Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240001 7.5 危険 Acidcat - Acidcat CMS における制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-1992 2012-06-26 16:02 2008-04-27 Show GitHub Exploit DB Packet Storm
240002 4.3 警告 Acidcat - Acidcat CMS の admin_colors_swatch.asp におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1991 2012-06-26 16:02 2008-04-27 Show GitHub Exploit DB Packet Storm
240003 7.5 危険 Acidcat - Acidcat CMS における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1990 2012-06-26 16:02 2008-04-27 Show GitHub Exploit DB Packet Storm
240004 10 危険 e107.org
123flashchat
- 123 Flash Chat の 123flashchat.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-1989 2012-06-26 16:02 2008-04-27 Show GitHub Exploit DB Packet Storm
240005 9 危険 encaps - EncapsGallery の file_upload 関数における任意の PHP ファイルを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-1988 2012-06-26 16:02 2008-04-27 Show GitHub Exploit DB Packet Storm
240006 4.3 警告 encaps - EncapsGallery の search.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1987 2012-06-26 16:02 2008-04-27 Show GitHub Exploit DB Packet Storm
240007 4.3 警告 digitalhive - DigitalHive の base.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1985 2012-06-26 16:02 2008-04-27 Show GitHub Exploit DB Packet Storm
240008 4.3 警告 AEF Group - AEF におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1983 2012-06-26 16:02 2008-04-27 Show GitHub Exploit DB Packet Storm
240009 7.5 危険 cogites - E-RESERV の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1975 2012-06-26 16:02 2008-04-27 Show GitHub Exploit DB Packet Storm
240010 9.3 危険 artur sikora - SubEdit Player におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-1973 2012-06-26 16:02 2008-04-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 26, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293541 - jamit_software jamit_job_board SQL injection vulnerability in index.php in Jamit Job Board 3.4.10 allows remote attackers to execute arbitrary SQL commands via the show_emp parameter. CWE-89
SQL Injection
CVE-2008-5295 2017-09-29 10:32 2008-12-2 Show GitHub Exploit DB Packet Storm
293542 - pilot_group pg_real_estate_solution SQL injection vulnerability in admin/index.php in PG Real Estate Solution allows remote attackers to execute arbitrary SQL commands via the login_lg parameter (username). NOTE: some of these details… CWE-89
SQL Injection
CVE-2008-5306 2017-09-29 10:32 2008-12-2 Show GitHub Exploit DB Packet Storm
293543 - pilot_group pg_real_roommate_finder_solution SQL injection vulnerability in admin/index.php in PG Roommate Finder Solution allows remote attackers to execute arbitrary SQL commands via the login_lg parameter. NOTE: some of these details are ob… CWE-89
SQL Injection
CVE-2008-5307 2017-09-29 10:32 2008-12-2 Show GitHub Exploit DB Packet Storm
293544 - lovecms the_simple_forum The Simple Forum 3.1d module for LoveCMS 1.6.2 Final does not properly restrict access to administrator functions, which allows remote attackers to change the administrator password via a direct requ… CWE-264
Permissions, Privileges, and Access Controls
CVE-2008-5308 2017-09-29 10:32 2008-12-2 Show GitHub Exploit DB Packet Storm
293545 - netart_media real_estate_portal SQL injection vulnerability in NetArt Media Real Estate Portal 1.2 allows remote attackers to execute arbitrary SQL commands via the ad_id parameter in the re_send_email module to index.php. CWE-89
SQL Injection
CVE-2008-5309 2017-09-29 10:32 2008-12-2 Show GitHub Exploit DB Packet Storm
293546 - netart_media car_portal SQL injection vulnerability in image.php in NetArt Media Car Portal 2.0 allows remote attackers to execute arbitrary SQL commands via the id parameter. CWE-89
SQL Injection
CVE-2008-5310 2017-09-29 10:32 2008-12-2 Show GitHub Exploit DB Packet Storm
293547 - netart_media blog_system SQL injection vulnerability in image.php in NetArt Media Blog System 1.5 allows remote attackers to execute arbitrary SQL commands via the id parameter. CWE-89
SQL Injection
CVE-2008-5311 2017-09-29 10:32 2008-12-2 Show GitHub Exploit DB Packet Storm
293548 - clam_anti-virus clamav Stack consumption vulnerability in libclamav/special.c in ClamAV before 0.94.2 allows remote attackers to cause a denial of service (daemon crash) via a crafted JPEG file, related to the cli_check_jp… CWE-399
 Resource Management Errors
CVE-2008-5314 2017-09-29 10:32 2008-12-4 Show GitHub Exploit DB Packet Storm
293549 - littlecms lcms
little_cms_color_engine
Buffer overflow in the ReadEmbeddedTextTag function in src/cmsio1.c in Little cms color engine (aka lcms) before 1.16 allows attackers to have an unknown impact via vectors related to a length parame… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2008-5316 2017-09-29 10:32 2008-12-4 Show GitHub Exploit DB Packet Storm
293550 - e107 e107 SQL injection vulnerability in usersettings.php in e107 0.7.13 and earlier allows remote authenticated users to execute arbitrary SQL commands via the ue[] parameter. CWE-89
SQL Injection
CVE-2008-5320 2017-09-29 10:32 2008-12-4 Show GitHub Exploit DB Packet Storm