Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
211171 5.4 警告 XLAB d.o.o. - Android 用 ISL Light Remote Desktop アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5647 2014-11-12 12:19 2014-09-3 Show GitHub Exploit DB Packet Storm
211172 5.4 警告 MobilityWare - Android 用 FreeCell Solitaire アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5663 2014-11-12 12:16 2014-09-3 Show GitHub Exploit DB Packet Storm
211173 5.4 警告 Miniclip.com - Android 用 Rail Rush アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5662 2014-11-12 12:02 2014-09-3 Show GitHub Exploit DB Packet Storm
211174 5.4 警告 Miniclip.com - Android 用 Anger of Stick 3 アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5661 2014-11-12 11:57 2014-09-3 Show GitHub Exploit DB Packet Storm
211175 5.4 警告 Tennessee Members 1st Federal Credit Union - Android 用 TN Members 1st FCU-RDC アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5660 2014-11-12 11:50 2014-09-3 Show GitHub Exploit DB Packet Storm
211176 5.4 警告 Metago - Android 用 ASTRO File Manager with Cloud アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5659 2014-11-12 11:47 2014-09-3 Show GitHub Exploit DB Packet Storm
211177 5.4 警告 Doraemon Labs - Android 用 PopU 2: Get Likes on Instagram アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5679 2014-11-12 11:27 2014-09-3 Show GitHub Exploit DB Packet Storm
211178 5.4 警告 Mercadolibre - Android 用 MercadoLibre アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5658 2014-11-12 11:21 2014-09-3 Show GitHub Exploit DB Packet Storm
211179 5.4 警告 Pop-Hub Limited - Android 用 IQテストアプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5678 2014-11-12 11:19 2014-09-3 Show GitHub Exploit DB Packet Storm
211180 5.4 警告 Matthew Saavedra - Android 用 CA Lottery Results アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5657 2014-11-12 11:19 2014-09-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 26, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293951 - news_manager news_manager Multiple SQL injection vulnerabilities in News Manager 2.0 allow remote attackers to execute arbitrary SQL commands via the (1) lang parameter to (a) advsearch.php, (b) archive.php, and (c) index.php… CWE-89
SQL Injection
CVE-2008-2340 2017-09-29 10:31 2008-05-19 Show GitHub Exploit DB Packet Storm
293952 - avalonnet news_manager PHP remote file inclusion vulnerability in ch_readalso.php in News Manager 2.0 allows remote attackers to execute arbitrary PHP code via a URL in the read_xml_include parameter. CWE-94
Code Injection
CVE-2008-2341 2017-09-29 10:31 2008-05-19 Show GitHub Exploit DB Packet Storm
293953 - news_manager news_manager Directory traversal vulnerability in attachments.php in News Manager 2.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the id parameter. CWE-22
Path Traversal
CVE-2008-2342 2017-09-29 10:31 2008-05-19 Show GitHub Exploit DB Packet Storm
293954 - news_manager news_manager News Manager 2.0 allows remote attackers to bypass restrictions and obtain sensitive information via a direct request to (1) db/connect_str.php and (2) login/info.php. CWE-264
Permissions, Privileges, and Access Controls
CVE-2008-2343 2017-09-29 10:31 2008-05-19 Show GitHub Exploit DB Packet Storm
293955 - alkalinephp alkalinephp AlkalinePHP 0.77.35 and earlier allows remote attackers to bypass authentication and gain administrative access by creating an admin account via a direct request to adduser.php. CWE-264
Permissions, Privileges, and Access Controls
CVE-2008-2346 2017-09-29 10:31 2008-05-21 Show GitHub Exploit DB Packet Storm
293956 - mypicgallery mypicgallery MyPicGallery 1.0 allows remote attackers to bypass application authentication and gain administrative access by setting the userID parameter to "admin" in a direct request to admin/addUser.php. CWE-287
Improper Authentication
CVE-2008-2347 2017-09-29 10:31 2008-05-21 Show GitHub Exploit DB Packet Storm
293957 - meltingicefs meltingice_file_system MeltingIce File System 1.0 allows remote attackers to bypass application authentication, create new user accounts, and exceed application quotas via a direct request to admin/adduser.php. CWE-264
Permissions, Privileges, and Access Controls
CVE-2008-2348 2017-09-29 10:31 2008-05-21 Show GitHub Exploit DB Packet Storm
293958 - zomp zomplog Zomplog 3.8.2 and earlier allows remote attackers to gain administrative access by creating an admin account via a direct request to install/newuser.php with the admin parameter set to 1. CWE-264
Permissions, Privileges, and Access Controls
CVE-2008-2349 2017-09-29 10:31 2008-05-21 Show GitHub Exploit DB Packet Storm
293959 - webmanager-pro cms_webmanager-pro Multiple SQL injection vulnerabilities in index.php in CMS WebManager-Pro allow remote attackers to execute arbitrary SQL commands via the (1) lang_id and (2) menu_id parameters. CWE-89
SQL Injection
CVE-2008-2351 2017-09-29 10:31 2008-05-21 Show GitHub Exploit DB Packet Storm
293960 - gnugallery gnugallery Directory traversal vulnerability in admin.php in GNU/Gallery 1.1.1.0 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the show parameter. CWE-22
Path Traversal
CVE-2008-2353 2017-09-29 10:31 2008-05-21 Show GitHub Exploit DB Packet Storm