Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
208591 5.8 警告 The PHP Group
アップル
- PHP の ext/phar/phar.c におけるプロセスメモリから重要な情報を取得される脆弱性 CWE-119
バッファエラー
CVE-2015-2783 2015-10-6 10:36 2015-04-16 Show GitHub Exploit DB Packet Storm
208592 5 警告 The PHP Group
アップル
- PHP の PostgreSQL エクステンションにおけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2015-1352 2015-10-6 10:36 2015-01-8 Show GitHub Exploit DB Packet Storm
208593 7.5 危険 The PHP Group
アップル
- PHP の phar_object.c の phar_rename_archive 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2015-2301 2015-10-6 10:36 2015-01-29 Show GitHub Exploit DB Packet Storm
208594 7.5 危険 The PHP Group
アップル
NiH
- PHP の ZIP エクステンションなどで使用される libzip の zip_dirent.c の _zip_cdir_new 関数における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2015-2331 2015-10-6 10:36 2015-03-18 Show GitHub Exploit DB Packet Storm
208595 5 警告 The PHP Group
アップル
- PHP の ext/standard/basic_functions.c の move_uploaded_file の実装における拡張子の制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-2348 2015-10-6 10:36 2015-03-18 Show GitHub Exploit DB Packet Storm
208596 7.5 危険 The PHP Group
アップル
- PHP の ext/standard/var_unserializer.re の process_nested_data 関数における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2015-2787 2015-10-6 10:36 2015-02-3 Show GitHub Exploit DB Packet Storm
208597 6.8 警告 The PHP Group
アップル
- PHP の ext/exif/exif.c 内の exif_process_unicode 関数における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2015-0232 2015-10-6 10:36 2015-01-22 Show GitHub Exploit DB Packet Storm
208598 7.5 危険 The PHP Group
アップル
- PHP の ext/standard/var_unserializer.re の process_nested_data 関数における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2015-0231 2015-10-6 10:36 2015-01-22 Show GitHub Exploit DB Packet Storm
208599 6.9 警告 アップル
FreeBSD
- FreeBSD および Apple iOS のカーネルの libc の stdio 内の fflush.c の __sflush 関数における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2014-8611 2015-10-6 10:34 2014-12-10 Show GitHub Exploit DB Packet Storm
208600 5 警告 The PHP Group
アップル
file project
- PHP の Fileinfo コンポーネントで使用される file の softmagic.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2014-9652 2015-10-6 10:34 2014-11-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
352221 - softwolves_software turquoise_superstat Buffer overflow in utility.cpp in Turquoise SuperStat (turqstat) 2.2.4 and earlier might allow remote NNTP servers to execute arbitrary code via a date with a long month. NVD-CWE-Other
CVE-2005-2658 2008-09-6 05:52 2005-09-16 Show GitHub Exploit DB Packet Storm
352222 - apachetop apachetop apachetop 0.12.5 and earlier, when running in debug mode, allows local users to create or append to arbitrary files via a symlink attack on atop.debug. NVD-CWE-Other
CVE-2005-2660 2008-09-6 05:52 2005-10-1 Show GitHub Exploit DB Packet Storm
352223 - hauri livecall
virobot_advanced_server
virobot_expert
virobot_linux_server
Directory traversal vulnerability in HAURI Anti-Virus products including ViRobot Expert 4.0, Advanced Server, Linux Server 2.0, and LiveCall allows remote attackers to overwrite arbitrary files via "… NVD-CWE-Other
CVE-2005-2670 2008-09-6 05:52 2005-08-23 Show GitHub Exploit DB Packet Storm
352224 - woltlab burning_board SQL injection vulnerability in modcp.php in WoltLab Burning Board 2.2.2 and 2.3.3 allows remote authenticated attackers to execute arbitrary SQL commands via the (1) x or (2) y parameters. NVD-CWE-Other
CVE-2005-2673 2008-09-6 05:52 2005-08-23 Show GitHub Exploit DB Packet Storm
352225 - coppermine coppermine_photo_gallery Cross-site scripting (XSS) vulnerability in displayimage.php in Coppermine Photo Gallery before 1.3.4 allows remote attackers to inject arbitrary web script or HTML via EXIF data. NVD-CWE-Other
CVE-2005-2676 2008-09-6 05:52 2005-08-23 Show GitHub Exploit DB Packet Storm
352226 - acnews acnews ACNews stores the database in a file under the web document root with a db.inc extension and insufficient access control, which allows remote attackers to obtain sensitive information such as the ful… NVD-CWE-Other
CVE-2005-2677 2008-09-6 05:52 2005-08-23 Show GitHub Exploit DB Packet Storm
352227 - sysinternals process_explorer Buffer overflow in Sysinternals Process Explorer 9.23, and other versions before 9.25, allows local users to execute arbitrary code via a long CompanyName field in the VersionInfo information in a ru… NVD-CWE-Other
CVE-2005-2679 2008-09-6 05:52 2005-08-23 Show GitHub Exploit DB Packet Storm
352228 - - - nquser.php in Virtual Edge Netquery 3.11 allows remote attackers to execute arbitrary commands via shell metacharacters in the host parameter to a dig query. NVD-CWE-Other
CVE-2005-2684 2008-09-6 05:52 2005-08-23 Show GitHub Exploit DB Packet Storm
352229 - savewebportal savewebportal SaveWebPortal 3.4 allows remote attackers to execute arbitrary PHP code via a direct request to admin/PhpMyExplorer/editerfichier.php, then editing the desired file to contain the PHP code, as demons… NVD-CWE-Other
CVE-2005-2685 2008-09-6 05:52 2005-08-24 Show GitHub Exploit DB Packet Storm
352230 - savewebportal savewebportal Directory traversal vulnerability in SaveWebPortal 3.4 allows remote attackers to include arbitrary files and execute arbitrary local PHP programs via ".." sequences in the (1) SITE_Path parameter to… NVD-CWE-Other
CVE-2005-2686 2008-09-6 05:52 2005-08-24 Show GitHub Exploit DB Packet Storm