Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
239941 7.5 危険 cmsnx - Feedback および Rating Script の detail.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2277 2012-06-26 16:02 2008-05-16 Show GitHub Exploit DB Packet Storm
239942 9 危険 アルバネットワークス株式会社 - Aruba Mobility Controller の TACACS 認証コンポーネントにおける権限を取得される脆弱性 CWE-noinfo
情報不足
CVE-2008-2273 2012-06-26 16:02 2008-05-14 Show GitHub Exploit DB Packet Storm
239943 4.3 警告 アルバネットワークス株式会社 - Aruba Mobility Controller の Web インターフェースにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2272 2012-06-26 16:02 2008-05-14 Show GitHub Exploit DB Packet Storm
239944 7.5 危険 CMS Made Simple - CMS Made Simple の FileManager モジュールの Postlet の javaUpload.php における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-2267 2012-06-26 16:02 2008-05-16 Show GitHub Exploit DB Packet Storm
239945 7.5 危険 Emophp Programming - EMO Realty Manager の news.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2265 2012-06-26 16:02 2008-05-16 Show GitHub Exploit DB Packet Storm
239946 7.5 危険 cmsnx - Automated Link Exchange Portal の linking.page.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2263 2012-06-26 16:02 2008-05-16 Show GitHub Exploit DB Packet Storm
239947 4.6 警告 afuse - afuse の expand_template 関数における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-2232 2012-06-26 16:02 2008-07-17 Show GitHub Exploit DB Packet Storm
239948 9.3 危険 cyberfolio - Cyberfolio における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-2228 2012-06-26 16:02 2008-05-14 Show GitHub Exploit DB Packet Storm
239949 7.5 危険 gamecms - gameCMS Lite の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2225 2012-06-26 16:02 2008-05-14 Show GitHub Exploit DB Packet Storm
239950 7.5 危険 buyscripts - vShare YouTube Clone の group_posts.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2223 2012-06-26 16:02 2008-05-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 26, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293541 - jamit_software jamit_job_board SQL injection vulnerability in index.php in Jamit Job Board 3.4.10 allows remote attackers to execute arbitrary SQL commands via the show_emp parameter. CWE-89
SQL Injection
CVE-2008-5295 2017-09-29 10:32 2008-12-2 Show GitHub Exploit DB Packet Storm
293542 - pilot_group pg_real_estate_solution SQL injection vulnerability in admin/index.php in PG Real Estate Solution allows remote attackers to execute arbitrary SQL commands via the login_lg parameter (username). NOTE: some of these details… CWE-89
SQL Injection
CVE-2008-5306 2017-09-29 10:32 2008-12-2 Show GitHub Exploit DB Packet Storm
293543 - pilot_group pg_real_roommate_finder_solution SQL injection vulnerability in admin/index.php in PG Roommate Finder Solution allows remote attackers to execute arbitrary SQL commands via the login_lg parameter. NOTE: some of these details are ob… CWE-89
SQL Injection
CVE-2008-5307 2017-09-29 10:32 2008-12-2 Show GitHub Exploit DB Packet Storm
293544 - lovecms the_simple_forum The Simple Forum 3.1d module for LoveCMS 1.6.2 Final does not properly restrict access to administrator functions, which allows remote attackers to change the administrator password via a direct requ… CWE-264
Permissions, Privileges, and Access Controls
CVE-2008-5308 2017-09-29 10:32 2008-12-2 Show GitHub Exploit DB Packet Storm
293545 - netart_media real_estate_portal SQL injection vulnerability in NetArt Media Real Estate Portal 1.2 allows remote attackers to execute arbitrary SQL commands via the ad_id parameter in the re_send_email module to index.php. CWE-89
SQL Injection
CVE-2008-5309 2017-09-29 10:32 2008-12-2 Show GitHub Exploit DB Packet Storm
293546 - netart_media car_portal SQL injection vulnerability in image.php in NetArt Media Car Portal 2.0 allows remote attackers to execute arbitrary SQL commands via the id parameter. CWE-89
SQL Injection
CVE-2008-5310 2017-09-29 10:32 2008-12-2 Show GitHub Exploit DB Packet Storm
293547 - netart_media blog_system SQL injection vulnerability in image.php in NetArt Media Blog System 1.5 allows remote attackers to execute arbitrary SQL commands via the id parameter. CWE-89
SQL Injection
CVE-2008-5311 2017-09-29 10:32 2008-12-2 Show GitHub Exploit DB Packet Storm
293548 - clam_anti-virus clamav Stack consumption vulnerability in libclamav/special.c in ClamAV before 0.94.2 allows remote attackers to cause a denial of service (daemon crash) via a crafted JPEG file, related to the cli_check_jp… CWE-399
 Resource Management Errors
CVE-2008-5314 2017-09-29 10:32 2008-12-4 Show GitHub Exploit DB Packet Storm
293549 - littlecms lcms
little_cms_color_engine
Buffer overflow in the ReadEmbeddedTextTag function in src/cmsio1.c in Little cms color engine (aka lcms) before 1.16 allows attackers to have an unknown impact via vectors related to a length parame… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2008-5316 2017-09-29 10:32 2008-12-4 Show GitHub Exploit DB Packet Storm
293550 - e107 e107 SQL injection vulnerability in usersettings.php in e107 0.7.13 and earlier allows remote authenticated users to execute arbitrary SQL commands via the ue[] parameter. CWE-89
SQL Injection
CVE-2008-5320 2017-09-29 10:32 2008-12-4 Show GitHub Exploit DB Packet Storm