Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
207161 7.2 危険 ヒューレット・パッカード・エンタープライズ - 複数の HPE Network Switch のソフトウェアにおけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-6860 2016-01-19 16:19 2015-11-10 Show GitHub Exploit DB Packet Storm
207162 10 危険 Colorscore project - Ruby 用 Colorscore gem の lib/colorscore/histogram.rb の Histogram クラスの初期化メソッドにおける任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2015-7541 2016-01-19 11:05 2015-09-29 Show GitHub Exploit DB Packet Storm
207163 10 危険 アドバンテック株式会社 - Advantech EKI-132x デバイスのファームウェアにおける認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2015-7938 2016-01-19 10:49 2015-12-10 Show GitHub Exploit DB Packet Storm
207164 6.5 警告 アドバンテック株式会社 - Advantech WebAccess における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2015-3947 2016-01-19 10:49 2015-05-12 Show GitHub Exploit DB Packet Storm
207165 6.8 警告 アドバンテック株式会社 - Advantech WebAccess におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2015-3946 2016-01-19 10:49 2015-05-12 Show GitHub Exploit DB Packet Storm
207166 5 警告 アドバンテック株式会社 - Advantech WebAccess における電子メールプロジェクトアカウントについての重要な平文情報を読まれる脆弱性 CWE-200
情報漏えい
CVE-2015-3943 2016-01-19 10:49 2015-05-12 Show GitHub Exploit DB Packet Storm
207167 9.3 危険 Unitronics - Unitronics VisiLogic OPLC IDE におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2015-7939 2016-01-19 10:13 2015-11-12 Show GitHub Exploit DB Packet Storm
207168 4.3 警告 AVM - AVM FRITZ!OS の Push-Service-Mails 機能におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-7242 2016-01-18 15:22 2015-07-13 Show GitHub Exploit DB Packet Storm
207169 7.5 危険 Joomla! - Joomla! における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2015-8769 2016-01-18 15:03 2015-12-21 Show GitHub Exploit DB Packet Storm
207170 5 警告 Python Software Foundation - Python 用 RSA パッケージの verify 関数における過度に小さな公開指数を持つ署名を偽造される脆弱性 CWE-20
不適切な入力確認
CVE-2016-1494 2016-01-18 14:57 2016-01-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 4, 2026, 4:17 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2661 8.2 HIGH
Network
- - Smartshop 1 contains a SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the id parameter. Attackers can send GET … CWE-89
SQL Injection
CVE-2018-25341 2026-05-27 04:47 2026-05-24 Show GitHub Exploit DB Packet Storm
2662 8.2 HIGH
Network
- - Smartshop 1 contains a time-based blind SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the 'searched' parameter in sear… CWE-89
SQL Injection
CVE-2018-25342 2026-05-27 04:47 2026-05-24 Show GitHub Exploit DB Packet Storm
2663 8.2 HIGH
Network
- - Joomla! Component EkRishta 2.10 contains an error-based SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code into the usernam… CWE-89
SQL Injection
CVE-2018-25351 2026-05-27 04:47 2026-05-24 Show GitHub Exploit DB Packet Storm
2664 8.4 HIGH
Local
- - Splinterware System Scheduler Pro 5.12 contains an insecure file permissions vulnerability that allows low-privilege users to escalate privileges by modifying service executable files. Attackers can … CWE-276
Incorrect Default Permissions 
CVE-2018-25359 2026-05-27 04:47 2026-05-26 Show GitHub Exploit DB Packet Storm
2665 8.4 HIGH
Local
- - AgataSoft Auto PingMaster 1.5 contains a stack-based buffer overflow vulnerability in the Trace Route host name field that allows local attackers to execute arbitrary code by triggering structured ex… CWE-121
Stack-based Buffer Overflow
CVE-2018-25360 2026-05-27 04:47 2026-05-26 Show GitHub Exploit DB Packet Storm
2666 6.8 MEDIUM
Local
- - Soroush IM Desktop App 0.17.0 contains an authentication bypass vulnerability that allows local attackers to remove passcodes by injecting pre-encrypted database entries using a constant encryption k… CWE-290
 Authentication Bypass by Spoofing
CVE-2018-25361 2026-05-27 04:47 2026-05-26 Show GitHub Exploit DB Packet Storm
2667 8.2 HIGH
Network
- - Twitter-Clone 1 contains a SQL injection vulnerability in follow.php that allows attackers to manipulate database queries by injecting SQL code through the userid parameter. Attackers can submit unio… CWE-89
SQL Injection
CVE-2018-25362 2026-05-27 04:47 2026-05-26 Show GitHub Exploit DB Packet Storm
2668 4.3 MEDIUM
Network
- - Twitter-Clone 1 contains a cross-site request forgery vulnerability that allows remote attackers to force victims to delete posts by crafting malicious HTML forms. Attackers can create hidden forms t… CWE-352
 Origin Validation Error
CVE-2018-25363 2026-05-27 04:47 2026-05-26 Show GitHub Exploit DB Packet Storm
2669 8.2 HIGH
Network
- - Twitter-Clone 1 contains a SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the name parameter. Attackers can sub… CWE-89
SQL Injection
CVE-2018-25364 2026-05-27 04:47 2026-05-26 Show GitHub Exploit DB Packet Storm
2670 7.5 HIGH
Network
- - PCViewer vt1000 contains a directory traversal vulnerability that allows unauthenticated attackers to read arbitrary files by submitting relative path sequences in GET requests. Attackers can use pat… CWE-22
Path Traversal
CVE-2018-25365 2026-05-27 04:47 2026-05-26 Show GitHub Exploit DB Packet Storm