Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 30, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
207131 7.8 危険 ZTE - ZTE ZXHN H108N R1A デバイスの cgi-bin/webproc における絶対パストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2015-7250 2016-01-5 16:34 2015-11-3 Show GitHub Exploit DB Packet Storm
207132 6.8 警告 ZTE - ZTE ZXHN H108N R1A デバイスにおけるアクセス制限を回避される脆弱性 CWE-264
CWE-Other
CVE-2015-7249 2016-01-5 16:34 2015-11-3 Show GitHub Exploit DB Packet Storm
207133 5 警告 ZTE - ZTE ZXHN H108N R1A デバイスにおけるユーザ名およびパスワードハッシュを取得される脆弱性 CWE-200
情報漏えい
CVE-2015-7248 2016-01-5 16:34 2015-11-3 Show GitHub Exploit DB Packet Storm
207134 5 警告 Amped Wireless - Amped Wireless R10000 デバイスのファームウェアにおけるレスポンスを偽装される脆弱性 CWE-Other
その他
CVE-2015-7279 2016-01-5 15:26 2015-12-10 Show GitHub Exploit DB Packet Storm
207135 6.8 警告 Amped Wireless - Amped Wireless R10000 デバイスのファームウェアにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2015-7278 2016-01-5 15:26 2015-12-10 Show GitHub Exploit DB Packet Storm
207136 9.3 危険 Amped Wireless - Amped Wireless R10000 デバイスのファームウェアの Web 管理インターフェースにおける管理者権限を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2015-7277 2016-01-5 15:26 2015-12-10 Show GitHub Exploit DB Packet Storm
207137 6.8 警告 Pacom - Pacom 1000 CCU および RTU GMS デバイスにおけるコントローラとベース間のデータストリームを偽造される脆弱性 CWE-310
暗号の問題
CVE-2014-3260 2016-01-5 15:18 2014-05-7 Show GitHub Exploit DB Packet Storm
207138 5 警告 IDERA, Inc. - Idera Uptime Infrastructure Monitor の up.time クライアントにおけるフォーマットストリングの脆弱性 CWE-134
書式文字列の問題
CVE-2015-2894 2016-01-5 15:07 2015-12-3 Show GitHub Exploit DB Packet Storm
207139 7.5 危険 IDERA, Inc. - Idera Uptime Infrastructure Monitor の up.time クライアントにおけるバッファオーバーフローの脆弱性 CWE-119
CWE-Other
CVE-2015-2895 2016-01-5 15:07 2015-12-3 Show GitHub Exploit DB Packet Storm
207140 5 警告 IDERA, Inc. - Idera Uptime Infrastructure Monitor の up.time クライアントにおけるバージョンなどの重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2015-2896 2016-01-5 15:07 2015-12-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 30, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
346651 - oracle application_server The OHS component 1.0.2 through 10.x, when UseWebcacheIP is disabled, in Oracle Application Server allows remote attackers to bypass HTTP Server mod_access restrictions via a request to the webcache … NVD-CWE-Other
CVE-2005-1383 2017-07-11 10:32 2005-05-3 Show GitHub Exploit DB Packet Storm
346652 - coinsoft_technologies phpcoin Multiple SQL injection vulnerabilities in phpCoin 1.2.2 allow remote attackers to execute arbitrary SQL commands via the (1) search parameter to index.php, (2) phpcoinsessid parameter to login.php, (… NVD-CWE-Other
CVE-2005-1384 2017-07-11 10:32 2005-05-3 Show GitHub Exploit DB Packet Storm
346653 - apsis pound Buffer overflow in the add_port function in APSIS Pound 1.8.2 and earlier allows remote attackers to execute arbitrary code via a long Host HTTP header. NVD-CWE-Other
CVE-2005-1391 2017-07-11 10:32 2005-05-3 Show GitHub Exploit DB Packet Storm
346654 - php-calendar php-calendar SQL injection vulnerability in search.php for PHP-Calendar before 0.10.3 allows remote attackers to execute arbitrary SQL commands via unknown vectors. NVD-CWE-Other
CVE-2005-1397 2017-07-11 10:32 2005-05-3 Show GitHub Exploit DB Packet Storm
346655 - ibm lotus_notes HTTP response splitting vulnerability in the @SetHTTPHeader function in Lotus Domino 6.5.x before 6.5.4 and 6.0.x before 6.0.5 allows attackers to poison the web cache via malicious applications. NVD-CWE-Other
CVE-2005-1405 2017-07-11 10:32 2005-05-3 Show GitHub Exploit DB Packet Storm
346656 - cybration icuii Cybration ICUII 7.0 stores passwords in plaintext in the world-readable icuii.ini file, which allows local users to gain privileges. NVD-CWE-Other
CVE-2005-1411 2017-07-11 10:32 2005-05-3 Show GitHub Exploit DB Packet Storm
346657 - envivosoft envivo_cms Multiple SQL injection vulnerabilities in enVivo!CMS allow remote attackers to execute arbitrary SQL commands and gain privileges via the (1) username or (2) password parameters to admin_login.asp, o… NVD-CWE-Other
CVE-2005-1413 2017-07-11 10:32 2005-05-3 Show GitHub Exploit DB Packet Storm
346658 - - - ExoticSoft FilePocket 1.2 stores sensitive proxy information, including proxy passwords, in plaintext in the registry, which allows local users to gain privileges. NVD-CWE-Other
CVE-2005-1414 2017-07-11 10:32 2005-05-3 Show GitHub Exploit DB Packet Storm
346659 - netleaf_limited notjustbrowsing NetLeaf Limited NotJustBrowsing 1.0.3 stores the View Lock Password in plaintext in the notjustbrowsing.prf file, which allows local users to gain privileges. NVD-CWE-Other
CVE-2005-1418 2017-07-11 10:32 2005-05-3 Show GitHub Exploit DB Packet Storm
346660 - stumbleinside gotext StumbleInside GoText 1.01 stores sensitive username, mail address,and phone number information in plaintext in the GoText.bin file, which allows local users to obtain that information. NVD-CWE-Other
CVE-2005-1424 2017-07-11 10:32 2005-05-3 Show GitHub Exploit DB Packet Storm