Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229481 4.4 警告 freedesktop.org - PolicyKit における認証なしで root 権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-4945 2012-10-3 17:20 2012-10-1 Show GitHub Exploit DB Packet Storm
229482 4.3 警告 Matthew Fries - WordPress 用 MF Gig Calendar プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4242 2012-10-3 17:17 2012-10-1 Show GitHub Exploit DB Packet Storm
229483 3.5 注意 Eucalyptus Systems - Eucalyptus における不特定の認証チェックを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4065 2012-10-3 17:16 2012-08-28 Show GitHub Exploit DB Packet Storm
229484 6.5 警告 Eucalyptus Systems - Eucalyptus における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4064 2012-10-3 17:14 2012-08-28 Show GitHub Exploit DB Packet Storm
229485 5 警告 Eucalyptus Systems - Eucalyptus におけるサービス運用妨害 (DoS) の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4063 2012-10-3 17:10 2012-08-28 Show GitHub Exploit DB Packet Storm
229486 4.3 警告 NextBBS - NextBBS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-1604 2012-10-3 17:06 2012-10-1 Show GitHub Exploit DB Packet Storm
229487 7.5 危険 NextBBS - NextBBS の ajaxserver.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-1603 2012-10-3 17:05 2012-10-1 Show GitHub Exploit DB Packet Storm
229488 7.5 危険 NextBBS - NextBBS の user.php における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2012-1602 2012-10-3 17:03 2012-10-1 Show GitHub Exploit DB Packet Storm
229489 5.8 警告 ocPortal - ocPortal の index.php におけるオープンリダイレクトの脆弱性 CWE-20
不適切な入力確認
CVE-2012-5234 2012-10-3 17:02 2012-03-21 Show GitHub Exploit DB Packet Storm
229490 5 警告 ocPortal - ocPortal の catalogue_file.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-1471 2012-10-3 17:02 2012-03-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 20, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
284751 - 53kf web_im_2009 The server for 53KF Web IM 2009 Home, Professional, and Enterprise editions relies on client-side protection mechanisms against cross-site scripting (XSS), which allows remote attackers to conduct XS… CWE-79
Cross-site Scripting
CVE-2009-0247 2018-10-12 06:01 2009-01-23 Show GitHub Exploit DB Packet Storm
284752 - moinmoin moinmoin Multiple cross-site scripting (XSS) vulnerabilities in action/AttachFile.py in MoinMoin before 1.8.1 allow remote attackers to inject arbitrary web script or HTML via an AttachFile action to the Wiki… CWE-79
Cross-site Scripting
CVE-2009-0260 2018-10-12 06:01 2009-01-24 Show GitHub Exploit DB Packet Storm
284753 - fujitsu systemcastwizard_lite Stack-based buffer overflow in PXEService.exe in Fujitsu SystemcastWizard Lite 2.0A, 2.0, 1.9, and earlier allows remote attackers to execute arbitrary code via a large PXE protocol request in a UDP … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2009-0270 2018-10-12 06:01 2009-01-27 Show GitHub Exploit DB Packet Storm
284754 - novell groupwise Cross-site request forgery (CSRF) vulnerability in Novell GroupWise WebAccess 6.5x, 7.0, 7.01, 7.02x, 7.03, 7.03HP1a, and 8.0 allows remote attackers to insert e-mail forwarding rules, and modify uns… CWE-352
 Origin Validation Error
CVE-2009-0272 2018-10-12 06:01 2009-02-3 Show GitHub Exploit DB Packet Storm
284755 - novell groupwise Multiple cross-site scripting (XSS) vulnerabilities in Novell GroupWise WebAccess 6.5x, 7.0, 7.01, 7.02x, 7.03, 7.03HP1a, and 8.0 allow remote attackers to inject arbitrary web script or HTML via the… CWE-79
Cross-site Scripting
CVE-2009-0273 2018-10-12 06:01 2009-02-3 Show GitHub Exploit DB Packet Storm
284756 - asp-project asp-project Asp Project Management 1.0 allows remote attackers to bypass authentication and gain administrative access by setting the crypt cookie to 1. CWE-287
Improper Authentication
CVE-2009-0280 2018-10-12 06:01 2009-01-28 Show GitHub Exploit DB Packet Storm
284757 - aobosoft oblog Cross-site scripting (XSS) vulnerability in err.asp in Oblog allows remote attackers to inject arbitrary web script or HTML via the message parameter. CWE-79
Cross-site Scripting
CVE-2009-0283 2018-10-12 06:01 2009-01-28 Show GitHub Exploit DB Packet Storm
284758 - bbsxp bbsxp Cross-site scripting (XSS) vulnerability in error.asp in BBSXP 5.13 and earlier allows remote attackers to inject arbitrary web script or HTML via the message parameter. CWE-79
Cross-site Scripting
CVE-2009-0285 2018-10-12 06:01 2009-01-28 Show GitHub Exploit DB Packet Storm
284759 - openx openx Directory traversal vulnerability in fc.php in OpenX 2.6.3 allows remote attackers to include and execute arbitrary files via a .. (dot dot) in the MAX_type parameter. CWE-22
Path Traversal
CVE-2009-0291 2018-10-12 06:01 2009-01-28 Show GitHub Exploit DB Packet Storm
284760 - webmobo wbnews Multiple PHP remote file inclusion vulnerabilities in WB News 2.0.1, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the config[installdir] paramet… CWE-94
Code Injection
CVE-2009-0294 2018-10-12 06:01 2009-01-28 Show GitHub Exploit DB Packet Storm