Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
219121 6 警告 Open-Xchange - Open-Xchange Server のサブスクリプション機能における任意のアウトバウンド TCP トラフィックを誘発される脆弱性 CWE-20
不適切な入力確認
CVE-2013-1648 2013-09-6 16:33 2013-03-13 Show GitHub Exploit DB Packet Storm
219122 5 警告 Open-Xchange - Open-Xchange Server における CRLF インジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2013-1647 2013-09-6 16:20 2013-03-13 Show GitHub Exploit DB Packet Storm
219123 4.3 警告 Open-Xchange - Open-Xchange Server におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1646 2013-09-6 16:18 2013-03-13 Show GitHub Exploit DB Packet Storm
219124 4 警告 Open-Xchange - Open-Xchange Server におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-1645 2013-09-6 16:14 2013-03-13 Show GitHub Exploit DB Packet Storm
219125 3.5 注意 Open-Xchange - Open-Xchange App Suite および Server におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-5698 2013-09-6 16:11 2013-06-3 Show GitHub Exploit DB Packet Storm
219126 3.5 注意 Open-Xchange - Open-Xchange App Suite における他のユーザの電子メールの認証情報を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2013-4790 2013-09-6 16:03 2013-07-31 Show GitHub Exploit DB Packet Storm
219127 4.3 警告 Open-Xchange - Open-Xchange App Suite および Server におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-3106 2013-09-6 15:03 2013-06-3 Show GitHub Exploit DB Packet Storm
219128 4.3 警告 Open-Xchange - Open-Xchange App Suite および Server におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-2583 2013-09-6 14:54 2013-04-17 Show GitHub Exploit DB Packet Storm
219129 5 警告 Open-Xchange - Open-Xchange App Suite および Server のリダイレクトサーブレットにおける CRLF インジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2013-2582 2013-09-6 14:47 2013-04-17 Show GitHub Exploit DB Packet Storm
219130 5.8 警告 DELL EMC (旧 EMC Corporation) - EMC RSA Archer GRC におけるオープンリダイレクトの脆弱性 CWE-20
不適切な入力確認
CVE-2013-3277 2013-09-6 12:06 2013-09-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 20, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
278391 - tiki tikiwiki_cms\/groupware Cross-site scripting (XSS) vulnerability in tiki-view_forum_thread.php in TikiWiki 1.9.0 through 1.9.2 allows remote attackers to inject arbitrary web script or HTML via the topics_offset parameter. CWE-79
Cross-site Scripting
CVE-2005-3528 2018-10-20 00:36 2005-11-21 Show GitHub Exploit DB Packet Storm
278392 - tiki tikiwiki_cms\/groupware tiki-view_forum_thread.php in TikiWiki 1.9.0 through 1.9.2 allows remote attackers to obtain the installation path via an invalid topics_sort_mode parameter, possibly related to an SQL injection vuln… CWE-200
Information Exposure
CVE-2005-3529 2018-10-20 00:36 2005-11-21 Show GitHub Exploit DB Packet Storm
278393 - ifax_solutions hylafax hfaxd in HylaFAX 4.2.3, when PAM support is disabled, accepts arbitrary passwords, which allows remote attackers to gain privileges. NVD-CWE-Other
CVE-2005-3538 2018-10-20 00:36 2005-12-31 Show GitHub Exploit DB Packet Storm
278394 - hylafax hylafax Multiple eval injection vulnerabilities in HylaFAX 4.2.3 and earlier allow remote attackers to execute arbitrary commands via (1) the notify script in HylaFAX 4.2.0 to 4.2.3 and (2) crafted CallID pa… NVD-CWE-Other
CVE-2005-3539 2018-10-20 00:36 2005-12-31 Show GitHub Exploit DB Packet Storm
278395 - xpdf xpdf Heap-based buffer overflow in the StreamPredictor function in Xpdf 3.01, as used in products such as (1) Poppler, (2) teTeX, (3) KDE kpdf, and (4) pdftohtml, (5) KOffice KWord, (6) CUPS, and (7) libe… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2005-3192 2018-10-20 00:35 2005-12-8 Show GitHub Exploit DB Packet Storm
278396 - xpdf xpdf Heap-based buffer overflow in the JPXStream::readCodestream function in the JPX stream parsing code (JPXStream.c) for xpdf 3.01 and earlier, as used in products such as (1) Poppler, (2) teTeX, (3) KD… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2005-3193 2018-10-20 00:35 2005-12-7 Show GitHub Exploit DB Packet Storm
278397 - paros paros Paros 3.2.5 uses a default password for the "sa" account in the underlying HSQLDB database and does not restrict access to the local machine, which allows remote attackers to gain privileges. NVD-CWE-Other
CVE-2005-3280 2018-10-20 00:35 2005-10-23 Show GitHub Exploit DB Packet Storm
278398 - libungif libungif libungif library before 4.1.0 allows attackers to corrupt memory and possibly execute arbitrary code via a crafted GIF file that leads to an out-of-bounds write. NVD-CWE-Other
CVE-2005-3350 2018-10-20 00:35 2005-11-4 Show GitHub Exploit DB Packet Storm
278399 - andries_brouwer util-linux umount in util-linux 2.8 to 2.12q, 2.13-pre1, and 2.13-pre2, and other packages such as loop-aes-utils, allows local users with unmount permissions to gain privileges via the -r (remount) option, whi… NVD-CWE-Other
CVE-2005-2876 2018-10-20 00:34 2005-09-14 Show GitHub Exploit DB Packet Storm
278400 - sgi irix runpriv in SGI IRIX allows local users to bypass intended restrictions and execute arbitrary commands via shell metacharacters in a command line for a privileged binary in /usr/sysadm/privbin. NVD-CWE-Other
CVE-2005-2925 2018-10-20 00:34 2005-10-12 Show GitHub Exploit DB Packet Storm