Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 17, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
208101 4 警告 PHP工房 - 「【Gallery01】PC、スマホ、ガラケー3デバイス対応写真ギャラリーCMS フリー(無料)版」におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-2982 2015-08-26 17:38 2015-08-12 Show GitHub Exploit DB Packet Storm
208102 2.6 注意 PHP工房 - 「【Gallery01】PC、スマホ、ガラケー3デバイス対応写真ギャラリーCMS フリー(無料)版」におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2015-2983 2015-08-26 17:28 2015-08-12 Show GitHub Exploit DB Packet Storm
208103 3.5 注意 DELL EMC (旧 EMC Corporation) - EMC Documentum D2 の Lockbox における管理者のチケットを復号される脆弱性 CWE-200
情報漏えい
CVE-2015-4537 2015-08-26 16:44 2015-08-20 Show GitHub Exploit DB Packet Storm
208104 5 警告 シスコシステムズ - Cisco Wireless LAN Controller デバイスのソフトウェア上で稼動する Internet Access Point Protocol モジュールにおける不正なトラフィック転送を誘発される脆弱性 CWE-20
不適切な入力確認
CVE-2015-6258 2015-08-26 16:24 2015-08-21 Show GitHub Exploit DB Packet Storm
208105 5 警告 シスコシステムズ - Cisco ASR 5000 デバイスのソフトウェアにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2015-6256 2015-08-26 16:24 2015-08-20 Show GitHub Exploit DB Packet Storm
208106 3.5 注意 シスコシステムズ - Cisco Prime Infrastructure におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-4331 2015-08-26 16:24 2015-08-20 Show GitHub Exploit DB Packet Storm
208107 6.8 警告 Actiontec Electronics, Inc. - Actiontec GT784WN モデムのファームウェアにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2015-2905 2015-08-26 16:20 2015-08-11 Show GitHub Exploit DB Packet Storm
208108 8.3 危険 Actiontec Electronics, Inc. - Actiontec GT784WN モデムのファームウェアにおける root アクセス権を取得される脆弱性 CWE-Other
その他
CVE-2015-2904 2015-08-26 16:10 2015-08-11 Show GitHub Exploit DB Packet Storm
208109 6 警告 ヒューレット・パッカード - 複数の HP CentralView 製品における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2015-5408 2015-08-26 15:51 2015-08-12 Show GitHub Exploit DB Packet Storm
208110 6 警告 ヒューレット・パッカード - 複数の HP CentralView 製品における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2015-5407 2015-08-26 15:51 2015-08-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 17, 2026, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
346881 - hosting_controller hosting_controller The password recovery feature (forgotpassword.asp) in Hosting Controller 6.1 Hotfix 1.7 and earlier allows remote attackers to determine the owner's e-mail address by providing a portion of the domai… NVD-CWE-Other
CVE-2005-0695 2016-10-18 12:13 2005-03-7 Show GitHub Exploit DB Packet Storm
346882 - oracle database_server Directory traversal vulnerability in Oracle Database Server 8i and 9i allows remote attackers to read or rename arbitrary files via "\\.\\.." (modified dot dot backslash) sequences to UTL_FILE funct… NVD-CWE-Other
CVE-2005-0701 2016-10-18 12:13 2005-03-7 Show GitHub Exploit DB Packet Storm
346883 - gamearena experience2 PHP remote file inclusion vulnerability in modules.php in eXPerience2 allows remote attackers to execute arbitrary PHP code by modifying the file parameter to reference a URL on a remote web server t… NVD-CWE-Other
CVE-2005-0721 2016-10-18 12:13 2005-05-2 Show GitHub Exploit DB Packet Storm
346884 - seth_m._knorr biz_mail_form CRLF injection vulnerability in bizmail.cgi in Biz Mail Form before 2.2 allows remote attackers to bypass the email check and send spam e-mail via CRLF sequences and forged mail headers in the email … NVD-CWE-Other
CVE-2005-0493 2016-10-18 12:12 2005-05-2 Show GitHub Exploit DB Packet Storm
346885 - seth_m._knorr biz_mail_form Upgrade to newest version. NVD-CWE-Other
CVE-2005-0493 2016-10-18 12:12 2005-05-2 Show GitHub Exploit DB Packet Storm
346886 - avaya ip_office_phone_manager
ip_soft_phone
The Avaya IP Office Phone Manager, and other products such as the IP Softphone, stores sensitive data in cleartext in a registry key, which allows local and possibly remote users to steal usernames a… NVD-CWE-Other
CVE-2005-0506 2016-10-18 12:12 2005-03-14 Show GitHub Exploit DB Packet Storm
346887 - gd_software sd_server Directory traversal vulnerability in SD Server 4.0.70 and earlier allows remote attackers to read arbitrary files via .. sequences in an HTTP request. NVD-CWE-Other
CVE-2005-0507 2016-10-18 12:12 2005-03-14 Show GitHub Exploit DB Packet Storm
346888 - microsoft
mono
.net_framework
mono
Multiple cross-site scripting (XSS) vulnerabilities in the Mono 1.0.5 implementation of ASP.NET (.Net) allow remote attackers to inject arbitrary HTML or web script via Unicode representations for AS… NVD-CWE-Other
CVE-2005-0509 2016-10-18 12:12 2005-03-14 Show GitHub Exploit DB Packet Storm
346889 - jelsoft vbulletin misc.php for vBulletin 3.0.6 and earlier, when "Add Template Name in HTML Comments" is enabled, allows remote attackers to execute arbitrary PHP code via nested variables in the template parameter. NVD-CWE-Other
CVE-2005-0511 2016-10-18 12:12 2005-02-21 Show GitHub Exploit DB Packet Storm
346890 - pmachine pmachine_pro PHP remote file inclusion vulnerability in mail_autocheck.php in the Email This Entry add-on for pMachine Pro 2.4, and possibly other versions including pMachine Free, allows remote attackers to exec… NVD-CWE-Other
CVE-2005-0513 2016-10-18 12:12 2005-02-19 Show GitHub Exploit DB Packet Storm