Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
210131 5.4 警告 DTE Energy Company - Android 用 DTE Energy アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-6002 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210132 5.4 警告 gewara - Android 用 gewara アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-6001 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210133 5.4 警告 freshdirect - Android 用 FreshDirect アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-6000 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210134 5.4 警告 telenavsoftware - Android 用 autonavi アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5999 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210135 5.4 警告 skydrive assistant project - Android 用 SkyDrive Assistant アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5998 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210136 5.4 警告 autotrader.co.za - Android 用 Auto Trader アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5997 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210137 5.4 警告 gebrauchtwagenreport - Android 用 DEKRA Used Car Report アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5996 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210138 5.4 警告 ericpol - Android 用 eWUS mobile アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5995 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210139 5.4 警告 ding - Android 用 ding* ezetop. Top-up Any Phone アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5994 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210140 5.4 警告 preplaysports - Android 用 MLB Preplay アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5993 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293141 - yourfreeworld classifieds SQL injection vulnerability in view.php in YourFreeWorld Classifieds Script allows remote attackers to execute arbitrary SQL commands via the category parameter. CWE-89
SQL Injection
CVE-2008-3755 2017-09-29 10:31 2008-08-22 Show GitHub Exploit DB Packet Storm
293142 - yourfreeworld viral_marketing_script SQL injection vulnerability in tr.php in YourFreeWorld Viral Marketing Script allows remote attackers to execute arbitrary SQL commands via the id parameter. CWE-89
SQL Injection
CVE-2008-3756 2017-09-29 10:31 2008-08-22 Show GitHub Exploit DB Packet Storm
293143 - yourfreeworld forced_matrix_script SQL injection vulnerability in tr1.php in YourFreeWorld Forced Matrix Script allows remote attackers to execute arbitrary SQL commands via the id parameter. CWE-89
SQL Injection
CVE-2008-3757 2017-09-29 10:31 2008-08-22 Show GitHub Exploit DB Packet Storm
293144 - vmware vmware_workstation hcmon.sys in VMware Workstation 6.5.1 and earlier, VMware Player 2.5.1 and earlier, VMware ACE 2.5.1 and earlier, and VMware Server 1.0.x before 1.0.9 build 156507 and 2.0.x before 2.0.1 build 156745… CWE-20
 Improper Input Validation 
CVE-2008-3761 2017-09-29 10:31 2008-08-22 Show GitHub Exploit DB Packet Storm
293145 - discountedscripts quick_poll_script SQL injection vulnerability in code.php in Quick Poll Script allows remote attackers to execute arbitrary SQL commands via the id parameter. CWE-89
SQL Injection
CVE-2008-3765 2017-09-29 10:31 2008-08-22 Show GitHub Exploit DB Packet Storm
293146 - smartisoft phpbazar SQL injection vulnerability in classified.php in phpBazar 2.0.2 allows remote attackers to execute arbitrary SQL commands via the adid parameter. CWE-89
SQL Injection
CVE-2008-3767 2017-09-29 10:31 2008-08-23 Show GitHub Exploit DB Packet Storm
293147 - pars4u videosharing Cross-site scripting (XSS) vulnerability in members.php in Pars4u Videosharing 1 allows remote attackers to inject arbitrary web script or HTML via the PageNo parameter. CWE-79
Cross-site Scripting
CVE-2008-3771 2017-09-29 10:31 2008-08-23 Show GitHub Exploit DB Packet Storm
293148 - pars4u videosharing SQL injection vulnerability in categories_portal.php in Pars4u Videosharing 1 allows remote attackers to execute arbitrary SQL commands via the cat_id parameter. CWE-89
SQL Injection
CVE-2008-3772 2017-09-29 10:31 2008-08-23 Show GitHub Exploit DB Packet Storm
293149 - review-script five_star_review_script Cross-site scripting (XSS) vulnerability in search/index.php in Five Star Review Script allows remote attackers to inject arbitrary web script or HTML via the words parameter in a search action. CWE-79
Cross-site Scripting
CVE-2008-3779 2017-09-29 10:31 2008-08-26 Show GitHub Exploit DB Packet Storm
293150 - review-script five_star_review_script SQL injection vulnerability in recommend.php in Five Star Review Script allows remote attackers to execute arbitrary SQL commands via the item_id parameter. CWE-89
SQL Injection
CVE-2008-3780 2017-09-29 10:31 2008-08-26 Show GitHub Exploit DB Packet Storm