Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 30, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
245151 4.3 警告 dotCMS - dotCMS におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-3708 2012-06-26 16:02 2008-08-19 Show GitHub Exploit DB Packet Storm
245152 7.5 危険 echovnc - EchoVNC Linux の CLogger::WriteFormated 関数におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-3705 2012-06-26 16:02 2008-08-19 Show GitHub Exploit DB Packet Storm
245153 3.3 注意 amarok - AAmarok の magnatunebrowser/magnatunebrowser.cpp における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2008-3699 2012-06-26 16:02 2008-08-13 Show GitHub Exploit DB Packet Storm
245154 5 警告 flagship industries - Flagship Industries Ventrilo の decryption 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2008-3680 2012-06-26 16:02 2008-08-14 Show GitHub Exploit DB Packet Storm
245155 4.3 警告 damian hickey - Freeway の admin/search_links.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-3678 2012-06-26 16:02 2008-08-14 Show GitHub Exploit DB Packet Storm
245156 5 警告 gelatocms - Gelato の classes/imgsize.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-3675 2012-06-26 16:02 2008-08-14 Show GitHub Exploit DB Packet Storm
245157 5 警告 Linux
Acronis International GmbH
- Acronis True Image Echo Server における重要な情報を取得される脆弱性 CWE-310
暗号の問題
CVE-2008-3671 2012-06-26 16:02 2008-08-13 Show GitHub Exploit DB Packet Storm
245158 6.8 警告 articlefriendly - Article Friendly Pro の authordetail.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3670 2012-06-26 16:02 2008-08-13 Show GitHub Exploit DB Packet Storm
245159 5 警告 Bharat Mediratta - Gallery におけるクッキーをキャプチャされる脆弱性 CWE-310
暗号の問題
CVE-2008-3662 2012-06-26 16:02 2008-09-18 Show GitHub Exploit DB Packet Storm
245160 6.8 警告 articlefriendly - Article Friendly Standard の categorydetail.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3649 2012-06-26 16:02 2008-08-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 30, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
252831 5.5 MEDIUM
Local
icoutils_project
debian
redhat
icoutils
debian_linux
enterprise_linux_desktop
enterprise_linux_workstation
enterprise_linux_server
enterprise_linux_server_tus
enterprise_linux_server_aus
enterprise_linux_serve…
An issue was discovered in icoutils 0.31.1. A buffer overflow was observed in the "extract_icons" function in the "extract.c" source file. This issue can be triggered by processing a corrupted ico fi… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-6010 2024-11-21 12:28 2017-02-16 Show GitHub Exploit DB Packet Storm
252832 5.5 MEDIUM
Local
icoutils_project
debian
redhat
icoutils
debian_linux
enterprise_linux_desktop
enterprise_linux_workstation
enterprise_linux_server
enterprise_linux_server_tus
enterprise_linux_server_aus
enterprise_linux_serve…
An issue was discovered in icoutils 0.31.1. A buffer overflow was observed in the "decode_ne_resource_id" function in the "restable.c" source file. This is happening because the "len" parameter for m… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-6009 2024-11-21 12:28 2017-02-16 Show GitHub Exploit DB Packet Storm
252833 7.5 HIGH
Network
pcre pcre The compile_bracket_matchingpath function in pcre_jit_compile.c in PCRE through 8.x before revision 1680 (e.g., the PHP 7.1.1 bundled version) allows remote attackers to cause a denial of service (ou… CWE-125
Out-of-bounds Read
CVE-2017-6004 2024-11-21 12:28 2017-02-16 Show GitHub Exploit DB Packet Storm
252834 7.5 HIGH
Network
sap sap_kernel The SAP Message Server HTTP daemon in SAP KERNEL 7.21-7.49 allows remote attackers to cause a denial of service (memory consumption and process crash) via multiple msgserver/group?group= requests wit… CWE-772
 Missing Release of Resource after Effective Lifetime
CVE-2017-5997 2024-11-21 12:28 2017-02-16 Show GitHub Exploit DB Packet Storm
252835 8.2 HIGH
Local
python openpyxl Openpyxl 2.4.1 resolves external entities by default, which allows remote attackers to conduct XXE attacks via a crafted .xlsx document. CWE-611
XXE
CVE-2017-5992 2024-11-21 12:28 2017-02-16 Show GitHub Exploit DB Packet Storm
252836 5.5 MEDIUM
Local
artifex mupdf Heap-based buffer overflow in the fz_subsample_pixmap function in fitz/pixmap.c in MuPDF 1.10a allows remote attackers to cause a denial of service (out-of-bounds read and crash) via a crafted image. CWE-125
Out-of-bounds Read
CVE-2017-5896 2024-11-21 12:28 2017-02-16 Show GitHub Exploit DB Packet Storm
252837 7.5 HIGH
Network
artifex
debian
mupdf
debian_linux
An issue was discovered in Artifex MuPDF before 1912de5f08e90af1d9d0a9791f58ba3afdb9d465. The pdf_run_xobject function in pdf-op-run.c encounters a NULL pointer dereference during a Fitz fz_paint_pix… CWE-476
 NULL Pointer Dereference
CVE-2017-5991 2024-11-21 12:28 2017-02-15 Show GitHub Exploit DB Packet Storm
252838 6.1 MEDIUM
Network
phreesoft phreebookserp An issue was discovered in PhreeBooksERP before 2017-02-13. The vulnerability exists due to insufficient filtration of user-supplied data in the "form" HTTP GET parameter passed to the "PhreeBooksERP… CWE-79
Cross-site Scripting
CVE-2017-5990 2024-11-21 12:28 2017-02-15 Show GitHub Exploit DB Packet Storm
252839 7.5 HIGH
Network
linux linux_kernel The TCP stack in the Linux kernel 3.x does not properly implement a SYN cookie protection mechanism for the case of a fast network connection, which allows remote attackers to cause a denial of servi… CWE-400
 Uncontrolled Resource Consumption
CVE-2017-5972 2024-11-21 12:28 2017-02-14 Show GitHub Exploit DB Packet Storm
252840 7.5 HIGH
Network
linux linux_kernel The ipv4_pktinfo_prepare function in net/ipv4/ip_sockglue.c in the Linux kernel through 4.9.9 allows attackers to cause a denial of service (system crash) via (1) an application that makes crafted sy… CWE-476
 NULL Pointer Dereference
CVE-2017-5970 2024-11-21 12:28 2017-02-14 Show GitHub Exploit DB Packet Storm