Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Nov. 19, 2024, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
190741 5 警告 adaptweb - AdaptWeb の index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-2151 2012-06-26 16:10 2009-06-22 Show GitHub Exploit DB Packet Storm
190742 6.8 警告 campusvirtualcomputrade - Campus Virtual-LMS におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2009-2150 2012-06-26 16:10 2009-06-22 Show GitHub Exploit DB Packet Storm
190743 4.3 警告 campusvirtualcomputrade - Campus Virtual-LMS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-2149 2012-06-26 16:10 2009-06-22 Show GitHub Exploit DB Packet Storm
190744 7.5 危険 campusvirtualcomputrade - Campus Virtual-LMS の news/index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2148 2012-06-26 16:10 2009-06-22 Show GitHub Exploit DB Packet Storm
190745 7.5 危険 WordPress.org
firestats
edgewall
- WordPress の FireStats プラグインにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2144 2012-06-26 16:10 2009-06-13 Show GitHub Exploit DB Packet Storm
190746 7.5 危険 firestats
WordPress.org
- WordPress の FireStats プラグインの firestats-wordpress.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2009-2143 2012-06-26 16:10 2009-06-13 Show GitHub Exploit DB Packet Storm
190747 9.3 危険 go-oo - Go-oo の cppcanvas/source/mtfrenderer/emfplus.cxx におけるヒープベースの脆弱性 CWE-119
バッファエラー
CVE-2009-2140 2012-06-26 16:10 2009-09-21 Show GitHub Exploit DB Packet Storm
190748 6.8 警告 4homepages - 4images の global.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-2132 2012-06-26 16:10 2009-06-19 Show GitHub Exploit DB Packet Storm
190749 3.5 注意 4homepages - 4images におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-2131 2012-06-26 16:10 2009-06-19 Show GitHub Exploit DB Packet Storm
190750 5 警告 elvinbts - Elvin における inc/ 配下の login.ei の PHP ソースコードを読まれる脆弱性 CWE-200
情報漏えい
CVE-2009-2130 2012-06-26 16:10 2009-06-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Nov. 19, 2024, 4:16 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
259931 - kent-web clip-mail Cross-site scripting (XSS) vulnerability in KENT-WEB CLIP-MAIL before 3.4, when Internet Explorer 7 or earlier is used, allows remote attackers to inject arbitrary web script or HTML via an unspecifi… CWE-79
Cross-site Scripting
CVE-2013-3649 2013-10-12 02:01 2013-06-29 Show GitHub Exploit DB Packet Storm
259932 - choice_wireless wixfmr-111 ajax.cgi in the web interface on the Choice Wireless Green Packet WIXFMR-111 4G WiMax modem allows remote attackers to obtain sensitive information via an Ajax (1) wmxState or (2) netState request. CWE-287
Improper Authentication
CVE-2013-3581 2013-10-12 01:55 2013-07-2 Show GitHub Exploit DB Packet Storm
259933 - lockon ec-cube Cross-site scripting (XSS) vulnerability in data/class/pages/products/LC_Page_Products_List.php in LOCKON EC-CUBE 2.11.0 through 2.12.4 allows remote attackers to inject arbitrary web script or HTML … CWE-79
Cross-site Scripting
CVE-2013-3652 2013-10-12 01:50 2013-07-1 Show GitHub Exploit DB Packet Storm
259934 - lockon ec-cube Directory traversal vulnerability in LOCKON EC-CUBE 2.12.0 through 2.12.4 allows remote attackers to read arbitrary image files via vectors related to data/class/SC_CheckError.php and data/class/SC_F… CWE-22
Path Traversal
CVE-2013-3654 2013-10-12 01:50 2013-07-1 Show GitHub Exploit DB Packet Storm
259935 - lockon ec-cube Multiple cross-site scripting (XSS) vulnerabilities in the RecommendSearch feature in the management screen in LOCKON EC-CUBE before 2.12.5 allow remote attackers to inject arbitrary web script or HT… CWE-79
Cross-site Scripting
CVE-2013-3653 2013-10-12 01:49 2013-07-1 Show GitHub Exploit DB Packet Storm
259936 - emc replication_manager EMC Replication Manager (RM) before 5.4.4 places encoded passwords in application log files, which makes it easier for local users to obtain sensitive information by reading a file and conducting an … CWE-255
Credentials Management
CVE-2013-3272 2013-10-12 00:51 2013-07-9 Show GitHub Exploit DB Packet Storm
259937 - simone_tellini mod_accounting SQL injection vulnerability in mod_accounting.c in the mod_accounting module 0.5 and earlier for Apache allows remote attackers to execute arbitrary SQL commands via a Host header. CWE-89
SQL Injection
CVE-2013-5697 2013-10-12 00:17 2013-10-1 Show GitHub Exploit DB Packet Storm
259938 - libreswan libreswan Buffer overflow in the atodn function in libreswan 3.0 and 3.1, when Opportunistic Encryption is enabled and an RSA key is being used, allows remote attackers to cause a denial of service (pluto IKE … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-2052 2013-10-12 00:11 2013-07-10 Show GitHub Exploit DB Packet Storm
259939 - freeswitch freeswitch Multiple buffer overflows in the switch_perform_substitution function in switch_regex.c in FreeSWITCH 1.2 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary co… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-2238 2013-10-11 23:52 2013-10-1 Show GitHub Exploit DB Packet Storm
259940 - spip spip SPIP 3.0.x before 3.0.9, 2.1.x before 2.1.22, and 2.0.x before 2.0.23 allows remote attackers to gain privileges and "take editorial control" via vectors related to ecrire/inc/filtres.php. NVD-CWE-noinfo
CVE-2013-2118 2013-10-11 23:51 2013-07-10 Show GitHub Exploit DB Packet Storm