Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
239191 7.5 危険 DeltaScripts - DeltaScripts PHP Classifieds の login.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5806 2012-06-26 16:10 2008-12-31 Show GitHub Exploit DB Packet Storm
239192 7.5 危険 DeltaScripts - DeltaScripts PHP Classifieds の detail.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5805 2012-06-26 16:10 2008-12-31 Show GitHub Exploit DB Packet Storm
239193 7.5 危険 e-topbiz - e-topbiz Number Links 1 Php Script における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5804 2012-06-26 16:10 2008-12-31 Show GitHub Exploit DB Packet Storm
239194 7.5 危険 e-topbiz - E-topbiz Online Store の admin/login.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5803 2012-06-26 16:10 2008-12-31 Show GitHub Exploit DB Packet Storm
239195 7.5 危険 e-topbiz - E-topbiz Online Store の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5802 2012-06-26 16:10 2008-12-31 Show GitHub Exploit DB Packet Storm
239196 7.5 危険 domainsellerpro - Domain Seller Pro の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5788 2012-06-26 16:10 2008-12-31 Show GitHub Exploit DB Packet Storm
239197 5.4 警告 マイクロソフト
Arab Portal
- Windows 上で稼動する Arab Portal の mod.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-5787 2012-06-26 16:10 2008-12-31 Show GitHub Exploit DB Packet Storm
239198 7.5 危険 cfagcms - CFAGCMS の right.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5781 2012-06-26 16:10 2008-12-30 Show GitHub Exploit DB Packet Storm
239199 7.5 危険 flds-script - FLDS の lpro.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5779 2012-06-26 16:10 2008-12-30 Show GitHub Exploit DB Packet Storm
239200 7.5 危険 flds-script - FLDS の report.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5778 2012-06-26 16:10 2008-12-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 26, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
255651 9.8 CRITICAL
Network
nac nacpremium Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in NAC Telecommunication Systems Inc. NACPremium allows Blind SQL Injection.This issue affects NACPr… CWE-89
SQL Injection
CVE-2024-6919 2024-09-18 00:57 2024-09-3 Show GitHub Exploit DB Packet Storm
255652 6.5 MEDIUM
Network
siemens omnivise_t3000_application_server A vulnerability has been identified in Omnivise T3000 Application Server R9.2 (All versions), Omnivise T3000 R8.2 SP3 (All versions), Omnivise T3000 R8.2 SP4 (All versions). Affected devices allow au… CWE-22
Path Traversal
CVE-2024-38878 2024-09-18 00:50 2024-08-2 Show GitHub Exploit DB Packet Storm
255653 9.8 CRITICAL
Network
anji-plus report anji-plus AJ-Report is affected by an authentication bypass vulnerability. A remote and unauthenticated attacker can append ";swagger-ui" to HTTP requests to bypass authentication and execute arbitra… NVD-CWE-Other
CVE-2024-7314 2024-09-18 00:45 2024-08-3 Show GitHub Exploit DB Packet Storm
255654 4.8 MEDIUM
Network
5starplugins pretty_simple_popup_builder Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in 5 Star Plugins Pretty Simple Popup Builder allows Stored XSS.This issue affects Pretty Sim… CWE-79
Cross-site Scripting
CVE-2024-39626 2024-09-18 00:07 2024-08-2 Show GitHub Exploit DB Packet Storm
255655 7.8 HIGH
Local
siemens omnivise_t3000_whitelisting_server
omnivise_t3000_thin_client
omnivise_t3000_terminal_server
omnivise_t3000_product_data_management
omnivise_t3000_domain_controller
omnivise_t3000_appl…
A vulnerability has been identified in Omnivise T3000 Application Server R9.2 (All versions), Omnivise T3000 Domain Controller R9.2 (All versions), Omnivise T3000 Product Data Management (PDM) R9.2 (… NVD-CWE-noinfo
CVE-2024-38876 2024-09-17 23:45 2024-08-2 Show GitHub Exploit DB Packet Storm
255656 9.8 CRITICAL
Network
totolink t8_firmware TOTOLINK AC1200 T8 v4.1.5cu.861_B20230220 has a buffer overflow vulnerability in the setWizardCfg function via the ssid5g parameter. CWE-120
Classic Buffer Overflow
CVE-2024-46419 2024-09-17 23:35 2024-09-16 Show GitHub Exploit DB Packet Storm
255657 9.8 CRITICAL
Network
totolink t8_firmware TOTOLINK AC1200 T8 v4.1.5cu.861_B20230220 has a buffer overflow vulnerability in the setWiFiAclRules function via the desc parameter. CWE-120
Classic Buffer Overflow
CVE-2024-46451 2024-09-17 23:35 2024-09-16 Show GitHub Exploit DB Packet Storm
255658 7.5 HIGH
Network
totolink t8_firmware TOTOLINK AC1200 T8 v4.1.5cu.861_B20230220 has a buffer overflow vulnerability in the UploadCustomModule function, which allows attackers to cause a Denial of Service (DoS) via the File parameter. CWE-120
Classic Buffer Overflow
CVE-2024-46424 2024-09-17 23:35 2024-09-16 Show GitHub Exploit DB Packet Storm
255659 7.5 HIGH
Network
nt-ware uniflow_smartclient
uniflow_online_print_\&_scan
uniflow_online
The registration process of uniFLOW Online (NT-ware product) apps, prior to and including version 2024.1.0, can be compromised when email login is enabled on the tenant. Those tenants utilising email… NVD-CWE-Other
CVE-2024-1621 2024-09-17 23:12 2024-09-3 Show GitHub Exploit DB Packet Storm
255660 7.8 HIGH
Local
vmware fusion VMware Fusion (13.x before 13.6) contains a code-execution vulnerability due to the usage of an insecure environment variable. A malicious actor with standard user privileges may exploit this vulnera… NVD-CWE-noinfo
CVE-2024-38811 2024-09-17 22:33 2024-09-3 Show GitHub Exploit DB Packet Storm