % characters in an H… NVD-CWE-Other
CVE-1999-1417 2008-09-11 04:01 1998-08-23 Show GitHub Exploit DB Packet Storm
347636 - computer_software_manufaktur alibaba genkey utility in Alibaba 2.0 generates RSA key pairs with an exponent of 1, which results in transactions that are sent in cleartext. NVD-CWE-Other
CVE-1999-1444 2008-09-11 04:01 1999-12-31 Show GitHub Exploit DB Packet Storm
347637 - sco openserver
unixware
Vulnerability in (1) rlogin daemon rshd and (2) scheme on SCO UNIX OpenServer 5.0.5 and earlier, and SCO UnixWare 7.0.1 and earlier, allows remote attackers to gain privileges. NVD-CWE-Other
CVE-1999-1450 2008-09-11 04:01 1999-01-27 Show GitHub Exploit DB Packet Storm
347638 - thttpd thttpd_http_server Buffer overflow in thttpd HTTP server before 2.04-31 allows remote attackers to execute arbitrary commands via a long date string, which is not properly handled by the tdate_parse function. NVD-CWE-Other
CVE-1999-1457 2008-09-11 04:01 1999-11-16 Show GitHub Exploit DB Packet Storm
347639 - next
sgi
cray
sun
next
irix
unicos
sunos
rdist in various UNIX systems uses popen to execute sendmail, which allows local users to gain root privileges by modifying the IFS (Internal Field Separator) variable. NVD-CWE-Other
CVE-1999-1468 2008-09-11 04:01 1991-10-22 Show GitHub Exploit DB Packet Storm
347640 - oracle oracle8i
oracle9i
Oracle Database Server 8.1.7.4 through 9.2.0.4 allows local users to execute commands with additional privileges via the ctxsys.driload package, which is publicly accessible. CWE-94
Code Injection
CVE-2004-0637 2008-09-10 13:00 2004-09-2 Show GitHub Exploit DB Packet Storm