Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
215281 7.8 危険 Dasan Zhone Solutions - Zhone GPON 2520 のファームウェアにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2015-2055 2015-02-25 16:57 2015-01-21 Show GitHub Exploit DB Packet Storm
215282 4.3 警告 Sierra Wireless - 複数の Sierra Wireless AirCard 用 Web ベースの管理コンソールの export.cfg における CRLF インジェクションの脆弱性 CWE-Other
その他
CVE-2015-2054 2015-02-25 16:53 2015-01-14 Show GitHub Exploit DB Packet Storm
215283 4.3 警告 マカフィー - McAfee Agent のログビューアにおけるクリックジャッキング攻撃を実行される脆弱性 CWE-20
不適切な入力確認
CVE-2015-2053 2015-02-25 16:44 2015-02-19 Show GitHub Exploit DB Packet Storm
215284 10 危険 D-Link Systems, Inc. - D-Link DIR-645 Wired/Wireless ルータのファームウェアにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2015-2052 2015-02-25 16:28 2015-02-13 Show GitHub Exploit DB Packet Storm
215285 10 危険 D-Link Systems, Inc. - D-Link DIR-645 Wired/Wireless ルータのファームウェアにおける任意のコマンドを実行される脆弱性 CWE-Other
その他
CVE-2015-2051 2015-02-25 16:28 2015-02-13 Show GitHub Exploit DB Packet Storm
215286 6.8 警告 D-Link Systems, Inc. - D-Link DCS-931L のファームウェアにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2015-2048 2015-02-25 16:28 2015-02-12 Show GitHub Exploit DB Packet Storm
215287 8.5 危険 Adtrustmedia, LLC. - Adtrustmedia PrivDog に SSL サーバ証明書の検証不備の脆弱性 - - 2015-02-25 15:53 2015-02-23 Show GitHub Exploit DB Packet Storm
215288 6.8 警告 サムスン - Samsung iPOLiS Device Manager の XnsSdkDeviceIpInstaller.ocx ActiveX コントロールにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2015-0555 2015-02-25 15:07 2015-02-21 Show GitHub Exploit DB Packet Storm
215289 5 警告 arCHMage project - arCHMage におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2015-1589 2015-02-25 14:35 2015-01-24 Show GitHub Exploit DB Packet Storm
215290 2.1 注意 Puppet - Puppet Labs Facter における重要な Amazon EC2 IAM インスタンスメタデータを取得される脆弱性 CWE-200
情報漏えい
CVE-2015-1426 2015-02-25 14:20 2015-02-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 12, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
355441 - softbiz b2b_trading_marketplace_script SQL injection vulnerability in Softbiz B2B Trading Marketplace Script 1.1 and earler allows remote attackers to execute arbitrary SQL commands via the cid parameter in (1) selloffers.php, (2) buyoffe… NVD-CWE-Other
CVE-2005-3937 2009-10-9 13:33 2005-12-1 Show GitHub Exploit DB Packet Storm
355442 - sun java_plug-in The Java Plug-in 1.4.2_03 and 1.4.2_04 controls, and the 1.4.2_03 and 1.4.2_04 <applet> redirector controls, allow remote attackers to cause a denial of service (Internet Explorer crash) by creating … CWE-16
Configuration
CVE-2005-4845 2009-08-28 13:00 2005-12-31 Show GitHub Exploit DB Packet Storm
355443 - gnu mailman Cross-site scripting vulnerabilities in Mailman before 2.0.11 allow remote attackers to execute script via (1) the admin login page, or (2) the Pipermail index summaries. NVD-CWE-Other
CVE-2002-0388 2009-07-22 06:00 2002-06-18 Show GitHub Exploit DB Packet Storm
355444 - wowbb wowbb_web_forum Multiple SQL injection vulnerabilities in WowBB Forum 1.61 allow remote attackers to execute arbitrary SQL commands via the (1) sort_by or (2) page parameters to view_user.php, or the (3) forum_id pa… NVD-CWE-Other
CVE-2004-2181 2009-06-25 13:25 2004-12-31 Show GitHub Exploit DB Packet Storm
355445 - abe_timmerman zml.cgi Directory traversal vulnerability in zml.cgi allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter. NVD-CWE-Other
CVE-2001-1209 2009-04-30 13:08 2001-12-31 Show GitHub Exploit DB Packet Storm
355446 - virtual_programming vp-asp SQL injection vulnerability in shopadmin.asp in VP-ASP 4.0 allows remote attackers to execute arbitrary SQL commands and bypass authentication via the (1) username or (2) password fields. NVD-CWE-Other
CVE-2002-1919 2009-04-11 13:14 2002-12-31 Show GitHub Exploit DB Packet Storm
355447 - easyscripts easynews easyNews 1.5 and earlier stores administration passwords in cleartext in settings.php, which allows local users to obtain the passwords and gain access. NVD-CWE-Other
CVE-2001-1527 2009-04-3 13:11 2001-12-31 Show GitHub Exploit DB Packet Storm
355448 - newsscript.co.uk newsscript newsscript.pl for NewsScript allows remote attackers to gain privileges by setting the mode parameter to admin. CWE-264
Permissions, Privileges, and Access Controls
CVE-2005-0735 2009-04-3 13:00 2005-05-2 Show GitHub Exploit DB Packet Storm
355449 - php_heaven phpmychat Multiple directory traversal vulnerabilities in admin.php3 in PHPMyChat 0.14.5 allow remote attackers with administrative privileges to read arbitrary files via a .. (dot dot) in the (1) sheet and (2… CWE-22
Path Traversal
CVE-2004-2717 2009-04-3 13:00 2004-12-31 Show GitHub Exploit DB Packet Storm
355450 - phpmyadmin phpmyadmin phpMyAdmin 2.2.0rc3 and earlier allows remote attackers to execute arbitrary commands by inserting them into (1) the strCopyTableOK argument in tbl_copy.php, or (2) the strRenameTableOK argument in t… NVD-CWE-Other
CVE-2001-1060 2009-04-3 13:00 2001-07-31 Show GitHub Exploit DB Packet Storm