Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 21, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
210841 5 警告 SAP - 複数の SAP 製品の LZH 解凍の実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2015-2278 2015-06-4 14:09 2015-05-12 Show GitHub Exploit DB Packet Storm
210842 7.5 危険 SAP - SAP HANA Web-based Development Workbench における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2015-4159 2015-06-4 14:09 2015-05-21 Show GitHub Exploit DB Packet Storm
210843 7.5 危険 SAP - 複数の SAP 製品の LZC 解凍の実装におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2015-2282 2015-06-4 14:09 2015-05-12 Show GitHub Exploit DB Packet Storm
210844 4.3 警告 Sensio Labs - Symfony の HttpKernel コンポーネントの FragmentListener における URL 署名およびセキュリティルールを回避される脆弱性 CWE-Other
その他
CVE-2015-4050 2015-06-4 13:50 2015-05-27 Show GitHub Exploit DB Packet Storm
210845 5 警告 Django Software Foundation - Django の cached_db バックエンドの session.flush 関数におけるユーザセッションをハイジャックされる脆弱性 CWE-Other
その他
CVE-2015-3982 2015-06-4 13:33 2015-05-20 Show GitHub Exploit DB Packet Storm
210846 3.6 注意 GNU Project
Novell
- GNU Parallel における任意のファイルに書き込まれる脆弱性 CWE-59
リンク解釈の問題
CVE-2015-4156 2015-06-4 12:23 2015-05-22 Show GitHub Exploit DB Packet Storm
210847 3.6 注意 GNU Project - GNU Parallel における任意のファイルに書き込まれる脆弱性 CWE-59
リンク解釈の問題
CVE-2015-4155 2015-06-4 12:23 2015-04-23 Show GitHub Exploit DB Packet Storm
210848 6.5 警告 IBM - IBM InfoSphere Master Data Management の Reference Data Management コンポーネントにおける権限を取得される脆弱性 CWE-noinfo
情報不足
CVE-2015-1945 2015-06-4 12:04 2015-05-28 Show GitHub Exploit DB Packet Storm
210849 10 危険 FusionForge - FusionForge 用 Git プラグインにおける任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2015-0850 2015-06-4 12:00 2015-05-28 Show GitHub Exploit DB Packet Storm
210850 6.8 警告 シスコシステムズ - Cisco Headend Digital Broadband Delivery System におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2015-0759 2015-06-4 11:51 2015-06-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 22, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
346171 - mtr mtr Off-by-one error in the mtr_curses_keyaction function for mtr 0.55 through 0.65 allows local users to hijack raw sockets, as demonstrated using the "s" keybinding, which leaves a buffer without a NUL… NVD-CWE-Other
CVE-2004-1224 2017-07-11 10:30 2005-01-10 Show GitHub Exploit DB Packet Storm
346172 - sugarcrm sugarcrm SQL injection vulnerability in SugarCRM Sugar Sales before 2.0.1a allows remote attackers to execute arbitrary SQL commands and gain privileges via the record parameter in a DetailView action to inde… NVD-CWE-Other
CVE-2004-1225 2017-07-11 10:30 2005-01-10 Show GitHub Exploit DB Packet Storm
346173 - sugarcrm sugarcrm SugarCRM Sugar Sales 2.0.1c and earlier allows remote attackers to gain sensitive information via certain requests to scripts that contain invalid input, which reveals the path in an error message, a… NVD-CWE-Other
CVE-2004-1226 2017-07-11 10:30 2005-01-10 Show GitHub Exploit DB Packet Storm
346174 - sugarcrm sugar_sales Directory traversal vulnerability in SugarCRM Sugar Sales 2.0.1c and earlier allows remote attackers to read arbitrary files and possibly execute arbitrary PHP code via .. (dot dot) sequences in the … NVD-CWE-Other
CVE-2004-1227 2017-07-11 10:30 2005-01-10 Show GitHub Exploit DB Packet Storm
346175 - sugarcrm sugar_sales The install scripts in SugarCRM Sugar Sales 2.0.1c and earlier are not removed after installation, which allows attackers to obtain the MySQL administrative password in cleartext from an installation… NVD-CWE-Other
CVE-2004-1228 2017-07-11 10:30 2005-01-10 Show GitHub Exploit DB Packet Storm
346176 - gadu-gadu gadu-gadu_instant_messenger Gadu-Gadu allows remote attackers to gain sensitive information and read files from the _cache directory of other users via a DCC connection and a CTCP packet that contains a 1 as the type and a 4 as… NVD-CWE-Other
CVE-2004-1230 2017-07-11 10:30 2005-01-10 Show GitHub Exploit DB Packet Storm
346177 - gadu-gadu gadu-gadu_instant_messenger Directory traversal vulnerability in Gadu-Gadu allows remote attackers to read arbitrary files via .. (dot dot) sequences in a DCC connection with a CTCP packet that contains a 1 as the type and a 4 … NVD-CWE-Other
CVE-2004-1231 2017-07-11 10:30 2005-01-10 Show GitHub Exploit DB Packet Storm
346178 - gadu-gadu gadu-gadu_instant_messenger Stack-based buffer overflow in the code that sends images in Gadu-Gadu allows remote attackers to execute arbitrary code via a large image filename. NVD-CWE-Other
CVE-2004-1232 2017-07-11 10:30 2005-01-10 Show GitHub Exploit DB Packet Storm
346179 - gadu-gadu gadu-gadu_instant_messenger Integer overflow in Gadu-Gadu allows remote attackers to cause a denial of service (disk consumption) via a user packet to the DCC file transfer capability with an invalid file length. NVD-CWE-Other
CVE-2004-1233 2017-07-11 10:30 2005-01-10 Show GitHub Exploit DB Packet Storm
346180 - netscape directory_server Buffer overflow in the LDAP component for Netscape Directory Server (NDS) 3.6 on HP-UX and other operating systems allows remote attackers to execute arbitrary code. NVD-CWE-Other
CVE-2004-1236 2017-07-11 10:30 2004-12-31 Show GitHub Exploit DB Packet Storm