Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201351 6.5 警告 オラクル - Oracle Database Server の Workspace Manager における脆弱性 CWE-noinfo
情報不足
CVE-2015-4925 2016-01-20 13:55 2016-01-19 Show GitHub Exploit DB Packet Storm
201352 4 警告 オラクル - Oracle Database Server の XML Developer's Kit for C における脆弱性 CWE-noinfo
情報不足
CVE-2015-4923 2016-01-20 13:55 2016-01-19 Show GitHub Exploit DB Packet Storm
201353 4 警告 オラクル - Oracle Database Server の Database Vault における脆弱性 CWE-noinfo
情報不足
CVE-2015-4921 2016-01-20 13:55 2016-01-19 Show GitHub Exploit DB Packet Storm
201354 5 警告 アップル
OpenLDAP Foundation
- OpenLDAP の libraries/liblber/io.c の ber_get_next 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2015-6908 2016-01-19 16:59 2015-09-9 Show GitHub Exploit DB Packet Storm
201355 4.6 警告 ヒューレット・パッカード・エンタープライズ - 複数の HPE Network Switch のソフトウェアにおけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-6859 2016-01-19 16:19 2015-11-10 Show GitHub Exploit DB Packet Storm
201356 7.2 危険 ヒューレット・パッカード・エンタープライズ - 複数の HPE Network Switch のソフトウェアにおけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-6860 2016-01-19 16:19 2015-11-10 Show GitHub Exploit DB Packet Storm
201357 10 危険 Colorscore project - Ruby 用 Colorscore gem の lib/colorscore/histogram.rb の Histogram クラスの初期化メソッドにおける任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2015-7541 2016-01-19 11:05 2015-09-29 Show GitHub Exploit DB Packet Storm
201358 10 危険 アドバンテック株式会社 - Advantech EKI-132x デバイスのファームウェアにおける認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2015-7938 2016-01-19 10:49 2015-12-10 Show GitHub Exploit DB Packet Storm
201359 6.5 警告 アドバンテック株式会社 - Advantech WebAccess における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2015-3947 2016-01-19 10:49 2015-05-12 Show GitHub Exploit DB Packet Storm
201360 6.8 警告 アドバンテック株式会社 - Advantech WebAccess におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2015-3946 2016-01-19 10:49 2015-05-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 24, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
297651 - myiosoft easye-cards SQL injection vulnerability in staticpages/easyecards/index.php in MyioSoft EasyE-Cards 3.5 trial edition (tr) and 3.10a, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitra… CWE-89
SQL Injection
CVE-2008-3345 2017-08-8 10:31 2008-07-29 Show GitHub Exploit DB Packet Storm
297652 - netapp data_ontap Multiple unspecified vulnerabilities in NetApp Data ONTAP, as used on NetApp and IBM eServer platforms, allow remote attackers to execute arbitrary commands, cause a denial of service (system crash),… NVD-CWE-noinfo
CWE-264
Permissions, Privileges, and Access Controls
CVE-2008-3349 2017-08-8 10:31 2008-07-29 Show GitHub Exploit DB Packet Storm
297653 - the_kelleys dnsmasq dnsmasq 2.43 allows remote attackers to cause a denial of service (daemon crash) by (1) sending a DHCPINFORM while lacking a DHCP lease, or (2) attempting to renew a nonexistent DHCP lease for an inv… NVD-CWE-Other
CVE-2008-3350 2017-08-8 10:31 2008-07-29 Show GitHub Exploit DB Packet Storm
297654 - runcms newbb_plus_module
runcms
Multiple PHP remote file inclusion vulnerabilities in the Newbb Plus (newbb_plus) module 0.93 in RunCMS 1.6.1 allow remote attackers to execute arbitrary PHP code via a URL in the (1) bbPath[path] pa… CWE-94
Code Injection
CVE-2008-3354 2017-08-8 10:31 2008-07-29 Show GitHub Exploit DB Packet Storm
297655 - owl intranet_knowledgebase SQL injection vulnerability in register.php in Steve Bourgeois and Chris Vincent Owl Intranet Knowledgebase 0.95 and earlier allows remote attackers to execute arbitrary SQL commands via the username… CWE-89
SQL Injection
CVE-2008-3359 2017-08-8 10:31 2008-07-30 Show GitHub Exploit DB Packet Storm
297656 - emc centera_universal_access SQL injection vulnerability in the CUA Login Module in EMC Centera Universal Access (CUA) 4.0_4735.p4 allows remote attackers to execute arbitrary SQL commands via the user (user name) field. CWE-89
SQL Injection
CVE-2008-3370 2017-08-8 10:31 2008-07-31 Show GitHub Exploit DB Packet Storm
297657 - snarky visualpic Cross-site scripting (XSS) vulnerability in Snark VisualPic 0.3.1 allows remote attackers to inject arbitrary web script or HTML via the pic parameter to the default URI. NOTE: the provenance of thi… CWE-79
Cross-site Scripting
CVE-2008-3379 2017-08-8 10:31 2008-07-31 Show GitHub Exploit DB Packet Storm
297658 - moinmoin moinmoin Multiple cross-site scripting (XSS) vulnerabilities in macro/AdvancedSearch.py in moin (and MoinMoin) 1.6.3 and 1.7.0 allow remote attackers to inject arbitrary web script or HTML via unspecified vec… CWE-79
Cross-site Scripting
CVE-2008-3381 2017-08-8 10:31 2008-07-31 Show GitHub Exploit DB Packet Storm
297659 - webwizguide web_wiz_forum Multiple cross-site scripting (XSS) vulnerabilities in Web Wiz Forum 9.5 allow remote attackers to inject arbitrary web script or HTML via the mode parameter to (1) admin_group_details.asp and (2) ad… CWE-79
Cross-site Scripting
CVE-2008-3391 2017-08-8 10:31 2008-08-1 Show GitHub Exploit DB Packet Storm
297660 - webwizguide web_wiz_forum Cross-site request forgery (CSRF) vulnerability in Web Wiz Forum 9.5 allows remote attackers to log out a user via a link or IMG tag to log_off_user.asp. CWE-352
 Origin Validation Error
CVE-2008-3392 2017-08-8 10:31 2008-08-1 Show GitHub Exploit DB Packet Storm