Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
232441 10 危険 itcms - IT!CMS の box/minichat/boxpop.php における任意の PHP コードを挿入される脆弱性 CWE-94
コード・インジェクション
CVE-2008-2192 2012-09-25 17:16 2008-05-14 Show GitHub Exploit DB Packet Storm
232442 4.3 警告 mdsjack - Mjguest の mjguest.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2187 2012-09-25 17:16 2008-05-13 Show GitHub Exploit DB Packet Storm
232443 4.3 警告 SysAid Technologies Ltd. - SysAid の SystemList.jsp におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2179 2012-09-25 17:16 2008-05-13 Show GitHub Exploit DB Packet Storm
232444 4.3 警告 LifeType - LifeType の admin.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2178 2012-09-25 17:16 2008-05-8 Show GitHub Exploit DB Packet Storm
232445 6.8 警告 php directory source - phpDirectorySource における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2177 2012-09-25 17:16 2008-05-13 Show GitHub Exploit DB Packet Storm
232446 7.1 危険 日立 - Hitachi GR ルータにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2008-2172 2012-09-25 17:16 2008-05-13 Show GitHub Exploit DB Packet Storm
232447 4.3 警告 IBM - IBM Lotus Quickr におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2163 2012-09-25 17:16 2008-05-13 Show GitHub Exploit DB Packet Storm
232448 9.3 危険 マイクロソフト - Microsoft Windows CE 5.0 の JPEG および GIF のイメージ処理における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2008-2160 2012-09-25 17:16 2008-05-12 Show GitHub Exploit DB Packet Storm
232449 2.1 注意 マイクロソフト - Microsoft Internet Explorer 7 における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2008-2159 2012-09-25 17:16 2008-05-12 Show GitHub Exploit DB Packet Storm
232450 7.2 危険 Novell - Novell Client におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-2145 2012-09-25 17:16 2008-05-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 26, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
299101 - poplar_gedcom_viewer poplar_gedcom_viewer Multiple cross-site scripting (XSS) vulnerabilities in index.php in Poplar Gedcom Viewer 2.0 allow remote attackers to inject arbitrary web script or HTML via the (1) text and (2) ul parameters. NOT… CWE-79
Cross-site Scripting
CVE-2008-1787 2017-08-8 10:30 2008-04-16 Show GitHub Exploit DB Packet Storm
299102 - drupalr flickr Cross-site scripting (XSS) vulnerability in the insertion filter in the Flickr Drupal module 5.x before 5.x-1.3 and 6.x before 6.x-1.0-alpha allows remote attackers to inject arbitrary web script or … CWE-79
Cross-site Scripting
CVE-2008-1792 2017-08-8 10:30 2008-04-16 Show GitHub Exploit DB Packet Storm
299103 - hoffice smart_classified_ads
smart_photo_ads
smart_photo_ads_gold
Multiple cross-site scripting (XSS) vulnerabilities in view.cgi in Smart Classified ADS Professional, Smart Photo ADS, and Smart Photo ADS Gold allow remote attackers to inject arbitrary web script o… CWE-79
Cross-site Scripting
CVE-2008-1793 2017-08-8 10:30 2008-04-16 Show GitHub Exploit DB Packet Storm
299104 - drupal webform_module Multiple cross-site scripting (XSS) vulnerabilities in the Webform Drupal module 5.x before 5.x-1.10, 5.x-2.x before 5.x-2.0-beta3, and 6.x before 6.x-1.0-beta3 allow remote attackers to inject arbit… CWE-79
Cross-site Scripting
CVE-2008-1794 2017-08-8 10:30 2008-04-16 Show GitHub Exploit DB Packet Storm
299105 - comix comix Comix 3.6.4 creates temporary directories with predictable names, which allows local users to cause an unspecified denial of service. NVD-CWE-Other
CVE-2008-1796 2017-08-8 10:30 2008-04-16 Show GitHub Exploit DB Packet Storm
299106 - divx divxdb Multiple cross-site scripting (XSS) vulnerabilities in index.php in DivXDB 2002 0.94b allow remote attackers to inject arbitrary web script or HTML via the (1) choice, (2) _page_, (3) zone_admin, (4)… CWE-79
Cross-site Scripting
CVE-2008-1800 2017-08-8 10:30 2008-04-16 Show GitHub Exploit DB Packet Storm
299107 - snort snort preprocessors/spp_frag3.c in Sourcefire Snort before 2.8.1 does not properly identify packet fragments that have dissimilar TTL values, which allows remote attackers to bypass detection rules by usin… NVD-CWE-Other
CVE-2008-1804 2017-08-8 10:30 2008-05-22 Show GitHub Exploit DB Packet Storm
299108 - novell edirectory Heap-based buffer overflow in Novell eDirectory 8.7.3 before 8.7.3.10b, and 8.8 before 8.8.2 FTF2, allows remote attackers to execute arbitrary code via an LDAP search request containing "NULL search… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2008-1809 2017-08-8 10:30 2008-07-15 Show GitHub Exploit DB Packet Storm
299109 - sap maxdb Untrusted search path vulnerability in dbmsrv in SAP MaxDB 7.6.03.15 on Linux allows local users to gain privileges via a modified PATH environment variable. CWE-264
Permissions, Privileges, and Access Controls
CVE-2008-1810 2017-08-8 10:30 2008-08-1 Show GitHub Exploit DB Packet Storm
299110 - cecilia cecilia lib/prefs.tcl in Cecilia 2.0.5 allows local users to overwrite arbitrary files via a symlink attack on the csvers temporary file. CWE-59
Link Following
CVE-2008-1832 2017-08-8 10:30 2008-04-17 Show GitHub Exploit DB Packet Storm