Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
187691 4 警告 オラクル - Oracle Financial Services の Oracle FLEXCUBE Universal Banking における BASE の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2012-3141 2012-10-19 14:40 2012-10-16 Show GitHub Exploit DB Packet Storm
187692 4.4 警告 オラクル - Oracle Solaris 10 における inetd の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2012-5095 2012-10-19 11:47 2012-10-16 Show GitHub Exploit DB Packet Storm
187693 1.7 注意 オラクル - Oracle Solaris 10 および 11 における Kernel の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2012-3215 2012-10-19 11:47 2012-10-16 Show GitHub Exploit DB Packet Storm
187694 4.7 警告 オラクル - Oracle Solaris 10 および 11 における Kernel の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2012-3212 2012-10-19 11:46 2012-10-16 Show GitHub Exploit DB Packet Storm
187695 4.6 警告 オラクル - Oracle Solaris 10 および 11 における Kernel/System Call の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2012-3211 2012-10-19 11:45 2012-10-16 Show GitHub Exploit DB Packet Storm
187696 7.8 危険 オラクル - Oracle Solaris 11 における Kernel の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2012-3210 2012-10-19 11:45 2012-10-16 Show GitHub Exploit DB Packet Storm
187697 5.6 警告 オラクル - Oracle Solaris 10 および 11 における Logical Domain の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2012-3209 2012-10-19 11:44 2012-10-16 Show GitHub Exploit DB Packet Storm
187698 4.9 警告 オラクル - Oracle Solaris 10 および 11 における Kernel/RCTL の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2012-3208 2012-10-19 11:43 2012-10-16 Show GitHub Exploit DB Packet Storm
187699 4.9 警告 オラクル - Oracle Solaris における Kernel の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2012-3207 2012-10-19 11:42 2012-10-16 Show GitHub Exploit DB Packet Storm
187700 2.1 注意 オラクル - Oracle SPARC および Netra SPARC T シリーズサーバ用 Oracle Sun Products Suite SysFW における脆弱性 CWE-noinfo
情報不足
CVE-2012-3206 2012-10-19 11:41 2012-10-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 4, 2025, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
277791 - xwine xwine w_export.c in XWine 1.0.1 on Debian GNU/Linux sets insecure permissions (0666) for /etc/wine/config, which might allow local users to execute arbitrary commands or cause a denial of service by modify… CWE-264
Permissions, Privileges, and Access Controls
CVE-2008-0931 2008-09-6 06:36 2008-03-4 Show GitHub Exploit DB Packet Storm
277792 - xoops prayer_list_module SQL injection vulnerability in index.php in the Prayer List (prayerlist) 1.04 module for XOOPS allows remote attackers to execute arbitrary SQL commands via the cid parameter in a view action. CWE-89
SQL Injection
CVE-2008-0936 2008-09-6 06:36 2008-02-26 Show GitHub Exploit DB Packet Storm
277793 - tinyevent
xoops
tinyevent
tiny_event_module
SQL injection vulnerability in index.php in the Tiny Event (tinyevent) 1.01 module for XOOPS allows remote attackers to execute arbitrary SQL commands via the id parameter in a print action, a differ… CWE-89
SQL Injection
CVE-2008-0937 2008-09-6 06:36 2008-02-26 Show GitHub Exploit DB Packet Storm
277794 - webgui webgui Cross-site scripting (XSS) vulnerability in Plain Black WebGUI before 7.4.24 allows remote attackers to inject arbitrary web script or HTML when creating a username, a different vulnerability than CV… CWE-79
Cross-site Scripting
CVE-2008-0940 2008-09-6 06:36 2008-02-26 Show GitHub Exploit DB Packet Storm
277795 - matts_whois matts_whois Cross-site scripting (XSS) vulnerability in mwhois.php in Matt Wilson Matt's Whois (MWhois) allows remote attackers to inject arbitrary web script or HTML via the domain parameter. CWE-79
Cross-site Scripting
CVE-2008-1041 2008-09-6 06:36 2008-02-28 Show GitHub Exploit DB Packet Storm
277796 - intervideo windvd_media_center InterVideo IMC Server (aka IMCSvr.exe) and InterVideo Home Theater (aka IHT.exe) in InterVideo WinDVD Media Center 2.11.15.0 allow remote attackers to cause a denial of service (NULL dereference and … CWE-20
 Improper Input Validation 
CVE-2008-1062 2008-09-6 06:36 2008-02-29 Show GitHub Exploit DB Packet Storm
277797 - xoops xm_memberstats Multiple SQL injection vulnerabilities in index.php in the XM-Memberstats (xmmemberstats) 2.0e module for XOOPS allow remote attackers to execute arbitrary SQL commands via the (1) letter or (2) sort… CWE-89
SQL Injection
CVE-2008-1065 2008-09-6 06:36 2008-02-29 Show GitHub Exploit DB Packet Storm
277798 - maianscriptworld maian_cart Cross-site scripting (XSS) vulnerability in index.php in Maian Cart 1.1 allows remote attackers to inject arbitrary web script or HTML via the keywords parameter in a search command. NOTE: the prove… CWE-79
Cross-site Scripting
CVE-2008-1075 2008-09-6 06:36 2008-02-29 Show GitHub Exploit DB Packet Storm
277799 - vocera_communications vocera_communications_badge Cisco Unified Wireless IP Phone 7921, when using Protected Extensible Authentication Protocol (PEAP), does not validate server certificates, which allows remote wireless access points to steal hashed… CWE-200
Information Exposure
CVE-2008-1113 2008-09-6 06:36 2008-03-4 Show GitHub Exploit DB Packet Storm
277800 - drupal drupal Cross-site scripting (XSS) vulnerability in Drupal 6.0 allows remote authenticated users to inject arbitrary web script or HTML via titles in content edit forms. CWE-79
Cross-site Scripting
CVE-2008-1131 2008-09-6 06:36 2008-03-4 Show GitHub Exploit DB Packet Storm