Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
214791 3.5 注意 PivotX - PivotX におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0341 2014-04-16 19:08 2014-03-3 Show GitHub Exploit DB Packet Storm
214792 5 警告 ModSecurity - ModSecurity の apache2/modsecurity.c におけるルールを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-5705 2014-04-16 19:04 2013-12-16 Show GitHub Exploit DB Packet Storm
214793 7.5 危険 Construtiva Internet Software - CIS Manager CMS の default.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-2847 2014-04-16 19:02 2014-04-2 Show GitHub Exploit DB Packet Storm
214794 4.3 警告 apps4u@android - SD Card Manager におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-1969 2014-04-16 18:21 2014-04-11 Show GitHub Exploit DB Packet Storm
214795 5 警告 OpenAFS - OpenAFS におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-2852 2014-04-16 17:48 2014-04-3 Show GitHub Exploit DB Packet Storm
214796 5 警告 OpenAFS - OpenAFS の GetStatistics64 リモートプロシージャコールにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-0159 2014-04-16 17:48 2014-04-3 Show GitHub Exploit DB Packet Storm
214797 6.9 警告 Linux - Linux Kernel の net/ipv4/ping.c 内の ping_init_sock 関数における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2014-2851 2014-04-16 16:57 2014-04-14 Show GitHub Exploit DB Packet Storm
214798 4.6 警告 Linux - Linux Kernel の drivers/infiniband/core/cma.c 内の cma_req_handler 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-2739 2014-04-16 16:51 2014-04-2 Show GitHub Exploit DB Packet Storm
214799 7.1 危険 Linux - Linux Kernel の mac80211 サブシステムにおけるサービス運用妨害 (DoS) の脆弱性 CWE-362
競合状態
CVE-2014-2706 2014-04-16 16:36 2014-03-23 Show GitHub Exploit DB Packet Storm
214800 5.5 警告 Linux - Linux Kernel の virt/kvm/ioapic.c の ioapic_deliver 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-0155 2014-04-16 16:15 2014-04-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 23, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
297981 - scriptphp picengine Cross-site scripting (XSS) vulnerability in admin/index.php in Script PHP PicEngine 1.0 allows remote attackers to inject arbitrary web script or HTML via the l parameter. NOTE: the provenance of th… CWE-79
Cross-site Scripting
CVE-2008-2280 2017-08-8 10:30 2008-05-16 Show GitHub Exploit DB Packet Storm
297982 - fusebox fusebox PHP remote file inclusion vulnerability in fusebox5.php in Fusebox 5.5.1 allows remote attackers to execute arbitrary PHP code via a URL in the FUSEBOX_APPLICATION_PATH parameter. NOTE: the provenan… CWE-94
Code Injection
CVE-2008-2284 2017-08-8 10:30 2008-05-18 Show GitHub Exploit DB Packet Storm
297983 - ubuntu linux The ssh-vulnkey tool on Ubuntu Linux 7.04, 7.10, and 8.04 LTS does not recognize authorized_keys lines that contain options, which makes it easier for remote attackers to exploit CVE-2008-0166 by gue… CWE-310
Cryptographic Issues
CVE-2008-2285 2017-08-8 10:30 2008-05-18 Show GitHub Exploit DB Packet Storm
297984 - symantec altiris_deployment_solution Symantec Altiris Deployment Solution 6.8.x and 6.9.x before 6.9.176 does not properly protect the install directory, which might allow local users to gain privileges by replacing an application compo… CWE-264
Permissions, Privileges, and Access Controls
CVE-2008-2287 2017-08-8 10:30 2008-05-18 Show GitHub Exploit DB Packet Storm
297985 - symantec altiris_deployment_solution Symantec Altiris Deployment Solution 6.8.x and 6.9.x before 6.9.176 has insufficient access control for deletion and modification of registry keys, which allows local users to cause a denial of servi… CWE-264
Permissions, Privileges, and Access Controls
CVE-2008-2288 2017-08-8 10:30 2008-05-18 Show GitHub Exploit DB Packet Storm
297986 - symantec altiris_deployment_solution Unspecified vulnerability in a tooltip element in Symantec Altiris Deployment Solution 6.8.x and 6.9.x before 6.9.176 allows local users to gain privileges via unknown attack vectors. CWE-264
Permissions, Privileges, and Access Controls
CVE-2008-2289 2017-08-8 10:30 2008-05-18 Show GitHub Exploit DB Packet Storm
297987 - symantec altiris_deployment_solution Unspecified vulnerability in the Agent user interface in Symantec Altiris Deployment Solution 6.8.x and 6.9.x before 6.9.176 allows local users to gain privileges via unknown attack vectors. CWE-264
Permissions, Privileges, and Access Controls
CVE-2008-2290 2017-08-8 10:30 2008-05-18 Show GitHub Exploit DB Packet Storm
297988 - citrix presentation_server
access_essentials
desktop_server
Unspecified vulnerability in SecureICA and ICA Basic encryption of Citrix Presentation Server 4.5 and earlier, Access Essentials 2.0 and earlier, and Desktop Server 1.0 can cause clients to use weake… CWE-310
Cryptographic Issues
CVE-2008-2299 2017-08-8 10:30 2008-05-18 Show GitHub Exploit DB Packet Storm
297989 - citrix access_essentials
citrix_presentation_server
desktop_server
metaframe_presentation_server
Unspecified vulnerability in Citrix Presentation Server 4.5 and earlier, Citrix Access Essentials 2.0 and earlier, and Citrix Desktop Server 1.0 allows remote authenticated users to access unauthoriz… CWE-264
Permissions, Privileges, and Access Controls
CVE-2008-2300 2017-08-8 10:30 2008-05-18 Show GitHub Exploit DB Packet Storm
297990 - django_project django Cross-site scripting (XSS) vulnerability in the login form in the administration application in Django 0.91 before 0.91.2, 0.95 before 0.95.3, and 0.96 before 0.96.2 allows remote attackers to inject… CWE-79
Cross-site Scripting
CVE-2008-2302 2017-08-8 10:30 2008-05-24 Show GitHub Exploit DB Packet Storm