Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 11, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
242291 7.5 危険 Activewebsoftwares - Active Web Helpdesk の default.aspx における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6380 2012-06-26 16:10 2009-03-2 Show GitHub Exploit DB Packet Storm
242292 5 警告 codefixer - CodefixerSoftware MailingListPro Free Edition における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-6374 2012-06-26 16:10 2009-03-2 Show GitHub Exploit DB Packet Storm
242293 7.5 危険 Chipmunk Scripts - Chipmunk Guestbook の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6368 2012-06-26 16:10 2009-03-2 Show GitHub Exploit DB Packet Storm
242294 7.5 危険 adserversolutions - Ad Server Solutions Affiliate Software Java の logon.jsp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6366 2012-06-26 16:10 2009-03-2 Show GitHub Exploit DB Packet Storm
242295 6.4 警告 DNN - DotNetNuke におけるユーザアカウントに付加ロールを追加される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-6399 2012-06-26 16:10 2008-12-24 Show GitHub Exploit DB Packet Storm
242296 6.9 警告 eric raymond - SNG の sng_regress における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2008-6398 2012-06-26 16:10 2008-08-24 Show GitHub Exploit DB Packet Storm
242297 7.5 危険 adserversolutions - Ad Server Solutions Ad Management Software Java の logon.jsp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6365 2012-06-26 16:10 2009-03-2 Show GitHub Exploit DB Packet Storm
242298 7.5 危険 adserversolutions - Ad Server Solutions Banner Exchange Solution Java の logon_process.jsp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6364 2012-06-26 16:10 2009-03-2 Show GitHub Exploit DB Packet Storm
242299 9.3 危険 capilano - DesignWorks Professional におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-6363 2012-06-26 16:10 2009-03-2 Show GitHub Exploit DB Packet Storm
242300 7.5 危険 ezonelink - Multiple Membership の sitepage.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6362 2012-06-26 16:10 2009-03-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 11, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
267511 5.9 MEDIUM
Network
openssl openssl An oracle protection mechanism in the get_client_master_key function in s2_srvr.c in the SSLv2 implementation in OpenSSL before 0.9.8zf, 1.0.0 before 1.0.0r, 1.0.1 before 1.0.1m, and 1.0.2 before 1.0… CWE-200
Information Exposure
CVE-2016-0704 2024-11-21 11:42 2016-03-2 Show GitHub Exploit DB Packet Storm
267512 5.9 MEDIUM
Network
openssl openssl The get_client_master_key function in s2_srvr.c in the SSLv2 implementation in OpenSSL before 0.9.8zf, 1.0.0 before 1.0.0r, 1.0.1 before 1.0.1m, and 1.0.2 before 1.0.2a accepts a nonzero CLIENT-MASTE… CWE-200
Information Exposure
CVE-2016-0703 2024-11-21 11:42 2016-03-2 Show GitHub Exploit DB Packet Storm
267513 5.9 MEDIUM
Network
openssl
pulsesecure
openssl
steel_belted_radius
client
The SSLv2 protocol, as used in OpenSSL before 1.0.1s and 1.0.2 before 1.0.2g and other products, requires a server to send a ServerVerify message before establishing that a client possesses certain p… CWE-310
CWE-200
Cryptographic Issues
Information Exposure
CVE-2016-0800 2024-11-21 11:42 2016-03-2 Show GitHub Exploit DB Packet Storm
267514 6.3 MEDIUM
Network
debian
apache
canonical
debian_linux
tomcat
ubuntu_linux
The setGlobalContext method in org/apache/naming/factory/ResourceLinkFactory.java in Apache Tomcat 7.x before 7.0.68, 8.x before 8.0.31, and 9.x before 9.0.0.M3 does not consider whether ResourceLink… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-0763 2024-11-21 11:42 2016-02-25 Show GitHub Exploit DB Packet Storm
267515 8.8 HIGH
Network
apache
debian
canonical
tomcat
debian_linux
ubuntu_linux
The session-persistence implementation in Apache Tomcat 6.x before 6.0.45, 7.x before 7.0.68, 8.x before 8.0.31, and 9.x before 9.0.0.M2 mishandles session attributes, which allows remote authenticat… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-0714 2024-11-21 11:42 2016-02-25 Show GitHub Exploit DB Packet Storm
267516 4.3 MEDIUM
Network
canonical
debian
apache
ubuntu_linux
debian_linux
tomcat
Apache Tomcat 6.x before 6.0.45, 7.x before 7.0.68, 8.x before 8.0.31, and 9.x before 9.0.0.M2 does not place org.apache.catalina.manager.StatusManagerServlet on the org/apache/catalina/core/Restrict… CWE-200
Information Exposure
CVE-2016-0706 2024-11-21 11:42 2016-02-25 Show GitHub Exploit DB Packet Storm
267517 6.1 MEDIUM
Network
fedoraproject
moodle
fedora
moodle
Cross-site scripting (XSS) vulnerability in the search_pagination function in course/classes/management_renderer.php in Moodle 2.8.x before 2.8.10, 2.9.x before 2.9.4, and 3.0.x before 3.0.2 allows r… CWE-79
Cross-site Scripting
CVE-2016-0725 2024-11-21 11:42 2016-02-22 Show GitHub Exploit DB Packet Storm
267518 4.3 MEDIUM
Network
moodle
fedoraproject
moodle
fedora
The (1) core_enrol_get_course_enrolment_methods and (2) enrol_self_get_instance_info web services in Moodle through 2.6.11, 2.7.x before 2.7.12, 2.8.x before 2.8.10, 2.9.x before 2.9.4, and 3.0.x bef… CWE-264
CWE-200
Permissions, Privileges, and Access Controls
Information Exposure
CVE-2016-0724 2024-11-21 11:42 2016-02-22 Show GitHub Exploit DB Packet Storm
267519 7.8 HIGH
Local
libreoffice
canonical
libreoffice
ubuntu_linux
LibreOffice before 5.0.5 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted LwpTocSuperLayout record in a LotusWordPro (l… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-0795 2024-11-21 11:42 2016-02-19 Show GitHub Exploit DB Packet Storm
267520 7.8 HIGH
Local
libreoffice
canonical
libreoffice
ubuntu_linux
The lwp filter in LibreOffice before 5.0.4 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted LotusWordPro (lwp) document. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-0794 2024-11-21 11:42 2016-02-19 Show GitHub Exploit DB Packet Storm