Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
238461 7.8 危険 nongnu - Mail Notification における重要な情報を取得される脆弱性 - CVE-2007-3209 2012-09-25 16:47 2007-06-9 Show GitHub Exploit DB Packet Storm
238462 7.1 危険 Novell - Novell NetWare の NFS マウントデーモンにおけるバッファオーバーフローの脆弱性 - CVE-2007-3207 2012-09-25 16:47 2007-06-13 Show GitHub Exploit DB Packet Storm
238463 5 警告 The PHP Group
hardened-php project
- PHP などの製品で使用される parse_str 関数における任意の変数を上書きされる脆弱性 - CVE-2007-3205 2012-09-25 16:47 2007-06-13 Show GitHub Exploit DB Packet Storm
238464 7.5 危険 jffnms - JFFNMS の auth.php における SQL インジェクションの脆弱性 - CVE-2007-3204 2012-09-25 16:47 2007-06-12 Show GitHub Exploit DB Packet Storm
238465 4.9 警告 Novell - NetWare 用の NMAS における管理ユーザ名などを取得される脆弱性 - CVE-2007-3200 2012-09-25 16:47 2007-06-12 Show GitHub Exploit DB Packet Storm
238466 4.3 警告 maran - Maran Blog の comments.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3198 2012-09-25 16:47 2007-06-12 Show GitHub Exploit DB Packet Storm
238467 7.5 危険 vBulletin Solutions, Inc. - vBSupport の vBSupport.php における SQL インジェクションの脆弱性 - CVE-2007-3197 2012-09-25 16:47 2007-06-11 Show GitHub Exploit DB Packet Storm
238468 7.5 危険 vBulletin Solutions, Inc. - vSupport Integrated Ticket System の vBSupport.php における SQL インジェクションの脆弱性 - CVE-2007-3196 2012-09-25 16:47 2007-06-11 Show GitHub Exploit DB Packet Storm
238469 9.4 危険 jffnms - JFFNMS の admin/setup.php における設定を変更される脆弱性 - CVE-2007-3192 2012-09-25 16:47 2007-06-12 Show GitHub Exploit DB Packet Storm
238470 9.4 危険 jffnms - JFFNMS における設定情報を取得される脆弱性 - CVE-2007-3191 2012-09-25 16:47 2007-06-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
346551 - xqus x-stat x_stat_admin.php in x-stat 2.3 and earlier allows remote attackers to (1) execute PHP commands such as phpinfo or (2) obtain the full path of the web server via an invalid action parameter, which lea… NVD-CWE-Other
CVE-2002-2045 2017-07-11 10:29 2002-12-31 Show GitHub Exploit DB Packet Storm
346552 - squirrelmail squirrelmail Multiple cross-site scripting (XSS) vulnerabilities in magicHTML of SquirrelMail before 1.2.6 allow remote attackers to inject arbitrary web script or HTML via (1) "<<script" in unspecified input fie… NVD-CWE-Other
CVE-2002-2086 2017-07-11 10:29 2002-12-31 Show GitHub Exploit DB Packet Storm
346553 - gianni_tedesco fwmon Fwmon before 1.0.10 allows remote attackers to cause a denial of service (crash) by causing the kernel to return a large packet. NVD-CWE-Other
CVE-2002-2111 2017-07-11 10:29 2002-12-31 Show GitHub Exploit DB Packet Storm
346554 - netjuke netjuke Artekopia Netjuke before 1.0 b7 allows remote attackers to execute arbitrary code on the web server, possibly via the section parameter, which is passed to an eval call. NVD-CWE-Other
CVE-2002-2114 2017-07-11 10:29 2002-12-31 Show GitHub Exploit DB Packet Storm
346555 - gallery_project gallery PHP remote file inclusion vulnerability in publish_xp_docs.php for Gallery 1.3.2 allows remote attackers to inject arbitrary PHP code by specifying a URL to an init.php file in the GALLERY_BASEDIR pa… NVD-CWE-Other
CVE-2002-2123 2017-07-11 10:29 2002-12-31 Show GitHub Exploit DB Packet Storm
346556 - nylon nylon The recvn and sendn functions in nylon 0.2 do not check when the recv function call returns 0, which allows remote attackers to cause a denial of service (infinite loop and CPU consumption) by closin… NVD-CWE-Other
CVE-2002-2124 2017-07-11 10:29 2002-12-31 Show GitHub Exploit DB Packet Storm
346557 - pedestal_software integrity_protection_driver Integrity Protection Driver (IPD) 1.2 and earlier blocks access to \Device\PhysicalMemory by its name, which could allow local privileged processes to overwrite kernel memory by accessing the device … NVD-CWE-Other
CVE-2002-2127 2017-07-11 10:29 2002-12-31 Show GitHub Exploit DB Packet Storm
346558 - w-agora w-agora Cross-site scripting vulnerability (XSS) in editform.php for w-Agora 4.1.5 allows remote attackers to execute arbitrary web script via an arbitrary form field name containing the script, which is ech… NVD-CWE-Other
CVE-2002-2129 2017-07-11 10:29 2002-12-31 Show GitHub Exploit DB Packet Storm
346559 - oracle application_server Format string vulnerability in the administrative pages of the PL/SQL module for Oracle Application Server 4.0.8 and 4.0.8 2 allows remote attackers to execute arbitrary code. NVD-CWE-Other
CVE-2002-2153 2017-07-11 10:29 2002-12-31 Show GitHub Exploit DB Packet Storm
346560 - ftp_desktop ftp_desktop Multiple heap-based buffer overflows in FTP Desktop client 3.5, and possibly earlier versions, allow remote malicious servers to execute arbitrary code via (1) a long FTP banner, (2) a long response … NVD-CWE-Other
CVE-2003-0766 2017-04-29 10:59 2003-09-17 Show GitHub Exploit DB Packet Storm