Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 19, 2025, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
190381 6.8 警告 jean charles - JBC Explorer の dirsys/modules/auth.php における auth.inc.php を削除される脆弱性 CWE-287
不適切な認証
CVE-2007-5913 2012-09-25 16:59 2007-11-9 Show GitHub Exploit DB Packet Storm
190382 7.5 危険 jportal - jPORTAL の mailer.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-5912 2012-09-25 16:59 2007-11-9 Show GitHub Exploit DB Packet Storm
190383 10 危険 MIT Kerberos - krb5 の lib/rpc/svc_auth_gss.c における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2007-5902 2012-09-25 16:59 2007-12-5 Show GitHub Exploit DB Packet Storm
190384 8.5 危険 オラクル - Oracle Database Server の MDSYS.SDO_CS におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-5897 2012-09-25 16:59 2007-10-16 Show GitHub Exploit DB Packet Storm
190385 7.1 危険 Mozilla Foundation - Mozilla Firefox におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2007-5896 2012-09-25 16:59 2007-11-8 Show GitHub Exploit DB Packet Storm
190386 4.3 警告 Zoho Corporation - ManageEngine OpManager MSP Edition などにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-5891 2012-09-25 16:59 2007-11-7 Show GitHub Exploit DB Packet Storm
190387 10 危険 idmos - IDMOS における PHP リモートファイルインクルージョンの脆弱性 CWE-Other
その他
CVE-2007-5889 2012-09-25 16:59 2007-11-7 Show GitHub Exploit DB Packet Storm
190388 7.5 危険 infuseum - ASP Message Board の boards/printer.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-5887 2012-09-25 16:59 2007-11-7 Show GitHub Exploit DB Packet Storm
190389 7.5 危険 GuppYTeam - GuppY の error.php におけるディレクトリトラバーサルの脆弱性 CWE-94
コード・インジェクション
CVE-2007-5845 2012-09-25 16:59 2007-11-6 Show GitHub Exploit DB Packet Storm
190390 4.3 警告 Nagios Enterprises, LLC - Nagios の CGI プログラムにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-5803 2012-09-25 16:59 2008-05-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 20, 2025, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
268121 - ecommerce_corporation_online store_kit Cross-site scripting (XSS) vulnerability in more.php for Online Store Kit 3.0 allows remote attackers to inject arbitrary HTML via the id parameter. NVD-CWE-Other
CVE-2004-0301 2017-07-11 10:30 2004-11-23 Show GitHub Exploit DB Packet Storm
268122 - fools_workshop owls_workshop Directory traversal vulnerability in OWLS 1.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the (1) file parameter in index.php, (2) editfile in glossary.php, or (3) editfile … NVD-CWE-Other
CVE-2004-0302 2017-07-11 10:30 2004-11-23 Show GitHub Exploit DB Packet Storm
268123 - - - OWLS 1.0 allows remote attackers to retrieve arbitrary files via absolute pathnames in (1) the file parameter in /glossaries/index.php, (2) the filename parameter in /readings/index.php, or (3) the f… NVD-CWE-Other
CVE-2004-0303 2017-07-11 10:30 2004-11-23 Show GitHub Exploit DB Packet Storm
268124 - webcortex webstores_2000 SQL injection vulnerability in browse_items.asp in WebCortex WebStores 2000 6.0 allows remote attackers to gain unauthorized access and execute arbitrary commands via the Search_Text parameter. NVD-CWE-Other
CVE-2004-0304 2017-07-11 10:30 2004-11-23 Show GitHub Exploit DB Packet Storm
268125 - webcortex webstores_2000 Cross-site scripting (XSS) vulnerability in error.asp in WebCortex WebStores 2000 6.0 allows remote attackers to execute arbitrary script as other users and steal session IDs via the Message_id param… NVD-CWE-Other
CVE-2004-0305 2017-07-11 10:30 2004-11-23 Show GitHub Exploit DB Packet Storm
268126 - livejournal livejournal Cross-site scripting (XSS) vulnerability in LiveJournal 1.0 and 1.1 allows remote attackers to execute Javascript as other users via the stylesheet, which does not strip the semicolon or parentheses,… NVD-CWE-Other
CVE-2004-0310 2017-07-11 10:30 2004-11-23 Show GitHub Exploit DB Packet Storm
268127 - apc ap9606 American Power Conversion (APC) Web/SNMP Management SmartSlot Card 3.0 through 3.0.3 and 3.21 are shipped with a default password of TENmanUFactOryPOWER, which allows remote attackers to gain unautho… NVD-CWE-Other
CVE-2004-0311 2017-07-11 10:30 2004-11-23 Show GitHub Exploit DB Packet Storm
268128 - linksys wap55ag Linksys WAP55AG 1.07 allows remote attackers with access to an SNMP read only community string to gain access to read/write communtiy strings via a query for OID 1.3.6.1.4.1.3955.2.1.13.1.2. NVD-CWE-Other
CVE-2004-0312 2017-07-11 10:30 2004-11-23 Show GitHub Exploit DB Packet Storm
268129 - psoproxy psoproxy_server Buffer overflow in PSOProxy 0.91 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long HTTP request, as demonstrated using a long (1) GET argument or (2)… NVD-CWE-Other
CVE-2004-0313 2017-07-11 10:30 2004-11-23 Show GitHub Exploit DB Packet Storm
268130 - freewebs webzedit Cross-site scripting (XSS) vulnerability in done.jsp in WebzEdit 1.9 and earlier allows remote attackers to execute arbitrary script as other users via the message parameter. NVD-CWE-Other
CVE-2004-0314 2017-07-11 10:30 2004-11-23 Show GitHub Exploit DB Packet Storm