Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
231871 5 警告 eXtplorer - Joomla! の eXtplorere モジュールにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-4764 2012-09-25 17:17 2008-10-27 Show GitHub Exploit DB Packet Storm
231872 4.3 警告 Kayako - Kayako eSupport の includes/htmlArea/plugins/HtmlTidy/html-tidy-logic.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4761 2012-09-25 17:17 2008-10-27 Show GitHub Exploit DB Packet Storm
231873 7.6 危険 kvirc - KVirc の URI ハンドラにおけるフォーマットストリングの脆弱性 CWE-20
不適切な入力確認
CVE-2008-4748 2012-09-25 17:17 2008-10-27 Show GitHub Exploit DB Packet Storm
231874 4.3 警告 noc2 - WhoDomLite の wholite.cgi におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4737 2012-09-25 17:17 2008-10-24 Show GitHub Exploit DB Packet Storm
231875 10 危険 michael christen - YaCy における脆弱性 CWE-noinfo
情報不足
CVE-2008-4731 2012-09-25 17:17 2008-10-24 Show GitHub Exploit DB Packet Storm
231876 6.8 警告 Hummingbird - Hummingbird Xweb ActiveX コントロールの hclxweb.dll におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-4729 2012-09-25 17:17 2008-10-23 Show GitHub Exploit DB Packet Storm
231877 9.3 危険 Hummingbird - Hummingbird の Deployment Wizard の DeployRun.dll における任意のプログラムを実行される脆弱性 CWE-Other
その他
CVE-2008-4728 2012-09-25 17:17 2008-10-23 Show GitHub Exploit DB Packet Storm
231878 4.3 警告 Mozilla Foundation - Mozilla Firefox におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4723 2012-09-25 17:17 2008-10-23 Show GitHub Exploit DB Packet Storm
231879 7.5 危険 PHPJabbers - PHP Jabbers Post Comment における管理アクセス権を取得される脆弱性 CWE-200
CWE-287
CWE-noinfo
CVE-2008-4721 2012-09-25 17:17 2008-10-23 Show GitHub Exploit DB Packet Storm
231880 9.3 危険 openengine - openEngine の cms/classes/openengine/filepool.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-4719 2012-09-25 17:17 2008-10-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 25, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
299391 - smarty smarty The modifier.regex_replace.php plugin in Smarty before 2.6.19, as used by Serendipity (S9Y) and other products, allows attackers to call arbitrary PHP functions via templates, related to a '\0' chara… CWE-20
 Improper Input Validation 
CVE-2008-1066 2017-08-8 10:29 2008-02-29 Show GitHub Exploit DB Packet Storm
299392 - interspire shopping_cart Cross-site scripting (XSS) vulnerability in search.php in Interspire Shopping Cart 1.x allows remote attackers to inject arbitrary web script or HTML via the search_query parameter. NOTE: the proven… CWE-79
Cross-site Scripting
CVE-2008-1076 2017-08-8 10:29 2008-02-29 Show GitHub Exploit DB Packet Storm
299393 - clam_anti-virus clamav Buffer overflow in the cli_scanpe function in libclamav (libclamav/pe.c) for ClamAV 0.92 and 0.92.1 allows remote attackers to execute arbitrary code via a crafted Upack PE file. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2008-1100 2017-08-8 10:29 2008-04-15 Show GitHub Exploit DB Packet Storm
299394 - blender blender Stack-based buffer overflow in the imb_loadhdr function in Blender 2.45 allows user-assisted remote attackers to execute arbitrary code via a .blend file that contains a crafted Radiance RGBE image. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2008-1102 2017-08-8 10:29 2008-04-22 Show GitHub Exploit DB Packet Storm
299395 - blender blender Multiple unspecified vulnerabilities in Blender have unknown impact and attack vectors, related to "temporary file issues." CWE-59
Link Following
CVE-2008-1103 2017-08-8 10:29 2008-04-29 Show GitHub Exploit DB Packet Storm
299396 - cosmicperl
darwin
navision
directory_pro
darwin
financials_server
A certain pseudo-random number generator (PRNG) algorithm that uses XOR and 3-bit random hops (aka "Algorithm X3"), as used in OpenBSD 2.8 through 4.2, allows remote attackers to guess sensitive valu… NVD-CWE-Other
CVE-2008-1146 2017-08-8 10:29 2008-03-5 Show GitHub Exploit DB Packet Storm
299397 - cosmicperl
darwin
navision
directory_pro
darwin
financials_server
A certain pseudo-random number generator (PRNG) algorithm that uses ADD with 0 random hops (aka "Algorithm A0"), as used in OpenBSD 3.5 through 4.2 and NetBSD 1.6.2 through 4.0, allows remote attacke… NVD-CWE-Other
CVE-2008-1148 2017-08-8 10:29 2008-03-5 Show GitHub Exploit DB Packet Storm
299398 - phpmyadmin phpmyadmin phpMyAdmin before 2.11.5 accesses $_REQUEST to obtain some parameters instead of $_GET and $_POST, which allows attackers in the same domain to override certain variables and conduct SQL injection an… CWE-89
CWE-352
SQL Injection
 Origin Validation Error
CVE-2008-1149 2017-08-8 10:29 2008-03-5 Show GitHub Exploit DB Packet Storm
299399 - cisco emergency_responder
mobility_manager
unified_communications_manager
unified_presence
The Disaster Recovery Framework (DRF) master server in Cisco Unified Communications products, including Unified Communications Manager (CUCM) 5.x and 6.x, Unified Presence 1.x and 6.x, Emergency Resp… CWE-287
Improper Authentication
CVE-2008-1154 2017-08-8 10:29 2008-04-5 Show GitHub Exploit DB Packet Storm
299400 - cisco network_admission_control Cisco Network Admission Control (NAC) Appliance 3.5.x, 3.6.x before 3.6.4.4, 4.0.x before 4.0.6, and 4.1.x before 4.1.2 allows remote attackers to obtain the shared secret for the Clean Access Server… CWE-200
Information Exposure
CVE-2008-1155 2017-08-8 10:29 2008-04-17 Show GitHub Exploit DB Packet Storm