Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
210761 5 警告 シスコシステムズ - Cisco Adaptive Security Appliance ソフトウェアの SSL VPN の実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2014-3407 2014-12-1 15:43 2014-11-26 Show GitHub Exploit DB Packet Storm
210762 5 警告 Paid Memberships Pro - WordPress 用 Paid Memberships Pro プラグインの services/getfile.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-8801 2014-12-1 15:21 2014-11-14 Show GitHub Exploit DB Packet Storm
210763 5 警告 DukaPress - WordPress 用 DukaPress プラグインの php/dp-functions.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-8799 2014-12-1 15:16 2014-11-12 Show GitHub Exploit DB Packet Storm
210764 3.5 注意 apptha.com - WordPress 用 Apptha WordPress Video Gallery プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-9098 2014-12-1 15:08 2014-07-15 Show GitHub Exploit DB Packet Storm
210765 7.5 危険 apptha.com - WordPress 用 Apptha WordPress Video Gallery プラグインにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-9097 2014-12-1 14:39 2014-07-23 Show GitHub Exploit DB Packet Storm
210766 7.5 危険 Pligg - Pligg CMS の recover.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-9096 2014-12-1 14:27 2014-07-31 Show GitHub Exploit DB Packet Storm
210767 7.5 危険 ラリタン・ジャパン株式会社 - Raritan Power IQ における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-9095 2014-12-1 14:17 2014-07-16 Show GitHub Exploit DB Packet Storm
210768 7.5 危険 The Document Foundation - LibreOffice におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-9093 2014-12-1 13:52 2014-11-19 Show GitHub Exploit DB Packet Storm
210769 4.3 警告 Digital Zoom Studio - WordPress 用 Digital Zoom Studio Video Gallery プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-9094 2014-12-1 13:32 2014-05-8 Show GitHub Exploit DB Packet Storm
210770 7.2 危険 Wibu-Systems AG - Wibu-Systems CodeMeter Runtime における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-8419 2014-12-1 11:56 2014-11-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 22, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293801 - popscript.com expert_advisor SQL injection vulnerability in index.php in Expert Advisor allows remote attackers to execute arbitrary SQL commands via the id parameter. NVD-CWE-Other
CVE-2007-3882 2017-09-29 10:29 2007-07-19 Show GitHub Exploit DB Packet Storm
293802 - datadynamics activebar The Data Dynamics ActiveBar ActiveX control (actbar3.ocx) 3.2 and earlier allows remote attackers to create or overwrite files via a full pathname in (1) the second argument to the Save method, or th… NVD-CWE-Other
CVE-2007-3883 2017-09-29 10:29 2007-07-19 Show GitHub Exploit DB Packet Storm
293803 - xensource_inc xen (1) xenbaked and (2) xenmon.py in Xen 3.1 and earlier allow local users to truncate arbitrary files via a symlink attack on /tmp/xenq-shm. CWE-59
Link Following
CVE-2007-3919 2017-09-29 10:29 2007-10-29 Show GitHub Exploit DB Packet Storm
293804 - compiz
gnome
compiz
screensaver
GNOME screensaver 2.20 in Ubuntu 7.10, when used with Compiz, does not properly reserve input focus, which allows attackers with physical access to take control of the session after entering an Alt-T… NVD-CWE-Other
CVE-2007-3920 2017-09-29 10:29 2007-10-30 Show GitHub Exploit DB Packet Storm
293805 - sun jdk
jre
sdk
Unspecified vulnerability in the Java Runtime Environment (JRE) Applet Class Loader in Sun JDK and JRE 5.0 Update 11 and earlier, 6 through 6 Update 1, and SDK and JRE 1.4.2_14 and earlier, allows re… NVD-CWE-noinfo
CVE-2007-3922 2017-09-29 10:29 2007-07-21 Show GitHub Exploit DB Packet Storm
293806 - joomla expose uploadimg.php in the Expose RC35 and earlier (com_expose) component for Joomla! sends an error message but does not exit when it detects an attempt to upload a non-JPEG file, which allows remote atta… NVD-CWE-Other
CVE-2007-3932 2017-09-29 10:29 2007-07-21 Show GitHub Exploit DB Packet Storm
293807 - quickestore quickestore SQL injection vulnerability in insertorder.cfm in QuickEStore 8.2 and earlier allows remote attackers to execute arbitrary SQL commands via the CFTOKEN parameter, a different vector than CVE-2006-205… CWE-89
SQL Injection
CVE-2007-3933 2017-09-29 10:29 2007-07-21 Show GitHub Exploit DB Packet Storm
293808 - bbs e-market PHP remote file inclusion vulnerability in postscript/postscript.php in BBS E-Market allows remote attackers to execute arbitrary PHP code via a URL in the p_mode parameter. NVD-CWE-Other
CVE-2007-3934 2017-09-29 10:29 2007-07-21 Show GitHub Exploit DB Packet Storm
293809 - phpbb supanav PHP remote file inclusion vulnerability in link_main.php in the SupaNav 1.0.0 module for phpBB allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter. NVD-CWE-Other
CVE-2007-3935 2017-09-29 10:29 2007-07-21 Show GitHub Exploit DB Packet Storm
293810 - a-shop a-shop Directory traversal vulnerability in admin/filebrowser.asp in A-shop 0.70 and earlier, and possibly 0.71, allows remote attackers to delete arbitrary files via unspecified filename references in the … CWE-22
Path Traversal
CVE-2007-3936 2017-09-29 10:29 2007-07-21 Show GitHub Exploit DB Packet Storm