Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
223641 5 警告 phpadultsite - phpAdultSite CMS の index.php における SQL インジェクションの脆弱性 CWE-200
情報漏えい
CVE-2008-6981 2012-12-20 19:10 2009-08-19 Show GitHub Exploit DB Packet Storm
223642 7.5 危険 phpadultsite - phpAdultSite CMS の as_archives.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6980 2012-12-20 19:10 2009-08-19 Show GitHub Exploit DB Packet Storm
223643 7.5 危険 Pligg - Pligg CMS の submit.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6968 2012-12-20 19:10 2009-08-13 Show GitHub Exploit DB Packet Storm
223644 7.5 危険 X7 Group - X7 Chat のログインページにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6964 2012-12-20 19:10 2009-08-13 Show GitHub Exploit DB Packet Storm
223645 7.5 危険 turnkeyforms - TurnkeyForms Text Link Sales の admin.php における認証を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-6963 2012-12-20 19:10 2009-08-13 Show GitHub Exploit DB Packet Storm
223646 5 警告 x10media - X10media x10 Automatic Mp3 Search Engine Script の download.php における任意のファイルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-6960 2012-12-20 19:10 2009-08-12 Show GitHub Exploit DB Packet Storm
223647 7.5 危険 wowraidmanager - WoW Raid Manager の auth/auth_phpbb3.php における認証を回避される脆弱性 CWE-255
証明書・パスワード管理
CVE-2008-7050 2012-12-20 19:10 2008-10-13 Show GitHub Exploit DB Packet Storm
223648 7.5 危険 Simple Machines - SMF のパスワードリセット機能における他のユーザのパスワードを変更される脆弱性 CWE-255
証明書・パスワード管理
CVE-2008-6971 2012-12-20 19:10 2008-09-7 Show GitHub Exploit DB Packet Storm
223649 7.5 危険 UBB Systems - UBB.threads の dosearch.inc.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6970 2012-12-20 19:10 2008-09-2 Show GitHub Exploit DB Packet Storm
223650 10 危険 raidsonic - RaidSonic ICY BOX NAS の userHandler.cgi における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2008-7081 2012-12-20 19:10 2009-08-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 26, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
278011 - microsoft windows_2003_server
windows_server_2003
windows_xp
Per: http://blogs.technet.com/b/msrc/archive/2010/06/10/windows-help-vulnerability-disclosure.aspx "customers running Windows Vista, Windows 7, Windows Server 2008, and Windows Server 2008 R2, are… CWE-78
OS Command 
CVE-2010-1885 2019-02-26 23:04 2010-06-15 Show GitHub Exploit DB Packet Storm
278012 - microsoft windows_server_2003
windows_xp
The RPCSS service in Microsoft Windows XP SP2 and SP3 and Server 2003 SP1 and SP2 does not properly implement isolation among a set of distinct processes that (1) all run under the NetworkService acc… CWE-264
Permissions, Privileges, and Access Controls
CVE-2009-0079 2019-02-26 23:04 2009-04-15 Show GitHub Exploit DB Packet Storm
278013 - microsoft directx Use-after-free vulnerability in DirectShow in Microsoft DirectX 8.1 and 9.0 allows remote attackers to execute arbitrary code via an MJPEG file or video stream with a malformed Huffman table, which t… CWE-94
Code Injection
CVE-2009-0084 2019-02-26 23:04 2009-04-15 Show GitHub Exploit DB Packet Storm
278014 - microsoft office_converter_pack
office_word
windows_2000
windows_server_2003
windows_xp
The WordPerfect 6.x Converter (WPFT632.CNV, 1998.1.27.0) in Microsoft Office Word 2000 SP3 and Microsoft Office Converter Pack does not properly validate the length of an unspecified string, which al… CWE-20
 Improper Input Validation 
CVE-2009-0088 2019-02-26 23:04 2009-04-15 Show GitHub Exploit DB Packet Storm
278015 - microsoft windows_2000
windows_server_2003
windows_server_2008
Windows DNS Server in Microsoft Windows 2000 SP4, Server 2003 SP1 and SP2, and Server 2008, when dynamic updates are enabled, does not restrict registration of the "wpad" hostname, which allows remot… CWE-20
 Improper Input Validation 
CVE-2009-0093 2019-02-26 23:04 2009-03-11 Show GitHub Exploit DB Packet Storm
278016 - microsoft windows_2000
windows_server_2003
windows_server_2008
The WINS server in Microsoft Windows 2000 SP4 and Server 2003 SP1 and SP2 does not restrict registration of the (1) "wpad" and (2) "isatap" NetBIOS names, which allows remote authenticated users to h… NVD-CWE-Other
CVE-2009-0094 2019-02-26 23:04 2009-03-11 Show GitHub Exploit DB Packet Storm
278017 - microsoft windows_2000
windows_server_2003
windows_server_2008
Per: http://www.microsoft.com/technet/security/Bulletin/MS09-008.mspx Mitigating Factors for WPAD WINS Server Registration Vulnerability - CVE-2009-0094 Mitigation refers to a setting, common c… NVD-CWE-Other
CVE-2009-0094 2019-02-26 23:04 2009-03-11 Show GitHub Exploit DB Packet Storm
278018 - microsoft windows_2000
windows_server_2003
windows_server_2008
The DNS Resolver Cache Service (aka DNSCache) in Windows DNS Server in Microsoft Windows 2000 SP4, Server 2003 SP1 and SP2, and Server 2008, when dynamic updates are enabled, does not reuse cached DN… CWE-20
 Improper Input Validation 
CVE-2009-0233 2019-02-26 23:04 2009-03-11 Show GitHub Exploit DB Packet Storm
278019 - microsoft windows_2000
windows_server_2003
windows_server_2008
The DNS Resolver Cache Service (aka DNSCache) in Windows DNS Server in Microsoft Windows 2000 SP4, Server 2003 SP1 and SP2, and Server 2008 does not properly cache crafted DNS responses, which makes … CWE-20
 Improper Input Validation 
CVE-2009-0234 2019-02-26 23:04 2009-03-11 Show GitHub Exploit DB Packet Storm
278020 - microsoft windows_search Cross-site scripting (XSS) vulnerability in Windows Search 4.0 for Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 allows user-assisted remote attackers to inject arbitrary web script or HTML vi… CWE-79
Cross-site Scripting
CVE-2009-0239 2019-02-26 23:04 2009-06-11 Show GitHub Exploit DB Packet Storm