Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 18, 2025, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
193251 8.5 危険 X.Org Foundation - X.Org xserver の GLX 拡張におけるサービス運用妨害 (サーバクラッシュ) の脆弱性 CWE-20
不適切な入力確認
CVE-2010-4818 2012-09-7 16:51 2011-01-10 Show GitHub Exploit DB Packet Storm
193252 4.3 警告 phpList - phpList の public_html/lists/admin/ におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2741 2012-09-7 16:35 2012-03-21 Show GitHub Exploit DB Packet Storm
193253 7.5 危険 phpList - phpList の public_html/lists/admin における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-2740 2012-09-7 16:35 2012-03-21 Show GitHub Exploit DB Packet Storm
193254 6.8 警告 Wishlist project - Drupal 用 Wishlist モジュールにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-2069 2012-09-7 16:34 2012-03-21 Show GitHub Exploit DB Packet Storm
193255 6.8 警告 ownCloud - ownCloud におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-4753 2012-09-7 16:32 2012-07-20 Show GitHub Exploit DB Packet Storm
193256 4.3 警告 デル - Crowbar の Crowbar barclamp におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-3551 2012-09-7 16:06 2012-09-5 Show GitHub Exploit DB Packet Storm
193257 4.3 警告 OpenStack - OpenStack Folsom および Essex における任意のテナントに任意のユーザを追加される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3542 2012-09-7 16:05 2012-08-30 Show GitHub Exploit DB Packet Storm
193258 2.6 注意 サイボウズ - サイボウズ KUNAI for Android における WebView クラスに関する脆弱性 CWE-Other
その他
CVE-2012-4012 2012-09-7 16:01 2012-09-7 Show GitHub Exploit DB Packet Storm
193259 5.8 警告 サイボウズ - サイボウズ KUNAI for Android において任意の Java のメソッドが実行される脆弱性 CWE-DesignError
CVE-2012-4011 2012-09-7 16:00 2012-09-7 Show GitHub Exploit DB Packet Storm
193260 4.6 警告 デル - Crowbar の Deployer Barclamp における任意のシェルコマンドを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3537 2012-09-7 15:48 2012-09-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 19, 2025, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
268091 - spidersales spidersales SQL injection vulnerability in viewCart.asp in SpiderSales shopping cart software allows remote attackers to execute arbitrary SQL via the userId parameter. NVD-CWE-Other
CVE-2004-0348 2017-07-11 10:30 2004-11-23 Show GitHub Exploit DB Packet Storm
268092 - gweb gweb_http_server Directory traversal vulnerability in GWeb HTTP Server 0.6 allows remote attackers to view arbitrary files via a .. (dot dot) in the URL. NVD-CWE-Other
CVE-2004-0349 2017-07-11 10:30 2004-11-23 Show GitHub Exploit DB Packet Storm
268093 - spidersales spidersales SpiderSales shopping cart does not enforce a minimum length for the private key, which can make it easier for local users to obtain the private key by factoring. NVD-CWE-Other
CVE-2004-0350 2017-07-11 10:30 2004-11-23 Show GitHub Exploit DB Packet Storm
268094 - spidersales spidersales Spider Sales shopping cart stores the private key in the same database and table as the public key, which allows local users with access to the database to decrypt data. NVD-CWE-Other
CVE-2004-0351 2017-07-11 10:30 2004-11-23 Show GitHub Exploit DB Packet Storm
268095 - cisco content_services_switch_11000
content_services_switch_11050
content_services_switch_11150
content_services_switch_11800
Cisco 11000 Series Content Services Switches (CSS) running WebNS 5.0(x) before 05.0(04.07)S, and 6.10(x) before 06.10(02.05)S allow remote attackers to cause a denial of service (device reset) via a … NVD-CWE-Other
CVE-2004-0352 2017-07-11 10:30 2004-11-23 Show GitHub Exploit DB Packet Storm
268096 - gnu anubis Multiple buffer overflows in auth_ident() function in auth.c for GNU Anubis 3.6.0 through 3.6.2, 3.9.92 and 3.9.93 allow remote attackers to gain privileges via a long string. NVD-CWE-Other
CVE-2004-0353 2017-07-11 10:30 2004-11-23 Show GitHub Exploit DB Packet Storm
268097 - gnu anubis Multiple format string vulnerabilities in GNU Anubis 3.6.0 through 3.6.2, 3.9.92 and 3.9.93 allow remote attackers to execute arbitrary code via format string specifiers in strings passed to (1) the … NVD-CWE-Other
CVE-2004-0354 2017-07-11 10:30 2004-11-23 Show GitHub Exploit DB Packet Storm
268098 - invision_power_services invision_board Invision Power Board 1.3 Final allows remote attackers to gain sensitive information by selecting a file for "Personal Photo" that is not an image file, which displays the installation path in an err… NVD-CWE-Other
CVE-2004-0355 2017-07-11 10:30 2004-11-23 Show GitHub Exploit DB Packet Storm
268099 - seattle_lab_software slmail_pro Stack-based buffer overflows in SL Mail Pro 2.0.9 allow remote attackers to execute arbitrary code via (1) user.dll, (2) loadpageadmin.dll or (3) loadpageuser.dll. NVD-CWE-Other
CVE-2004-0357 2017-07-11 10:30 2004-11-23 Show GitHub Exploit DB Packet Storm
268100 - virtuasystems virtuanews_pro Cross-site scripting (XSS) vulnerability in VirtuaNews Admin Panel Pro 1.0.3 allows remote attackers to execute arbitrary script as other users via (1) the mainnews parameter in admin.php, (2) the ex… NVD-CWE-Other
CVE-2004-0358 2017-07-11 10:30 2004-11-23 Show GitHub Exploit DB Packet Storm