Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216101 4.6 警告 Xen プロジェクト - Xen の xc_cpupool_getinfo 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2014-1950 2014-02-19 14:44 2014-02-12 Show GitHub Exploit DB Packet Storm
216102 4.3 警告 Vtiger - vTiger CRM におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-7326 2014-02-19 14:30 2013-12-10 Show GitHub Exploit DB Packet Storm
216103 7.5 危険 Parcimonie Project - parcimonie におけるキーフェッチを関連付けられる脆弱性 CWE-362
競合状態
CVE-2014-1921 2014-02-19 14:22 2014-02-7 Show GitHub Exploit DB Packet Storm
216104 4.3 警告 LiveZilla - LiveZilla の Web ベースのオペレータークライアントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-7032 2014-02-19 14:17 2013-12-10 Show GitHub Exploit DB Packet Storm
216105 7.5 危険 Irfan Skiljan - IrfanView におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-5351 2014-02-19 14:07 2013-12-16 Show GitHub Exploit DB Packet Storm
216106 1.9 注意 レッドハット - Red Hat JBoss Enterprise Application Platform および JBoss WildFly Application Server におけるサーバを変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0018 2014-02-19 14:03 2014-02-13 Show GitHub Exploit DB Packet Storm
216107 4.3 警告 Bean Project - Drupal 用 Bean モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4499 2014-02-19 14:02 2013-10-23 Show GitHub Exploit DB Packet Storm
216108 7.5 危険 Linux NFS - nfs-utils の support/export/hostname.c の host_reliable_addrinfo 関数におけるファイルシステムをマウントされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-2500 2014-02-19 14:00 2011-06-30 Show GitHub Exploit DB Packet Storm
216109 4.3 警告 SAP - SAP NetWeaver 用 SAP Exchange Infrastructure コンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-1965 2014-02-19 13:52 2014-01-25 Show GitHub Exploit DB Packet Storm
216110 4.3 警告 SAP - SAP NetWeaver の Exchange Infrastructure コンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-1964 2014-02-19 13:51 2014-01-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
299071 - proftpd_project proftpd The Auth API in ProFTPD before 20070417, when multiple simultaneous authentication modules are configured, does not require that the module that checks authentication is the same as the module that r… NVD-CWE-Other
CVE-2007-2165 2017-07-29 10:31 2007-04-23 Show GitHub Exploit DB Packet Storm
299072 - aimstats aimstats Static code injection vulnerability in process.php in AimStats 3.2 and earlier allows remote attackers to inject PHP code into config.php via the databasehost parameter. NOTE: the provenance of this… NVD-CWE-Other
CVE-2007-2168 2017-07-29 10:31 2007-04-23 Show GitHub Exploit DB Packet Storm
299073 - double_precision_incorporated courier-imap Eval injection vulnerability in (1) courier-imapd.indirect and (2) courier-pop3d.indirect in Courier-IMAP before 4.0.6-r2, and 4.1.x before 4.1.2-r1, on Gentoo Linux allows remote attackers to execut… NVD-CWE-Other
CVE-2007-2173 2017-07-29 10:31 2007-04-25 Show GitHub Exploit DB Packet Storm
299074 - objective_development sharity Multiple unspecified vulnerabilities in Objective Development Sharity before 3.3 allow remote attackers to cause a denial of service (daemon crash) via unspecified vectors. NVD-CWE-Other
CVE-2007-2178 2017-07-29 10:31 2007-04-25 Show GitHub Exploit DB Packet Storm
299075 - freepbx freepbx Multiple cross-site scripting (XSS) vulnerabilities in freePBX 2.2.x allow remote attackers to inject arbitrary web script or HTML via the (1) From, (2) To, (3) Call-ID, (4) User-Agent, and unspecifi… NVD-CWE-Other
CVE-2007-2191 2017-07-29 10:31 2007-04-25 Show GitHub Exploit DB Packet Storm
299076 - ripe_website_manager ripe_website_manager Cross-site scripting (XSS) vulnerability in contact/index.php in Ripe Website Manager 0.8.4 and earlier allows remote attackers to inject arbitrary web script or HTML via a leading "<"<" i… CWE-79
Cross-site Scripting
CVE-2007-2206 2017-07-29 10:31 2007-04-25 Show GitHub Exploit DB Packet Storm
299077 - mybb mybb Multiple SQL injection vulnerabilities in calendar.php in MyBB (aka MyBulletinBoard) 1.2.5 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) year or (2) month parameter… NVD-CWE-Other
CVE-2007-2212 2017-07-29 10:31 2007-04-25 Show GitHub Exploit DB Packet Storm
299078 - microsoft intelligent_application_gateway_2007 Multiple stack-based buffer overflows in the Whale Client Components ActiveX control (WhlMgr.dll), as used in Microsoft Intelligent Application Gateway (IAG) before 3.7 SP2, allow remote attackers to… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2007-2238 2017-07-29 10:31 2009-04-17 Show GitHub Exploit DB Packet Storm
299079 - axis 2100_network_camera
2110_network_camera
2120_network_camera
2130_ptz_network_camera
2400_video_server
2401_video_server
2411_video_server
2420-ir_network_camera
2420_network_c…
Stack-based buffer overflow in the SaveBMP method in the AXIS Camera Control (aka CamImage) ActiveX control before 2.40.0.0 in AxisCamControl.ocx in AXIS 2100, 2110, 2120, 2130 PTZ, 2420, 2420-IR, 24… NVD-CWE-Other
CVE-2007-2239 2017-07-29 10:31 2007-05-8 Show GitHub Exploit DB Packet Storm
299080 - openbsd openssh OpenSSH 4.6 and earlier, when ChallengeResponseAuthentication is enabled, allows remote attackers to determine the existence of user accounts by attempting to authenticate via S/KEY, which displays a… CWE-287
Improper Authentication
CVE-2007-2243 2017-07-29 10:31 2007-04-26 Show GitHub Exploit DB Packet Storm