Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
235541 7.5 危険 mikedeboer - Mambo 用の Mike de Boer zoom コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4474 2012-09-25 17:38 2009-12-30 Show GitHub Exploit DB Packet Storm
235542 4.3 警告 ljscripts - Auto-Surf Traffic Exchange Script におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4460 2012-09-25 17:38 2009-12-30 Show GitHub Exploit DB Packet Storm
235543 6.8 警告 カスペルスキー - Kaspersky Anti-Virus などにおける SYSTEM 権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-4452 2012-09-25 17:38 2009-12-29 Show GitHub Exploit DB Packet Storm
235544 6.8 警告 php.html - kandalf upper の upper.php における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2009-4451 2012-09-25 17:38 2009-12-29 Show GitHub Exploit DB Packet Storm
235545 4.3 警告 LiveZilla - LiveZilla の map.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4450 2012-09-25 17:38 2009-12-29 Show GitHub Exploit DB Packet Storm
235546 6.3 警告 mybboard - MyBB におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-4449 2012-09-25 17:38 2009-12-29 Show GitHub Exploit DB Packet Storm
235547 5 警告 mybboard - MyBB の inc/functions_time.php におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2009-4448 2012-09-25 17:38 2009-12-19 Show GitHub Exploit DB Packet Storm
235548 7.5 危険 jax scripts - Jax Guestbook における管理者の設定を変更される脆弱性 CWE-287
不適切な認証
CVE-2009-4447 2012-09-25 17:38 2009-12-29 Show GitHub Exploit DB Packet Storm
235549 4.3 警告 ikemcg - phpInstantGallery の admin.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4446 2012-09-25 17:38 2009-12-29 Show GitHub Exploit DB Packet Storm
235550 6 警告 マイクロソフト - Microsoft IIS における任意の拡張子を伴う空ファイルを作成される脆弱性 CWE-20
不適切な入力確認
CVE-2009-4445 2012-09-25 17:38 2009-12-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
352241 - php php PHP3 with safe_mode enabled does not properly filter shell metacharacters from commands that are executed by popen, which could allow remote attackers to execute commands. NVD-CWE-Other
CVE-2000-0059 2008-09-11 04:02 2000-01-4 Show GitHub Exploit DB Packet Storm
352242 - nortel contivity cgiproc CGI script in Nortel Contivity HTTP server allows remote attackers to read arbitrary files by specifying the filename in a parameter to the script. NVD-CWE-Other
CVE-2000-0063 2008-09-11 04:02 2000-01-17 Show GitHub Exploit DB Packet Storm
352243 - nortel contivity cgiproc CGI script in Nortel Contivity HTTP server allows remote attackers to cause a denial of service via a malformed URL that includes shell metacharacters. NVD-CWE-Other
CVE-2000-0064 2008-09-11 04:02 2000-01-17 Show GitHub Exploit DB Packet Storm
352244 - nosque msgcore Super Mail Transfer Package (SMTP), later called MsgCore, has a memory leak which allows remote attackers to cause a denial of service by repeating multiple HELO, MAIL FROM, RCPT TO, and DATA command… NVD-CWE-Other
CVE-2000-0075 2008-09-11 04:02 2000-01-13 Show GitHub Exploit DB Packet Storm
352245 - w3c cern_httpd The W3C CERN httpd HTTP server allows remote attackers to determine the real pathnames of some commands via a request for a nonexistent URL. NVD-CWE-Other
CVE-2000-0079 2008-09-11 04:02 2000-01-18 Show GitHub Exploit DB Packet Storm
352246 - hp hp-ux HP asecure creates the Audio Security File audio.sec with insecure permissions, which allows local users to cause a denial of service or gain additional privileges. NVD-CWE-Other
CVE-2000-0083 2008-09-11 04:02 2000-04-18 Show GitHub Exploit DB Packet Storm
352247 - netopia timbuktu_pro Netopia Timbuktu Pro sends user IDs and passwords in cleartext, which allows remote attackers to obtain them via sniffing. NVD-CWE-Other
CVE-2000-0086 2008-09-11 04:02 2000-01-18 Show GitHub Exploit DB Packet Storm
352248 - vmware workstation VMWare 1.1.2 allows local users to cause a denial of service via a symlink attack. NVD-CWE-Other
CVE-2000-0090 2008-09-11 04:02 2000-01-17 Show GitHub Exploit DB Packet Storm
352249 - inter7 vpopmail Buffer overflow in vchkpw/vpopmail POP authentication package allows remote attackers to gain root privileges via a long username or password. NVD-CWE-Other
CVE-2000-0091 2008-09-11 04:02 2000-01-21 Show GitHub Exploit DB Packet Storm
352250 - hp hp-ux The PMTU discovery procedure used by HP-UX 10.30 and 11.00 for determining the optimum MTU generates large amounts of traffic in response to small packets, allowing remote attackers to cause the syst… NVD-CWE-Other
CVE-2000-0095 2008-09-11 04:02 2000-01-24 Show GitHub Exploit DB Packet Storm