Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 21, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
212881 3.5 注意 IBM - IBM WebSphere Portal におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-8909 2015-02-18 17:40 2014-11-14 Show GitHub Exploit DB Packet Storm
212882 5 警告 IBM - 複数の OS 上で稼動する DB2 用 IBM Optim Performance Manager および IBM InfoSphere Optim Performance Manager におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-6154 2015-02-18 17:40 2014-09-2 Show GitHub Exploit DB Packet Storm
212883 7.2 危険 IBM - IBM Tivoli Storage Manager のクライアントの dsmtca における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-6185 2015-02-18 17:40 2014-09-2 Show GitHub Exploit DB Packet Storm
212884 6.9 警告 IBM - UNIX および Linux 上で稼働する IBM Tivoli Storage Manager におけるルート権限を取得される脆弱性 CWE-362
競合状態
CVE-2014-4813 2015-02-18 17:40 2014-07-9 Show GitHub Exploit DB Packet Storm
212885 5 警告 oVirt - oVirt のエンジンにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2014-0154 2015-02-18 16:21 2014-10-17 Show GitHub Exploit DB Packet Storm
212886 6.8 警告 oVirt - oVirt のエンジンにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-0151 2015-02-18 16:07 2014-10-17 Show GitHub Exploit DB Packet Storm
212887 4.6 警告 Novell
Jython Project
- Jython におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-2027 2015-02-18 14:21 2013-05-2 Show GitHub Exploit DB Packet Storm
212888 7.5 危険 UpThemes - WordPress 用 Holding Pattern テーマの admin/upload-file.php における任意の PHP コードを実行される脆弱性 CWE-Other
その他
CVE-2015-1172 2015-02-18 13:54 2015-01-18 Show GitHub Exploit DB Packet Storm
212889 5 警告 Elegant Themes, Inc. - WordPress 用 Elegant Themes Divi テーマにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2015-1579 2015-02-18 13:54 2015-02-8 Show GitHub Exploit DB Packet Storm
212890 6.8 警告 Redirection Page project - WordPress 用 Redirection Page プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2015-1580 2015-02-18 13:54 2015-01-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
347131 - ekg ekg Certain contributed scripts for ekg Gadu Gadu client 1.5 and earlier create temporary files insecurely, with unknown impact and attack vectors, a different vulnerability than CVE-2005-1916. NVD-CWE-Other
CVE-2005-1850 2016-10-18 12:23 2005-07-19 Show GitHub Exploit DB Packet Storm
347132 - ekg ekg A certain contributed script for ekg Gadu Gadu client 1.5 and earlier allows attackers to execute shell commands via unknown attack vectors. NVD-CWE-Other
CVE-2005-1851 2016-10-18 12:23 2005-07-19 Show GitHub Exploit DB Packet Storm
347133 - popper popper PHP remote file inclusion vulnerability in childwindow.inc.php in Popper 1.41-r2 and earlier allows remote attackers to execute arbitrary PHP code via the form parameter. NVD-CWE-Other
CVE-2005-1870 2016-10-18 12:23 2005-06-9 Show GitHub Exploit DB Packet Storm
347134 - drupal drupal Unknown vulnerability in the privilege system in Drupal 4.4.0 through 4.6.0, when public registration is enabled, allows remote attackers to gain privileges, due to an "input check" that "is not impl… NVD-CWE-Other
CVE-2005-1871 2016-10-18 12:23 2005-06-9 Show GitHub Exploit DB Packet Storm
347135 - ibm websphere_application_server Buffer overflow in the administrative console in IBM WebSphere Application Server 5.x, when the global security option is enabled, allows remote attackers to execute arbitrary code. NVD-CWE-Other
CVE-2005-1872 2016-10-18 12:23 2005-06-3 Show GitHub Exploit DB Packet Storm
347136 - exhibit_engine exhibit_engine Multiple SQL injection vulnerabilities in list.php in Exhibit Engine (EE) 1.22 allow remote attackers to execute arbitrary SQL commands via the (1) search_row, (2) sort_row, (3) order or (4) perpage … NVD-CWE-Other
CVE-2005-1875 2016-10-18 12:23 2005-06-2 Show GitHub Exploit DB Packet Storm
347137 - rakkarsoft raknet Rakkarsoft RakNet network library 2.33 and earlier, when released before 30 May 2005, and as used in multiple products including nFusion Elite Warriors: Vietnam, allows remote attackers to cause a de… NVD-CWE-Other
CVE-2005-1899 2016-10-18 12:23 2005-06-9 Show GitHub Exploit DB Packet Storm
347138 - kaspersky_lab kaspersky_anti-virus
kaspersky_anti-virus_personal
The klif.sys driver in Kaspersky Labs Anti-Virus 5.0.227, 5.0.228, and 5.0.335 on Windows 2000 allows local users to gain privileges by modifying certain critical code addresses that are later access… NVD-CWE-Other
CVE-2005-1905 2016-10-18 12:23 2005-06-9 Show GitHub Exploit DB Packet Storm
347139 - goodtech_systems goodtech_smtp_server GoodTech SMTP Server 5.14 allows remote attackers to cause a denial of service (application crash) via a RCPT TO command with an invalid argument, as demonstrated using an "A" character. NVD-CWE-Other
CVE-2005-1931 2016-10-18 12:23 2005-07-5 Show GitHub Exploit DB Packet Storm
347140 - - - Multiple SQL injection vulnerabilities in Loki download manager 2.0 allow remote attackers to execute arbitrary SQL commands via the (1) password field to default.asp or (2) cat parameter to catinfo.… NVD-CWE-Other
CVE-2005-1943 2016-10-18 12:23 2005-06-8 Show GitHub Exploit DB Packet Storm