Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 11, 2026, 6:13 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
242041 7.5 危険 mystats - MyStats の mystats.php における SQL インジェクションの脆弱性 - CVE-2006-6402 2012-09-25 15:36 2006-12-9 Show GitHub Exploit DB Packet Storm
242042 6.8 警告 mystats - MyStats の mystats.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-6401 2012-09-25 15:36 2006-12-9 Show GitHub Exploit DB Packet Storm
242043 7.5 危険 jonas gauffin - Jonas Gauffin Publicera の特定のデータベースクラスにおける SQL インジェクションの脆弱性 - CVE-2006-6394 2012-09-25 15:36 2006-12-7 Show GitHub Exploit DB Packet Storm
242044 6.8 警告 jonas gauffin - Jonas Gauffin Publicera におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-6393 2012-09-25 15:36 2006-12-7 Show GitHub Exploit DB Packet Storm
242045 6.8 警告 OpenSolution - Open Solution Quick.Cart におけるディレクトリトラバーサルの脆弱性 - CVE-2006-6391 2012-09-25 15:36 2006-12-7 Show GitHub Exploit DB Packet Storm
242046 6.8 警告 OpenSolution - Open Solution Quick.Cart におけるディレクトリトラバーサルの脆弱性 - CVE-2006-6390 2012-09-25 15:36 2006-12-7 Show GitHub Exploit DB Packet Storm
242047 6.8 警告 link - LINK CMS の naprednaPretraga.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-6388 2012-09-25 15:36 2006-12-7 Show GitHub Exploit DB Packet Storm
242048 7.5 危険 link content management server - LINK CMS における SQL インジェクションの脆弱性 - CVE-2006-6387 2012-09-25 15:36 2006-12-7 Show GitHub Exploit DB Packet Storm
242049 7.8 危険 john goodman - abitwhizzy.php における絶対パストラバーサルの脆弱性 - CVE-2006-6384 2012-09-25 15:36 2006-12-7 Show GitHub Exploit DB Packet Storm
242050 4.6 警告 The PHP Group - PHP における safe_mode 制限を回避される脆弱性 - CVE-2006-6383 2012-09-25 15:36 2006-12-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 11, 2026, 5:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
285251 9.8 CRITICAL
Network
d-link dns-322l_firmware
dns-320lw_firmware
dnr-326_firmware
dns-327l_firmware
dnr-320l_firmware
Stack-based buffer overflow in login_mgr.cgi in D-Link firmware DNR-320L and DNS-320LW before 1.04b08, DNR-322L before 2.10 build 03, DNR-326 before 2.10 build 03, and DNS-327L before 1.04b01 allows … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-7859 2024-11-21 11:18 2017-08-26 Show GitHub Exploit DB Packet Storm
285252 9.8 CRITICAL
Network
d-link dnr-326_firmware The check_login function in D-Link DNR-326 before 2.10 build 03 allows remote attackers to bypass authentication and log in by setting the username cookie parameter to an arbitrary string. CWE-287
Improper Authentication
CVE-2014-7858 2024-11-21 11:18 2017-08-26 Show GitHub Exploit DB Packet Storm
285253 9.8 CRITICAL
Network
d-link dns-322l_firmware
dns-325_firmware
dns-345_firmware
dns-320b_firmware
dnr-326_firmware
dns-327l_firmware
dns-320l_firmware
D-Link DNS-320L firmware before 1.04b12, DNS-327L before 1.03b04 Build0119, DNR-326 1.40b03, DNS-320B 1.02b01, DNS-345 1.03b06, DNS-325 1.05b03, and DNS-322L 2.00b07 allow remote attackers to bypass … CWE-287
Improper Authentication
CVE-2014-7857 2024-11-21 11:18 2017-08-26 Show GitHub Exploit DB Packet Storm
285254 4.6 MEDIUM
Physics
google android Directory traversal vulnerability in the doSendObjectInfo method in frameworks/av/media/mtp/MtpServer.cpp in Android 4.4.4 allows physically proximate attackers with a direct connection to the target… CWE-22
Path Traversal
CVE-2014-7954 2024-11-21 11:18 2017-07-8 Show GitHub Exploit DB Packet Storm
285255 7.0 HIGH
Local
google android Race condition in the bindBackupAgent method in the ActivityManagerService in Android 4.4.4 allows local users with adb shell access to execute arbitrary code or any valid package as system by runnin… CWE-362
Race Condition
CVE-2014-7953 2024-11-21 11:18 2017-07-8 Show GitHub Exploit DB Packet Storm
285256 8.8 HIGH
Network
opendaylight defense4all OpenDaylight defense4all 1.1.0 and earlier allows remote authenticated users to write report data to arbitrary files. CWE-20
 Improper Input Validation 
CVE-2014-8149 2024-11-21 11:18 2017-06-28 Show GitHub Exploit DB Packet Storm
285257 6.5 MEDIUM
Network
libtiff
opensuse
libtiff
opensuse
LibTIFF 4.0.3 allows remote attackers to cause a denial of service (out-of-bounds read and crash) via a crafted TIFF image to the (1) checkInkNamesString function in tif_dir.c in the thumbnail tool, … CWE-125
Out-of-bounds Read
CVE-2014-8127 2024-11-21 11:18 2017-06-27 Show GitHub Exploit DB Packet Storm
285258 7.5 HIGH
Network
google android b/libs/gui/ISurfaceComposer.cpp in Android allows attackers to trigger a denial of service (null pointer dereference and process crash). CWE-476
 NULL Pointer Dereference
CVE-2014-7919 2024-11-21 11:18 2017-06-9 Show GitHub Exploit DB Packet Storm
285259 5.5 MEDIUM
Local
mongodb mongodb MongoDB on Red Hat Satellite 6 allows local users to bypass authentication by logging in with an empty password and delete information which can cause a Denial of Service. CWE-287
Improper Authentication
CVE-2014-8180 2024-11-21 11:18 2017-06-7 Show GitHub Exploit DB Packet Storm
285260 9.8 CRITICAL
Network
google android mediaserver in Android 4.0.3 through 5.x before 5.1 allows attackers to gain privileges. NOTE: This is a different vulnerability than CVE-2014-7920. CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-7921 2024-11-21 11:18 2017-04-14 Show GitHub Exploit DB Packet Storm