Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
191001 4.3 警告 LifeType - LifeType の admin.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2196 2012-09-25 17:16 2008-05-8 Show GitHub Exploit DB Packet Storm
191002 10 危険 itcms - IT!CMS の box/minichat/boxpop.php における任意の PHP コードを挿入される脆弱性 CWE-94
コード・インジェクション
CVE-2008-2192 2012-09-25 17:16 2008-05-14 Show GitHub Exploit DB Packet Storm
191003 4.3 警告 mdsjack - Mjguest の mjguest.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2187 2012-09-25 17:16 2008-05-13 Show GitHub Exploit DB Packet Storm
191004 4.3 警告 SysAid Technologies Ltd. - SysAid の SystemList.jsp におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2179 2012-09-25 17:16 2008-05-13 Show GitHub Exploit DB Packet Storm
191005 4.3 警告 LifeType - LifeType の admin.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2178 2012-09-25 17:16 2008-05-8 Show GitHub Exploit DB Packet Storm
191006 6.8 警告 php directory source - phpDirectorySource における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2177 2012-09-25 17:16 2008-05-13 Show GitHub Exploit DB Packet Storm
191007 7.1 危険 日立 - Hitachi GR ルータにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2008-2172 2012-09-25 17:16 2008-05-13 Show GitHub Exploit DB Packet Storm
191008 4.3 警告 IBM - IBM Lotus Quickr におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2163 2012-09-25 17:16 2008-05-13 Show GitHub Exploit DB Packet Storm
191009 9.3 危険 マイクロソフト - Microsoft Windows CE 5.0 の JPEG および GIF のイメージ処理における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2008-2160 2012-09-25 17:16 2008-05-12 Show GitHub Exploit DB Packet Storm
191010 2.1 注意 マイクロソフト - Microsoft Internet Explorer 7 における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2008-2159 2012-09-25 17:16 2008-05-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 14, 2025, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
273951 - aladdin_enterprises ghostscript ghostscript before 6.51 allows local users to read and write arbitrary files as the 'lp' user via the file operator, even with -dSAFER enabled. NVD-CWE-Other
CVE-2001-1353 2016-10-18 11:14 2001-09-18 Show GitHub Exploit DB Packet Storm
273952 - phplib_team phplib prepend.php3 in PHPLib before 7.2d, when register_globals is enabled for PHP, allows remote attackers to execute arbitrary scripts via an HTTP request that modifies $_PHPLIB[libdir] to point to malic… NVD-CWE-Other
CVE-2001-1370 2016-10-18 11:14 2001-07-21 Show GitHub Exploit DB Packet Storm
273953 - oracle application_server The default configuration of Oracle Application Server 9iAS 1.0.2.2 enables SOAP and allows anonymous users to deploy applications by default via urn:soap-service-manager and urn:soap-provider-manage… NVD-CWE-noinfo
CWE-264
Permissions, Privileges, and Access Controls
CVE-2001-1371 2016-10-18 11:14 2002-02-6 Show GitHub Exploit DB Packet Storm
273954 - linux linux_kernel ptrace in Linux 2.2.x through 2.2.19, and 2.4.x through 2.4.9, allows local users to gain root privileges by running ptrace on a setuid or setgid program that itself calls an unprivileged program, su… NVD-CWE-Other
CVE-2001-1384 2016-10-18 11:14 2001-10-18 Show GitHub Exploit DB Packet Storm
273955 - php
mandrakesoft
php
mandrake_linux
The Apache module for PHP 4.0.0 through PHP 4.0.4, when disabled with the 'engine = off' option for a virtual host, may disable PHP for other virtual hosts, which could cause Apache to serve the sour… NVD-CWE-Other
CVE-2001-1385 2016-10-18 11:14 2001-01-12 Show GitHub Exploit DB Packet Storm
273956 - xinetd xinetd Multiple vulnerabilities in xinetd 2.3.0 and earlier, and additional variants until 2.3.3, may allow remote attackers to cause a denial of service or execute arbitrary code, primarily via buffer over… NVD-CWE-Other
CVE-2001-1389 2016-10-18 11:14 2001-08-29 Show GitHub Exploit DB Packet Storm
273957 - intel high-bandwidth_digital_content_protection Linear key exchange process in High-bandwidth Digital Content Protection (HDCP) System allows remote attackers to access data as plaintext, avoid device blacklists, clone devices, and create new devi… NVD-CWE-Other
CVE-2001-0903 2016-10-18 11:13 2001-11-20 Show GitHub Exploit DB Packet Storm
273958 - network_solutions rwhoisd Format string vulnerability in Network Solutions Rwhoisd 1.5.7.2 and earlier, when using syslog, allows remote attackers to corrupt memory and possibly execute arbitrary code via a rwhois request tha… NVD-CWE-Other
CVE-2001-0913 2016-10-18 11:13 2001-11-22 Show GitHub Exploit DB Packet Storm
273959 - berkeley pmake Format string vulnerability in Berkeley parallel make (pmake) 2.1.33 and earlier allows a local user to gain root privileges via format specifiers in the check argument of a shell definition. NVD-CWE-Other
CVE-2001-0915 2016-10-18 11:13 2001-11-21 Show GitHub Exploit DB Packet Storm
273960 - berkeley pmake Buffer overflow in Berkeley parallel make (pmake) 2.1.33 and earlier allows a local user to gain root privileges via a long check argument of a shell definition. NVD-CWE-Other
CVE-2001-0916 2016-10-18 11:13 2001-11-21 Show GitHub Exploit DB Packet Storm