Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
210551 6.4 警告 Magnus Auvinen - Teeworlds の engine/server/server.cpp におけるメモリを読まれる脆弱性 CWE-20
不適切な入力確認
CVE-2014-9351 2014-12-11 15:18 2014-11-21 Show GitHub Exploit DB Packet Storm
210552 5 警告 FFmpeg - FFmpeg の libavcodec/hevc_ps.c の ff_hevc_decode_nal_sps 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2014-9319 2014-12-11 15:03 2014-11-28 Show GitHub Exploit DB Packet Storm
210553 7.5 危険 FFmpeg - FFmpeg の libavcodec/rawdec.c の raw_decode 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2014-9318 2014-12-11 15:03 2014-11-27 Show GitHub Exploit DB Packet Storm
210554 7.5 危険 FFmpeg - FFmpeg の libavcodec/pngdec.c の decode_ihdr_chunk 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2014-9317 2014-12-11 15:02 2014-11-27 Show GitHub Exploit DB Packet Storm
210555 7.5 危険 FFmpeg - FFmpeg の libavcodec/mjpegdec.c の mjpeg_decode_app 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2014-9316 2014-12-11 15:02 2014-11-25 Show GitHub Exploit DB Packet Storm
210556 4.3 警告 MantisBT Group - MantisBT の admin/copy_field.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-9281 2014-12-11 14:32 2014-12-5 Show GitHub Exploit DB Packet Storm
210557 4.7 警告 Xen プロジェクト - Xen におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2014-9066 2014-12-11 14:03 2014-12-8 Show GitHub Exploit DB Packet Storm
210558 4.4 警告 Xen プロジェクト - Xen の common/spinlock.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2014-9065 2014-12-11 14:03 2014-12-8 Show GitHub Exploit DB Packet Storm
210559 3.6 注意 GNU Project - GNU Binutils におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-8737 2014-12-11 13:46 2014-11-4 Show GitHub Exploit DB Packet Storm
210560 7.5 危険 GNU Project - GNU Binutils の bfd/srec.c 内の srec_scan 関数におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-8504 2014-12-11 13:46 2014-10-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 20, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293031 - hans_oesterholt cmme Multiple directory traversal vulnerabilities in Content Management Made Easy (CMME) 1.12 allow remote attackers to (1) read arbitrary files via a .. (dot dot) in the env parameter in a weblog action … CWE-22
Path Traversal
CVE-2008-3926 2017-09-29 10:31 2008-09-5 Show GitHub Exploit DB Packet Storm
293032 - ezonescripts living_local SQL injection vulnerability in listtest.php in eZoneScripts Living Local 1.1 allows remote attackers to execute arbitrary SQL commands via the r parameter. CWE-89
SQL Injection
CVE-2008-3943 2017-09-29 10:31 2008-09-6 Show GitHub Exploit DB Packet Storm
293033 - discountedscripts acg_ptp SQL injection vulnerability in index.php in ACG-PTP 1.0.6 allows remote attackers to execute arbitrary SQL commands via the adid parameter in an adorder action. CWE-89
SQL Injection
CVE-2008-3944 2017-09-29 10:31 2008-09-6 Show GitHub Exploit DB Packet Storm
293034 - source_workshop words_tag_script SQL injection vulnerability in index.php in Words tag 1.2 allows remote attackers to execute arbitrary SQL commands via the word parameter in a claim action. CWE-89
SQL Injection
CVE-2008-3945 2017-09-29 10:31 2008-09-6 Show GitHub Exploit DB Packet Storm
293035 - vastal agent_zone SQL injection vulnerability in view_ann.php in Vastal I-Tech Agent Zone (aka The Real Estate Script) allows remote attackers to execute arbitrary SQL commands via the ann_id parameter. CWE-89
SQL Injection
CVE-2008-3951 2017-09-29 10:31 2008-09-11 Show GitHub Exploit DB Packet Storm
293036 - editeurscripts_esfaq 2.0 SQL injection vulnerability in questions.php in EsFaq 2.0 allows remote attackers to execute arbitrary SQL commands via the idcat parameter. CWE-89
SQL Injection
CVE-2008-3952 2017-09-29 10:31 2008-09-11 Show GitHub Exploit DB Packet Storm
293037 - vastal shaadi_zone SQL injection vulnerability in keyword_search_action.php in Vastal I-Tech Shaadi Zone 1.0.9 allows remote attackers to execute arbitrary SQL commands via the tage parameter. CWE-89
SQL Injection
CVE-2008-3953 2017-09-29 10:31 2008-09-11 Show GitHub Exploit DB Packet Storm
293038 - masir_camp e-shop_module SQL injection vulnerability in index.php in Masir Camp E-Shop Module 3.0 and earlier allows remote attackers to execute arbitrary SQL commands via the ordercode parameter in a veiworderstatus page. CWE-89
SQL Injection
CVE-2008-3955 2017-09-29 10:31 2008-09-11 Show GitHub Exploit DB Packet Storm
293039 - ibm aix swcons in bos.rte.console in IBM AIX 5.2.0 through 6.1.1 allows local users in the system group to create or overwrite an arbitrary file, and establish weak permissions and root ownership for this fi… CWE-264
Permissions, Privileges, and Access Controls
CVE-2008-4018 2017-09-29 10:31 2008-09-11 Show GitHub Exploit DB Packet Storm
293040 - spice_classifieds spice_classifieds SQL injection vulnerability in index.php in Spice Classifieds allows remote attackers to execute arbitrary SQL commands via the cat_path parameter. CWE-89
SQL Injection
CVE-2008-4039 2017-09-29 10:31 2008-09-12 Show GitHub Exploit DB Packet Storm