Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 16, 2025, 6:05 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
191371 6.8 警告 MediaWiki - MediaWiki の AJAX 機能におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-1054 2012-09-25 16:47 2007-02-21 Show GitHub Exploit DB Packet Storm
191372 10 危険 malbum - mAlbum における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-1045 2012-09-25 16:47 2007-02-21 Show GitHub Exploit DB Packet Storm
191373 5 警告 Pearson Education, Inc. - Pearson Education PowerSchool における admin フォルダの内容をリスト化される脆弱性 CWE-200
情報漏えい
CVE-2007-1044 2012-09-25 16:47 2007-02-21 Show GitHub Exploit DB Packet Storm
191374 10 危険 peanutkb - PeanutKB における脆弱性 - CVE-2007-1039 2012-09-25 16:47 2007-02-21 Show GitHub Exploit DB Packet Storm
191375 7.5 危険 レッドハット - JBoss のディフォルト設定における管理アクセス権を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-1036 2012-09-25 16:47 2007-02-21 Show GitHub Exploit DB Packet Storm
191376 7.8 危険 Niels Provos - Niels Provos libevent におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-1030 2012-09-25 16:47 2007-02-21 Show GitHub Exploit DB Packet Storm
191377 4.4 警告 IBM - Linux および Unix 用の IBM DB2 における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2007-1027 2012-09-25 16:47 2007-02-21 Show GitHub Exploit DB Packet Storm
191378 10 危険 marcello vitagliano - Meganoide's news の include.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-1024 2012-09-25 16:47 2007-02-21 Show GitHub Exploit DB Packet Storm
191379 4.6 警告 macrovision - Macrovision InstallAnywhere における許可されないインストールを実行される脆弱性 - CVE-2007-1009 2012-09-25 16:47 2007-04-19 Show GitHub Exploit DB Packet Storm
191380 4.3 警告 Mozilla Foundation - Mozilla Firefox におけるフィッシング攻撃などを実行される脆弱性 CWE-DesignError
CVE-2007-1004 2012-09-25 16:47 2007-02-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 16, 2025, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
275211 - inso answerbook2 Format string vulnerability in AnswerBook2 (AB2) web server dwhttpd 3.1a4 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via encoded % characters in an H… NVD-CWE-Other
CVE-1999-1417 2008-09-11 04:01 1998-08-23 Show GitHub Exploit DB Packet Storm
275212 - computer_software_manufaktur alibaba genkey utility in Alibaba 2.0 generates RSA key pairs with an exponent of 1, which results in transactions that are sent in cleartext. NVD-CWE-Other
CVE-1999-1444 2008-09-11 04:01 1999-12-31 Show GitHub Exploit DB Packet Storm
275213 - sco openserver
unixware
Vulnerability in (1) rlogin daemon rshd and (2) scheme on SCO UNIX OpenServer 5.0.5 and earlier, and SCO UnixWare 7.0.1 and earlier, allows remote attackers to gain privileges. NVD-CWE-Other
CVE-1999-1450 2008-09-11 04:01 1999-01-27 Show GitHub Exploit DB Packet Storm
275214 - thttpd thttpd_http_server Buffer overflow in thttpd HTTP server before 2.04-31 allows remote attackers to execute arbitrary commands via a long date string, which is not properly handled by the tdate_parse function. NVD-CWE-Other
CVE-1999-1457 2008-09-11 04:01 1999-11-16 Show GitHub Exploit DB Packet Storm
275215 - next
sgi
cray
sun
next
irix
unicos
sunos
rdist in various UNIX systems uses popen to execute sendmail, which allows local users to gain root privileges by modifying the IFS (Internal Field Separator) variable. NVD-CWE-Other
CVE-1999-1468 2008-09-11 04:01 1991-10-22 Show GitHub Exploit DB Packet Storm
275216 - sun java Sun Java 1.6.0_03 and earlier versions, and possibly later versions, does not properly verify the authenticity of updates, which allows man-in-the-middle attackers to execute arbitrary code via a Tro… CWE-94
Code Injection
CVE-2008-3440 2008-09-10 13:00 2008-08-1 Show GitHub Exploit DB Packet Storm
275217 - ignite_realtime openfire The admin console in Ignite Realtime Openfire 3.3.0 and earlier (formerly Wildfire) does not properly specify a filter mapping in web.xml, which allows remote attackers to gain privileges and execute… CWE-264
Permissions, Privileges, and Access Controls
CVE-2007-2975 2008-09-10 13:00 2007-06-1 Show GitHub Exploit DB Packet Storm
275218 - ignite_realtime openfire The vendor has addressed this issue through the release of the following product updates: Ignite Realtime openfire-3.3.1-1.i386.rpm http://www.igniterealtime.org/downloads/download-landing.jsp?fi… CWE-264
Permissions, Privileges, and Access Controls
CVE-2007-2975 2008-09-10 13:00 2007-06-1 Show GitHub Exploit DB Packet Storm
275219 - oracle oracle8i
oracle9i
Oracle Database Server 8.1.7.4 through 9.2.0.4 allows local users to execute commands with additional privileges via the ctxsys.driload package, which is publicly accessible. CWE-94
Code Injection
CVE-2004-0637 2008-09-10 13:00 2004-09-2 Show GitHub Exploit DB Packet Storm
275220 - realnetworks realserver RealMedia server allows remote attackers to cause a denial of service via a long ramgen request. NVD-CWE-Other
CVE-2000-0001 2008-09-10 13:00 1999-12-23 Show GitHub Exploit DB Packet Storm