Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 28, 2025, 6:03 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
189721 4.3 警告 Ignite Realtime - Openfire の Admin コンソールの login.jsp におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-6510 2012-09-25 17:27 2006-04-7 Show GitHub Exploit DB Packet Storm
189722 7.5 危険 huseyin bora abaci - Joomla! 用の com_myalbum における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6489 2012-09-25 17:27 2009-03-19 Show GitHub Exploit DB Packet Storm
189723 7.5 危険 mole-group - Mole Group Taxi Map Script の login.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6484 2012-09-25 17:27 2009-03-18 Show GitHub Exploit DB Packet Storm
189724 6.8 警告 justjoomla - Joomla! 用の treeg コンポーネントにおける PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-6482 2012-09-25 17:27 2009-03-18 Show GitHub Exploit DB Packet Storm
189725 7.5 危険 joomprod - Joomla! 用の versioning コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6481 2012-09-25 17:27 2009-03-17 Show GitHub Exploit DB Packet Storm
189726 6.8 警告 Parallels - Parallels Virtuozzo 用の VZPP Web インターフェースの "パスワード変更" 機能におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2008-6479 2012-09-25 17:27 2009-03-16 Show GitHub Exploit DB Packet Storm
189727 6.8 警告 Parallels - Parallels Virtuozzo 用の VZPP Web インターフェースにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2008-6478 2012-09-25 17:27 2009-03-16 Show GitHub Exploit DB Packet Storm
189728 7.5 危険 mumbojumbo - Mumbo Jumbo Media OP4 における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6477 2012-09-25 17:27 2009-03-16 Show GitHub Exploit DB Packet Storm
189729 7.5 危険 mountaingrafix - MountainGrafix easyLink の detail.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6471 2012-09-25 17:27 2009-03-13 Show GitHub Exploit DB Packet Storm
189730 4.3 警告 Parallels - Parallels H-Sphere の webshell4 におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-6465 2012-09-25 17:27 2009-03-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 28, 2025, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
271621 - rob_flynn gaim Gaim 0.57 stores sensitive information in world-readable and group-writable files in the /tmp directory, which allows local users to access MSN web email accounts of other users who run Gaim by readi… NVD-CWE-Other
CVE-2002-0377 2016-10-18 11:19 2002-05-29 Show GitHub Exploit DB Packet Storm
271622 - lbl tcpdump Buffer overflow in tcpdump 3.6.2 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via an NFS packet. NVD-CWE-Other
CVE-2002-0380 2016-10-18 11:19 2002-06-18 Show GitHub Exploit DB Packet Storm
271623 - xchat xchat XChat IRC client allows remote attackers to execute arbitrary commands via a /dns command on a host whose DNS reverse lookup contains shell metacharacters. NVD-CWE-Other
CVE-2002-0382 2016-10-18 11:19 2002-06-25 Show GitHub Exploit DB Packet Storm
271624 - opera_software opera_web_browser Opera, when configured with the "Determine action by MIME type" option disabled, interprets an object as an HTML document even when its MIME Content-Type is text/plain, which could allow remote attac… CWE-79
Cross-site Scripting
CVE-2002-0270 2016-10-18 11:18 2002-05-29 Show GitHub Exploit DB Packet Storm
271625 - ada_core_technologies gnat_pro_native Runtime library in GNU Ada compiler (GNAT) 3.12p through 3.14p allows local users to modify files of other users via a symlink attack on temporary files. NVD-CWE-Other
CVE-2002-0271 2016-10-18 11:18 2002-05-29 Show GitHub Exploit DB Packet Storm
271626 - mpg321 mpg321 Buffer overflows in mpg321 before 0.2.9 allows local and possibly remote attackers to execute arbitrary code via a long URL to (1) a command line option, (2) an HTTP request, or (3) an FTP request. NVD-CWE-Other
CVE-2002-0272 2016-10-18 11:18 2002-05-31 Show GitHub Exploit DB Packet Storm
271627 - netwin cwmail Buffer overflow in CWMail.exe in NetWin before 2.8a allows remote authenticated users to execute arbitrary code via a long item parameter. NVD-CWE-Other
CVE-2002-0273 2016-10-18 11:18 2002-05-31 Show GitHub Exploit DB Packet Storm
271628 - university_of_cambridge exim Exim 3.34 and earlier may allow local users to gain privileges via a buffer overflow in long -C (configuration file) and other command line arguments. NVD-CWE-Other
CVE-2002-0274 2016-10-18 11:18 2002-05-31 Show GitHub Exploit DB Packet Storm
271629 - ettercap ettercap Buffer overflow in various decoders in Ettercap 0.6.3.1 and earlier, when running on networks with an MTU greater than 2000, allows remote attackers to execute arbitrary code via large packets. NVD-CWE-Other
CVE-2002-0276 2016-10-18 11:18 2002-05-31 Show GitHub Exploit DB Packet Storm
271630 - add2it mailman_free Add2it Mailman Free 1.73 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the list parameter. NVD-CWE-Other
CVE-2002-0277 2016-10-18 11:18 2002-05-31 Show GitHub Exploit DB Packet Storm