Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
232471 7.5 危険 joovili - Joovili の browse.videos.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2063 2012-09-25 17:16 2008-05-2 Show GitHub Exploit DB Packet Storm
232472 7.5 危険 netoffice - netOffice Dwins の includes/library.php における認証を回避される脆弱性 CWE-94
コード・インジェクション
CVE-2008-2044 2012-09-25 17:16 2008-05-1 Show GitHub Exploit DB Packet Storm
232473 7.5 危険 peercast - Peercast の HTTP::getAuthUserPass 関数におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-2040 2012-09-25 17:16 2008-04-30 Show GitHub Exploit DB Packet Storm
232474 6.8 警告 miniBB - miniBB の setup_mysql.php などにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2029 2012-09-25 17:16 2008-04-30 Show GitHub Exploit DB Packet Storm
232475 4.3 警告 miniBB - miniBB におけるフルパスを取得される脆弱性 CWE-200
情報漏えい
CVE-2008-2028 2012-09-25 17:16 2008-04-30 Show GitHub Exploit DB Packet Storm
232476 4.3 警告 miniBB - miniBB の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2024 2012-09-25 17:16 2008-04-30 Show GitHub Exploit DB Packet Storm
232477 7.5 危険 pd9 software - PD9 Software の MegaBBS における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2023 2012-09-25 17:16 2008-04-30 Show GitHub Exploit DB Packet Storm
232478 4.3 警告 pd9 software - PD9 Software MegaBBS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2022 2012-09-25 17:16 2008-04-30 Show GitHub Exploit DB Packet Storm
232479 5 警告 Mozilla Foundation - Mozilla Firefox におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2008-2014 2012-09-25 17:16 2008-04-29 Show GitHub Exploit DB Packet Storm
232480 4.3 警告 national rail enquiries - National Rail Enquiries Live Departure Boards ガジェットにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2011 2012-09-25 17:16 2008-04-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 25, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
299171 - django_project django Cross-site scripting (XSS) vulnerability in the login form in the administration application in Django 0.91 before 0.91.2, 0.95 before 0.95.3, and 0.96 before 0.96.2 allows remote attackers to inject… CWE-79
Cross-site Scripting
CVE-2008-2302 2017-08-8 10:30 2008-05-24 Show GitHub Exploit DB Packet Storm
299172 - apple mac_os_x
mac_os_x_server
Heap-based buffer overflow in Apple Type Services (ATS) in Apple Mac OS X 10.4.11 and 10.5 through 10.5.4 allows remote attackers to execute arbitrary code via a document containing a crafted font, r… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2008-2305 2017-08-8 10:30 2008-09-17 Show GitHub Exploit DB Packet Storm
299173 - apple mac_os_x
mac_os_x_server
Unspecified vulnerability in Alias Manager in Apple Mac OS X 10.5.1 and earlier on Intel platforms allows local users to gain privileges or cause a denial of service (memory corruption and applicatio… NVD-CWE-noinfo
CWE-264
Permissions, Privileges, and Access Controls
CVE-2008-2308 2017-08-8 10:30 2008-07-2 Show GitHub Exploit DB Packet Storm
299174 - apple mac_os_x
mac_os_x_server
Incomplete blacklist vulnerability in CoreTypes in Apple Mac OS X before 10.5.4 allows user-assisted remote attackers to execute arbitrary code via a (1) .xht or (2) .xhtm file, which does not trigge… CWE-264
Permissions, Privileges, and Access Controls
CVE-2008-2309 2017-08-8 10:30 2008-07-2 Show GitHub Exploit DB Packet Storm
299175 - apple mac_os_x
mac_os_x_server
Format string vulnerability in c++filt in Apple Mac OS X 10.5 before 10.5.4 allows user-assisted attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted str… CWE-134
Use of Externally-Controlled Format String
CVE-2008-2310 2017-08-8 10:30 2008-07-2 Show GitHub Exploit DB Packet Storm
299176 - apple mac_os_x
mac_os_x_server
Launch Services in Apple Mac OS X before 10.5, when Open Safe Files is enabled, allows remote attackers to execute arbitrary code via a symlink attack, probably related to a race condition and automa… CWE-59
CWE-362
Link Following
Race Condition
CVE-2008-2311 2017-08-8 10:30 2008-07-2 Show GitHub Exploit DB Packet Storm
299177 - apple mac_os_x
mac_os_x_server
Network Preferences in Apple Mac OS X 10.4.11 stores PPP passwords in cleartext in a world-readable file, which allows local users to obtain sensitive information by reading this file. CWE-255
Credentials Management
CVE-2008-2312 2017-08-8 10:30 2008-09-17 Show GitHub Exploit DB Packet Storm
299178 - apple mac_os_x
mac_os_x_server
Apple Mac OS X before 10.5 uses weak permissions for the User Template directory, which allows local users to gain privileges by inserting a Trojan horse file into this directory. CWE-264
Permissions, Privileges, and Access Controls
CVE-2008-2313 2017-08-8 10:30 2008-07-2 Show GitHub Exploit DB Packet Storm
299179 - apple xcode
xcode_tools
The WOHyperlink implementation in WebObjects in Apple Xcode tools before 3.1 appends local session IDs to generated non-local URLs, which allows remote attackers to obtain potentially sensitive infor… CWE-200
Information Exposure
CVE-2008-2318 2017-08-8 10:30 2008-07-15 Show GitHub Exploit DB Packet Storm
299180 - apple coregraphics Unspecified vulnerability in CoreGraphics in Apple Mac OS X 10.4.11 and 10.5.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash)… NVD-CWE-noinfo
CWE-399
 Resource Management Errors
CVE-2008-2321 2017-08-8 10:30 2008-08-4 Show GitHub Exploit DB Packet Storm