Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229961 7.5 危険 peter hocherl - Joomla! 用の TRAVELbook コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-1535 2012-09-25 17:38 2010-04-26 Show GitHub Exploit DB Packet Storm
229962 5 警告 joomla.batjo - Joomla! 用の Shoutbox Pro コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-1534 2012-09-25 17:38 2010-04-26 Show GitHub Exploit DB Packet Storm
229963 7.5 危険 peter hocherl - Joomla! 用の TweetLA コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-1533 2012-09-25 17:38 2010-04-26 Show GitHub Exploit DB Packet Storm
229964 9.3 危険 Novell - Novell iPrint Client におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-1527 2012-09-25 17:38 2010-08-19 Show GitHub Exploit DB Packet Storm
229965 6.8 警告 Mono Project - Mono で使用される libgdiplus における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2010-1526 2012-09-25 17:38 2010-08-24 Show GitHub Exploit DB Packet Storm
229966 7.5 危険 OrdaSoft - Joomla! 用の BookLibrary Basic コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1522 2012-09-25 17:38 2010-07-2 Show GitHub Exploit DB Packet Storm
229967 6.4 警告 KDE project - KDE SC の KGet における任意のファイルを上書きされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-1511 2012-09-25 17:38 2010-05-13 Show GitHub Exploit DB Packet Storm
229968 5 警告 Irfan Skiljan - IrfanView におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-1510 2012-09-25 17:38 2010-05-14 Show GitHub Exploit DB Packet Storm
229969 5 警告 Irfan Skiljan - IrfanView におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2010-1509 2012-09-25 17:38 2010-05-14 Show GitHub Exploit DB Packet Storm
229970 5 警告 Novell - SLE の yast2-webclient におけるセッションクッキーを偽造される脆弱性 CWE-255
証明書・パスワード管理
CVE-2010-1507 2012-09-25 17:38 2010-08-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 20, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
285331 - gnu ed http://xforce.iss.net/xforce/xfdb/44643 "GNU ed is vulnerable to a heap-based buffer overflow, caused by improper bounds checking by the strip_escapes() function. By persuading a victim to open a … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2008-3916 2018-10-12 05:50 2008-09-5 Show GitHub Exploit DB Packet Storm
285332 - ovidentia ovidentia Cross-site scripting (XSS) vulnerability in index.php in Ovidentia 6.6.5 allows remote attackers to inject arbitrary web script or HTML via the field parameter in a search action. CWE-79
Cross-site Scripting
CVE-2008-3917 2018-10-12 05:50 2008-09-5 Show GitHub Exploit DB Packet Storm
285333 - telartis_bv awstats_totals Multiple cross-site scripting (XSS) vulnerabilities in AWStats Totals 1.0 through 1.14 allow remote attackers to inject arbitrary web script or HTML via the (1) month and (2) year parameter. CWE-79
Cross-site Scripting
CVE-2008-3921 2018-10-12 05:50 2008-09-5 Show GitHub Exploit DB Packet Storm
285334 - telartis_bv awstats_totals awstatstotals.php in AWStats Totals 1.0 through 1.14 allows remote attackers to execute arbitrary code via PHP sequences in the sort parameter, which is used by the multisort function when dynamicall… CWE-94
Code Injection
CVE-2008-3922 2018-10-12 05:50 2008-09-5 Show GitHub Exploit DB Packet Storm
285335 - wireshark wireshark Wireshark (formerly Ethereal) 0.10.14 through 1.0.2 allows attackers to cause a denial of service (crash) via a packet with crafted zlib-compressed data that triggers an invalid read in the tvb_uncom… CWE-20
 Improper Input Validation 
CVE-2008-3933 2018-10-12 05:50 2008-09-5 Show GitHub Exploit DB Packet Storm
285336 - wireshark wireshark Unspecified vulnerability in Wireshark (formerly Ethereal) 0.99.6 through 1.0.2 allows attackers to cause a denial of service (crash) via a crafted Tektronix .rf5 file. NVD-CWE-noinfo
CWE-20
 Improper Input Validation 
CVE-2008-3934 2018-10-12 05:50 2008-09-5 Show GitHub Exploit DB Packet Storm
285337 - dreambox dm500c The web interface in Dreambox DM500C allows remote attackers to cause a denial of service (application hang) via a long URI. CWE-20
 Improper Input Validation 
CVE-2008-3936 2018-10-12 05:50 2008-09-6 Show GitHub Exploit DB Packet Storm
285338 - xrms xrms_crm SQL injection vulnerability in admin/users/self-2.php in XRMS allows remote attackers to execute arbitrary SQL commands and modify name and email fields via unspecified vectors. CWE-89
SQL Injection
CVE-2008-3948 2018-10-12 05:50 2008-09-6 Show GitHub Exploit DB Packet Storm
285339 - apple iphone
ipod_touch
safari
Off-by-one error in the _web_drawInRect:withFont:ellipsis:alignment:measureOnly function in WebKit in Safari in Apple iPhone 1.1.4 and 2.0 and iPod touch 1.1.4 and 2.0 allows remote attackers to caus… CWE-189
Numeric Errors
CVE-2008-3950 2018-10-12 05:50 2008-09-17 Show GitHub Exploit DB Packet Storm
285340 - oracle database_10g Unspecified vulnerability in the Oracle Spatial component in Oracle Database 10.1.0.5 and 10.2.0.2 allows remote authenticated users to affect confidentiality and integrity via unknown vectors. NOTE… NVD-CWE-noinfo
CVE-2008-3979 2018-10-12 05:50 2009-01-14 Show GitHub Exploit DB Packet Storm