Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241641 6.8 警告 ekkaia
rssmodule
- Pie Web M{a,e}sher の RSS モジュールにおける PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-7073 2012-06-26 16:10 2009-08-25 Show GitHub Exploit DB Packet Storm
241642 4.3 警告 Chipmunk Scripts - Chipmunk Topsites の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-7072 2012-06-26 16:10 2009-08-25 Show GitHub Exploit DB Packet Storm
241643 7.5 危険 Chipmunk Scripts - Chipmunk Topsites の authenticate.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-7071 2012-06-26 16:10 2009-08-25 Show GitHub Exploit DB Packet Storm
241644 7.5 危険 2enetworx - OpenForum における認証を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-7066 2012-06-26 16:10 2009-08-25 Show GitHub Exploit DB Packet Storm
241645 7.5 危険 aled owen - One-News Beta の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-7059 2012-06-26 16:10 2009-08-24 Show GitHub Exploit DB Packet Storm
241646 6.8 警告 grayscalecms - BandSite CMS におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2008-7058 2012-06-26 16:10 2009-08-24 Show GitHub Exploit DB Packet Storm
241647 4.3 警告 grayscalecms - BandSite CMS の merchandise.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-7057 2012-06-26 16:10 2009-08-24 Show GitHub Exploit DB Packet Storm
241648 5 警告 grayscalecms - BandSite CMS におけるデータベースのコピーを取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-7056 2012-06-26 16:10 2009-08-24 Show GitHub Exploit DB Packet Storm
241649 7.5 危険 aj square - AJ Square AJ Article における管理者機能へアクセスされる脆弱性 CWE-287
不適切な認証
CVE-2008-7051 2012-06-26 16:10 2009-08-24 Show GitHub Exploit DB Packet Storm
241650 6.4 警告 aj square - AJPoll における新たにアンケートを作成される脆弱性 CWE-287
不適切な認証
CVE-2008-7046 2012-06-26 16:10 2009-08-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 10, 2026, 4:58 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
267081 7.5 HIGH
Network
sprecher-automation sprecon-e_service_program An issue was discovered in Sprecher Automation SPRECON-E Service Program before 3.43 SP0. Under certain preconditions, it is possible to execute telegram simulation as a non-admin user. As prerequisi… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-10041 2024-11-21 11:43 2016-12-25 Show GitHub Exploit DB Packet Storm
267082 7.3 HIGH
Network
modx modx_revolution Directory traversal in /connectors/index.php in MODX Revolution before 2.5.2-pl allows remote attackers to perform local file inclusion/traversal/manipulation via a crafted dir parameter, related to … CWE-22
Path Traversal
CVE-2016-10039 2024-11-21 11:43 2016-12-24 Show GitHub Exploit DB Packet Storm
267083 7.3 HIGH
Network
modx modx_revolution Directory traversal in /connectors/index.php in MODX Revolution before 2.5.2-pl allows remote attackers to perform local file inclusion/traversal/manipulation via a crafted dir parameter, related to … CWE-22
Path Traversal
CVE-2016-10038 2024-11-21 11:43 2016-12-24 Show GitHub Exploit DB Packet Storm
267084 7.3 HIGH
Network
modx modx_revolution Directory traversal in /connectors/index.php in MODX Revolution before 2.5.2-pl allows remote attackers to perform local file inclusion/traversal/manipulation via a crafted id (aka dir) parameter, re… CWE-22
Path Traversal
CVE-2016-10037 2024-11-21 11:43 2016-12-24 Show GitHub Exploit DB Packet Storm
267085 7.5 HIGH
Network
sap solution_manager Webdynpro in SAP Solman 7.1 through 7.31 allows remote attackers to obtain sensitive information via webdynpro/dispatcher/sap.com/caf~eu~gp~example~timeoff~wd requests, aka SAP Security Note 2344524. CWE-200
Information Exposure
CVE-2016-10005 2024-11-21 11:43 2016-12-19 Show GitHub Exploit DB Packet Storm
267086 7.5 HIGH
Network
ruckus wireless_h500 Ruckus Wireless H500 web management interface denial of service NVD-CWE-noinfo
CVE-2016-1000215 2024-11-21 11:43 2016-10-25 Show GitHub Exploit DB Packet Storm
267087 5.3 MEDIUM
Network
ruckus wireless_h500 Ruckus Wireless H500 web management interface authentication bypass CWE-287
CWE-200
Improper Authentication
Information Exposure
CVE-2016-1000214 2024-11-21 11:43 2016-10-25 Show GitHub Exploit DB Packet Storm
267088 8.8 HIGH
Network
ruckus wireless_h500 Ruckus Wireless H500 web management interface authenticated command injection CWE-78
OS Command 
CVE-2016-1000216 2024-11-21 11:43 2016-10-11 Show GitHub Exploit DB Packet Storm
267089 9.8 CRITICAL
Network
zotpress_project zotpress Zotpress plugin for WordPress SQLi in zp_get_account() CWE-89
SQL Injection
CVE-2016-1000217 2024-11-21 11:43 2016-10-6 Show GitHub Exploit DB Packet Storm
267090 7.5 HIGH
Network
mb.miniaudioplayer_project mb.miniaudioplayer WordPress Plugin mb.miniAudioPlayer-an HTML5 audio player for your mp3 files is prone to multiple vulnerabilities, including open proxy and security bypass vulnerabilities because it fails to properl… CWE-610
Externally Controlled Reference to a Resource in Another Sphere
CVE-2016-0796 2024-11-21 11:42 2022-07-29 Show GitHub Exploit DB Packet Storm