Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240991 7.8 危険 Grandstream Networks - Grandstream SIP Phone GXV 3000 におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-4498 2012-06-26 15:54 2007-08-23 Show GitHub Exploit DB Packet Storm
240992 5 警告 eZ - eZ publish の tipafriend 関数におけるスパム攻撃される脆弱性 - CVE-2007-4494 2012-06-26 15:54 2007-08-22 Show GitHub Exploit DB Packet Storm
240993 10 危険 eZ - eZ publish における詳細不明な脆弱性 - CVE-2007-4493 2012-06-26 15:54 2007-08-22 Show GitHub Exploit DB Packet Storm
240994 6.8 警告 ecentrex - eCentrex VOIP Client モジュールの IUAComFormX ActiveX コントロールにおけるバッファオーバーフローの脆弱性 - CVE-2007-4489 2012-06-26 15:54 2007-08-22 Show GitHub Exploit DB Packet Storm
240995 4.3 警告 dscripting.com - IPB の D22-Shoutbox におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-4487 2012-06-26 15:54 2007-08-22 Show GitHub Exploit DB Packet Storm
240996 6.8 警告 butterfly - Butterfly オンライン訪問者カウンタの visitor.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-4485 2012-06-26 15:54 2007-08-22 Show GitHub Exploit DB Packet Storm
240997 4.3 警告 aleadsoft.com - Search Engine Builder の search.html におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-4479 2012-06-26 15:54 2007-08-22 Show GitHub Exploit DB Packet Storm
240998 10 危険 gesytec easylon - Gesytec Easylon OPC Server におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2007-4473 2012-06-26 15:54 2007-12-17 Show GitHub Exploit DB Packet Storm
240999 9.3 危険 broderbund - Broderbund Expressit 3DGreetings Player ActiveX コントロールにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-4472 2012-06-26 15:54 2007-09-6 Show GitHub Exploit DB Packet Storm
241000 9.3 危険 er mapper - ER Mapper ECW JPEG 2000 の NCSView.dll におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-4470 2012-06-26 15:54 2007-09-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 25, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
288111 - microsoft windows_live_messenger msnmsgr.exe in Windows Live Messenger (WLM) 2009 build 14.0.8064.206, and other 14.0.8064.x builds, allows remote attackers to cause a denial of service (application crash) via a modified header in a… CWE-20
 Improper Input Validation 
CVE-2009-0647 2018-10-11 04:29 2009-02-20 Show GitHub Exploit DB Packet Storm
288112 - bacula bacula mtx-changer.Adic-Scalar-24 in bacula-common 2.4.2 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/mtx.##### temporary file, probably a related issue to CVE-2005-2995. CWE-59
Link Following
CVE-2008-5373 2018-10-10 00:08 2008-12-9 Show GitHub Exploit DB Packet Storm
288113 - bacula bacula bacula 1.36.3 and earlier allows local users to modify or read sensitive files via symlink attacks on (1) the temporary file used by autoconf/randpass when openssl is not available, or (2) the mtx.[P… NVD-CWE-Other
CVE-2005-2995 2018-10-10 00:08 2005-09-21 Show GitHub Exploit DB Packet Storm
288114 - debian kernel-patch-vserver
debian_linux
The Linux 2.4 kernel patch in kernel-patch-vserver before 1.9.5.5 and 2.x before 2.3 for Debian GNU/Linux does not correctly set the "chroot barrier" with util-vserver, which allows attackers to acce… NVD-CWE-Other
CVE-2005-4347 2018-10-5 07:12 2005-12-31 Show GitHub Exploit DB Packet Storm
288115 - sun jdk
jre
sdk
Unspecified vulnerability in Sun Java JDK and JRE 5.0 Update 3 and earlier, SDK and JRE 1.3.x through 1.3.1_16 and 1.4.x through 1.4.2_08 allows remote attackers to bypass Java sandbox security and o… NVD-CWE-Other
CVE-2006-0614 2018-10-5 07:11 2006-02-9 Show GitHub Exploit DB Packet Storm
288116 - xerox copycentre_c65_firmware
copycentre_c75_firmware
copycentre_c90_firmware
workcentre_pro_65_firmware
workcentre_pro_75_firmware
workcentre_pro_90_firmware
Multiple unspecified vulnerabilities in Xerox CopyCentre and Xerox WorkCentre Pro, running software 1.001.02.073 or earlier, or 1.001.02.074 before 1.001.02.715, allow remote attackers to cause an un… NVD-CWE-Other
CVE-2006-1137 2018-10-5 07:11 2006-03-10 Show GitHub Exploit DB Packet Storm
288117 - xerox copycentre_c65_firmware
copycentre_c75_firmware
copycentre_c90_firmware
workcentre_pro_65_firmware
workcentre_pro_75_firmware
workcentre_pro_90_firmware
Unspecified vulnerability in the web server code in Xerox CopyCentre and Xerox WorkCentre Pro, running software 1.001.02.073 or earlier, or 1.001.02.074 before 1.001.02.715, allows remote attackers t… NVD-CWE-Other
CVE-2006-1138 2018-10-5 07:11 2006-03-10 Show GitHub Exploit DB Packet Storm
288118 - xerox copycentre_c65_firmware
copycentre_c75_firmware
copycentre_c90_firmware
workcentre_pro_65_firmware
workcentre_pro_75_firmware
workcentre_pro_90_firmware
Unspecified vulnerability in the ESS/ Network Controller in Xerox CopyCentre and Xerox WorkCentre Pro, running software 1.001.02.073 or earlier, or 1.001.02.074 before 1.001.02.715, causes the Immedi… NVD-CWE-Other
CVE-2006-1139 2018-10-5 07:11 2006-03-10 Show GitHub Exploit DB Packet Storm
288119 - geeklog geeklog Cross-site scripting (XSS) vulnerability in Geeklog 1.4.0sr4 and earlier, and 1.3.11sr6 and earlier, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors when valida… CWE-79
Cross-site Scripting
CVE-2006-3756 2018-10-5 07:07 2006-07-21 Show GitHub Exploit DB Packet Storm
288120 - mozilla firefox
seamonkey
thunderbird
Mozilla Firefox before 3.0.9, Thunderbird, and SeaMonkey do not properly implement the Same Origin Policy for (1) XMLHttpRequest, involving a mismatch for a document's principal, and (2) XPCNativeWra… CWE-16
Configuration
CVE-2009-1309 2018-10-4 07:00 2009-04-23 Show GitHub Exploit DB Packet Storm