Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 3, 2026, 6:08 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
235721 4.3 警告 MediaWiki - MediaWiki におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1647 2012-09-25 17:38 2010-05-28 Show GitHub Exploit DB Packet Storm
235722 5 警告 Horde - Horde の IMP プラグインにおけるファイアーウォールの制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-1638 2012-09-25 17:38 2010-06-22 Show GitHub Exploit DB Packet Storm
235723 2.1 注意 Linux - Linux kernel の btrfs 機能における書き込み専用ファイルの記述子から重要な情報を読まれる脆弱性 CWE-200
情報漏えい
CVE-2010-1636 2012-09-25 17:38 2010-05-15 Show GitHub Exploit DB Packet Storm
235724 4.3 警告 LXR Project - LXR Cross Referencer におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1625 2012-09-25 17:38 2010-06-24 Show GitHub Exploit DB Packet Storm
235725 4.3 警告 Phorum - Phorum におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1629 2012-09-25 17:38 2009-01-25 Show GitHub Exploit DB Packet Storm
235726 6.9 警告 Linux - Linux kernel の mm/shmem.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2010-1643 2012-09-25 17:38 2008-10-28 Show GitHub Exploit DB Packet Storm
235727 4.3 警告 Moodle - Moodle で使用される KSES HTML テキストクリーニングライブラリにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1619 2012-09-25 17:38 2010-04-29 Show GitHub Exploit DB Packet Storm
235728 4.3 警告 Jasig
Moodle
- Moodle で使用される phpCAS クライアントライブラリにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1618 2012-09-25 17:38 2010-04-29 Show GitHub Exploit DB Packet Storm
235729 4 警告 Moodle - Moodle の user/view.php における他のユーザのフルネームを取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-1617 2012-09-25 17:38 2010-04-29 Show GitHub Exploit DB Packet Storm
235730 4 警告 Moodle - Moodle における新しいアカウントを作成される脆弱性 CWE-nocwe
CWE以外
CVE-2010-1616 2012-09-25 17:38 2010-04-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 3, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
346641 - microsoft cabarc Directory traversal vulnerability in Microsoft cabarc allows remote attackers to overwrite files via "../" sequences in file names in a CAB archive. NVD-CWE-Other
CVE-2004-2643 2017-07-20 10:29 2004-12-31 Show GitHub Exploit DB Packet Storm
346642 - asn.1_compiler asn.1_compiler Unspecified vulnerability in ASN.1 Compiler (asn1c) before 0.9.7 has unknown impact and attack vectors when processing "ANY" type tags. NVD-CWE-Other
CVE-2004-2644 2017-07-20 10:29 2004-12-31 Show GitHub Exploit DB Packet Storm
346643 - asn.1_compiler asn.1_compiler Unspecified vulnerability in ASN.1 Compiler (asn1c) before 0.9.7 has unknown impact and attack vectors when processing "CHOICE" types with "indefinite length structures." NVD-CWE-Other
CVE-2004-2645 2017-07-20 10:29 2004-12-31 Show GitHub Exploit DB Packet Storm
346644 - - - The addUser function in UserManager.java in Free Web Chat 2.0 allows remote attackers to cause a denial of service (uncaught NullPointerException) via unknown attack vectors that cause the usrName va… NVD-CWE-Other
CVE-2004-2646 2017-07-20 10:29 2004-12-31 Show GitHub Exploit DB Packet Storm
346645 - - - Free Web Chat 2.0 allows remote attackers to cause a denial of service (CPU consumption) via multiple connections from the same user. NVD-CWE-Other
CVE-2004-2647 2017-07-20 10:29 2004-12-31 Show GitHub Exploit DB Packet Storm
346646 - - - FreezeX 1.00.100.0666 allows local users with administrator privileges to cause a denial of service (FreezeX application) by overwriting the db.fzx file. NVD-CWE-Other
CVE-2004-2648 2017-07-20 10:29 2004-12-31 Show GitHub Exploit DB Packet Storm
346647 - eudora eudora Eudora 6.1.0.6 allows remote attackers to obfuscate URLs displayed in the status bar by inserting a large number of characters (e.g. spaces coded as "&#32") in the middle of the URL. CWE-20
 Improper Input Validation 
CVE-2004-2649 2017-07-20 10:29 2004-12-31 Show GitHub Exploit DB Packet Storm
346648 - eudora eudora This vulnerability is addressed in the following product release: Qualcomm, Eudora, 6.1.2 CWE-20
 Improper Input Validation 
CVE-2004-2649 2017-07-20 10:29 2004-12-31 Show GitHub Exploit DB Packet Storm
346649 - michael_christen yacy Multiple cross-site scripting (XSS) vulnerabilities in YaCy before 0.32 allow remote attackers to inject arbitrary web script or HTML via the (1) urlmaskfilter parameter to index.html or the (2) page… NVD-CWE-Other
CVE-2004-2651 2017-07-20 10:29 2004-12-31 Show GitHub Exploit DB Packet Storm
346650 - sourcefire snort The DecodeTCPOptions function in decode.c in Snort before 2.3.0, when printing TCP/IP options using FAST output or verbose mode, allows remote attackers to cause a denial of service (crash) via packe… NVD-CWE-Other
CVE-2004-2652 2017-07-20 10:29 2004-12-31 Show GitHub Exploit DB Packet Storm