Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
188631 7.5 危険 matthias kall - MK Wastebasket エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1010 2012-09-25 17:38 2010-03-19 Show GitHub Exploit DB Packet Storm
188632 7.5 危険 Joachim Ruhs - TYPO3 の Educator 拡張における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1009 2012-09-25 17:38 2010-03-19 Show GitHub Exploit DB Packet Storm
188633 4.3 警告 mischa heimann - TYPO3 用の YATSE エクステンションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1005 2012-09-25 17:38 2010-03-19 Show GitHub Exploit DB Packet Storm
188634 7.5 危険 mischa heimann - TYPO3 用の YATSE エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1004 2012-09-25 17:38 2010-03-19 Show GitHub Exploit DB Packet Storm
188635 5.8 警告 KDE project - KDE SC の KGet におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-1000 2012-09-25 17:38 2010-05-13 Show GitHub Exploit DB Packet Storm
188636 4.3 警告 Joomla Mo - Joomla! 用の CARTwebERP コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-0982 2012-09-25 17:38 2010-03-16 Show GitHub Exploit DB Packet Storm
188637 7.5 危険 mitchell sleeper - L4D Stats の player.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-0980 2012-09-25 17:38 2010-03-16 Show GitHub Exploit DB Packet Storm
188638 4.3 警告 obsession-design - ODIG の display.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-0979 2012-09-25 17:38 2010-03-16 Show GitHub Exploit DB Packet Storm
188639 5 警告 KMSoft - KMSoft Guestbook におけるデータベースをダウンロードされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-0978 2012-09-25 17:38 2010-03-16 Show GitHub Exploit DB Packet Storm
188640 7.5 危険 jorik berkepas - PhpMyLogon の phpmylogon.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-0970 2012-09-25 17:38 2010-03-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 11, 2025, 4:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
269961 - tiki tikiwiki_cms\/groupware Multiple SQL injection vulnerabilities in Tiki CMS/Groupware (TikiWiki) 1.8.1 and earlier allow remote attackers to execute arbitrary SQL commands via the sort_mode parameter in (1) tiki-usermenu.php… CWE-89
SQL Injection
CVE-2004-1925 2017-07-11 10:31 2004-04-12 Show GitHub Exploit DB Packet Storm
269962 - tiki tikiwiki_cms\/groupware Directory traversal vulnerability in the map feature (tiki-map.phtml) in Tiki CMS/Groupware (TikiWiki) 1.8.1 and earlier allows remote attackers to determine the existence of arbitrary files via .. (… CWE-22
Path Traversal
CVE-2004-1927 2017-07-11 10:31 2004-04-11 Show GitHub Exploit DB Packet Storm
269963 - tiki tikiwiki_cms\/groupware The image upload feature in Tiki CMS/Groupware (TikiWiki) 1.8.1 and earlier allows remote attackers to upload and possibly execute arbitrary files via the img/wiki_up URL. CWE-20
 Improper Input Validation 
CVE-2004-1928 2017-07-11 10:31 2004-04-12 Show GitHub Exploit DB Packet Storm
269964 - francisco_burzi php-nuke SQL injection vulnerability in the bblogin function in functions.php in PHP-Nuke 6.x through 7.2 allows remote attackers to bypass authentication and gain access by injecting base64-encoded SQL code … NVD-CWE-Other
CVE-2004-1929 2017-07-11 10:31 2004-04-13 Show GitHub Exploit DB Packet Storm
269965 - francisco_burzi php-nuke Cross-site scripting (XSS) vulnerability in the cookiedecode function in mainfile.php for PHP-Nuke 6.x through 7.2, when themes are used, allows remote attackers to inject arbitrary web script or HTM… NVD-CWE-Other
CVE-2004-1930 2017-07-11 10:31 2004-04-12 Show GitHub Exploit DB Packet Storm
269966 - francisco_burzi php-nuke SQL injection vulnerability in (1) auth.php and (2) admin.php in PHP-Nuke 6.x through 7.2 allows remote attackers to execute arbitrary SQL code and create an administrator account via base64-encoded … NVD-CWE-Other
CVE-2004-1932 2017-07-11 10:31 2004-04-12 Show GitHub Exploit DB Packet Storm
269967 - - - Citadel/UX 5.00 through 6.14 installs the database directory and files with world-read permissions, which could allow local users to bypass access controls and read unauthorized messages. NVD-CWE-Other
CVE-2004-1933 2017-07-11 10:31 2004-04-12 Show GitHub Exploit DB Packet Storm
269968 - isesam gemitel PHP remote file inclusion vulnerability in affich.php in Gemitel 3.50 allows remote attackers to execute arbitrary PHP code via the base parameter. NVD-CWE-Other
CVE-2004-1934 2017-07-11 10:31 2004-04-15 Show GitHub Exploit DB Packet Storm
269969 - sct_corporation campus_pipeline Cross-site scripting (XSS) vulnerability in SCT Campus Pipeline allows remote attackers to inject arbitrary web script or HTML via onload, onmouseover, and other Javascript events in an e-mail attach… NVD-CWE-Other
CVE-2004-1935 2017-07-11 10:31 2004-04-15 Show GitHub Exploit DB Packet Storm
269970 - zonelabs zonealarm ZoneAlarm Pro 4.5.538.001 and possibly other versions allows remote attackers to bypass e-mail protection via attachments whose names contain certain non-English characters. NVD-CWE-Other
CVE-2004-1936 2017-07-11 10:31 2004-04-14 Show GitHub Exploit DB Packet Storm