Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
210231 5.4 警告 myhomeworkapp - Android 用 myHomework Student Planner アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5900 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210232 5.4 警告 nespresso - Android 用 Nespresso アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5899 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210233 5.4 警告 heavy duty truck driver simulator 3d project - Android 用 Heavy Duty Truck Driver Simulator 3D アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5898 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210234 5.4 警告 parallelmafia - Android 用 Parallel Mafia MMORPG アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5897 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210235 5.4 警告 seawolftech - Android 用 GlobalTalk- free phone calls アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5896 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210236 5.4 警告 shopyourway - Android 用 ShopYourWay アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5895 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210237 5.4 警告 pingshow - Android 用 AireTalk: Text, Call, & More! アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5894 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210238 5.4 警告 shinsegaemall - Android 用 froyo アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5893 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210239 5.4 警告 olleh - Android 用 greenbill アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5892 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210240 5.4 警告 snipsnap - Android 用 SnipSnap Coupon App アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5891 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 18, 2026, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293401 - 123flashchat
e107
123_flash_chat_module
e107
PHP remote file inclusion vulnerability in 123flashchat.php in the 123 Flash Chat 6.8.0 module for e107, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a … CWE-94
Code Injection
CVE-2008-1989 2017-09-29 10:30 2008-04-28 Show GitHub Exploit DB Packet Storm
293402 - qemu qemu The drive_init function in QEMU 0.9.1 determines the format of a raw disk image based on the header, which allows local guest users to read arbitrary files on the host by modifying the header to iden… CWE-200
Information Exposure
CVE-2008-2004 2017-09-29 10:30 2008-05-13 Show GitHub Exploit DB Packet Storm
293403 - postnuke_software_foundation postschedule SQL injection vulnerability in index.php in the PostSchedule 1.0 module for PostNuke allows remote attackers to execute arbitrary SQL commands via the eid parameter in an event action. CWE-89
SQL Injection
CVE-2008-2012 2017-09-29 10:30 2008-04-30 Show GitHub Exploit DB Packet Storm
293404 - pnflashgames pnflashgames SQL injection vulnerability in index.php in the pnFlashGames 1.5 through 2.5 module for PostNuke, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the … CWE-89
SQL Injection
CVE-2008-2013 2017-09-29 10:30 2008-04-30 Show GitHub Exploit DB Packet Storm
293405 - watchfire appscan Multiple absolute path traversal vulnerabilities in certain ActiveX controls in WatchFire AppScan 7.0 allow remote attackers to create or overwrite arbitrary files via a full pathname in the argument… CWE-22
Path Traversal
CVE-2008-2015 2017-09-29 10:30 2008-04-30 Show GitHub Exploit DB Packet Storm
293406 - phpizabi phpizabi The AssignUser function in template.class.php in PHPizabi 0.848b C1 HFP3 performs unsafe macro expansions on strings delimited by '{' and '}' characters, which allows remote authenticated users to ob… CWE-200
Information Exposure
CVE-2008-2018 2017-09-29 10:30 2008-04-30 Show GitHub Exploit DB Packet Storm
293407 - pd9_software megabbs Mulatiple cross-site scripting (XSS) vulnerabilities in PD9 Software MegaBBS 2.2 allow remote attackers to inject arbitrary web script or HTML via the (1) toid parameter to send-private-message.asp a… CWE-79
Cross-site Scripting
CVE-2008-2022 2017-09-29 10:30 2008-04-30 Show GitHub Exploit DB Packet Storm
293408 - pd9_software megabbs Multiple SQL injection vulnerabilities in PD9 Software MegaBBS 2.2 allow remote attackers to execute arbitrary SQL commands via the (1) invisible and (2) timeoffset parameters to profile/controlpanel… CWE-89
SQL Injection
CVE-2008-2023 2017-09-29 10:30 2008-04-30 Show GitHub Exploit DB Packet Storm
293409 - minibb minibb Cross-site scripting (XSS) vulnerability in index.php in miniBB 2.2, and possibly earlier, when register_globals is enabled, allows remote attackers to inject arbitrary web script or HTML via the gla… CWE-79
Cross-site Scripting
CVE-2008-2024 2017-09-29 10:30 2008-04-30 Show GitHub Exploit DB Packet Storm
293410 - minibb minibb miniBB 2.2, and possibly earlier, when register_globals is enabled, allows remote attackers to obtain the full path via a direct request to the glang parameter in a registernew action to index.php, w… CWE-200
Information Exposure
CVE-2008-2028 2017-09-29 10:30 2008-05-1 Show GitHub Exploit DB Packet Storm