Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 26, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
251301 4.3 警告 Dotclear - Dotclear におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-1039 2012-03-22 16:18 2012-03-19 Show GitHub Exploit DB Packet Storm
251302 4.3 警告 Oxwall - OxWall におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-0872 2012-03-22 16:17 2012-03-19 Show GitHub Exploit DB Packet Storm
251303 4.3 警告 SocialCMS - SocialCMS の ajax/commentajax.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-1781 2012-03-22 16:15 2012-03-19 Show GitHub Exploit DB Packet Storm
251304 7.5 危険 SocialCMS - SocialCMS の search.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-1780 2012-03-22 16:14 2012-03-19 Show GitHub Exploit DB Packet Storm
251305 9.3 危険 マイクロソフト - Microsoft Windows のリモートデスクトッププロトコルの実装における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2012-0002 2012-03-22 13:40 2012-03-13 Show GitHub Exploit DB Packet Storm
251306 9.3 危険 VideoLAN - VideoLAN VLC media player におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-1776 2012-03-21 16:50 2012-03-12 Show GitHub Exploit DB Packet Storm
251307 9.3 危険 VideoLAN - VideoLAN VLC media player におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-1775 2012-03-21 16:50 2012-03-12 Show GitHub Exploit DB Packet Storm
251308 10 危険 Gretech - Gretech GOM Media Player の Open URL 機能における脆弱性 CWE-noinfo
情報不足
CVE-2012-1774 2012-03-21 16:38 2012-03-18 Show GitHub Exploit DB Packet Storm
251309 9.3 危険 Gretech - Gretech GOM Media Player における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2012-1264 2012-03-21 16:37 2012-03-18 Show GitHub Exploit DB Packet Storm
251310 6.8 警告 シマンテック - Symantec Altiris WISE Package Studio における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-0293 2012-03-21 16:35 2012-03-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
255441 9.8 CRITICAL
Network
vbulletin vbulletin In vBulletin through 5.3.x, there is an unauthenticated deserialization vulnerability that leads to arbitrary file deletion and, under certain circumstances, code execution, because of unsafe usage o… CWE-502
 Deserialization of Untrusted Data
CVE-2017-17672 2024-11-21 12:18 2017-12-14 Show GitHub Exploit DB Packet Storm
255442 9.8 CRITICAL
Network
vbulletin vbulletin vBulletin through 5.3.x on Windows allows remote PHP code execution because a require_once call is reachable with an unauthenticated request that can include directory traversal sequences to specify … CWE-22
Path Traversal
CVE-2017-17671 2024-11-21 12:18 2017-12-14 Show GitHub Exploit DB Packet Storm
255443 5.5 MEDIUM
Local
exiv2
canonical
debian
exiv2
ubuntu_linux
debian_linux
There is a heap-based buffer over-read in the Exiv2::Internal::PngChunk::keyTXTChunk function of pngchunk_int.cpp in Exiv2 0.26. A crafted PNG file will lead to a remote denial of service attack. CWE-125
Out-of-bounds Read
CVE-2017-17669 2024-11-21 12:18 2017-12-14 Show GitHub Exploit DB Packet Storm
255444 8.8 HIGH
Network
octopus octopus_deploy In Octopus Deploy before 4.1.3, the machine update process doesn't check that the user has access to all environments. This allows an access-control bypass because the set of environments to which a … CWE-862
 Missing Authorization
CVE-2017-17665 2024-11-21 12:18 2017-12-14 Show GitHub Exploit DB Packet Storm
255445 5.9 MEDIUM
Network
digium asterisk
certified_asterisk
A Remote Crash issue was discovered in Asterisk Open Source 13.x before 13.18.4, 14.x before 14.7.4, and 15.x before 15.1.4 and Certified Asterisk before 13.13-cert9. Certain compound RTCP packets ca… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-17664 2024-11-21 12:18 2017-12-14 Show GitHub Exploit DB Packet Storm
255446 9.8 CRITICAL
Network
entrepreneur_dating_script_project entrepreneur_dating_script Entrepreneur Dating Script 2.0.1 has SQL Injection via the search_result.php marital, gender, country, or profileid parameter. CWE-89
SQL Injection
CVE-2017-17648 2024-11-21 12:18 2017-12-14 Show GitHub Exploit DB Packet Storm
255447 5.9 MEDIUM
Network
citrix application_delivery_controller_firmware
netscaler_gateway_firmware
Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway 10.5 before build 67.13, 11.0 before build 71.22, 11.1 before build 56.19, and 12.0 before build 53.22 allow remote attack… CWE-200
Information Exposure
CVE-2017-17549 2024-11-21 12:18 2017-12-14 Show GitHub Exploit DB Packet Storm
255448 7.5 HIGH
Network
mikrotik routerboard MikroTik RouterBOARD v6.39.2 and v6.40.5 allows an unauthenticated remote attacker to cause a denial of service by connecting to TCP port 53 and sending data that begins with many '\0' characters, po… CWE-20
 Improper Input Validation 
CVE-2017-17537 2024-11-21 12:18 2017-12-14 Show GitHub Exploit DB Packet Storm
255449 9.8 CRITICAL
Network
basic_job_site_script_project basic_job_site_script Basic Job Site Script 2.0.5 has SQL Injection via the keyword parameter to /job. CWE-89
SQL Injection
CVE-2017-17642 2024-11-21 12:18 2017-12-13 Show GitHub Exploit DB Packet Storm
255450 9.8 CRITICAL
Network
resume_clone_script_project resume_clone_script Resume Clone Script 2.0.5 has SQL Injection via the preview.php id parameter. CWE-89
SQL Injection
CVE-2017-17641 2024-11-21 12:18 2017-12-13 Show GitHub Exploit DB Packet Storm