Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216051 5 警告 シスコシステムズ - Cisco Unified Communications Manager の Enterprise License Manager コンポーネントにおける ELM ファイルを読まれる脆弱性 CWE-287
不適切な認証
CVE-2014-0733 2014-02-21 11:42 2014-02-19 Show GitHub Exploit DB Packet Storm
216052 6.8 警告 シスコシステムズ - Cisco Unified Communications Manager の Call Detail Records Analysis and Reporting ページにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-0736 2014-02-21 11:37 2014-02-19 Show GitHub Exploit DB Packet Storm
216053 4.3 警告 シスコシステムズ - Cisco Unified Communications Manager の IP Manager Assistant インターフェースにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0735 2014-02-21 11:14 2014-02-19 Show GitHub Exploit DB Packet Storm
216054 7.5 危険 シスコシステムズ - Cisco Unified Communications Manager の Certificate Authority Proxy Function の実装における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-0734 2014-02-21 11:13 2014-02-19 Show GitHub Exploit DB Packet Storm
216055 5 警告 シスコシステムズ - Cisco Unified Communications Manager の Real Time Monitoring Tool Web アプリケーションにおけるアプリケーションファイルを読まれる脆弱性 CWE-287
不適切な認証
CVE-2014-0732 2014-02-21 11:12 2014-02-19 Show GitHub Exploit DB Packet Storm
216056 2.1 注意 Linux - Linux Kernel の net/key/af_key.c におけるカーネルヒープメモリから重要な情報を取得される脆弱性 CWE-119
バッファエラー
CVE-2013-2234 2014-02-20 18:22 2013-06-26 Show GitHub Exploit DB Packet Storm
216057 2.1 注意 Linux
レッドハット
- Linux Kernel の drivers/cdrom/cdrom.c 内の mmc_ioctl_cdrom_read_data 関数における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-2164 2014-02-20 18:17 2013-06-6 Show GitHub Exploit DB Packet Storm
216058 4.4 警告 Linux - Linux Kernel の drivers/net/ethernet/broadcom/tg3.c におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-1929 2014-02-20 18:07 2013-03-27 Show GitHub Exploit DB Packet Storm
216059 4.7 警告 Linux
レッドハット
- Linux Kernel の fs/compat_ioctl.c における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-1928 2014-02-20 18:03 2013-04-8 Show GitHub Exploit DB Packet Storm
216060 5 警告 GNU Project - GNU C Library におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-1914 2014-02-20 17:53 2013-04-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 25, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
298691 - apple mac_os_x Open Scripting Architecture in Apple Mac OS X 10.4.11 and 10.5.4, and some other 10.4 and 10.5 versions, does not properly restrict the loading of scripting addition plugins, which allows local users… CWE-264
Permissions, Privileges, and Access Controls
CVE-2008-2830 2017-08-8 10:31 2008-06-24 Show GitHub Exploit DB Packet Storm
298692 - mailmarshal e10000_appliance
smtp
Multiple cross-site scripting (XSS) vulnerabilities in the delegated spam management feature in the Spam Quarantine Management (SQM) component in MailMarshal SMTP 6.0.3.8 through 6.3.0.0 allow user-a… CWE-79
Cross-site Scripting
CVE-2008-2831 2017-08-8 10:31 2008-10-3 Show GitHub Exploit DB Packet Storm
298693 - mindtouch dekiwiki Cross-site scripting (XSS) vulnerability in the search functionality in MindTouch DekiWiki before 8.05.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2008-2848 2017-08-8 10:31 2008-06-25 Show GitHub Exploit DB Packet Storm
298694 - drupal trailscout_module Cross-site scripting (XSS) vulnerability in the TrailScout module 5.x before 5.x-1.4 for Drupal allows remote authenticated users, with create post permissions, to inject arbitrary web script or HTML… CWE-79
Cross-site Scripting
CVE-2008-2849 2017-08-8 10:31 2008-06-25 Show GitHub Exploit DB Packet Storm
298695 - drupal trailscout_module SQL injection vulnerability in the TrailScout module 5.x before 5.x-1.4 for Drupal allows remote attackers to execute arbitrary SQL commands via unspecified cookies, related to improper use of the Dr… CWE-89
SQL Injection
CVE-2008-2850 2017-08-8 10:31 2008-06-25 Show GitHub Exploit DB Packet Storm
298696 - offsystem offsystem Multiple buffer overflows in OFF System before 0.19.14 allow remote attackers to have an unknown impact via unspecified vectors related to "parsing of http headers." CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2008-2851 2017-08-8 10:31 2008-06-25 Show GitHub Exploit DB Packet Storm
298697 - nathan_neulinger cgiwrap Cross-site scripting (XSS) vulnerability in CGIWrap before 4.1, when an Internet Explorer based browser is used, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors… CWE-79
Cross-site Scripting
CVE-2008-2852 2017-08-8 10:31 2008-06-25 Show GitHub Exploit DB Packet Storm
298698 - netwin surgemail Unspecified vulnerability in the IMAP service in NetWin SurgeMail before 3.9g2 allows remote attackers to cause a denial of service (daemon crash) via unknown vectors related to an "imap command." NVD-CWE-noinfo
CVE-2008-2859 2017-08-8 10:31 2008-06-25 Show GitHub Exploit DB Packet Storm
298699 - pegames pegames Multiple cross-site scripting (XSS) vulnerabilities in template2.php in PEGames allow remote attackers to inject arbitrary web script or HTML via the (1) sitetitle, (2) sitenav, (3) sitemain, and (4)… CWE-79
Cross-site Scripting
CVE-2008-2871 2017-08-8 10:31 2008-06-27 Show GitHub Exploit DB Packet Storm
298700 - ibm afp_viewer_plug-in Heap-based buffer overflow in the IBM AFP Viewer Plug-in 2.0.7.1 and 3.2.1.1 allows remote attackers to execute arbitrary code via a long SRC property value. NOTE: the provenance of this information… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2008-2880 2017-08-8 10:31 2008-06-27 Show GitHub Exploit DB Packet Storm