Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 2, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230091 7.5 危険 viart - ViArt Shop の products_rss.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3369 2012-12-20 18:52 2008-07-30 Show GitHub Exploit DB Packet Storm
230092 4.3 警告 webwizguide - Web Wiz RTE の RTE_popup_link.asp におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-3367 2012-12-20 18:52 2008-07-30 Show GitHub Exploit DB Packet Storm
230093 7.5 危険 Pligg - Pligg CMS の story.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3366 2012-12-20 18:52 2008-07-30 Show GitHub Exploit DB Packet Storm
230094 6.8 警告 Pixelpost.org - Windows 上で稼動する Pixelpost の index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-3365 2012-12-20 18:52 2008-07-27 Show GitHub Exploit DB Packet Storm
230095 9.3 危険 トレンドマイクロ - Trend Micro OSCE Web-Deployment などの ObjRemoveCtrl Class ActiveX コントロールにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-3364 2012-12-20 18:52 2008-07-30 Show GitHub Exploit DB Packet Storm
230096 7.5 危険 runcms - RunCMS の Newbb Plus モジュールにおける PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-3354 2012-12-20 18:52 2008-07-28 Show GitHub Exploit DB Packet Storm
230097 4.3 警告 puresw - Pure Software Lore におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-3353 2012-12-20 18:52 2008-07-28 Show GitHub Exploit DB Packet Storm
230098 5 警告 thekelleys - dnsmasq におけるサービス運用妨害 (DoS) の脆弱性 CWE-DesignError
CVE-2008-3350 2012-12-20 18:52 2008-07-28 Show GitHub Exploit DB Packet Storm
230099 10 危険 TIBCO Software - TIBCO Hawk AMI C library および Hawk HMA におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-3338 2012-12-20 18:52 2008-08-13 Show GitHub Exploit DB Packet Storm
230100 6.4 警告 PowerDNS - PowerDNS Authoritative Server における DNS を偽装される脆弱性 CWE-20
不適切な入力確認
CVE-2008-3337 2012-12-20 18:52 2008-08-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 2, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293721 - moodle moodle mod/lesson/pagetypes/matching.php in Moodle through 2.2.11, 2.3.x before 2.3.8, 2.4.x before 2.4.5, and 2.5.x before 2.5.1 allows remote authenticated users to obtain sensitive answer information by … CWE-200
Information Exposure
CVE-2013-2243 2024-11-21 10:51 2013-07-29 Show GitHub Exploit DB Packet Storm
293722 - moodle moodle mod/chat/gui_sockets/index.php in Moodle through 2.1.10, 2.2.x before 2.2.11, 2.3.x before 2.3.8, 2.4.x before 2.4.5, and 2.5.x before 2.5.1 does not consider the mod/chat:chat capability before auth… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-2242 2024-11-21 10:51 2013-07-29 Show GitHub Exploit DB Packet Storm
293723 - hp loadrunner Unspecified vulnerability in HP LoadRunner before 11.52 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1671. NVD-CWE-noinfo
CVE-2013-2370 2024-11-21 10:51 2013-07-29 Show GitHub Exploit DB Packet Storm
293724 - hp loadrunner Unspecified vulnerability in HP LoadRunner before 11.52 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1670. NVD-CWE-noinfo
CVE-2013-2369 2024-11-21 10:51 2013-07-29 Show GitHub Exploit DB Packet Storm
293725 - hp loadrunner Unspecified vulnerability in HP LoadRunner before 11.52 allows remote attackers to cause a denial of service via unknown vectors, aka ZDI-CAN-1669. NVD-CWE-noinfo
CVE-2013-2368 2024-11-21 10:51 2013-07-29 Show GitHub Exploit DB Packet Storm
293726 - apache http_server mod_session_dbd.c in the mod_session_dbd module in the Apache HTTP Server before 2.4.5 proceeds with save operations for a session without considering the dirty flag and the requirement for a new ses… NVD-CWE-noinfo
CVE-2013-2249 2024-11-21 10:51 2013-07-24 Show GitHub Exploit DB Packet Storm
293727 - redhat jboss_operations_network
richfaces
jboss_enterprise_web_platform
jboss_enterprise_portal_platform
jboss_enterprise_soa_platform
jboss_web_framework_kit
jboss_enterprise_application_…
ResourceBuilderImpl.java in the RichFaces 3.x through 5.x implementation in Red Hat JBoss Web Framework Kit before 2.3.0, Red Hat JBoss Web Platform through 5.2.0, Red Hat JBoss Enterprise Applicatio… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-2165 2024-11-21 10:51 2013-07-23 Show GitHub Exploit DB Packet Storm
293728 - hp database_and_middleware_automation HP Database and Middleware Automation (DMA) 10.x before 10.10, when SSL is used, allows remote attackers to obtain sensitive information via unspecified vectors. NVD-CWE-noinfo
CVE-2013-2365 2024-11-21 10:51 2013-07-22 Show GitHub Exploit DB Packet Storm
293729 - hp system_management_homepage Cross-site scripting (XSS) vulnerability in HP System Management Homepage (SMH) before 7.2.1 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2013-2364 2024-11-21 10:51 2013-07-22 Show GitHub Exploit DB Packet Storm
293730 - hp system_management_homepage HP System Management Homepage (SMH) before 7.2.1 allows remote attackers to obtain sensitive information via unspecified vectors, a different vulnerability than CVE-2013-2356. NVD-CWE-noinfo
CVE-2013-2363 2024-11-21 10:51 2013-07-22 Show GitHub Exploit DB Packet Storm