Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
245601 7.5 危険 getfireant - FireAnt の index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-2896 2012-06-26 16:02 2008-06-27 Show GitHub Exploit DB Packet Storm
245602 7.5 危険 aprox - AproxEngine の index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-2895 2012-06-26 16:02 2008-06-27 Show GitHub Exploit DB Packet Storm
245603 7.5 危険 ajhyip - AJ Square aj-hyip の news.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2893 2012-06-26 16:02 2008-06-27 Show GitHub Exploit DB Packet Storm
245604 7.5 危険 feellove
Joomla!
- Joomla! 用 EXP Shop コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2892 2012-06-26 16:02 2008-06-27 Show GitHub Exploit DB Packet Storm
245605 7.5 危険 emusoft - eMuSOFT emuCMS の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2891 2012-06-26 16:02 2008-06-27 Show GitHub Exploit DB Packet Storm
245606 6.8 警告 chaozzatwork - chaozz@work FubarForum の index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-2887 2012-06-26 16:02 2008-06-27 Show GitHub Exploit DB Packet Storm
245607 7.5 危険 ASP indir - sHibby sHop の upgrade.asp におけるファイルを更新される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-2882 2012-06-26 16:02 2008-06-26 Show GitHub Exploit DB Packet Storm
245608 6.4 警告 benjacms - Benja CMS におけるメニューを追加または削除される脆弱性 CWE-287
不適切な認証
CVE-2008-2879 2012-06-26 16:02 2008-06-26 Show GitHub Exploit DB Packet Storm
245609 6.8 警告 cmsworks - cmsWorks における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-2877 2012-06-26 16:02 2008-06-26 Show GitHub Exploit DB Packet Storm
245610 5 警告 ASP indir - sHibby sHop におけるデータベースをダウンロードされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-2873 2012-06-26 16:02 2008-06-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 4, 2026, 4:17 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
252841 8.8 HIGH
Network
cisco elastic_services_controller A vulnerability in the ConfD CLI of Cisco Elastic Services Controllers could allow an authenticated, remote attacker to run arbitrary commands as the Linux tomcat user on an affected system. More Inf… CWE-78
OS Command 
CVE-2017-6682 2024-11-21 12:30 2017-06-13 Show GitHub Exploit DB Packet Storm
252842 7.5 HIGH
Network
cisco ultra_services_framework A vulnerability in the AutoVNF VNFStagingView class of Cisco Ultra Services Framework could allow an unauthenticated, remote attacker to execute a relative path traversal attack, enabling an attacker… CWE-22
CWE-200
Path Traversal
Information Exposure
CVE-2017-6681 2024-11-21 12:30 2017-06-13 Show GitHub Exploit DB Packet Storm
252843 7.5 HIGH
Network
cisco ultra_services_framework A vulnerability in the AutoVNF logging function of Cisco Ultra Services Framework could allow an unauthenticated, remote attacker to create arbitrary directories on the affected system. More Informat… CWE-20
 Improper Input Validation 
CVE-2017-6680 2024-11-21 12:30 2017-06-13 Show GitHub Exploit DB Packet Storm
252844 6.1 MEDIUM
Network
cisco industrial_network_director A vulnerability in the web interface of Cisco Industrial Network Director could allow an unauthenticated, remote attacker to conduct a reflected cross-site scripting (XSS) attack against an affected … CWE-79
Cross-site Scripting
CVE-2017-6675 2024-11-21 12:30 2017-06-13 Show GitHub Exploit DB Packet Storm
252845 7.5 HIGH
Network
cisco firesight_system A vulnerability in the feature-license management functionality of Cisco Firepower System Software could allow an unauthenticated, remote attacker to bypass URL filters that have been configured for … CWE-20
 Improper Input Validation 
CVE-2017-6674 2024-11-21 12:30 2017-06-13 Show GitHub Exploit DB Packet Storm
252846 6.5 MEDIUM
Network
cisco firepower_management_center A vulnerability in Cisco Firepower Management Center could allow an authenticated, remote attacker to obtain user information. An attacker could use this information to perform reconnaissance. More I… CWE-200
Information Exposure
CVE-2017-6673 2024-11-21 12:30 2017-06-13 Show GitHub Exploit DB Packet Storm
252847 7.5 HIGH
Network
cisco email_security_appliance_firmware A vulnerability in the email message scanning of Cisco AsyncOS Software for Cisco Email Security Appliance (ESA) could allow an unauthenticated, remote attacker to bypass configured filters on the de… CWE-20
 Improper Input Validation 
CVE-2017-6671 2024-11-21 12:30 2017-06-13 Show GitHub Exploit DB Packet Storm
252848 6.1 MEDIUM
Network
cisco unified_communications_domain_manager A vulnerability in the web-based GUI of Cisco Unified Communications Domain Manager could allow an unauthenticated, remote attacker to redirect a user to a malicious web page, aka an Open Redirect is… CWE-601
Open Redirect
CVE-2017-6670 2024-11-21 12:30 2017-06-13 Show GitHub Exploit DB Packet Storm
252849 4.9 MEDIUM
Network
cisco unified_communications_domain_manager Vulnerabilities in the web-based GUI of Cisco Unified Communications Domain Manager (CUCDM) could allow an authenticated, remote attacker to impact the confidentiality of the system by executing arbi… CWE-89
SQL Injection
CVE-2017-6668 2024-11-21 12:30 2017-06-13 Show GitHub Exploit DB Packet Storm
252850 9.8 CRITICAL
Network
cisco context_service_development_kit A vulnerability in the update process for the dynamic JAR file of the Cisco Context Service software development kit (SDK) could allow an unauthenticated, remote attacker to execute arbitrary code on… CWE-20
 Improper Input Validation 
CVE-2017-6667 2024-11-21 12:30 2017-06-13 Show GitHub Exploit DB Packet Storm