Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
213701 4.6 警告 The PHP Group
アップル
- PHP の SPL コンポーネント の ext/spl/spl_array.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2014-4698 2015-04-10 18:19 2014-06-29 Show GitHub Exploit DB Packet Storm
213702 4.6 警告 The PHP Group
アップル
- PHP の SPL コンポーネントの ext/spl/spl_dllist.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2014-4670 2015-04-10 18:19 2014-06-29 Show GitHub Exploit DB Packet Storm
213703 5 警告 アップル
OpenLDAP Foundation
- OpenLDAP の servers/slapd/filter.c 内の get_vrFilter 関数におけるメモリ二重解放の脆弱性 CWE-Other
その他
CVE-2015-1546 2015-04-10 18:14 2015-01-19 Show GitHub Exploit DB Packet Storm
213704 5 警告 アップル
file project
- file におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2014-3538 2015-04-10 18:08 2014-06-12 Show GitHub Exploit DB Packet Storm
213705 4.3 警告 The PHP Group
アップル
file project
- PHP の Fileinfo コンポーネントで使用される file の cdf.c 内の cdf_read_property_info 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-3487 2015-04-10 18:02 2014-06-26 Show GitHub Exploit DB Packet Storm
213706 4.3 警告 The PHP Group
アップル
file project
- PHP の Fileinfo コンポーネントで使用される file の cdf.c 内の cdf_count_chain 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-3480 2015-04-10 18:00 2014-06-26 Show GitHub Exploit DB Packet Storm
213707 4.3 警告 The PHP Group
アップル
file project
- PHP の Fileinfo コンポーネントで使用される file の cdf.c 内の cdf_check_stream_offset 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2014-3479 2015-04-10 17:58 2014-06-26 Show GitHub Exploit DB Packet Storm
213708 5 警告 The PHP Group
アップル
file project
- PHP の Fileinfo コンポーネントで使用される file の softmagic.c 内の mconvert 関数におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-3478 2015-04-10 17:57 2014-06-26 Show GitHub Exploit DB Packet Storm
213709 4.3 警告 The PHP Group
アップル
file project
- PHP の Fileinfo コンポーネントで使用される file の cdf.c 内の cdf_read_short_sector 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2014-0207 2015-04-10 17:54 2014-06-26 Show GitHub Exploit DB Packet Storm
213710 5 警告 The PHP Group
アップル
- PHP の Fileinfo コンポーネントの cdf.c の cdf_read_property_info 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2014-0238 2015-04-10 17:52 2014-05-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 10, 2026, 5 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
355001 - indexcor ezdatabase SQL injection vulnerability in index.php for ezDatabase 2.1.2 and earlier allows remote attackers to execute arbitrary SQL commands via the db_id parameter. NVD-CWE-Other
CVE-2005-4303 2008-09-20 13:42 2005-12-17 Show GitHub Exploit DB Packet Storm
355002 - indexcor ezdatabase index.php in ezDatabase 2.1.2 and earlier allows remote attackers to obtain sensitive information via an invalid cat_id parameter, which leaks the full pathname in an error message. NOTE: these deta… NVD-CWE-Other
CVE-2005-4304 2008-09-20 13:42 2005-12-17 Show GitHub Exploit DB Packet Storm
355003 - scriptscenter ezupload_pro index.php in ezUpload Pro 2.2 and earlier allows remote attackers to include files via the mode parameter. NVD-CWE-Other
CVE-2005-4308 2008-09-20 13:42 2005-12-17 Show GitHub Exploit DB Packet Storm
355004 - binary-concepts binary_board_system Multiple cross-site scripting (XSS) vulnerabilities in Binary Board System (BBS) 0.2.5 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) inreplyto, (2) article, an… NVD-CWE-Other
CVE-2005-4333 2008-09-20 13:42 2005-12-17 Show GitHub Exploit DB Packet Storm
355005 - courseforum projectforum ProjectForum 4.7.0 and earlier allows remote attackers to cause a denial of service (crash) via a crafted pageid parameter to admin/versions.html. NVD-CWE-Other
CVE-2005-4335 2008-09-20 13:42 2005-12-17 Show GitHub Exploit DB Packet Storm
355006 - fad_solutions drzes_hms Multiple SQL injection vulnerabilities in DRZES HMS 3.2 allow remote attackers to execute arbitrary SQL commands via the (1) plan_id parameter to (a) domains.php, (b) viewusage.php, (c) pop_accounts.… NVD-CWE-Other
CVE-2005-4366 2008-09-20 13:42 2005-12-20 Show GitHub Exploit DB Packet Storm
355007 - fad_solutions drzes_hms Cross-site scripting (XSS) vulnerability in register_domain.php in DRZES HMS 3.2 allows remote attackers to inject arbitrary web script or HTML via unspecified search parameters, possibly the "Domain… NVD-CWE-Other
CVE-2005-4367 2008-09-20 13:42 2005-12-20 Show GitHub Exploit DB Packet Storm
355008 - asps shopping_cart Multiple SQL injection vulnerabilities in Absolute Shopping Package Solutions (ASPS) Shopping Cart Professional 2.9d and earlier, and Lite 2.1 and earlier, allow remote attackers to execute arbitrary… NVD-CWE-Other
CVE-2005-4003 2008-09-20 13:41 2005-12-5 Show GitHub Exploit DB Packet Storm
355009 - jax_calendar jax_calendar SQL injection vulnerability in jax_calendar.php in Jax Calendar 1.34 allows remote attackers to execute arbitrary SQL commands via the (1) cal_id parameter, and possibly the (2) Y and (3) m parameter… NVD-CWE-Other
CVE-2005-4008 2008-09-20 13:41 2005-12-5 Show GitHub Exploit DB Packet Storm
355010 - php_lite calendar_express Multiple SQL injection vulnerabilities in PHP Lite Calendar Express 2.2 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) cid and (2) catid parameters to (a) day.php, (… NVD-CWE-Other
CVE-2005-4009 2008-09-20 13:41 2005-12-5 Show GitHub Exploit DB Packet Storm