Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
207731 6.8 警告 Apache Software Foundation
オラクル
- Apache Struts における CSRF 保護メカニズムを回避される脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-7809 2015-07-29 17:36 2014-12-8 Show GitHub Exploit DB Packet Storm
207732 7.5 危険 Haxx
サイボウズ
オラクル
- curl および libcurl におけるデータインジェクション攻撃の脆弱性 CWE-89
SQLインジェクション
CVE-2012-0036 2015-07-29 17:36 2012-04-13 Show GitHub Exploit DB Packet Storm
207733 4.3 警告 アップル
MIT Kerberos
ヒューレット・パッカード
オラクル
VMware
レッドハット
- MIT Kerberos 5 における GSS トークンを偽造される脆弱性 CWE-DesignError
CVE-2010-1324 2015-07-29 17:36 2010-11-30 Show GitHub Exploit DB Packet Storm
207734 5.4 警告 ISC, Inc.
日本電気
- ISC BIND の GeoIP 機能におけるサービス運用妨害 (DoS) の脆弱性 CWE-16
環境設定
CVE-2014-8680 2015-07-29 10:56 2014-12-8 Show GitHub Exploit DB Packet Storm
207735 4.3 警告 日本電気
Stichting NLnet Labs
- NLnet Labs Unbound の iterator.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2014-8602 2015-07-29 10:56 2014-12-9 Show GitHub Exploit DB Packet Storm
207736 5 警告 PowerDNS
日本電気
- PowerDNS Recursor におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2014-8601 2015-07-29 10:56 2014-12-8 Show GitHub Exploit DB Packet Storm
207737 5 警告 日本電気
OpenSSL Project
- OpenSSL クライアントにナルポインタ参照の脆弱性 CWE-Other
その他
CVE-2014-5139 2015-07-29 10:56 2014-08-11 Show GitHub Exploit DB Packet Storm
207738 2.6 注意 コルネ株式会社 - Welcart におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-2973 2015-07-28 17:48 2015-07-24 Show GitHub Exploit DB Packet Storm
207739 4.3 警告 Research Artisan Project - Research Artisan Lite におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-2976 2015-07-28 17:25 2015-07-24 Show GitHub Exploit DB Packet Storm
207740 5 警告 Research Artisan Project - Research Artisan Lite における認証不備の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-2975 2015-07-28 17:19 2015-07-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 10, 2026, 4:58 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
347821 - ipswitch imail Directory traversal vulnerability in readmail.cgi for Ipswitch IMail 7.04 and earlier allows remote attackers to access the mailboxes of other users via a .. (dot dot) in the mbx parameter. NVD-CWE-Other
CVE-2001-1285 2008-09-11 04:10 2001-10-12 Show GitHub Exploit DB Packet Storm
347822 - ipswitch imail Ipswitch IMail 7.04 and earlier stores a user's session ID in a URL, which could allow remote attackers to hijack sessions by obtaining the URL, e.g. via an HTML email that causes the Referrer to be … NVD-CWE-Other
CVE-2001-1286 2008-09-11 04:10 2001-10-12 Show GitHub Exploit DB Packet Storm
347823 - ipswitch imail Buffer overflow in Web Calendar in Ipswitch IMail 7.04 and earlier allows remote attackers to execute arbitrary code via a long HTTP GET request. NVD-CWE-Other
CVE-2001-1287 2008-09-11 04:10 2001-10-12 Show GitHub Exploit DB Packet Storm
347824 - id_software quake_3_arena Quake 3 arena 1.29f and 1.29g allows remote attackers to cause a denial of service (crash) via a malformed connection packet that begins with several char-255 characters. NVD-CWE-Other
CVE-2001-1289 2008-09-11 04:10 2001-07-29 Show GitHub Exploit DB Packet Storm
347825 - 3com 3cr29223 Buffer overflow in web server of 3com HomeConnect Cable Modem External with USB (#3CR29223) allows remote attackers to cause a denial of service (crash) via a long HTTP request. NVD-CWE-Other
CVE-2001-1293 2008-09-11 04:10 2001-09-26 Show GitHub Exploit DB Packet Storm
347826 - avtronics inetserv Buffer overflow in A-V Tronics Inetserv 3.2.1 and earlier allows remote attackers to cause a denial of service (crash) in the Webmail interface via a long username and password. NVD-CWE-Other
CVE-2001-1294 2008-09-11 04:10 2001-08-22 Show GitHub Exploit DB Packet Storm
347827 - marc_logemann more.groupware More.groupware PHP script allows remote attackers to include arbitrary files from remote web sites via an HTTP request that sets the includedir variable. NVD-CWE-Other
CVE-2001-1296 2008-09-11 04:10 2001-10-2 Show GitHub Exploit DB Packet Storm
347828 - actionpoll actionpoll PHP remote file inclusion vulnerability in Actionpoll PHP script before 1.1.2 allows remote attackers to execute arbitrary PHP code via a URL in the includedir parameter. NVD-CWE-Other
CVE-2001-1297 2008-09-11 04:10 2001-10-2 Show GitHub Exploit DB Packet Storm
347829 - grant_horwood webodex Webodex PHP script 1.0 and earlier allows remote attackers to include arbitrary files from remote web sites via an HTTP request that sets the includedir variable. NVD-CWE-Other
CVE-2001-1298 2008-09-11 04:10 2001-10-2 Show GitHub Exploit DB Packet Storm
347830 - xinetd xinetd xinetd 2.1.8 and earlier runs with a default umask of 0, which could allow local users to read or modify files that are created by an application that runs under xinetd but does not set its own safe … NVD-CWE-Other
CVE-2001-1322 2008-09-11 04:10 2001-07-10 Show GitHub Exploit DB Packet Storm