Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 4, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
252201 4.3 警告 CA Technologies - CA Service Desk および CMDB におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4119 2010-12-24 11:43 2008-09-24 Show GitHub Exploit DB Packet Storm
252202 10 危険 CA Technologies - CA ARCserve Backup for Laptops and Desktops の LGServer サービスにおける整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2008-3175 2010-12-24 11:42 2008-07-31 Show GitHub Exploit DB Packet Storm
252203 7.2 危険 CA Technologies - CA Host-Based Intrusion Prevention System の kmxfw.sys ドライバにおける権限を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2008-2926 2010-12-24 11:42 2008-08-12 Show GitHub Exploit DB Packet Storm
252204 10 危険 CA Technologies - CA eTrust Secure Content Manager の HTTP Gateway Service におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-2541 2010-12-24 11:41 2008-06-3 Show GitHub Exploit DB Packet Storm
252205 9.3 危険 CA Technologies - CA Internet Security Suite の UmxEventCli.dll におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-2511 2010-12-24 11:41 2008-06-2 Show GitHub Exploit DB Packet Storm
252206 7.5 危険 CA Technologies - CA BrightStor ARCServe Backup のサーバ内の xdr 関数におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-2242 2010-12-24 11:41 2008-05-19 Show GitHub Exploit DB Packet Storm
252207 10 危険 CA Technologies - CA BrightStor ARCServe Backup の caloggerd におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-2241 2010-12-24 11:40 2008-05-19 Show GitHub Exploit DB Packet Storm
252208 7.8 危険 CA Technologies - CA Secure Content Manager の eTrust Common Services Daemon におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2008-1984 2010-12-24 11:40 2008-04-27 Show GitHub Exploit DB Packet Storm
252209 10 危険 CA Technologies - 複数の CA 製品の NetBackup サービスにおける任意のコマンドを実行される脆弱性 CWE-noinfo
情報不足
CVE-2008-1329 2010-12-24 11:39 2008-04-11 Show GitHub Exploit DB Packet Storm
252210 9.3 危険 CA Technologies - 複数の CA 製品の LGServer サービスにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-1328 2010-12-24 11:39 2008-04-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 5, 2026, 4:51 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
279871 - drupal
debian
drupal
debian_linux
The expandArguments function in the database abstraction API in Drupal core 7.x before 7.32 does not properly construct prepared statements, which allows remote attackers to conduct SQL injection att… CWE-89
SQL Injection
CVE-2014-3704 2024-11-21 11:08 2014-10-16 Show GitHub Exploit DB Packet Storm
279872 - w1.fi
debian
canonical
hostapd
wpa_supplicant
debian_linux
ubuntu_linux
wpa_supplicant and hostapd 0.7.2 through 2.2, when running with certain configurations and using wpa_cli or hostapd_cli with action scripts, allows remote attackers to execute arbitrary commands via … CWE-20
 Improper Input Validation 
CVE-2014-3686 2024-11-21 11:08 2014-10-16 Show GitHub Exploit DB Packet Storm
279873 - redhat
jenkins
openshift
jenkins
Cross-site scripting (XSS) vulnerability in Jenkins before 1.583 and LTS before 1.565.3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2014-3681 2024-11-21 11:08 2014-10-15 Show GitHub Exploit DB Packet Storm
279874 - jenkins
redhat
jenkins
openshift
Directory traversal vulnerability in Jenkins before 1.583 and LTS before 1.565.3 allows remote authenticated users with the Overall/READ permission to read arbitrary files via unspecified vectors. CWE-22
Path Traversal
CVE-2014-3664 2024-11-21 11:08 2014-10-15 Show GitHub Exploit DB Packet Storm
279875 - scientificlinux luci Eval injection vulnerability in luci 0.26.0 allows remote authenticated users with certain permissions to execute arbitrary Python code via a crafted cluster configuration. CWE-94
Code Injection
CVE-2014-3593 2024-11-21 11:08 2014-10-15 Show GitHub Exploit DB Packet Storm
279876 3.4 LOW
Network
redhat
ibm
apple
mageia
novell
opensuse
fedoraproject
openssl
netbsd
debian
oracle
enterprise_linux_desktop_supplementary
enterprise_linux_desktop
enterprise_linux_workstation
enterprise_linux_server
enterprise_linux_server_supplementary
enterprise_linux_workstation_…
The SSL protocol 3.0, as used in OpenSSL through 1.0.1i and other products, uses nondeterministic CBC padding, which makes it easier for man-in-the-middle attackers to obtain cleartext data via a pad… CWE-310
Cryptographic Issues
CVE-2014-3566 2024-11-21 11:08 2014-10-15 Show GitHub Exploit DB Packet Storm
279877 - juniper junos
srx100
srx110
srx1400
srx210
srx220
srx240
srx3400
srx3600
srx550
srx5600
srx5800
srx650
The Juniper SRX Series devices with Junos 11.4 before 11.4R12-S4, 12.1X44 before 12.1X44-D40, 12.1X45 before 12.1X45-D30, 12.1X46 before 12.1X46-D25, and 12.1X47 before 12.1X47-D10, when an Applicati… CWE-20
 Improper Input Validation 
CVE-2014-3825 2024-11-21 11:08 2014-10-14 Show GitHub Exploit DB Packet Storm
279878 - juniper junos Juniper Junos OS 9.1 through 11.4 before 11.4R11, 12.1 before R10, 12.1X44 before D40, 12.1X46 before D30, 12.1X47 before D11 and 12.147-D15, 12.1X48 before D41 and D62, 12.2 before R8, 12.2X50 befor… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-3818 2024-11-21 11:08 2014-10-14 Show GitHub Exploit DB Packet Storm
279879 - jenkins-ci monitoring_plugin Cross-site scripting (XSS) vulnerability in the Monitoring plugin before 1.53.0 for Jenkins allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2014-3678 2024-11-21 11:08 2014-10-10 Show GitHub Exploit DB Packet Storm
279880 - apache
canonical
redhat
oracle
http_server
ubuntu_linux
enterprise_linux_desktop
enterprise_linux_server
enterprise_linux_server_tus
enterprise_linux_server_aus
enterprise_linux_eus
enterprise_manager_ops_cent…
The cache_merge_headers_out function in modules/cache/cache_util.c in the mod_cache module in the Apache HTTP Server before 2.4.11 allows remote attackers to cause a denial of service (NULL pointer d… CWE-476
 NULL Pointer Dereference
CVE-2014-3581 2024-11-21 11:08 2014-10-10 Show GitHub Exploit DB Packet Storm