Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 28, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
198031 9.8 緊急
Network
php-gettext project - php-gettext における Eval インジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2016-6175 2017-03-16 14:51 2016-07-25 Show GitHub Exploit DB Packet Storm
198032 9.8 緊急
Network
アドビシステムズ - Adobe Flash Player の Primetime TVSDK API の機能におけるメモリを破損される脆弱性 CWE-119
バッファエラー
CVE-2017-2998 2017-03-16 14:35 2017-03-14 Show GitHub Exploit DB Packet Storm
198033 9.8 緊急
Network
アドビシステムズ - Adobe Flash Player の Primetime TVSDK におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2017-2997 2017-03-16 14:35 2017-03-14 Show GitHub Exploit DB Packet Storm
198034 7.8 重要
Local
アドビシステムズ - Adobe Shockwave Player における安全でないライブラリを読み込まれる脆弱性 CWE-426
信頼性のない検索パス
CVE-2017-2983 2017-03-16 14:35 2017-03-14 Show GitHub Exploit DB Packet Storm
198035 7.5 重要
Network
マイクロソフト - Microsoft Windows の SMB Tree Connect Response パケットの処理にサービス運用妨害 (DoS) の脆弱性 - CVE-2017-0016 2017-03-16 14:18 2017-02-2 Show GitHub Exploit DB Packet Storm
198036 8.1 重要
Network
Zend Technologies Ltd. - Zend Framework における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2016-4861 2017-03-16 14:14 2016-09-15 Show GitHub Exploit DB Packet Storm
198037 8.1 重要
Network
D-Link Systems, Inc. - D-Link 製ルータの HNAP サービスにスタックバッファオーバーフローの脆弱性 CWE-Other
その他
CVE-2016-6563 2017-03-16 14:10 2016-11-7 Show GitHub Exploit DB Packet Storm
198038 8.8 重要
Network
シスコシステムズ - ウェブブラウザ向け Cisco WebEx 拡張機能に任意のコマンドが実行可能な脆弱性 CWE-119
CWE-78
CVE-2017-3823 2017-03-16 13:54 2017-01-27 Show GitHub Exploit DB Packet Storm
198039 7.5 重要
Network
Squid-cache.org - Squid HTTP Proxy の Collapsed Forwarding 機能におけるプライベートな応答を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-10003 2017-03-16 09:56 2016-12-16 Show GitHub Exploit DB Packet Storm
198040 7.5 重要
Network
Squid-cache.org
Debian
- Squid HTTP Proxy におけるクライアント固有の Cookie データ漏えいの脆弱性 CWE-200
情報漏えい
CVE-2016-10002 2017-03-16 09:56 2016-12-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
351591 - locazo locazolist_classifieds Cross-site scripting (XSS) vulnerability in searchdb.asp in LocazoList 1.03c and earlier allows remote attackers to inject arbitrary web script or HTML via the q parameter. NVD-CWE-Other
CVE-2005-4205 2008-09-20 13:42 2005-12-13 Show GitHub Exploit DB Packet Storm
351592 - php_web_scripts link_up_gold SQL injection vulnerability in poll.php in Link Up Gold 2.5 and earlier allows remote attackers to execute arbitrary SQL commands via the number parameter. NVD-CWE-Other
CVE-2005-4230 2008-09-20 13:42 2005-12-14 Show GitHub Exploit DB Packet Storm
351593 - php_web_scripts ad_manager_pro SQL injection vulnerability in advertiser_statistic.php in Ad Manager Pro 2.0 and earlier allows remote attackers to execute arbitrary SQL commands via the ad_number parameter. NVD-CWE-Other
CVE-2005-4233 2008-09-20 13:42 2005-12-14 Show GitHub Exploit DB Packet Storm
351594 - vcd-db vcd-db SQL injection vulnerability in search.php in VCD-db 0.98 and earlier allows remote attackers to execute arbitrary SQL commands via the by parameter. NVD-CWE-Other
CVE-2005-4240 2008-09-20 13:42 2005-12-14 Show GitHub Exploit DB Packet Storm
351595 - edatcat edatcat_shopping_cart_system Cross-site scripting (XSS) vulnerability in EDCstore.pl in eDatCat 0.3 allows remote attackers to inject arbitrary web script or HTML via the user_action parameter. NVD-CWE-Other
CVE-2005-4289 2008-09-20 13:42 2005-12-16 Show GitHub Exploit DB Packet Storm
351596 - indexcor ezdatabase SQL injection vulnerability in index.php for ezDatabase 2.1.2 and earlier allows remote attackers to execute arbitrary SQL commands via the db_id parameter. NVD-CWE-Other
CVE-2005-4303 2008-09-20 13:42 2005-12-17 Show GitHub Exploit DB Packet Storm
351597 - indexcor ezdatabase index.php in ezDatabase 2.1.2 and earlier allows remote attackers to obtain sensitive information via an invalid cat_id parameter, which leaks the full pathname in an error message. NOTE: these deta… NVD-CWE-Other
CVE-2005-4304 2008-09-20 13:42 2005-12-17 Show GitHub Exploit DB Packet Storm
351598 - scriptscenter ezupload_pro index.php in ezUpload Pro 2.2 and earlier allows remote attackers to include files via the mode parameter. NVD-CWE-Other
CVE-2005-4308 2008-09-20 13:42 2005-12-17 Show GitHub Exploit DB Packet Storm
351599 - binary-concepts binary_board_system Multiple cross-site scripting (XSS) vulnerabilities in Binary Board System (BBS) 0.2.5 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) inreplyto, (2) article, an… NVD-CWE-Other
CVE-2005-4333 2008-09-20 13:42 2005-12-17 Show GitHub Exploit DB Packet Storm
351600 - courseforum projectforum ProjectForum 4.7.0 and earlier allows remote attackers to cause a denial of service (crash) via a crafted pageid parameter to admin/versions.html. NVD-CWE-Other
CVE-2005-4335 2008-09-20 13:42 2005-12-17 Show GitHub Exploit DB Packet Storm