Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
219321 6.8 警告 BigTree CMS - BigTree CMS の core/admin/modules/users/update.php におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-5313 2013-08-21 14:08 2013-07-17 Show GitHub Exploit DB Packet Storm
219322 4.3 警告 Vastal I-Tech & Co. - Vastal I-Tech phpVID におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-5312 2013-08-21 14:06 2013-08-8 Show GitHub Exploit DB Packet Storm
219323 7.5 危険 Vastal I-Tech & Co. - Vastal I-Tech phpVID における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-5311 2013-08-21 14:01 2013-08-8 Show GitHub Exploit DB Packet Storm
219324 5 警告 Willy Tarreau
Canonical
レッドハット
- HAProxy におけるサービス運用妨害 (DoS) の脆弱性 CWE-16
環境設定
CVE-2013-2175 2013-08-20 16:32 2013-06-17 Show GitHub Exploit DB Packet Storm
219325 6.8 警告 BigTree CMS - BigTree CMS の core/admin/modules/users/create.php におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-4881 2013-08-20 15:33 2013-07-17 Show GitHub Exploit DB Packet Storm
219326 6.9 警告 Canonical - Debian GNU/Linux などの製品で使用される MySQL Server 用 post-installation スクリプトにおける設定ファイルを読まれる脆弱性 CWE-362
競合状態
CVE-2013-2162 2013-08-20 15:29 2013-07-25 Show GitHub Exploit DB Packet Storm
219327 10 危険 ヒューレット・パッカード - HP Service Manager および HP Service Center における特権的アクセス権を取得される脆弱性 CWE-noinfo
情報不足
CVE-2013-4808 2013-08-20 15:28 2013-08-14 Show GitHub Exploit DB Packet Storm
219328 7.5 危険 Mauro Lorenzutti - TYPO3 用 DB Integration エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-5310 2013-08-20 14:57 2013-08-5 Show GitHub Exploit DB Packet Storm
219329 4.3 警告 Ilia Alshanetsky - FUDforum の install/forum_data/src/custom_fields.inc.t におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-5309 2013-08-20 14:47 2013-02-17 Show GitHub Exploit DB Packet Storm
219330 4.3 警告 Juraj Sulek - TYPO3 用 RealURL Management エクステンションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-5308 2013-08-20 14:39 2013-08-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 20, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
306851 - sgi quake_1_server Quake 1 server responds to an initial UDP game connection request with a large amount of traffic, which allows remote attackers to use the server as an amplifier in a "Smurf" style attack on another … NVD-CWE-Other
CVE-1999-1066 2016-10-18 11:00 1999-12-22 Show GitHub Exploit DB Packet Storm
306852 - sgi irix SGI MachineInfo CGI program, installed by default on some web servers, prints potentially sensitive system status information, which could be used by remote attackers for information gathering activi… NVD-CWE-Other
CVE-1999-1067 2016-10-18 11:00 1997-05-7 Show GitHub Exploit DB Packet Storm
306853 - oracle http_server Oracle Webserver 2.1, when serving PL/SQL stored procedures, allows remote attackers to cause a denial of service via a long HTTP GET request. NVD-CWE-Other
CVE-1999-1068 2016-10-18 11:00 1997-07-23 Show GitHub Exploit DB Packet Storm
306854 - excite ews Excite for Web Servers (EWS) 1.1 allows local users to gain privileges by obtaining the encrypted password from the world-readable Architext.conf authentication file and replaying the encrypted passw… NVD-CWE-Other
CVE-1999-1072 2016-10-18 11:00 1998-11-30 Show GitHub Exploit DB Packet Storm
306855 - excite ews Excite for Web Servers (EWS) 1.1 records the first two characters of a plaintext password in the beginning of the encrypted password, which makes it easier for an attacker to guess passwords via a br… NVD-CWE-Other
CVE-1999-1073 2016-10-18 11:00 1998-11-30 Show GitHub Exploit DB Packet Storm
306856 - ibm aix AIX infod allows local users to gain root access through an X display. NVD-CWE-Other
CVE-1999-0118 2016-10-18 10:59 1998-11-1 Show GitHub Exploit DB Packet Storm
306857 - dan_bernstein qmail Denial of service in Qmail through long SMTP commands. NVD-CWE-Other
CVE-1999-0250 2016-10-18 10:59 1997-07-1 Show GitHub Exploit DB Packet Storm
306858 - - - The Java Web Server would allow remote users to obtain the source code for CGI programs. NVD-CWE-Other
CVE-1999-0283 2016-10-18 10:59 1999-01-1 Show GitHub Exploit DB Packet Storm
306859 - - - Internet Explorer 4.01 allows remote attackers to read local files and spoof web pages via a "%01" character in an "about:" Javascript URL, which causes Internet Explorer to use the domain specified … NVD-CWE-Other
CVE-1999-0347 2016-10-18 10:59 1999-01-26 Show GitHub Exploit DB Packet Storm
306860 - microsoft site_server MS Site Server 2.0 with IIS 4 can allow users to upload content, including ASP, to the target web site, thus allowing them to execute commands remotely. NVD-CWE-Other
CVE-1999-0360 2016-10-18 10:59 1999-01-30 Show GitHub Exploit DB Packet Storm