Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
246371 4.3 警告 cPanel - cPanel の WHM インターフェースにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2008-2071 2012-06-26 16:02 2008-05-12 Show GitHub Exploit DB Packet Storm
246372 4.3 警告 cPanel - cPanel の WHM インターフェースにおける任意の Web スクリプトを挿入される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2070 2012-06-26 16:02 2008-05-12 Show GitHub Exploit DB Packet Storm
246373 4.3 警告 Bitrix - Bitrix Site Manager の redirect.php におけるオープンリダイレクトの脆弱性 CWE-59
リンク解釈の問題
CVE-2008-2052 2012-06-26 16:02 2008-05-2 Show GitHub Exploit DB Packet Storm
246374 4.3 警告 e-post corporation - E-Post Mail Server の EPSTPOP3S.EXE における重要な情報が取得される脆弱性 CWE-200
情報漏えい
CVE-2008-2049 2012-06-26 16:02 2008-05-1 Show GitHub Exploit DB Packet Storm
246375 4.3 警告 ASP indir - Angelo-Emlak の hpz/admin/Default.asp におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2048 2012-06-26 16:02 2008-05-1 Show GitHub Exploit DB Packet Storm
246376 7.5 危険 ASP indir - Angelo-Emlak における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2047 2012-06-26 16:02 2008-05-1 Show GitHub Exploit DB Packet Storm
246377 4.3 警告 cPanel - cPanel におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2008-2043 2012-06-26 16:02 2008-05-1 Show GitHub Exploit DB Packet Storm
246378 10 危険 EGroupware - eGroupWare における詳細不明な脆弱性 CWE-94
コード・インジェクション
CVE-2008-2041 2012-06-26 16:02 2008-04-30 Show GitHub Exploit DB Packet Storm
246379 3.5 注意 editeurscripts - EditeurScripts EsContacts におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2037 2012-06-26 16:02 2008-04-30 Show GitHub Exploit DB Packet Storm
246380 7.5 危険 dream4 - dream4 Koobi Pro の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2036 2012-06-26 16:02 2008-04-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
349721 - denis_sbragion
peter_astrand
sredird
sercd
Buffer overflow in the HandleCPCCommand function of sercd before 2.3.1 and sredird 2.2.1 and earlier allows remote attackers to execute arbitrary code. NVD-CWE-Other
CVE-2004-2387 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
349722 - ibm aix rexecd for AIX 4.3.3 does not properly use a local copy of the pwd structure when calling getpwnam, which may cause the structure to be overwritten by the authenticate function and assign privileges … NVD-CWE-Other
CVE-2004-2388 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
349723 - jabberstudio jabber_gadu-gadu_transport Unknown vulnerability in Jabber Gadu-Gadu Transport (a.k.a. jabber-gg-transport) 2.0.x before 2.0.8 allows remote attackers to cause a denial of service (infinite loop) via user re-registration. NVD-CWE-Other
CVE-2004-2389 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
349724 - jabberstudio jabber_gadu-gadu_transport The roster import functionality in Jabber Gadu-Gadu Transport (a.k.a. jabber-gg-transport) 2.0.x before 2.0.8, when using libgadu 1.0 and later, allows attackers to cause a denial of service via unkn… NVD-CWE-Other
CVE-2004-2390 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
349725 - jabberstudio jabber_gadu-gadu_transport Jabber Gadu-Gadu Transport (a.k.a. jabber-gg-transport) 2.0.x before 2.0.8 allows remote attackers to cause a denial of service a message with an empty <priority/> tag. NVD-CWE-Other
CVE-2004-2391 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
349726 - mandrakesoft mandrake_linux
mandrake_linux_corporate_server
libuser 0.51.7 allows attackers to cause a denial of service (crash or disk consumption) via unknown attack vectors, related to read failures and other bugs. NVD-CWE-Other
CVE-2004-2392 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
349727 - sun jsse Java Secure Socket Extension (JSSE) 1.0.3 through 1.0.3_2 does not properly validate the certificate chain of a client or server, which allows remote attackers to falsely authenticate peers for SSL/T… NVD-CWE-Other
CVE-2004-2393 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
349728 - mandrakesoft mandrake_multi_network_firewall
mandrake_linux
mandrake_linux_corporate_server
Off-by-one error in passwd 0.68 and earlier, when using the --stdin option, causes passwd to use the first 78 characters of a password instead of the first 79, which results in a small reduction of t… NVD-CWE-Other
CVE-2004-2394 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
349729 - mandrakesoft mandrake_multi_network_firewall
mandrake_linux
mandrake_linux_corporate_server
Memory leak in passwd 0.68 allows local users to cause a denial of service (memory consumption) via a large number of failed read attempts from the password buffer. NVD-CWE-Other
CVE-2004-2395 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
349730 - - - passwd 0.68 does not check the return code for the pam_start function, which has unknown impact and attack vectors that may prevent "safe and proper operation" of PAM. NVD-CWE-Other
CVE-2004-2396 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm