Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1961 6.5 警告
Network
Wireshark Wireshark Wiresharkにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-0962 2026-01-23 14:23 2026-01-14 Show GitHub Exploit DB Packet Storm
1962 7.2 重要
Network
Open eClass project Open eClass Open eClassにおける危険なタイプのファイルの無制限アップロードに関する脆弱性 CWE-434
危険なタイプのファイルの無制限アップロード
CVE-2026-22241 2026-01-23 14:23 2026-01-8 Show GitHub Exploit DB Packet Storm
1963 8.8 重要
Network
Microhard IPn4G Firmware
IPn3Gii Firmware
VIP4Gb Firmware
BulletLTE ファームウェア
IPn4Gb Firmware
Dragon-LTE Firmware
Bullet-3G Firmware
VIP4G-WiFi-N Firm…
MicrohardのBullet-3G Firmware等の複数製品における不適切な権限設定に関する脆弱性 CWE-266
不適切な権限設定
CVE-2018-25148 2026-01-23 14:23 2025-12-24 Show GitHub Exploit DB Packet Storm
1964 6.5 警告
Network
Microhard IPn4G Firmware
IPn3Gii Firmware
VIP4Gb Firmware
BulletLTE ファームウェア
IPn4Gb Firmware
Dragon-LTE Firmware
Bullet-3G Firmware
VIP4G-WiFi-N Firm…
MicrohardのBullet-3G Firmware等の複数製品におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2018-25149 2026-01-23 14:23 2025-12-24 Show GitHub Exploit DB Packet Storm
1965 6.5 警告
Network
Teradek Vidiu Pro Firmware
VidiU Mini ファームウェア
VidiU ファームウェア
TeradekのVidiU Mini ファームウェア等の複数製品におけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2019-25251 2026-01-23 14:23 2025-12-24 Show GitHub Exploit DB Packet Storm
1966 4.3 警告
Network
Teradek Vidiu Pro Firmware
VidiU Mini ファームウェア
VidiU ファームウェア
TeradekのVidiU Mini ファームウェア等の複数製品におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2019-25252 2026-01-23 14:23 2025-12-24 Show GitHub Exploit DB Packet Storm
1967 5.5 警告
Local
Celestial Software AbsoluteTelnet Celestial SoftwareのAbsoluteTelnetにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2021-47764 2026-01-23 14:23 2026-01-15 Show GitHub Exploit DB Packet Storm
1968 5.5 警告
Local
Celestial Software AbsoluteTelnet Celestial SoftwareのAbsoluteTelnetにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2021-47765 2026-01-23 14:23 2026-01-15 Show GitHub Exploit DB Packet Storm
1969 7.8 重要
Local
Macro Expert Macro Expert Macro Expertにおける引用されない検索パスまたは要素に関する脆弱性 CWE-428
引用されない検索パスまたは要素
CVE-2021-47780 2026-01-23 14:23 2026-01-16 Show GitHub Exploit DB Packet Storm
1970 8.8 重要
Network
Zesle Software Inc. ZesleCP Zesle Software Inc.のZesleCPにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2021-47794 2026-01-23 14:22 2026-01-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 26, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
304491 - coolphp coolphp index.php in CoolPHP 1.0-stable allows remote attackers to gain sensitive information via an invalid op parameter, which reveals the path in an error message. NVD-CWE-Other
CVE-2004-1600 2017-07-11 10:31 2004-10-16 Show GitHub Exploit DB Packet Storm
304492 - coolphp coolphp_web_portal Directory traversal vulnerability in index.php in CoolPHP 1.0-stable allows remote attackers to access arbitrary files and execute local PHP scripts via a .. (dot dot) in the op parameter. NVD-CWE-Other
CVE-2004-1601 2017-07-11 10:31 2004-10-16 Show GitHub Exploit DB Packet Storm
304493 - best_software
saleslogix_corporation
saleslogix SalesLogix 6.1 allows remote attackers to bypass authentication by modifying the slxweb cookie to set user=Admin, teams=ADMIN!, and usertype=Administrator. NVD-CWE-Other
CVE-2004-1605 2017-07-11 10:31 2004-10-14 Show GitHub Exploit DB Packet Storm
304494 - best_software
saleslogix_corporation
saleslogix slxweb.dll in SalesLogix 6.1 allows remote attackers to cause a denial service (application crash) via an invalid HTTP request, which might also leak sensitive information in the ErrorLogMsg cookie. NVD-CWE-Other
CVE-2004-1606 2017-07-11 10:31 2004-10-18 Show GitHub Exploit DB Packet Storm
304495 - best_software
saleslogix_corporation
saleslogix slxweb.dll in SalesLogix 6.1 allows remote attackers to obtain sensitive information via a (1) Library or (2) Attachment request with an invalid file parameter, which reveals the path in an error mes… NVD-CWE-Other
CVE-2004-1607 2017-07-11 10:31 2004-10-18 Show GitHub Exploit DB Packet Storm
304496 - best_software
saleslogix_corporation
saleslogix SQL injection vulnerability in SalesLogix 6.1 allows remote attackers to execute arbitrary SQL statements via the id parameter in a view operation. NVD-CWE-Other
CVE-2004-1608 2017-07-11 10:31 2004-10-18 Show GitHub Exploit DB Packet Storm
304497 - best_software
saleslogix_corporation
saleslogix SalesLogix 6.1 includes usernames, passwords, and other sensitive information in the headers of an HTTP response, which could allow remote attackers to gain access. NVD-CWE-Other
CVE-2004-1609 2017-07-11 10:31 2004-10-18 Show GitHub Exploit DB Packet Storm
304498 - best_software
saleslogix_corporation
saleslogix SalesLogix 6.1 does not verify if a user is authenticated before performing sensitive operations, which could allow remote attackers to (1) execute arbitrary SLX commands on the server or spoof the s… NVD-CWE-Other
CVE-2004-1611 2017-07-11 10:31 2004-10-18 Show GitHub Exploit DB Packet Storm
304499 - saleslogix_corporation saleslogix Directory traversal vulnerability in SalesLogix 6.1 allows remote attackers to upload arbitrary files via a .. (dot dot) in a ProcessQueueFile request. NVD-CWE-Other
CVE-2004-1612 2017-07-11 10:31 2004-10-18 Show GitHub Exploit DB Packet Storm
304500 - links links Links allows remote attackers to cause a denial of service (memory consumption) via a web page or HTML email that contains a table with a td element and a large rowspan value,as demonstrated by mangl… NVD-CWE-Other
CVE-2004-1616 2017-07-11 10:31 2004-10-18 Show GitHub Exploit DB Packet Storm