Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 14, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
252341 2.6 注意 Mozilla Foundation - Mozilla Firefox における Content-Length ヘッダの処理に関する脆弱性 CWE-DesignError
- 2011-07-28 12:02 2011-07-28 Show GitHub Exploit DB Packet Storm
252342 6.4 警告 オラクル - Oracle Database Server および Oracle Enterprise Manager Grid Control における脆弱性 CWE-noinfo
情報不足
CVE-2011-2244 2011-07-28 10:53 2011-07-19 Show GitHub Exploit DB Packet Storm
252343 6.8 警告 オラクル - Oracle Database Server の Content Management コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2011-0882 2011-07-28 10:53 2011-07-19 Show GitHub Exploit DB Packet Storm
252344 4.3 警告 オラクル - Oracle Database Server および Oracle Enterprise Manager Grid Control における脆弱性 CWE-noinfo
情報不足
CVE-2011-0881 2011-07-28 10:52 2011-07-19 Show GitHub Exploit DB Packet Storm
252345 4.3 警告 オラクル - Oracle Database Server および Oracle Enterprise Manager Grid Control における脆弱性 CWE-noinfo
情報不足
CVE-2011-0879 2011-07-28 10:51 2011-07-19 Show GitHub Exploit DB Packet Storm
252346 4.3 警告 オラクル - Oracle Database Server および Oracle Enterprise Manager Grid Control における脆弱性 CWE-noinfo
情報不足
CVE-2011-0877 2011-07-28 10:50 2011-07-19 Show GitHub Exploit DB Packet Storm
252347 4.3 警告 オラクル - Oracle Database Server および Oracle Enterprise Manager Grid Control における脆弱性 CWE-noinfo
情報不足
CVE-2011-0876 2011-07-28 10:37 2011-07-19 Show GitHub Exploit DB Packet Storm
252348 5.5 警告 オラクル - Oracle Database Server の EMCTL コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2011-0875 2011-07-28 10:36 2011-07-19 Show GitHub Exploit DB Packet Storm
252349 6.8 警告 オラクル - Oracle Database Server および Oracle Enterprise Manager Grid Control における脆弱性 CWE-noinfo
情報不足
CVE-2011-0870 2011-07-28 10:35 2011-07-19 Show GitHub Exploit DB Packet Storm
252350 6.8 警告 オラクル - Oracle Database Server および Oracle Enterprise Manager Grid Control における脆弱性 CWE-noinfo
情報不足
CVE-2011-0852 2011-07-28 10:33 2011-07-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
247581 6.1 MEDIUM
Network
xoops xoops XOOPS Core 2.5.8.1 has XSS due to unescaped HTML output of an Install DB failure error message in page_dbsettings.php. CWE-79
Cross-site Scripting
CVE-2017-7944 2024-11-21 12:33 2017-04-24 Show GitHub Exploit DB Packet Storm
247582 6.5 MEDIUM
Network
concretecms concrete_cms concrete5 8.1.0 has CSRF in Thumbnail Editor in the File Manager, which allows remote attackers to disable the entire installation by merely tricking an admin into viewing a malicious page involving … CWE-352
 Origin Validation Error
CVE-2017-8082 2024-11-21 12:33 2017-04-24 Show GitHub Exploit DB Packet Storm
247583 5.3 MEDIUM
Network
tp-link tl-sg108e_firmware On the TP-Link TL-SG108E 1.0, the upgrade process can be requested remotely without authentication (httpupg.cgi with a parameter called cmd). This affects the 1.1.2 Build 20141017 Rel.50749 firmware. CWE-287
Improper Authentication
CVE-2017-8078 2024-11-21 12:33 2017-04-24 Show GitHub Exploit DB Packet Storm
247584 7.5 HIGH
Network
tp-link tl-sg108e_firmware On the TP-Link TL-SG108E 1.0, there is a hard-coded ciphering key (a long string beginning with Ei2HNryt). This affects the 1.1.2 Build 20141017 Rel.50749 firmware. CWE-798
 Use of Hard-coded Credentials
CVE-2017-8077 2024-11-21 12:33 2017-04-24 Show GitHub Exploit DB Packet Storm
247585 9.8 CRITICAL
Network
tp-link tl-sg108e_firmware On the TP-Link TL-SG108E 1.0, admin network communications are RC4 encoded, even though RC4 is deprecated. This affects the 1.1.2 Build 20141017 Rel.50749 firmware. CWE-326
Inadequate Encryption Strength
CVE-2017-8076 2024-11-21 12:33 2017-04-24 Show GitHub Exploit DB Packet Storm
247586 9.8 CRITICAL
Network
tp-link tl-sg108e_firmware On the TP-Link TL-SG108E 1.0, a remote attacker could retrieve credentials from "Switch Info" log lines where passwords are in cleartext. This affects the 1.1.2 Build 20141017 Rel.50749 firmware. CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2017-8075 2024-11-21 12:33 2017-04-24 Show GitHub Exploit DB Packet Storm
247587 9.8 CRITICAL
Network
tp-link tl-sg108e_firmware On the TP-Link TL-SG108E 1.0, a remote attacker could retrieve credentials from "SEND data" log lines where passwords are encoded in hexadecimal. This affects the 1.1.2 Build 20141017 Rel.50749 firmw… CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2017-8074 2024-11-21 12:33 2017-04-24 Show GitHub Exploit DB Packet Storm
247588 7.5 HIGH
Network
weechat
debian
weechat
debian_linux
WeeChat before 1.7.1 allows a remote crash by sending a filename via DCC to the IRC plugin. This occurs in the irc_ctcp_dcc_filename_without_quotes function during quote removal, with a buffer overfl… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-8073 2024-11-21 12:33 2017-04-24 Show GitHub Exploit DB Packet Storm
247589 7.8 HIGH
Local
linux linux_kernel The cp2112_gpio_direction_input function in drivers/hid/hid-cp2112.c in the Linux kernel 4.9.x before 4.9.9 does not have the expected EIO error status for a zero-length report, which allows local us… CWE-388
 7PK - Errors
CVE-2017-8072 2024-11-21 12:33 2017-04-23 Show GitHub Exploit DB Packet Storm
247590 5.5 MEDIUM
Local
linux linux_kernel drivers/hid/hid-cp2112.c in the Linux kernel 4.9.x before 4.9.9 uses a spinlock without considering that sleeping is possible in a USB HID request callback, which allows local users to cause a denial… CWE-404
 Improper Resource Shutdown or Release
CVE-2017-8071 2024-11-21 12:33 2017-04-23 Show GitHub Exploit DB Packet Storm