Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
214801 4.4 警告 Schneider Electric - Schneider Electric VAMPSET におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-5407 2014-09-16 18:50 2014-08-21 Show GitHub Exploit DB Packet Storm
214802 5 警告 VMware - VMware NSX および vCloud Networking and Security における重要な情報を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2014-3796 2014-09-16 18:50 2014-09-11 Show GitHub Exploit DB Packet Storm
214803 4 警告 Moodle - Moodle の mod/forum/lib.php 内の forum_print_latest_discussions 関数における個々の answer-posting 要求を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-3617 2014-09-16 18:49 2014-09-15 Show GitHub Exploit DB Packet Storm
214804 7.5 危険 エンバカデロ・テクノロジーズ - Embarcadero Delphi と C++Builder の VCL にバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-0993 2014-09-16 18:11 2014-09-11 Show GitHub Exploit DB Packet Storm
214805 6.5 警告 Tribulant Software - WordPress 用 Tribulant Slideshow Gallery プラグインにおける任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2014-5460 2014-09-16 18:05 2014-08-29 Show GitHub Exploit DB Packet Storm
214806 5 警告 IBM - IBM Rational コラボレーティブ・ライフサイクル・マネージメント などの Rational 製品で使用される Jazz Team Server におけるセッション Cookie をキャプチャされる脆弱性 CWE-200
情報漏えい
CVE-2014-3092 2014-09-16 17:55 2014-09-9 Show GitHub Exploit DB Packet Storm
214807 5 警告 MiniUPnP Project
Linux
- MiniUPnP の miniwget.c の getHTTPレスポンス関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2014-3985 2014-09-16 16:54 2014-04-8 Show GitHub Exploit DB Packet Storm
214808 4.3 警告 fatfreecrm.com - Fat Free CRM の app/views/layouts/application.html.haml におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-5441 2014-09-16 16:45 2014-08-26 Show GitHub Exploit DB Packet Storm
214809 2.1 注意 IBM - IBM SONAS および IBM Storwize V7000 Unified における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2014-3077 2014-09-16 16:34 2014-09-11 Show GitHub Exploit DB Packet Storm
214810 7.5 危険 MPEX Solutions - MPEX Business Solutions MX-SmartTimer の Login.aspx における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-5440 2014-09-16 16:33 2014-08-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
347321 - thttpd thttpd_http_server Buffer overflow in thttpd HTTP server before 2.04-31 allows remote attackers to execute arbitrary commands via a long date string, which is not properly handled by the tdate_parse function. NVD-CWE-Other
CVE-1999-1457 2008-09-11 04:01 1999-11-16 Show GitHub Exploit DB Packet Storm
347322 - next
sgi
cray
sun
next
irix
unicos
sunos
rdist in various UNIX systems uses popen to execute sendmail, which allows local users to gain root privileges by modifying the IFS (Internal Field Separator) variable. NVD-CWE-Other
CVE-1999-1468 2008-09-11 04:01 1991-10-22 Show GitHub Exploit DB Packet Storm
347323 - oracle oracle8i
oracle9i
Oracle Database Server 8.1.7.4 through 9.2.0.4 allows local users to execute commands with additional privileges via the ctxsys.driload package, which is publicly accessible. CWE-94
Code Injection
CVE-2004-0637 2008-09-10 13:00 2004-09-2 Show GitHub Exploit DB Packet Storm
347324 - realnetworks realserver RealMedia server allows remote attackers to cause a denial of service via a long ramgen request. NVD-CWE-Other
CVE-2000-0001 2008-09-10 13:00 1999-12-23 Show GitHub Exploit DB Packet Storm
347325 - cisco ios The IOS HTTP service in Cisco routers and switches running IOS 11.1 through 12.1 allows remote attackers to cause a denial of service by requesting a URL that contains a %% string. CWE-20
 Improper Input Validation 
CVE-2000-0380 2008-09-10 13:00 2000-04-26 Show GitHub Exploit DB Packet Storm
347326 - postgresql postgresql Buffer overflows in (1) circle_poly, (2) path_encode and (3) path_add (also incorrectly identified as path_addr) for PostgreSQL 7.2.3 and earlier allow attackers to cause a denial of service and poss… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2002-1401 2008-09-10 13:00 2003-01-17 Show GitHub Exploit DB Packet Storm
347327 - freebsd freebsd FreeBSD seyon allows local users to gain privileges by providing a malicious program in the -emulator argument. NVD-CWE-Other
CVE-1999-0821 2008-09-9 21:36 1999-11-8 Show GitHub Exploit DB Packet Storm
347328 - qualcomm qpopper Buffer overflow in Qpopper (qpop) 3.0 allows remote root access via AUTH command. NVD-CWE-Other
CVE-1999-0822 2008-09-9 21:36 1999-11-30 Show GitHub Exploit DB Packet Storm
347329 - freebsd freebsd Buffer overflow in FreeBSD xmindpath allows local users to gain privileges via -f argument. NVD-CWE-Other
CVE-1999-0823 2008-09-9 21:36 1999-12-1 Show GitHub Exploit DB Packet Storm
347330 - microsoft windows_nt A Windows NT user can use SUBST to map a drive letter to a folder, which is not unmapped after the user logs off, potentially allowing that user to modify the location of folders accessed by later us… NVD-CWE-Other
CVE-1999-0824 2008-09-9 21:36 1999-11-30 Show GitHub Exploit DB Packet Storm