Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
234131 7.5 危険 kai content management system - K-CMS の index.php におけるディレクトリトラバーサルの脆弱性 - CVE-2007-2106 2012-09-25 16:47 2007-04-18 Show GitHub Exploit DB Packet Storm
234132 7.5 危険 monkey cms - Monkey CMS の admin/index.php におけるディレクトリトラバーサルの脆弱性 - CVE-2007-2105 2012-09-25 16:47 2007-04-18 Show GitHub Exploit DB Packet Storm
234133 6.8 警告 my little homepage - my little weblog の weblog.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-2102 2012-09-25 16:47 2007-04-18 Show GitHub Exploit DB Packet Storm
234134 6.8 警告 openconcept - OpenConcept Back-End CMS の htdocs/php.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-2099 2012-09-25 16:47 2007-04-18 Show GitHub Exploit DB Packet Storm
234135 7.5 危険 hinton design - Hinton Design における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2096 2012-09-25 16:47 2007-04-18 Show GitHub Exploit DB Packet Storm
234136 7.5 危険 myspeach - MySpeach の chat.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2095 2012-09-25 16:47 2007-04-18 Show GitHub Exploit DB Packet Storm
234137 7.5 危険 limesoft - LS Simple Guestbook の index.php における任意の PHP コードを挿入される脆弱性 - CVE-2007-2093 2012-09-25 16:47 2007-04-18 Show GitHub Exploit DB Packet Storm
234138 7.5 危険 limesoft - LS Simple Guestbook の index.php における任意の PHP コードを挿入される脆弱性 - CVE-2007-2092 2012-09-25 16:47 2007-04-18 Show GitHub Exploit DB Packet Storm
234139 6.8 警告 jx development - Mambo および Joomla! における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2089 2012-09-25 16:47 2007-04-18 Show GitHub Exploit DB Packet Storm
234140 6.8 警告 oe2edit - oe2edit CMS の oe2edit.cgi におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-2085 2012-09-25 16:47 2007-04-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 24, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
284941 - businessspace businessspace SQL injection vulnerability in the classified page (classified.php) in BusinessSpace 1.2 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter to index.php. CWE-89
SQL Injection
CVE-2009-0516 2018-10-12 06:01 2009-02-11 Show GitHub Exploit DB Packet Storm
284942 - phpslash phpslash Eval injection vulnerability in index.php in phpSlash 0.8.1.1 and earlier allows remote attackers to execute arbitrary PHP code via the fields parameter, which is supplied to an eval function call wi… CWE-94
Code Injection
CVE-2009-0517 2018-10-12 06:01 2009-02-11 Show GitHub Exploit DB Packet Storm
284943 - symantec pcanywhere Format string vulnerability in Symantec pcAnywhere before 12.5 SP1 allows local users to read and modify arbitrary memory locations, and cause a denial of service (application crash) or possibly have… CWE-134
Use of Externally-Controlled Format String
CVE-2009-0538 2018-10-12 06:01 2009-03-19 Show GitHub Exploit DB Packet Storm
284944 - proftpd_project proftpd SQL injection vulnerability in ProFTPD Server 1.3.1 through 1.3.2rc2 allows remote attackers to execute arbitrary SQL commands via a "%" (percent) character in the username, which introduces a "'" (s… CWE-89
SQL Injection
CVE-2009-0542 2018-10-12 06:01 2009-02-13 Show GitHub Exploit DB Packet Storm
284945 - apple mac_os_x
mac_os_x_server
Heap-based buffer overflow in Apple Type Services (ATS) in Apple Mac OS X 10.4.11 and 10.5 before 10.5.7 allows remote attackers to execute arbitrary code via a crafted Compact Font Format (CFF) font. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2009-0154 2018-10-12 06:00 2009-05-14 Show GitHub Exploit DB Packet Storm
284946 - ntp ntp Stack-based buffer overflow in the cookedprint function in ntpq/ntpq.c in ntpq in NTP before 4.2.4p7-RC2 allows remote NTP servers to execute arbitrary code via a crafted response. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2009-0159 2018-10-12 06:00 2009-04-15 Show GitHub Exploit DB Packet Storm
284947 - apple cups Integer overflow in the TIFF image decoding routines in CUPS 1.3.9 and earlier allows remote attackers to cause a denial of service (daemon crash) and possibly execute arbitrary code via a crafted TI… CWE-189
Numeric Errors
CVE-2009-0163 2018-10-12 06:00 2009-04-24 Show GitHub Exploit DB Packet Storm
284948 - apple cups The web interface for CUPS before 1.3.10 does not validate the HTTP Host header in a client request, which makes it easier for remote attackers to conduct DNS rebinding attacks. CWE-20
 Improper Input Validation 
CVE-2009-0164 2018-10-12 06:00 2009-04-25 Show GitHub Exploit DB Packet Storm
284949 - vuplayer vuplayer Buffer overflow in VUPlayer allows user-assisted attackers to have an unknown impact via a long file, as demonstrated by a file composed entirely of 'A' characters. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2009-0181 2018-10-12 06:00 2009-01-21 Show GitHub Exploit DB Packet Storm
284950 - free_download_manager free_download_manager Stack-based buffer overflow in Remote Control Server in Free Download Manager (FDM) 2.5 Build 758 and 3.0 Build 844 allows remote attackers to execute arbitrary code via a long Authorization header i… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2009-0183 2018-10-12 06:00 2009-02-4 Show GitHub Exploit DB Packet Storm