Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
239631 7.5 危険 kvguestbook - KvGuestbook の guestbook.php における管理者権限を取得される脆弱性 - CVE-2007-0926 2012-09-25 16:47 2007-02-14 Show GitHub Exploit DB Packet Storm
239632 7.5 危険 philboard - Philboard の philboard_forum.asp における SQL インジェクションの脆弱性 - CVE-2007-0920 2012-09-25 16:47 2007-02-14 Show GitHub Exploit DB Packet Storm
239633 7.8 危険 nickolas grigoriadis - Nickolas Grigoriadis Mini Web サーバにおけるディレクトリトラバーサルの脆弱性 - CVE-2007-0919 2012-09-25 16:47 2007-02-14 Show GitHub Exploit DB Packet Storm
239634 9.3 危険 マイクロソフト - Microsoft Powerpoint における任意のコードを実行される脆弱性 - CVE-2007-0913 2012-09-25 16:47 2007-02-13 Show GitHub Exploit DB Packet Storm
239635 9.3 危険 jportal - Jportal の admin/admin.adm.php におけるクロスサイトリクエストフォージェリの脆弱性 - CVE-2007-0912 2012-09-25 16:47 2007-02-13 Show GitHub Exploit DB Packet Storm
239636 7.8 危険 The PHP Group - PHP の str_ireplace 関数におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-0911 2012-09-25 16:47 2007-02-13 Show GitHub Exploit DB Packet Storm
239637 7.5 危険 lightro - LightRO CMS の projects.php における SQL インジェクションの脆弱性 - CVE-2007-0904 2012-09-25 16:47 2007-02-13 Show GitHub Exploit DB Packet Storm
239638 5 警告 MoinMoin - MoinMoin の "デバック情報表示" 機能における重要な情報を取得される脆弱性 - CVE-2007-0902 2012-09-25 16:47 2007-02-13 Show GitHub Exploit DB Packet Storm
239639 4.3 警告 MoinMoin - MoinMoin におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-0901 2012-09-25 16:47 2007-02-13 Show GitHub Exploit DB Packet Storm
239640 5 警告 MediaWiki - MediaWiki における重要な情報を取得される脆弱性 - CVE-2007-0894 2012-09-25 16:47 2007-01-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
286181 - citrix sharefile_mobile_for_tablets
sharefile_mobile
Citrix ShareFile Mobile and ShareFile Mobile for Tablets before 2.4.4 for Android do not verify X.509 certificates from SSL servers, which allow man-in-the-middle attackers to spoof servers and obtai… CWE-310
Cryptographic Issues
CVE-2014-1910 2024-11-21 11:05 2014-02-22 Show GitHub Exploit DB Packet Storm
286182 - phpmyadmin phpmyadmin Cross-site scripting (XSS) vulnerability in import.php in phpMyAdmin before 4.1.7 allows remote authenticated users to inject arbitrary web script or HTML via a crafted filename in an import action. CWE-79
Cross-site Scripting
CVE-2014-1879 2024-11-21 11:05 2014-02-21 Show GitHub Exploit DB Packet Storm
286183 - fine_free_file_project
php
canonical
debian
fine_free_file
php
ubuntu_linux
debian_linux
Fine Free file before 5.17 allows context-dependent attackers to cause a denial of service (infinite recursion, CPU consumption, and crash) via a crafted indirect offset value in the magic of a file. CWE-755
 Improper Handling of Exceptional Conditions
CVE-2014-1943 2024-11-21 11:05 2014-02-19 Show GitHub Exploit DB Packet Storm
286184 - php php ext/gd/gd.c in PHP 5.5.x before 5.5.9 does not check data types, which might allow remote attackers to obtain sensitive information by using a (1) string or (2) array data type in place of a numeric … CWE-189
Numeric Errors
CVE-2014-2020 2024-11-21 11:05 2014-02-18 Show GitHub Exploit DB Packet Storm
286185 4.6 MEDIUM
Physics
apple iphone_os The iCloud subsystem in Apple iOS before 7.1 allows physically proximate attackers to bypass an intended password requirement, and turn off the Find My iPhone service or complete a Delete Account act… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-2019 2024-11-21 11:05 2014-02-18 Show GitHub Exploit DB Packet Storm
286186 - freepbx
sangoma
freepbx admin/libraries/view.functions.php in FreePBX 2.9 before 2.9.0.14, 2.10 before 2.10.1.15, 2.11 before 2.11.0.23, and 12 before 12.0.1alpha22 does not restrict the set of functions accessible to the A… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-1903 2024-11-21 11:05 2014-02-18 Show GitHub Exploit DB Packet Storm
286187 - jetroplatforms jetro_cockpit_secure_browsing The client in Jetro COCKPIT Secure Browsing (JCSB) 4.3.1 and 4.3.3 does not validate the FileName element in an RDP_FILE_TRANSFER document, which allows remote JCSB servers to execute arbitrary progr… CWE-20
 Improper Input Validation 
CVE-2014-1861 2024-11-21 11:05 2014-02-18 Show GitHub Exploit DB Packet Storm
286188 - mozilla thunderbird_esr
thunderbird
seamonkey
Cross-site scripting (XSS) vulnerability in Mozilla Thunderbird 17.x through 17.0.8, Thunderbird ESR 17.x through 17.0.10, and SeaMonkey before 2.20 allows user-assisted remote attackers to inject ar… CWE-79
Cross-site Scripting
CVE-2014-2018 2024-11-21 11:05 2014-02-18 Show GitHub Exploit DB Packet Storm
286189 - sap netweaver Cross-site scripting (XSS) vulnerability in ISpeakAdapter in the Integration Repository in the SAP Exchange Infrastructure (BC-XI) component 3.0, 7.00 through 7.02, and 7.10 through 7.11 for SAP NetW… CWE-79
Cross-site Scripting
CVE-2014-1965 2024-11-21 11:05 2014-02-15 Show GitHub Exploit DB Packet Storm
286190 - sap netweaver
netweaver_exchange_infrastructure_\(bc-xi\)
Cross-site scripting (XSS) vulnerability in the Integration Repository in the SAP Exchange Infrastructure (BC-XI) component in SAP NetWeaver allows remote attackers to inject arbitrary web script or … CWE-79
Cross-site Scripting
CVE-2014-1964 2024-11-21 11:05 2014-02-15 Show GitHub Exploit DB Packet Storm