Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
211271 4.3 警告 Meinberg Funkuhren GmbH & Co KG - LANTIME M-Series デバイス上で稼働する Meinberg NTP サーバファームウェアにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-5417 2014-11-7 15:35 2014-10-2 Show GitHub Exploit DB Packet Storm
211272 4.3 警告 Nordex - Nordex Control 2 SCADA デバイス上で稼働する Wind Farm Portal のログインスクリプトにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-5408 2014-11-7 15:34 2014-10-30 Show GitHub Exploit DB Packet Storm
211273 6.5 警告 AITpro - WordPress 用 BulletProof Security プラグインの admin/htaccess/bpsunlock.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-7959 2014-11-7 15:28 2014-11-5 Show GitHub Exploit DB Packet Storm
211274 4.3 警告 AITpro - WordPress 用 BulletProof Security プラグインの admin/htaccess/bpsunlock.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-7958 2014-11-7 15:27 2014-11-5 Show GitHub Exploit DB Packet Storm
211275 4.3 警告 Wordfence.com - WordPress 用 Wordfence Security プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4664 2014-11-7 15:27 2014-06-30 Show GitHub Exploit DB Packet Storm
211276 3.5 注意 Compfight - WordPress 用 Compfight プラグインの compfight-search.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-8622 2014-11-7 15:27 2014-07-3 Show GitHub Exploit DB Packet Storm
211277 7.5 危険 CA Technologies - CA Cloud Service Management における任意のファイルを読まれる脆弱性 CWE-nocwe
CWE以外
CVE-2014-8474 2014-11-7 15:22 2014-11-3 Show GitHub Exploit DB Packet Storm
211278 6.8 警告 CA Technologies - CA Cloud Service Management におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-8473 2014-11-7 15:21 2014-11-3 Show GitHub Exploit DB Packet Storm
211279 6.8 警告 CA Technologies - CA Cloud Service Management におけるアクセス制限を回避される脆弱性 CWE-287
不適切な認証
CVE-2014-8472 2014-11-7 15:20 2014-11-3 Show GitHub Exploit DB Packet Storm
211280 4.3 警告 CA Technologies - CA Cloud Service Management における反射攻撃を実行される脆弱性 CWE-noinfo
情報不足
CVE-2014-8471 2014-11-7 15:20 2014-11-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 24, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293501 - jspwiki jspwiki Reference links suggest possible solution upgrade to latest version (2.6.1) at: http://www.jspwiki.org/wiki/JSPWikiDownload CWE-22
Path Traversal
CVE-2008-1231 2017-09-29 10:30 2008-03-11 Show GitHub Exploit DB Packet Storm
293502 - bmscripts bm_classifieds Multiple SQL injection vulnerabilities in BM Classifieds 20080309 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) cat parameter to showad.php and the (2) ad parameter… CWE-89
SQL Injection
CVE-2008-1272 2017-09-29 10:30 2008-03-11 Show GitHub Exploit DB Packet Storm
293503 - ibm aix Untrusted search path vulnerability in man in IBM AIX 6.1.0 allows local users to execute arbitrary code via a malicious program in the man directory. NVD-CWE-Other
CVE-2008-1274 2017-09-29 10:30 2008-03-11 Show GitHub Exploit DB Packet Storm
293504 - ibm aix Per: http://cwe.mitre.org/data/definitions/426.html 'CWE-426: Untrusted Search Path' NVD-CWE-Other
CVE-2008-1274 2017-09-29 10:30 2008-03-11 Show GitHub Exploit DB Packet Storm
293505 - mailenable mailenable_enterprise
mailenable_professional
mailenable_standard
Multiple unspecified vulnerabilities in the SMTP service in MailEnable Standard Edition 1.x, Professional Edition 3.x and earlier, and Enterprise Edition 3.x and earlier allow remote attackers to cau… NVD-CWE-noinfo
CVE-2008-1275 2017-09-29 10:30 2008-03-11 Show GitHub Exploit DB Packet Storm
293506 - gregory_kokanosky phpmynewsletter SQL injection vulnerability in archives.php in Gregory Kokanosky (aka Greg's Place) phpMyNewsletter 0.8 beta 5 and earlier allows remote attackers to execute arbitrary SQL commands via the msg_id par… CWE-89
SQL Injection
CVE-2008-1295 2017-09-29 10:30 2008-03-13 Show GitHub Exploit DB Packet Storm
293507 - ewriting
joomla
mambo
ewriting
com_ewriting
SQL injection vulnerability in index.php in the eWriting (com_ewriting) 1.2.1 module for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the cat parameter in a selectc… CWE-89
SQL Injection
CVE-2008-1297 2017-09-29 10:30 2008-03-13 Show GitHub Exploit DB Packet Storm
293508 - chieminger filebase_module SQL injection vulnerability in filebase.php in the Filebase mod for phpBB allows remote attackers to execute arbitrary SQL commands via the id parameter. CWE-89
SQL Injection
CVE-2008-1305 2017-09-29 10:30 2008-03-13 Show GitHub Exploit DB Packet Storm
293509 - kingsoft antivirus_online_update_module Heap-based buffer overflow in the KUpdateObj2 Class ActiveX control in UpdateOcx2.dll in Beijing KingSoft Antivirus Online Update Module 2007.12.29.29 allows remote attackers to execute arbitrary cod… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2008-1307 2017-09-29 10:30 2008-03-13 Show GitHub Exploit DB Packet Storm
293510 - bill_roberts bloo Multiple SQL injection vulnerabilities in index.php in Bloo 1.00 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) post_id, (2) post_category_id, (3) post_year_month, a… CWE-89
SQL Injection
CVE-2008-1313 2017-09-29 10:30 2008-03-13 Show GitHub Exploit DB Packet Storm