Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
245151 4.3 警告 dotCMS - dotCMS におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-3708 2012-06-26 16:02 2008-08-19 Show GitHub Exploit DB Packet Storm
245152 7.5 危険 echovnc - EchoVNC Linux の CLogger::WriteFormated 関数におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-3705 2012-06-26 16:02 2008-08-19 Show GitHub Exploit DB Packet Storm
245153 3.3 注意 amarok - AAmarok の magnatunebrowser/magnatunebrowser.cpp における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2008-3699 2012-06-26 16:02 2008-08-13 Show GitHub Exploit DB Packet Storm
245154 5 警告 flagship industries - Flagship Industries Ventrilo の decryption 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2008-3680 2012-06-26 16:02 2008-08-14 Show GitHub Exploit DB Packet Storm
245155 4.3 警告 damian hickey - Freeway の admin/search_links.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-3678 2012-06-26 16:02 2008-08-14 Show GitHub Exploit DB Packet Storm
245156 5 警告 gelatocms - Gelato の classes/imgsize.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-3675 2012-06-26 16:02 2008-08-14 Show GitHub Exploit DB Packet Storm
245157 5 警告 Linux
Acronis International GmbH
- Acronis True Image Echo Server における重要な情報を取得される脆弱性 CWE-310
暗号の問題
CVE-2008-3671 2012-06-26 16:02 2008-08-13 Show GitHub Exploit DB Packet Storm
245158 6.8 警告 articlefriendly - Article Friendly Pro の authordetail.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3670 2012-06-26 16:02 2008-08-13 Show GitHub Exploit DB Packet Storm
245159 5 警告 Bharat Mediratta - Gallery におけるクッキーをキャプチャされる脆弱性 CWE-310
暗号の問題
CVE-2008-3662 2012-06-26 16:02 2008-09-18 Show GitHub Exploit DB Packet Storm
245160 6.8 警告 articlefriendly - Article Friendly Standard の categorydetail.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3649 2012-06-26 16:02 2008-08-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 29, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
252881 7.8 HIGH
Local
vmware vrealize_operations_for_published_applications
vrealize_operations_for_horizon
The VMware V4H and V4PA desktop agents (6.x before 6.5.1) contain a privilege escalation vulnerability. Successful exploitation of this issue could result in a low privileged windows user escalating … CWE-863
 Incorrect Authorization
CVE-2017-4946 2024-11-21 12:26 2018-01-5 Show GitHub Exploit DB Packet Storm
252882 5.5 MEDIUM
Local
vmware workstation
fusion
VMware Workstation (14.x and 12.x) and Fusion (10.x and 8.x) contain a guest access control vulnerability. This issue may allow program execution via Unity on locked Windows VMs. VMware Tools must be… NVD-CWE-noinfo
CVE-2017-4945 2024-11-21 12:26 2018-01-5 Show GitHub Exploit DB Packet Storm
252883 7.8 HIGH
Local
vmware vcenter_server VMware vCenter Server Appliance (vCSA) (6.5 before 6.5 U1d) contains a local privilege escalation vulnerability via the 'showlog' plugin. Successful exploitation of this issue could result in a low p… CWE-787
 Out-of-bounds Write
CVE-2017-4943 2024-11-21 12:26 2017-12-21 Show GitHub Exploit DB Packet Storm
252884 8.8 HIGH
Network
vmware fusion
workstation
esxi
VMware ESXi (6.0 before ESXi600-201711101-SG, 5.5 ESXi550-201709101-SG), Workstation (12.x before 12.5.8), and Fusion (8.x before 8.5.9) contain a vulnerability that could allow an authenticated VNC … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-4941 2024-11-21 12:26 2017-12-21 Show GitHub Exploit DB Packet Storm
252885 6.1 MEDIUM
Network
vmware esxi The ESXi Host Client in VMware ESXi (6.5 before ESXi650-201712103-SG, 5.5 before ESXi600-201711103-SG and 5.5 before ESXi550-201709102-SG) contains a vulnerability that may allow for stored cross-sit… CWE-79
Cross-site Scripting
CVE-2017-4940 2024-11-21 12:26 2017-12-21 Show GitHub Exploit DB Packet Storm
252886 8.8 HIGH
Network
vmware workstation_pro
esxi
fusion
VMware ESXi (6.5 before ESXi650-201710401-BG), Workstation (12.x before 12.5.8), and Fusion (8.x before 8.5.9) contain a vulnerability that could allow an authenticated VNC session to cause a heap ov… CWE-787
 Out-of-bounds Write
CVE-2017-4933 2024-11-21 12:26 2017-12-21 Show GitHub Exploit DB Packet Storm
252887 4.9 MEDIUM
Network
vmware airwatch_console VMware AirWatch Console (AWC) contains a Broken Access Control vulnerability. Successful exploitation of this issue could result in end-user device details being disclosed to an unauthorized administ… NVD-CWE-noinfo
CVE-2017-4942 2024-11-21 12:26 2017-12-13 Show GitHub Exploit DB Packet Storm
252888 5.9 MEDIUM
Network
openssl
debian
nodejs
openssl
debian_linux
node.js
There is an overflow bug in the AVX2 Montgomery multiplication procedure used in exponentiation with 1024-bit moduli. No EC algorithms are affected. Analysis suggests that attacks against RSA and DSA… CWE-200
Information Exposure
CVE-2017-3738 2024-11-21 12:26 2017-12-8 Show GitHub Exploit DB Packet Storm
252889 5.9 MEDIUM
Network
openssl
debian
openssl
debian_linux
OpenSSL 1.0.2 (starting from version 1.0.2b) introduced an "error state" mechanism. The intent was that if a fatal error occurred during a handshake then OpenSSL would move into the error state and w… CWE-125
CWE-787
Out-of-bounds Read
 Out-of-bounds Write
CVE-2017-3737 2024-11-21 12:26 2017-12-8 Show GitHub Exploit DB Packet Storm
252890 5.9 MEDIUM
Network
vmware nsx-v_edge The implementation of the OSPF protocol in VMware NSX-V Edge 6.2.x prior to 6.2.8 and NSX-V Edge 6.3.x prior to 6.3.3 doesn't correctly handle the link-state advertisement (LSA). A rogue LSA may expl… CWE-400
 Uncontrolled Resource Consumption
CVE-2017-4920 2024-11-21 12:26 2017-12-6 Show GitHub Exploit DB Packet Storm