Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240101 6.8 警告 AVAST Software s.r.o. - avast! Home and Professional の aavmker4.sys における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-1625 2012-06-26 16:02 2008-04-2 Show GitHub Exploit DB Packet Storm
240102 6.8 警告 geertsen holdings inc - GeeCarts における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-1622 2012-06-26 16:02 2008-04-2 Show GitHub Exploit DB Packet Storm
240103 4.3 警告 geertsen holdings inc - GeeCarts におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1621 2012-06-26 16:02 2008-04-2 Show GitHub Exploit DB Packet Storm
240104 7.5 危険 2X Software - 2X ThinClientServer の 2X TFTP サービスにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-1620 2012-06-26 16:02 2008-04-2 Show GitHub Exploit DB Packet Storm
240105 7.5 危険 clever copy - Clever Copy の postview.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1608 2012-06-26 16:02 2008-04-1 Show GitHub Exploit DB Packet Storm
240106 6 警告 elastic path - EP におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-1606 2012-06-26 16:02 2008-04-1 Show GitHub Exploit DB Packet Storm
240107 7.5 危険 comix - comix における任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-1568 2012-06-26 16:02 2008-03-31 Show GitHub Exploit DB Packet Storm
240108 4.3 警告 digiappz - Digiappz DigiDomain におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1560 2012-06-26 16:02 2008-03-31 Show GitHub Exploit DB Packet Storm
240109 6.8 警告 Joomla!
bernard gilly
- Joomla! の Bernard Gilly alphacontent コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1559 2012-06-26 16:02 2008-03-31 Show GitHub Exploit DB Packet Storm
240110 5 警告 bolinos - BolinOS における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2008-1557 2012-06-26 16:02 2008-03-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 26, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
297401 - apple mac_os_x
mac_os_x_server
MobileMe in Apple Mac OS X 10.5 before 10.5.8 does not properly delete credentials upon signout from the preference pane, which makes it easier for attackers to hijack a MobileMe session via unspecif… CWE-255
Credentials Management
CVE-2009-2192 2017-08-17 10:30 2009-08-7 Show GitHub Exploit DB Packet Storm
297402 - apple mac_os_x
mac_os_x_server
Buffer overflow in the kernel in Apple Mac OS X 10.5 before 10.5.8 allows remote attackers to execute arbitrary code or cause a denial of service (system crash) via a crafted AppleTalk response packe… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2009-2193 2017-08-17 10:30 2009-08-7 Show GitHub Exploit DB Packet Storm
297403 - apple mac_os_x
mac_os_x_server
Apple Mac OS X 10.5 before 10.5.8 does not properly share file descriptors over local sockets, which allows local users to cause a denial of service (system crash) by placing file descriptors in mess… NVD-CWE-Other
CVE-2009-2194 2017-08-17 10:30 2009-08-7 Show GitHub Exploit DB Packet Storm
297404 - apple garageband Apple GarageBand before 5.1 reconfigures Safari to accept all cookies regardless of domain name, which makes it easier for remote web servers to track users. CWE-264
Permissions, Privileges, and Access Controls
CVE-2009-2198 2017-08-17 10:30 2009-08-5 Show GitHub Exploit DB Packet Storm
297405 - apple xsan The screensharing feature in the Admin application in Apple Xsan before 2.2 places a cleartext username and password in a URL within an error dialog, which allows physically proximate attackers to ob… CWE-310
Cryptographic Issues
CVE-2009-2201 2017-08-17 10:30 2009-09-16 Show GitHub Exploit DB Packet Storm
297406 - apple iphone_os The MobileMail component in Apple iPhone OS 3.0 and 3.0.1, and iPhone OS 3.0 for iPod touch, lists deleted e-mail messages in Spotlight search results, which might allow local users to obtain sensiti… CWE-264
Permissions, Privileges, and Access Controls
CVE-2009-2207 2017-08-17 10:30 2009-09-11 Show GitHub Exploit DB Packet Storm
297407 - freebsd freebsd FreeBSD 6.3, 6.4, 7.1, and 7.2 does not enforce permissions on the SIOCSIFINFO_IN6 IOCTL, which allows local users to modify or disable IPv6 network interfaces, as demonstrated by modifying the MTU. CWE-264
Permissions, Privileges, and Access Controls
CVE-2009-2208 2017-08-17 10:30 2009-06-25 Show GitHub Exploit DB Packet Storm
297408 - citrix secure_gateway The Secure Gateway service in Citrix Secure Gateway 3.1 and earlier allows remote attackers to cause a denial of service (CPU consumption) via an unspecified request. CWE-399
 Resource Management Errors
CVE-2009-2214 2017-08-17 10:30 2009-06-26 Show GitHub Exploit DB Packet Storm
297409 - jbmc-software directadmin Cross-site scripting (XSS) vulnerability in CMD_REDIRECT in DirectAdmin 1.33.6 and earlier allows remote attackers to inject arbitrary web script or HTML via the URI in a view=advanced request. CWE-79
Cross-site Scripting
CVE-2009-2216 2017-08-17 10:30 2009-06-26 Show GitHub Exploit DB Packet Storm
297410 - phantom-inker nbbc Cross-site scripting (XSS) vulnerability in NBBC before 1.4.2 allows remote attackers to inject arbitrary web script or HTML via an invalid URL in a BBCode img tag. CWE-79
Cross-site Scripting
CVE-2009-2217 2017-08-17 10:30 2009-06-26 Show GitHub Exploit DB Packet Storm