Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
219251 7.8 危険 シスコシステムズ - Cisco Prime Central for Hosted Collaboration Solution Assurance におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2013-3387 2013-08-27 14:26 2013-08-21 Show GitHub Exploit DB Packet Storm
219252 5.8 警告 Apache Software Foundation
レッドハット
- Apache Qpid の Python クライアントにおける SSL サーバになりすまされる脆弱性 CWE-20
不適切な入力確認
CVE-2013-1909 2013-08-27 12:25 2013-06-12 Show GitHub Exploit DB Packet Storm
219253 4.3 警告 Axel Jung - TYPO3 用 Javascript and CSS Optimizer エクステンションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-5570 2013-08-26 15:31 2013-01-28 Show GitHub Exploit DB Packet Storm
219254 7.5 危険 Heiko Sudar - TYPO3 用 Slideshare エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-5569 2013-08-26 15:31 2013-02-19 Show GitHub Exploit DB Packet Storm
219255 2.1 注意 Paul Maddern - Drupal 用 Imagemenu モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-6583 2013-08-26 15:25 2012-09-19 Show GitHub Exploit DB Packet Storm
219256 2.1 注意 Simon Tatham - PuTTY におけるログインパスワードを読まれる脆弱性 CWE-200
情報漏えい
CVE-2011-4607 2013-08-26 14:02 2011-12-8 Show GitHub Exploit DB Packet Storm
219257 7.8 危険 シスコシステムズ - Cisco Unified Communications Manager および Cisco Unified Presence におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2013-3453 2013-08-26 13:53 2013-08-21 Show GitHub Exploit DB Packet Storm
219258 4 警告 IBM - IBM Optim Performance Manager および IBM InfoSphere Optim Performance Manager におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-2979 2013-08-26 13:34 2013-08-20 Show GitHub Exploit DB Packet Storm
219259 2.6 注意 ヤフー株式会社 - ヤフオク! における SSL サーバ証明書の検証不備の脆弱性 CWE-Other
その他
CVE-2013-4699 2013-08-23 18:43 2013-08-19 Show GitHub Exploit DB Packet Storm
219260 2.6 注意 ヤフー株式会社 - Android 版 Yahoo!ショッピングにおける SSL サーバ証明書の検証不備の脆弱性 CWE-Other
その他
CVE-2013-4700 2013-08-23 18:41 2013-08-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 26, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
277631 - freepbx
sangoma
freepbx FreePBX 2.5.1, and other 2.4.x, 2.5.x, and pre-release 2.6.x versions, generates different error messages for a failed login attempt depending on whether the user account exists, which allows remote … CWE-200
Information Exposure
CVE-2009-1803 2019-12-11 00:34 2009-05-28 Show GitHub Exploit DB Packet Storm
277632 - microsoft windows_2000
windows_nt
Buffer overflow in the CallHTMLHelp method in the Microsoft Windows Media Services ActiveX control in nskey.dll 4.1.00.3917 in Windows Media Services on Microsoft Windows NT and 2000, and Avaya Media… CWE-787
 Out-of-bounds Write
CVE-2008-5232 2019-12-4 00:40 2008-11-26 Show GitHub Exploit DB Packet Storm
277633 - xuebrothers myweb Buffer overflow in MyWeb 3.3 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long HTTP GET request. NVD-CWE-Other
CVE-2004-2614 2019-11-26 03:16 2004-12-31 Show GitHub Exploit DB Packet Storm
277634 - mortbay jetty Mort Bay Jetty 6.x through 6.1.22 and 7.0.0 writes backtrace data without sanitizing non-printable characters, which might allow remote attackers to modify a window's title, or possibly execute arbit… CWE-20
 Improper Input Validation 
CVE-2009-4611 2019-11-22 04:15 2010-01-14 Show GitHub Exploit DB Packet Storm
277635 - matomo
piwik
matomo
piwik
Cross-site scripting (XSS) vulnerability in the Login form in Piwik 0.1.6 through 0.5.5 allows remote attackers to inject arbitrary web script or HTML via the form_url parameter. CWE-79
Cross-site Scripting
CVE-2010-1453 2019-11-21 22:30 2010-05-8 Show GitHub Exploit DB Packet Storm
277636 - matomo matomo Piwik 0.2.32 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain the API key and other sensitive information via a di… CWE-264
Permissions, Privileges, and Access Controls
CVE-2009-1085 2019-11-21 22:29 2009-03-26 Show GitHub Exploit DB Packet Storm
277637 - matomo matomo The loadContentFromCookie function in core/Cookie.php in Piwik before 0.5 does not validate strings obtained from cookies before calling the unserialize function, which allows remote attackers to exe… CWE-20
 Improper Input Validation 
CVE-2009-4137 2019-11-21 22:29 2009-12-25 Show GitHub Exploit DB Packet Storm
277638 - teethgrinder.co.uk
matomo
open_flash_chart
matomo
Unrestricted file upload vulnerability in ofc_upload_image.php in Open Flash Chart v2 Beta 1 through v2 Lug Wyrm Charmer, as used in Piwik 0.2.35 through 0.4.3, Woopra Analytics Plugin before 1.4.3.2… NVD-CWE-Other
CVE-2009-4140 2019-11-21 22:29 2009-12-23 Show GitHub Exploit DB Packet Storm
277639 - chetcpasswd_project chetcpasswd Pedro Lineu Orso chetcpasswd 2.3.3 provides a different error message when a request with a valid username fails, compared to a request with an invalid username, which allows remote attackers to dete… CWE-388
 7PK - Errors
CVE-2006-6682 2019-11-14 22:21 2006-12-22 Show GitHub Exploit DB Packet Storm
277640 - pedro_lineu_orso chetcpasswd Pedro Lineu Orso chetcpasswd 2.4.1 and earlier verifies and updates user accounts via custom code that processes /etc/shadow and does not follow the PAM configuration, which might allow remote attack… CWE-264
Permissions, Privileges, and Access Controls
CVE-2006-6683 2019-11-14 03:53 2006-12-22 Show GitHub Exploit DB Packet Storm