Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216691 5 警告 ownCloud - ownCloud Server のインストールルーチンにおけるパスワードを推測される脆弱性 CWE-310
暗号の問題
CVE-2013-1941 2014-06-5 16:37 2013-04-10 Show GitHub Exploit DB Packet Storm
216692 4.6 警告 ownCloud - ownCloud の settings/personal.php における任意の PHP コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2013-0204 2014-06-5 16:33 2013-01-22 Show GitHub Exploit DB Packet Storm
216693 4 警告 ownCloud - ownCloud の lib/base.php における任意のファイルを読まれる脆弱性 CWE-20
不適切な入力確認
CVE-2012-5336 2014-06-5 16:32 2012-10-9 Show GitHub Exploit DB Packet Storm
216694 4.3 警告 ownCloud - ownCloud Server における CRLF インジェクションの脆弱性 CWE-Other
その他
CVE-2012-5057 2014-06-5 16:31 2012-09-22 Show GitHub Exploit DB Packet Storm
216695 4.3 警告 ownCloud - ownCloud Server におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5056 2014-06-5 16:23 2012-09-22 Show GitHub Exploit DB Packet Storm
216696 4.6 警告 IBM - IBM Smart Analytics System 7700 および 7710 における権限を取得される脆弱性 CWE-noinfo
情報不足
CVE-2014-0935 2014-06-5 15:24 2014-05-30 Show GitHub Exploit DB Packet Storm
216697 4.3 警告 DELL EMC (旧 EMC Corporation) - EMC RSA Adaptive Authentication の rsa_fso.swf におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2502 2014-06-5 15:18 2014-06-2 Show GitHub Exploit DB Packet Storm
216698 4.3 警告 Lucid Crew - Pixie CMS の contact モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-3786 2014-06-5 13:32 2014-05-30 Show GitHub Exploit DB Packet Storm
216699 4 警告 TYPO3 Association - TYPO3 の Authentication コンポーネントにおける認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2014-3945 2014-06-5 12:22 2014-05-22 Show GitHub Exploit DB Packet Storm
216700 5.8 警告 TYPO3 Association - TYPO3 の Authentication コンポーネントにおける認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2014-3944 2014-06-5 12:21 2014-05-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
347291 - ibm lotus_domino_server The default configuration of the web server in IBM Lotus Domino Server, possibly 6.0 through 8.0, enables the HTTP TRACE method, which makes it easier for remote attackers to steal cookies and authen… CWE-16
Configuration
CVE-2008-7253 2010-01-26 14:00 2010-01-26 Show GitHub Exploit DB Packet Storm
347292 - oracle database_server Unspecified vulnerability in the Oracle OLAP component in Oracle Database Server 10.1.0.4 (10g) allows remote authenticated attackers to affect availability via unknown vectors, aka DB02. NVD-CWE-noinfo
CVE-2005-4884 2010-01-26 14:00 2010-01-26 Show GitHub Exploit DB Packet Storm
347293 - jce-tech php_calendars_script install.php in JCE-Tech PHP Calendars, downloaded 20100121, allows remote attackers to bypass intended access restrictions and modify application settings via a direct request. NOTE: this is only a … CWE-16
CWE-264
Configuration
Permissions, Privileges, and Access Controls
CVE-2010-0380 2010-01-25 14:00 2010-01-23 Show GitHub Exploit DB Packet Storm
347294 - phpmyspace phpmyspace SQL injection vulnerability in modules/arcade/index.php in PHP MySpace Gold Edition 8.0 and 8.10 allows remote attackers to execute arbitrary SQL commands via the gid parameter in a show_stats action… CWE-89
SQL Injection
CVE-2010-0381 2010-01-25 14:00 2010-01-23 Show GitHub Exploit DB Packet Storm
347295 - phpmyspace phpmyspace SQL injection vulnerability in modules/arcade/index.php in PHP MySpace Gold Edition 8.0 and 8.10 allows remote attackers to execute arbitrary SQL commands via the gid parameter in a play_game action.… CWE-89
SQL Injection
CVE-2010-0377 2010-01-23 03:30 2010-01-22 Show GitHub Exploit DB Packet Storm
347296 - sambar sambar_server search.dll Sambar ISAPI Search utility in Sambar Server 4.4 Beta 3 allows remote attackers to read arbitrary directories by specifying the directory in the query parameter. NVD-CWE-Other
CVE-2000-0835 2010-01-16 14:00 2000-11-14 Show GitHub Exploit DB Packet Storm
347297 - webtrends reporting_center WebTrends Reporting Center 4.0d allows remote attackers to determine the real path of the web server via a GET request to get_od_toc.pl with an empty Profile parameter, which leaks the pathname in an… CWE-200
Information Exposure
CVE-2002-0596 2010-01-16 14:00 2002-06-18 Show GitHub Exploit DB Packet Storm
347298 - tftpd32 tftpd32 tftpd32 2.50 and 2.50.2 allows remote attackers to read or write arbitrary files via a full pathname in GET and PUT requests. CWE-264
Permissions, Privileges, and Access Controls
CVE-2002-2353 2009-11-24 14:15 2002-12-31 Show GitHub Exploit DB Packet Storm
347299 - jean-jacques_sarton mtink Buffer overflow in MTink in the printer-filters-utils package allows local users to execute arbitrary code via a long HOME environment variable. NVD-CWE-Other
CVE-2005-4604 2009-11-12 14:51 2005-12-31 Show GitHub Exploit DB Packet Storm
347300 - openoffice openoffice OpenOffice.org 2.0 and earlier, when hyperlinks has been disabled, does not prevent the user from clicking the WWW-browser button in the Hyperlink dialog, which makes it easier for attackers to trick… NVD-CWE-Other
CVE-2005-4636 2009-11-12 14:51 2005-12-31 Show GitHub Exploit DB Packet Storm