Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 8, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
209501 3.5 注意 SAP - SAP HANA DB の Web-based Development Workbench のロールの削除におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-7726 2015-10-19 14:38 2015-05-12 Show GitHub Exploit DB Packet Storm
209502 6.5 警告 SAP - SAP HANA DB の Web-based Development Workbench における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2015-7725 2015-10-19 14:38 2015-05-12 Show GitHub Exploit DB Packet Storm
209503 7.2 危険 SAP - SAP HANA の hdbsql クライアントにおけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2015-6507 2015-10-19 14:38 2015-04-14 Show GitHub Exploit DB Packet Storm
209504 4.3 警告 Revive Adserver - Revive Adserver の "magic-macros" 機能におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-7373 2015-10-19 13:51 2015-10-7 Show GitHub Exploit DB Packet Storm
209505 7.5 危険 Revive Adserver - Revive Adserver の delivery-dev/al.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2015-7372 2015-10-19 13:51 2015-10-7 Show GitHub Exploit DB Packet Storm
209506 5 警告 Revive Adserver - Revive Adserver における Maintenance Priority Engine を実行される脆弱性 CWE-264
CWE-399
CVE-2015-7371 2015-10-19 13:51 2015-10-7 Show GitHub Exploit DB Packet Storm
209507 4.3 警告 Revive Adserver - Revive Adserver の VideoAds プラグインで使用される Open Flash Chart 2 の open-flash-chart.swf におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-7370 2015-10-19 13:50 2015-10-7 Show GitHub Exploit DB Packet Storm
209508 7.5 危険 Revive Adserver - Revive Adserver のデフォルトの Flash のクロスドメインポリシーにおけるクロスドメイン攻撃を実行される脆弱性 CWE-Other
その他
CVE-2015-7369 2015-10-19 13:50 2015-10-7 Show GitHub Exploit DB Packet Storm
209509 2.1 注意 Revive Adserver - Revive Adserver における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2015-7368 2015-10-19 13:50 2015-10-7 Show GitHub Exploit DB Packet Storm
209510 7.5 危険 Revive Adserver - Revive Adserver における不特定のアクションを実行される脆弱性 CWE-Other
その他
CVE-2015-7367 2015-10-19 13:50 2015-10-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 8, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
345381 - phpkobo adfreely Multiple directory traversal vulnerabilities in Phpkobo AdFreely (aka Ad Board Script) 1.01, when magic_quotes_gpc is disabled, allow remote attackers to include and execute arbitrary local files via… CWE-22
Path Traversal
CVE-2010-1057 2017-08-17 10:32 2010-03-24 Show GitHub Exploit DB Packet Storm
345382 - phpkobo address_book_script Directory traversal vulnerability in codelib/cfg/common.inc.php in Phpkobo Address Book Script 1.09, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local … CWE-22
Path Traversal
CVE-2010-1058 2017-08-17 10:32 2010-03-24 Show GitHub Exploit DB Packet Storm
345383 - aspindir erolife_ajxgaleri_vt Erolife AjxGaleri VT stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for db/ajxgaleri.mdb. CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-1064 2017-08-17 10:32 2010-03-24 Show GitHub Exploit DB Packet Storm
345384 - lebisoft ziyaretci_defteri Lebisoft Ziyaretci Defteri 7.4 and 7.5 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for … CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-1065 2017-08-17 10:32 2010-03-24 Show GitHub Exploit DB Packet Storm
345385 - the-ghost ar_web_content_manager AR Web Content Manager (AWCM) 2.1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for contr… CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-1066 2017-08-17 10:32 2010-03-24 Show GitHub Exploit DB Packet Storm
345386 - hasmir_alic e-membres E-membres 1.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for db/bdEMembres.mdb. CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-1067 2017-08-17 10:32 2010-03-24 Show GitHub Exploit DB Packet Storm
345387 - netwin surgeftp Multiple cross-site scripting (XSS) vulnerabilities in surgeftpmgr.cgi in NetWin SurgeFTP 2.3a6 allow remote attackers to inject arbitrary web script or HTML via the (1) domainid or (2) classid param… CWE-79
Cross-site Scripting
CVE-2010-1068 2017-08-17 10:32 2010-03-24 Show GitHub Exploit DB Packet Storm
345388 - imagoscripts deviant_art_clone SQL injection vulnerability in index.php in ImagoScripts Deviant Art Clone allows remote attackers to execute arbitrary SQL commands via the seid parameter in a forums viewcat action. CWE-89
SQL Injection
CVE-2010-1070 2017-08-17 10:32 2010-03-24 Show GitHub Exploit DB Packet Storm
345389 - phpmdj phpmdj SQL injection vulnerability in profil.php in phpMDJ 1.0.3 allows remote attackers to execute arbitrary SQL commands via the id parameter. CWE-89
SQL Injection
CVE-2010-1071 2017-08-17 10:32 2010-03-24 Show GitHub Exploit DB Packet Storm
345390 - sniggabo sniggabo_cms Cross-site scripting (XSS) vulnerability in search.php in Sniggabo CMS 2.21 allows remote attackers to inject arbitrary web script or HTML via the q parameter. CWE-79
Cross-site Scripting
CVE-2010-1072 2017-08-17 10:32 2010-03-24 Show GitHub Exploit DB Packet Storm