Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 30, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
221361 6.8 警告 FFmpeg - FFmpeg の libavcodec/wmalosslessdec.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2014-2098 2014-03-4 15:55 2014-02-7 Show GitHub Exploit DB Packet Storm
221362 6.8 警告 FFmpeg - FFmpeg の libavcodec/takdec.c の tak_decode_frame 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-2097 2014-03-4 15:54 2014-02-1 Show GitHub Exploit DB Packet Storm
221363 4.3 警告 MODX - MODX Revolution の manager/templates/default/header.tpl におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2080 2014-03-4 15:45 2014-01-21 Show GitHub Exploit DB Packet Storm
221364 3.5 注意 CloudBees - CloudBees Jenkins の java/hudson/model/Cause.java におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2067 2014-03-4 15:37 2014-02-14 Show GitHub Exploit DB Packet Storm
221365 4 警告 CloudBees - CloudBees Jenkins の CLI ジョブ作成におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-2059 2014-03-4 15:37 2014-02-14 Show GitHub Exploit DB Packet Storm
221366 4.3 警告 BuddyPress.org - WordPress 用 BuddyPress プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-1888 2014-03-4 15:13 2014-02-5 Show GitHub Exploit DB Packet Storm
221367 4.3 警告 OTRS プロジェクト - Open Ticket Request System におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-1695 2014-03-4 15:08 2014-02-25 Show GitHub Exploit DB Packet Storm
221368 4.3 警告 Open Web Analytics - Open Web Analytics のログインページにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-1456 2014-03-4 15:04 2014-02-1 Show GitHub Exploit DB Packet Storm
221369 7.5 危険 SimpleHRM - SimpleHRM の flexycms/modules/user/user_manager.php のログインページにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-2498 2014-03-4 14:58 2013-04-12 Show GitHub Exploit DB Packet Storm
221370 4.3 警告 CMS Made Simple - CMS Made Simple の lib/filemanager/ImageManager/editorFrame.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2092 2014-03-4 14:46 2014-02-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 30, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
346041 - subscribe_me_pro subscribe_me_pro Directory traversal vulnerability in s.pl in Subscribe Me Pro 2.044.09P and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the l parameter. NVD-CWE-Other
CVE-2005-2952 2017-07-11 10:33 2005-09-17 Show GitHub Exploit DB Packet Storm
346042 - adaptive_technology_resource_centre atutor SQL injection vulnerability in password_reminder.php in ATutor before 1.5.1 pl1 allows remote attackers to execute arbitrary SQL commands via the email field. NVD-CWE-Other
CVE-2005-2954 2017-07-11 10:33 2005-09-17 Show GitHub Exploit DB Packet Storm
346043 - gnu
debian
cfengine
debian_linux
cfengine 1.6.5 and 2.1.16 allows local users to overwrite arbitrary files via a symlink attack on temporary files used by vicf.in, a different vulnerability than CVE-2005-3137. NVD-CWE-Other
CVE-2005-2960 2017-07-11 10:33 2005-10-6 Show GitHub Exploit DB Packet Storm
346044 - prozilla prozilla_download_accelerator Buffer overflow in the get_string_ahref function for ProZilla 1.3.7.4 and possibly earlier, with the -ftpsearch option enabled, allows remote servers to execute arbitrary code via a search response w… NVD-CWE-Other
CVE-2005-2961 2017-07-11 10:33 2005-10-6 Show GitHub Exploit DB Packet Storm
346045 - mod_auth_shadow mod_auth_shadow The mod_auth_shadow module 1.0 through 1.5 and 2.0 for Apache with AuthShadow enabled uses shadow authentication for all locations that use the require group directive, even when other authentication… NVD-CWE-Other
CVE-2005-2963 2017-07-11 10:33 2005-10-14 Show GitHub Exploit DB Packet Storm
346046 - abisource community_abiword Stack-based buffer overflow in AbiWord before 2.2.10 allows attackers to execute arbitrary code via the RTF import mechanism. NVD-CWE-Other
CVE-2005-2964 2017-07-11 10:33 2005-09-29 Show GitHub Exploit DB Packet Storm
346047 - xine xine-lib Format string vulnerability in input_cdda.c in xine-lib 1-beta through 1-beta 3, 1-rc, 1.0 through 1.0.2, and 1.1.1 allows remote servers to execute arbitrary code via format string specifiers in met… NVD-CWE-Other
CVE-2005-2967 2017-07-11 10:33 2005-10-14 Show GitHub Exploit DB Packet Storm
346048 - data_center_resources avocent Avocent CCM console server running firmware 2.1 CCM4850 allows remote authenticated attackers to bypass port restrictions by connecting to the server via SSH and using the connect command to access t… NVD-CWE-Other
CVE-2005-2984 2017-07-11 10:33 2005-09-20 Show GitHub Exploit DB Packet Storm
346049 - aewebworks aedating SQL injection vulnerability in search_result.php in AEwebworks aeDating Script 4.0 and earlier allows remote attackers to execute arbitrary SQL statements via the Country parameter. NVD-CWE-Other
CVE-2005-2985 2017-07-11 10:33 2005-09-20 Show GitHub Exploit DB Packet Storm
346050 - ahnlab v3_virusblock_2005
v3net
v3pro_2004
The v3flt2k.sys driver in AhnLab V3Pro 2004 Build 6.0.0.383, V3 VirusBlock 2005 Build 6.0.0.383, V3Net for Windows Server 6.0 Build 6.0.0.383 does not properly validate the source of the DeviceIoCont… NVD-CWE-Other
CVE-2005-2986 2017-07-11 10:33 2005-09-20 Show GitHub Exploit DB Packet Storm