Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 3, 2025, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
189071 4.3 警告 LIGHTTPD - lighttpd の connections.c におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-3948 2012-09-25 16:47 2007-07-23 Show GitHub Exploit DB Packet Storm
189072 5.8 警告 LIGHTTPD - lighttpd の request.c におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-3947 2012-09-25 16:47 2007-07-23 Show GitHub Exploit DB Packet Storm
189073 6.4 警告 LIGHTTPD - lighttpd の http_auth.c におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-3946 2012-09-25 16:47 2007-07-23 Show GitHub Exploit DB Packet Storm
189074 4.3 警告 jasmine - Jasmine CMS の profile.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3941 2012-09-25 16:47 2007-07-20 Show GitHub Exploit DB Packet Storm
189075 7.5 危険 MAXDev - MD-Pro の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-3938 2012-09-25 16:47 2007-07-20 Show GitHub Exploit DB Packet Storm
189076 7.5 危険 Joomla! - Joomla! 用の Expose RC35 における任意の PHP コードを実行される脆弱性 - CVE-2007-3932 2012-09-25 16:47 2007-07-20 Show GitHub Exploit DB Packet Storm
189077 4.3 警告 Andreas Gohr
マイクロソフト
- Microsoft Internet Explorer などにおけるクロスサイトスクリプティング攻撃を実行される脆弱性 - CVE-2007-3930 2012-09-25 16:47 2007-07-20 Show GitHub Exploit DB Packet Storm
189078 9.3 危険 Opera Software ASA - Opera の BitTorrent サポートにおける任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2007-3929 2012-09-25 16:47 2007-07-20 Show GitHub Exploit DB Packet Storm
189079 10 危険 Ipswitch, Inc. - Ipswitch IMail Server 2006 におけるバッファオーバーフローの脆弱性 - CVE-2007-3927 2012-09-25 16:47 2007-07-20 Show GitHub Exploit DB Packet Storm
189080 7.8 危険 Ipswitch, Inc. - Ipswitch IMail Server 2006 におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-3926 2012-09-25 16:47 2007-07-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 4, 2025, 4:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
271551 - sun java_system_identity_manager Sun Java System Identity Manager (IdM) 7.0 through 8.0 responds differently to failed use of the Forgot Password feature depending on whether the user account exists, which allows remote attackers to… CWE-255
Credentials Management
CVE-2009-1075 2009-10-6 13:00 2009-03-26 Show GitHub Exploit DB Packet Storm
271552 - sun java_system_identity_manager The Change My Password implementation in the admin interface in Sun Java System Identity Manager (IdM) 7.0 through 8.0 does not enforce the RequiresChallenge property setting, which allows remote aut… CWE-264
Permissions, Privileges, and Access Controls
CVE-2009-1077 2009-10-6 13:00 2009-03-26 Show GitHub Exploit DB Packet Storm
271553 - sun java_system_identity_manager Sun Java System Identity Manager (IdM) 7.0 through 8.0 does not enforce the expected privilege requirements for (1) deleting audit policies and (2) modifying workflows, which allows remote authentica… CWE-264
Permissions, Privileges, and Access Controls
CVE-2009-1078 2009-10-6 13:00 2009-03-26 Show GitHub Exploit DB Packet Storm
271554 - sun java_system_identity_manager Multiple cross-site scripting (XSS) vulnerabilities in Sun Java System Identity Manager (IdM) 7.0 through 8.0 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors, ak… CWE-79
Cross-site Scripting
CVE-2009-1079 2009-10-6 13:00 2009-03-26 Show GitHub Exploit DB Packet Storm
271555 - sun java_system_identity_manager Multiple cross-site scripting (XSS) vulnerabilities in Sun Java System Identity Manager (IdM) 7.0 through 8.0 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors, ak… CWE-79
Cross-site Scripting
CVE-2009-1080 2009-10-6 13:00 2009-03-26 Show GitHub Exploit DB Packet Storm
271556 - sun java_system_identity_manager Sun Java System Identity Manager (IdM) 7.0 through 8.0 on Linux, AIX, Solaris, and HP-UX permits "control characters" in the passwords of user accounts, which allows remote attackers to execute arbit… CWE-94
Code Injection
CVE-2009-1083 2009-10-6 13:00 2009-03-26 Show GitHub Exploit DB Packet Storm
271557 - juniper junos Cross-site scripting (XSS) vulnerability in the J-Web interface in Juniper JUNOS 8.5R1.14 and 9.0R1.1 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to the default U… CWE-79
Cross-site Scripting
CVE-2009-3485 2009-10-5 13:00 2009-10-1 Show GitHub Exploit DB Packet Storm
271558 - juniper junos Multiple cross-site scripting (XSS) vulnerabilities in the J-Web interface in Juniper JUNOS 8.5R1.14 allow remote authenticated users to inject arbitrary web script or HTML via the host parameter to … CWE-79
Cross-site Scripting
CVE-2009-3486 2009-10-5 13:00 2009-10-1 Show GitHub Exploit DB Packet Storm
271559 - allisclear clear_content Directory traversal vulnerability in thumb.php in Clear Content 1.1 allows remote attackers to read arbitrary files via a .. (dot dot) in the url parameter. NOTE: the provenance of this information … CWE-22
Path Traversal
CVE-2009-3538 2009-10-5 13:00 2009-10-3 Show GitHub Exploit DB Packet Storm
271560 - yourfreeworld ultra_classifieds_pro Multiple cross-site scripting (XSS) vulnerabilities in YourFreeWorld Ultra Classifieds Pro allow remote attackers to inject arbitrary web script or HTML via the (1) cname parameter to subclass.php an… CWE-79
Cross-site Scripting
CVE-2009-3539 2009-10-5 13:00 2009-10-3 Show GitHub Exploit DB Packet Storm