Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 13, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3761 4.5 警告
Network
Hitachi Energy Relion 670 ファームウェア
Relion 650 ファームウェア
Hitachi Energy 製 Relion 670、650 および SAM600-IO Series におけるデータの信頼性確認が不十分な脆弱性 CWE-345
データの信頼性についての不十分な検証
CVE-2022-3864 2026-02-5 14:30 2023-03-10 Show GitHub Exploit DB Packet Storm
3762 7.5 重要
Network
Hitachi Energy Relion 670 ファームウェア
Relion 650 ファームウェア
Hitachi Energy 製 IEC 61850 MMS-Server におけるリソースの不適切なシャットダウンまたはリリースの脆弱性 CWE-404
リソースの不適切なシャットダウンおよびリリース
CVE-2022-3353 2026-02-5 14:29 2023-03-31 Show GitHub Exploit DB Packet Storm
3763 4.7 警告
Network
web2py web2py web2pyにおけるオープンリダイレクトの脆弱性 CWE-Other
その他
CVE-2026-25198 2026-02-5 14:03 2026-02-5 Show GitHub Exploit DB Packet Storm
3764 - - RISS SRL MOMA Seismic Station RISS SRL製MOMA Seismic Stationにおける重要な機能に対する認証の欠如の脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-1632 2026-02-5 12:32 2026-02-4 Show GitHub Exploit DB Packet Storm
3765 - - Avation Avation Light Engine Pro Avation Light Engine Proにおける重要な機能に対する認証の欠如の脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-1341 2026-02-5 12:32 2026-02-4 Show GitHub Exploit DB Packet Storm
3766 7.5 重要
Network
Shenzhen Tenda Technology Co.,Ltd. D151
D301
Shenzhen Tenda Technology Co.,Ltd.のD151等の複数製品における重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2021-47802 2026-02-4 18:42 2026-01-21 Show GitHub Exploit DB Packet Storm
3767 7.5 重要
Network
yodinfo Mini Mouse yodinfoのMini Mouseにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2021-47849 2026-02-4 18:42 2026-01-21 Show GitHub Exploit DB Packet Storm
3768 7.5 重要
Network
yodinfo Mini Mouse yodinfoのMini Mouseにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2021-47850 2026-02-4 18:42 2026-01-21 Show GitHub Exploit DB Packet Storm
3769 9.8 緊急
Network
yodinfo Mini Mouse yodinfoのMini MouseにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2021-47851 2026-02-4 18:42 2026-01-21 Show GitHub Exploit DB Packet Storm
3770 7.5 重要
Network
クアルコム MSM8608 ファームウェア
APQ8017 ファームウェア
qcn6224 ファームウェア
Snapdragon 210 Processor Firmware
fastconnect 7800 ファームウェア
snapdragon 425 mobile …
クアルコムのQualcomm 205 Mobile Platform ファームウェア等の複数製品におけるバッファオーバーリードの脆弱性 CWE-126
バッファオーバーリード
CVE-2024-23358 2026-02-4 18:42 2024-09-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 13, 2026, 5:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
348281 - sambar sambar_server search.dll Sambar ISAPI Search utility in Sambar Server 4.4 Beta 3 allows remote attackers to read arbitrary directories by specifying the directory in the query parameter. NVD-CWE-Other
CVE-2000-0835 2010-01-16 14:00 2000-11-14 Show GitHub Exploit DB Packet Storm
348282 - webtrends reporting_center WebTrends Reporting Center 4.0d allows remote attackers to determine the real path of the web server via a GET request to get_od_toc.pl with an empty Profile parameter, which leaks the pathname in an… CWE-200
Information Exposure
CVE-2002-0596 2010-01-16 14:00 2002-06-18 Show GitHub Exploit DB Packet Storm
348283 - tftpd32 tftpd32 tftpd32 2.50 and 2.50.2 allows remote attackers to read or write arbitrary files via a full pathname in GET and PUT requests. CWE-264
Permissions, Privileges, and Access Controls
CVE-2002-2353 2009-11-24 14:15 2002-12-31 Show GitHub Exploit DB Packet Storm
348284 - jean-jacques_sarton mtink Buffer overflow in MTink in the printer-filters-utils package allows local users to execute arbitrary code via a long HOME environment variable. NVD-CWE-Other
CVE-2005-4604 2009-11-12 14:51 2005-12-31 Show GitHub Exploit DB Packet Storm
348285 - openoffice openoffice OpenOffice.org 2.0 and earlier, when hyperlinks has been disabled, does not prevent the user from clicking the WWW-browser button in the Hyperlink dialog, which makes it easier for attackers to trick… NVD-CWE-Other
CVE-2005-4636 2009-11-12 14:51 2005-12-31 Show GitHub Exploit DB Packet Storm
348286 - dec dec_openvms Vulnerability in Monitor utility (SYS$SHARE:SPISHR.EXE) in VMS 5.0 through 5.4-2 allows local users to gain privileges. NVD-CWE-Other
CVE-1999-1395 2009-10-31 13:02 1992-11-17 Show GitHub Exploit DB Packet Storm
348287 - apple mac_os_x Mac OS X 10.3.9 and earlier allows users to install, create, and execute setuid/setgid scripts, contrary to the intended design, which may allow attackers to conduct unauthorized activities with esca… CWE-264
Permissions, Privileges, and Access Controls
CVE-2005-0970 2009-10-14 13:00 2005-05-2 Show GitHub Exploit DB Packet Storm
348288 - sips sips Unspecified vulnerability in Haakon Nilsen simple, integrated publishing system (SIPS) before 0.2.4 has an unknown impact and attack vectors, related to a "grave security fault." NVD-CWE-noinfo
CVE-2000-1241 2009-10-14 13:00 2000-12-31 Show GitHub Exploit DB Packet Storm
348289 - netgear fm114p NETGEAR FM114P allows remote attackers to bypass access restrictions for web sites via a URL that uses the IP address instead of the hostname. CWE-264
Permissions, Privileges, and Access Controls
CVE-2002-1877 2009-10-14 13:00 2002-12-31 Show GitHub Exploit DB Packet Storm
348290 - post_affiliate_pro post_affiliate_pro merchants/index.php in Post Affiliate Pro 2.0.4 and earlier, with magic_quotes_gpc disabled, allows remote attackers to include arbitrary local files via the md parameter, possibly due to a directory… NVD-CWE-Other
CVE-2005-3910 2009-10-9 13:33 2005-11-30 Show GitHub Exploit DB Packet Storm