Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
210271 5.4 警告 avantar - Android 用 White & Yellow Pages アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5857 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210272 5.4 警告 communityfactory - Android 用 Selfie Camera -Facial Beauty- アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5856 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210273 5.4 警告 cjmall - Android 用 CJmall アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5855 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210274 5.4 警告 clearhub - Android 用 Windows Live Hotmail PUSH mail アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5854 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210275 5.4 警告 Com2uS USA - Android 用 Knights N Squires アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5853 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210276 5.4 警告 Com2uS USA - Android 用 Kakao アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5852 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210277 5.4 警告 darksummoner - Android 用 Dark Summoner アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5851 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210278 5.4 警告 kaavefali - Android 用 Kaave Fali アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5850 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210279 5.4 警告 Disny - Android 用 Maleficent Free Fall アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5849 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210280 5.4 警告 mobiledeluxe - Android 用 Big Win Slots - Slot Machines アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5847 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 25, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
294381 - dino d-iscussion_board Directory traversal vulnerability in index.php in D-iscussion Board 3.01 allows remote attackers to read arbitrary files via a .. (dot dot) in the topic parameter. CWE-22
Path Traversal
CVE-2008-4075 2017-09-29 10:31 2008-09-16 Show GitHub Exploit DB Packet Storm
294382 - stash stash admin/login.php in Stash 1.0.3 allows remote attackers to bypass authentication and gain administrative access by setting a bsm cookie. CWE-287
Improper Authentication
CVE-2008-4081 2017-09-29 10:31 2008-09-16 Show GitHub Exploit DB Packet Storm
294383 - brim-project brim SQL injection vulnerability in the Tasks plugin in Brim 2.0.0, when magic_quotes_gpc is disabled, allows remote authenticated users to execute arbitrary SQL commands via an arbitrary field in a searc… CWE-89
SQL Injection
CVE-2008-4082 2017-09-29 10:31 2008-09-16 Show GitHub Exploit DB Packet Storm
294384 - brim-project brim Cross-site scripting (XSS) vulnerability in the Bookmarks plugin in Brim 2.0 allows remote authenticated users to inject arbitrary web script or HTML via the name parameter in an addItemPost action t… CWE-79
Cross-site Scripting
CVE-2008-4083 2017-09-29 10:31 2008-09-16 Show GitHub Exploit DB Packet Storm
294385 - myiosoft easyclassifields SQL injection vulnerability in staticpages/easyclassifields/index.php in MyioSoft EasyClassifields 3.0 allows remote attackers to execute arbitrary SQL commands via the go parameter in a browse actio… CWE-89
SQL Injection
CVE-2008-4084 2017-09-29 10:31 2008-09-16 Show GitHub Exploit DB Packet Storm
294386 - source_workshop reciprocal_links_manager SQL injection vulnerability in index.php in Reciprocal Links Manager 1.1 allows remote attackers to execute arbitrary SQL commands via the site parameter in an open action. CWE-89
SQL Injection
CVE-2008-4086 2017-09-29 10:31 2008-09-16 Show GitHub Exploit DB Packet Storm
294387 - acoustica beatcraft Stack-based buffer overflow in Acoustica Beatcraft 1.02 Build 19 allows user-assisted attackers to cause a denial of service or execute arbitrary code via a Beatcraft Project (aka bcproj) file with a… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2008-4087 2017-09-29 10:31 2008-09-16 Show GitHub Exploit DB Packet Storm
294388 - myphpnuke myphpnuke SQL injection vulnerability in print.php in myPHPNuke (MPN) before 1.8.8_8rc2 allows remote attackers to execute arbitrary SQL commands via the sid parameter. CWE-89
SQL Injection
CVE-2008-4088 2017-09-29 10:31 2008-09-16 Show GitHub Exploit DB Packet Storm
294389 - myphpnuke myphpnuke Cross-site scripting (XSS) vulnerability in print.php in myPHPNuke (MPN) before 1.8.8_8rc2 allows remote attackers to inject arbitrary web script or HTML via the sid parameter. CWE-79
Cross-site Scripting
CVE-2008-4089 2017-09-29 10:31 2008-09-16 Show GitHub Exploit DB Packet Storm
294390 - couponscript coupon_script SQL injection vulnerability in index.php in PHP Coupon Script 4.0 allows remote attackers to execute arbitrary SQL commands via the id parameter in an addtocart action, a different vector than CVE-20… CWE-89
SQL Injection
CVE-2008-4090 2017-09-29 10:31 2008-09-16 Show GitHub Exploit DB Packet Storm