Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 28, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
235341 4.3 警告 PaperThin - PaperThin CommonSpot Content Server の utilities/longproc.cfm におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-0468 2012-09-25 17:38 2010-02-2 Show GitHub Exploit DB Packet Storm
235342 5 警告 Horde - Horde IMP における Web メールユーザのネットワーク配置を特定される脆弱性が存在します脆弱性 CWE-200
情報漏えい
CVE-2010-0463 2012-09-25 17:38 2010-01-29 Show GitHub Exploit DB Packet Storm
235343 6.5 警告 Joomla! - Joomla! 用の casino コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-0461 2012-09-25 17:38 2010-01-28 Show GitHub Exploit DB Packet Storm
235344 3.5 注意 Kayako - Kayako SupportSuite の staff/index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-0460 2012-09-25 17:38 2010-01-28 Show GitHub Exploit DB Packet Storm
235345 7.5 危険 NetArt Media - NetArt Media Blog System における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-0458 2012-09-25 17:38 2010-01-28 Show GitHub Exploit DB Packet Storm
235346 7.5 危険 indianpulses - Joomla! 用の indianpulse gameserver コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-0456 2012-09-25 17:38 2010-01-28 Show GitHub Exploit DB Packet Storm
235347 4.3 警告 ヒューレット・パッカード - HP Project におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-0452 2012-09-25 17:38 2010-03-24 Show GitHub Exploit DB Packet Storm
235348 8.5 危険 ヒューレット・パッカード - HP SOA Registry Foundation における権限を取得される脆弱性 CWE-noinfo
情報不足
CVE-2010-0450 2012-09-25 17:38 2010-03-29 Show GitHub Exploit DB Packet Storm
235349 4.3 警告 ヒューレット・パッカード - HP SOA Registry Foundation におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-0449 2012-09-25 17:38 2010-03-29 Show GitHub Exploit DB Packet Storm
235350 5 警告 ヒューレット・パッカード - HP SOA Registry Foundation における "データへの許可されないアクセス権" を取得される脆弱性 CWE-noinfo
情報不足
CVE-2010-0448 2012-09-25 17:38 2010-03-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
346651 - openbb openbb The readmsg action in myhome.php in Open Bulletin Board (OpenBB) 1.0.6 and earlier allows remote attackers to read arbitrary messages by modifying the id parameter. NVD-CWE-Other
CVE-2004-1968 2017-07-11 10:31 2004-04-26 Show GitHub Exploit DB Packet Storm
346652 - - - The avatar upload capability in Open Bulletin Board (OpenBB) 1.0.6 and earlier allows remote attackers to execute arbitrary script by uploading files that include scripting code such as Javascript. NVD-CWE-Other
CVE-2004-1969 2017-07-11 10:31 2004-04-25 Show GitHub Exploit DB Packet Storm
346653 - securecomputing smartether_ss6215s_switch Samsung SmartEther SS6215S switch, and possibly other Samsung switches, allows remote attackers and local users to gain administrative access by providing the admin username followed by a password th… NVD-CWE-Other
CVE-2004-1970 2017-07-11 10:31 2004-04-26 Show GitHub Exploit DB Packet Storm
346654 - - - modules.php in PHP-Nuke Video Gallery Module 0.1 Beta 5 allows remote attackers to gain sensitive information via an HTTP request with an invalid (1) catid or (2) clipid parameter, which reveals the … NVD-CWE-Other
CVE-2004-1971 2017-07-11 10:31 2004-04-26 Show GitHub Exploit DB Packet Storm
346655 - francisco_burzi php-nuke SQL injection vulnerability in modules.php in PHP-Nuke Video Gallery Module 0.1 Beta 5 allows remote attackers to execute arbitrary SQL code via the (1) clipid or (2) catid parameters in a viewclip, … NVD-CWE-Other
CVE-2004-1972 2017-07-11 10:31 2004-04-26 Show GitHub Exploit DB Packet Storm
346656 - digi www_server DiGi Web Server allows remote attackers to cause a denial of service (CPU consumption) via an HTTP GET request that contains a large number of / (slash) characters, which consumes resources when DiGi… NVD-CWE-Other
CVE-2004-1973 2017-07-11 10:31 2004-04-27 Show GitHub Exploit DB Packet Storm
346657 - php_arena pafiledb paFileDB 3.1 allows remote attackers to gain sensitive information via a direct request to (1) login.php, (2) category.php, (3) search.php, (4) main.php, (5) viewall.php, (6) download.php, (7) email.… NVD-CWE-Other
CVE-2004-1974 2017-07-11 10:31 2004-04-27 Show GitHub Exploit DB Packet Storm
346658 - php_arena pafiledb Cross-site scripting (XSS) vulnerability in the category module in pafiledb.php for paFileDB 3.1 allows remote attackers to inject arbitrary web script or HTML via the id parameter, a vulnerability t… NVD-CWE-Other
CVE-2004-1975 2017-07-11 10:31 2004-04-27 Show GitHub Exploit DB Packet Storm
346659 - smc_networks smc7004vbr SMC Barricade broadband router 7008ABR and 7004VBR enable remote administration by default, which allows remote attackers to gain access by connecting to port 1900. NVD-CWE-Other
CVE-2004-1976 2017-07-11 10:31 2004-04-28 Show GitHub Exploit DB Packet Storm
346660 - 3com webbngss3nbxnts 3com NBX IP VOIP NetSet Configuration Manager allows remote attackers to cause a denial of service (crash) via a Nessus scan in safeChecks mode. NVD-CWE-Other
CVE-2004-1977 2017-07-11 10:31 2004-04-29 Show GitHub Exploit DB Packet Storm