Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
242501 9.3 危険 macrovision - Macrovision FLEXnet Connect 用の isusweb.dll におけるバッファオーバーフローの脆弱性 - CVE-2007-0321 2012-09-25 16:47 2007-02-22 Show GitHub Exploit DB Packet Storm
242502 9.3 危険 macrovision - Macrovision InstallFromTheWeb 用の ActiveX コントロールにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-0320 2012-09-25 16:47 2007-02-22 Show GitHub Exploit DB Packet Storm
242503 7.5 危険 okulsistem okul web - Okul Web Otomasyon Sistemi の etkinlikbak.asp における SQL インジェクションの脆弱性 - CVE-2007-0305 2012-09-25 16:47 2007-01-17 Show GitHub Exploit DB Packet Storm
242504 7.5 危険 mint - MiNT Haber Sistemi の duyuru.asp における SQL インジェクションの脆弱性 - CVE-2007-0304 2012-09-25 16:47 2007-01-17 Show GitHub Exploit DB Packet Storm
242505 10 危険 pancake.org - Zina における脆弱性 - CVE-2007-0303 2012-09-25 16:47 2007-01-17 Show GitHub Exploit DB Packet Storm
242506 6.8 警告 InstantASP Ltd. - InstantASP におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-0302 2012-09-25 16:47 2007-01-17 Show GitHub Exploit DB Packet Storm
242507 4 警告 オラクル - Oracle PeopleSoft Enterprise および JD Edwards EnterpriseOne における脆弱性 - CVE-2007-0297 2012-09-25 16:47 2007-01-16 Show GitHub Exploit DB Packet Storm
242508 2.1 注意 オラクル - Oracle PeopleSoft Enterprise および JD Edwards EnterpriseOne における脆弱性 - CVE-2007-0296 2012-09-25 16:47 2007-01-16 Show GitHub Exploit DB Packet Storm
242509 7.8 危険 オラクル - Oracle PeopleSoft Enterprise および JD Edwards EnterpriseOne における脆弱性 - CVE-2007-0295 2012-09-25 16:47 2007-01-16 Show GitHub Exploit DB Packet Storm
242510 1.7 注意 オラクル - Oracle Enterprise Manager における脆弱性 - CVE-2007-0294 2012-09-25 16:47 2007-01-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 21, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
285551 6.5 MEDIUM
Network
libdwarf_project libdwarf Use-after-free vulnerability in dwarfdump in libdwarf 20130126 through 20140805 might allow remote attackers to cause a denial of service (program crash) via a crafted ELF file. CWE-416
 Use After Free
CVE-2014-9482 2024-11-21 11:20 2018-01-17 Show GitHub Exploit DB Packet Storm
285552 8.8 HIGH
Network
dasanzhone znid_2426a_firmware The web administrative portal in Zhone zNID GPON 2426A before S3.0.501 allows remote attackers to execute arbitrary commands via shell metacharacters in the ipAddr parameter to zhnping.cmd. CWE-77
Command Injection
CVE-2014-9118 2024-11-21 11:20 2017-10-18 Show GitHub Exploit DB Packet Storm
285553 9.8 CRITICAL
Network
fiyo fiyo_cms Fiyo CMS 2.0.1.8 allows remote attackers to bypass intended access restrictions and execute the (1) "Install and Update" or (2) Backup super administrator function via the view parameter in a direct … CWE-284
Improper Access Control
CVE-2014-9148 2024-11-21 11:20 2017-10-17 Show GitHub Exploit DB Packet Storm
285554 7.5 HIGH
Network
fiyo fiyo_cms Fiyo CMS 2.0.1.8 allows remote attackers to obtain sensitive information via a direct request to the database backup file in .backup/. CWE-200
Information Exposure
CVE-2014-9147 2024-11-21 11:20 2017-10-17 Show GitHub Exploit DB Packet Storm
285555 6.5 MEDIUM
Network
libjpeg-turbo
fedoraproject
canonical
libjpeg-turbo
fedora
ubuntu_linux
libjpeg-turbo before 1.3.1 allows remote attackers to cause a denial of service (crash) via a crafted JPEG file, related to the Exif marker. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-9092 2024-11-21 11:20 2017-10-10 Show GitHub Exploit DB Packet Storm
285556 9.8 CRITICAL
Network
mpfr gnu_mpfr Buffer overflow in the mpfr_strtofr function in GNU MPFR before 3.1.2-p11 allows context-dependent attackers to have unspecified impact via vectors related to incorrect documentation for mpn_set_str. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-9474 2024-11-21 11:20 2017-10-10 Show GitHub Exploit DB Packet Storm
285557 5.4 MEDIUM
Network
openkm openkm Cross-site scripting (XSS) vulnerability in OpenKM before 6.4.19 allows remote authenticated users to inject arbitrary web script or HTML via the Tasks parameter. CWE-79
Cross-site Scripting
CVE-2014-8957 2024-11-21 11:20 2017-10-7 Show GitHub Exploit DB Packet Storm
285558 8.8 HIGH
Network
vbseo vbseo functions_vbseo_hook.php in the VBSEO module for vBulletin allows remote authenticated users to execute arbitrary code via the HTTP Referer header to visitormessage.php. CWE-94
Code Injection
CVE-2014-9463 2024-11-21 11:20 2017-09-16 Show GitHub Exploit DB Packet Storm
285559 7.5 HIGH
Network
gnu emacs Emacs 24.4 allows remote attackers to bypass security restrictions. CWE-200
Information Exposure
CVE-2014-9483 2024-11-21 11:20 2017-08-29 Show GitHub Exploit DB Packet Storm
285560 6.1 MEDIUM
Network
vbulletin vbulletin Cross-site scripting (XSS) vulnerability in vBulletin 3.5.4, 3.6.0, 3.6.7, 3.8.7, 4.2.2, 5.0.5, and 5.1.3. CWE-79
Cross-site Scripting
CVE-2014-9469 2024-11-21 11:20 2017-08-29 Show GitHub Exploit DB Packet Storm