Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
198521 10 危険 日本電気
アップル
サイバートラスト株式会社
ヒューレット・パッカード
オラクル
GNU Project
日立
- glibc ライブラリにバッファオーバーフローの脆弱性 CWE-119
CWE-Other
CVE-2015-0235 2016-11-22 15:56 2015-01-28 Show GitHub Exploit DB Packet Storm
198522 5 警告 ヒューレット・パッカード
日本電気
日立
オラクル
NTP Project
- NTP の ntpd の ntp_proto.c の receive 関数における意図しない関連付けの変更を誘発される脆弱性 CWE-Other
その他
CVE-2014-9296 2016-11-22 15:56 2014-11-3 Show GitHub Exploit DB Packet Storm
198523 7.5 危険 MySQL AB
オラクル
- Oracle MySQL の MySQL Server における Server : Security : Encryption に関する脆弱性 CWE-noinfo
情報不足
CVE-2015-0411 2016-11-22 15:55 2015-01-20 Show GitHub Exploit DB Packet Storm
198524 4 警告 オラクル - Oracle MySQL の MySQL Server における Server : Optimizer に関する脆弱性 CWE-noinfo
情報不足
CVE-2015-0423 2016-11-22 15:51 2015-04-14 Show GitHub Exploit DB Packet Storm
198525 5.9 警告
Network
日本電気
OpenSSL Project
日立
オラクル
- OpenSSL の ssl/s2_srvr.c における暗号保護メカニズムを破られる脆弱性 CWE-200
CWE-310
CWE-Other
CVE-2015-3197 2016-11-22 15:48 2015-12-31 Show GitHub Exploit DB Packet Storm
198526 5.3 警告
Network
アップル
OpenSSL Project
ヒューレット・パッカード・エンタープライズ
オラクル
- OpenSSL の crypto/asn1/tasn_dec.c の ASN1_TFLG_COMBINE の実装におけるプロセスメモリから重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2015-3195 2016-11-22 15:48 2015-12-3 Show GitHub Exploit DB Packet Storm
198527 5 警告 MySQL AB
SUSE
オラクル
- Oracle MySQL の MySQL Server における Server : Security : Privileges に関する脆弱性 CWE-noinfo
情報不足
CVE-2015-2568 2016-11-22 15:48 2015-04-14 Show GitHub Exploit DB Packet Storm
198528 4 警告 MySQL AB
オラクル
- Oracle MySQL の MySQL Server における Server : InnoDB : DML に関する脆弱性 CWE-noinfo
情報不足
CVE-2015-0433 2016-11-22 15:47 2015-04-14 Show GitHub Exploit DB Packet Storm
198529 7.5 重要
Network
日本電気
Apache Software Foundation
オラクル
- Apache HTTPD の HTTP/2 通信における X.509 クライアント証明書の認証処理の問題 CWE-Other
その他
CVE-2016-4979 2016-11-22 15:46 2016-07-5 Show GitHub Exploit DB Packet Storm
198530 7.5 危険 The PHP Group
アップル
オラクル
- PHP の OPcache エクステンションにおけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2015-1351 2016-11-22 15:38 2015-01-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 10, 2026, 4:58 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
347391 - ibm lotus_domino_server The default configuration of the web server in IBM Lotus Domino Server, possibly 6.0 through 8.0, enables the HTTP TRACE method, which makes it easier for remote attackers to steal cookies and authen… CWE-16
Configuration
CVE-2008-7253 2010-01-26 14:00 2010-01-26 Show GitHub Exploit DB Packet Storm
347392 - oracle database_server Unspecified vulnerability in the Oracle OLAP component in Oracle Database Server 10.1.0.4 (10g) allows remote authenticated attackers to affect availability via unknown vectors, aka DB02. NVD-CWE-noinfo
CVE-2005-4884 2010-01-26 14:00 2010-01-26 Show GitHub Exploit DB Packet Storm
347393 - jce-tech php_calendars_script install.php in JCE-Tech PHP Calendars, downloaded 20100121, allows remote attackers to bypass intended access restrictions and modify application settings via a direct request. NOTE: this is only a … CWE-16
CWE-264
Configuration
Permissions, Privileges, and Access Controls
CVE-2010-0380 2010-01-25 14:00 2010-01-23 Show GitHub Exploit DB Packet Storm
347394 - phpmyspace phpmyspace SQL injection vulnerability in modules/arcade/index.php in PHP MySpace Gold Edition 8.0 and 8.10 allows remote attackers to execute arbitrary SQL commands via the gid parameter in a show_stats action… CWE-89
SQL Injection
CVE-2010-0381 2010-01-25 14:00 2010-01-23 Show GitHub Exploit DB Packet Storm
347395 - phpmyspace phpmyspace SQL injection vulnerability in modules/arcade/index.php in PHP MySpace Gold Edition 8.0 and 8.10 allows remote attackers to execute arbitrary SQL commands via the gid parameter in a play_game action.… CWE-89
SQL Injection
CVE-2010-0377 2010-01-23 03:30 2010-01-22 Show GitHub Exploit DB Packet Storm
347396 - sambar sambar_server search.dll Sambar ISAPI Search utility in Sambar Server 4.4 Beta 3 allows remote attackers to read arbitrary directories by specifying the directory in the query parameter. NVD-CWE-Other
CVE-2000-0835 2010-01-16 14:00 2000-11-14 Show GitHub Exploit DB Packet Storm
347397 - webtrends reporting_center WebTrends Reporting Center 4.0d allows remote attackers to determine the real path of the web server via a GET request to get_od_toc.pl with an empty Profile parameter, which leaks the pathname in an… CWE-200
Information Exposure
CVE-2002-0596 2010-01-16 14:00 2002-06-18 Show GitHub Exploit DB Packet Storm
347398 - tftpd32 tftpd32 tftpd32 2.50 and 2.50.2 allows remote attackers to read or write arbitrary files via a full pathname in GET and PUT requests. CWE-264
Permissions, Privileges, and Access Controls
CVE-2002-2353 2009-11-24 14:15 2002-12-31 Show GitHub Exploit DB Packet Storm
347399 - jean-jacques_sarton mtink Buffer overflow in MTink in the printer-filters-utils package allows local users to execute arbitrary code via a long HOME environment variable. NVD-CWE-Other
CVE-2005-4604 2009-11-12 14:51 2005-12-31 Show GitHub Exploit DB Packet Storm
347400 - openoffice openoffice OpenOffice.org 2.0 and earlier, when hyperlinks has been disabled, does not prevent the user from clicking the WWW-browser button in the Hyperlink dialog, which makes it easier for attackers to trick… NVD-CWE-Other
CVE-2005-4636 2009-11-12 14:51 2005-12-31 Show GitHub Exploit DB Packet Storm