Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Nov. 19, 2024, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
193761 7.5 危険 gaya design - Comicsense の index.php における SQL インジェクションの脆弱性 - CVE-2007-3088 2012-06-26 15:46 2007-06-6 Show GitHub Exploit DB Packet Storm
193762 4.9 警告 Agnitum - Agnitum Outpost Firewall PRO におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-3086 2012-06-26 15:46 2007-06-6 Show GitHub Exploit DB Packet Storm
193763 7.5 危険 comdev - Comdev Web Blogger の sampleblogger.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-3084 2012-06-26 15:46 2007-06-6 Show GitHub Exploit DB Packet Storm
193764 7.5 危険 comdev - Comdev eCommerce の sampleecommerce.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-3081 2012-06-26 15:46 2007-06-6 Show GitHub Exploit DB Packet Storm
193765 7.1 危険 eqdkp - EQdkp の listmembers.php における重要な情報が取得される脆弱性 - CVE-2007-3079 2012-06-26 15:46 2007-06-6 Show GitHub Exploit DB Packet Storm
193766 4.3 警告 aigaion - Aigaion におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3078 2012-06-26 15:46 2007-06-6 Show GitHub Exploit DB Packet Storm
193767 7.5 危険 eqdkp - EQdkp の listmembers.php における SQL インジェクションの脆弱性 - CVE-2007-3077 2012-06-26 15:46 2007-06-6 Show GitHub Exploit DB Packet Storm
193768 9.3 危険 digital river - eSellerate SDK の eSellerateControl365.dll の特定の ActiveX コントロールにおけるバッファオーバーフローの脆弱性 - CVE-2007-3071 2012-06-26 15:46 2007-06-6 Show GitHub Exploit DB Packet Storm
193769 4.3 警告 bdigital web solutions - BDigital Web Solutions WebStudio の index.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3070 2012-06-26 15:46 2007-06-6 Show GitHub Exploit DB Packet Storm
193770 6.8 警告 dvd x studios - DVD X Player Professional におけるスタックベースのバッファオーバーフローの脆弱性 - CVE-2007-3068 2012-06-26 15:46 2007-06-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Nov. 19, 2024, 4:16 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
257721 - kk-osk advance-flow
advance-flow_forms
SQL injection vulnerability in OSK Advance-Flow 4.41 and earlier and Advance-Flow Forms 4.41 and earlier allows remote attackers to execute arbitrary SQL commands via unspecified vectors. CWE-89
SQL Injection
CVE-2014-3906 2014-08-20 02:13 2014-08-19 Show GitHub Exploit DB Packet Storm
257722 - linecorp line LINE 3.2.1.83 and earlier on Windows and 3.2.1 and earlier on OS X does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive … CWE-310
Cryptographic Issues
CVE-2013-7144 2014-08-18 23:51 2014-08-16 Show GitHub Exploit DB Packet Storm
257723 - cyberagent ameba The CyberAgent Ameba application 3.x and 4.x before 4.5.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensiti… CWE-310
Cryptographic Issues
CVE-2014-3902 2014-08-16 05:38 2014-08-15 Show GitHub Exploit DB Packet Storm
257724 - cobham aviator_700d
aviator_700e
Cobham Aviator 700D and 700E satellite terminals have hardcoded passwords for the (1) debug, (2) prod, (3) do160, and (4) flrp programs, which allows physically proximate attackers to gain privileges… NVD-CWE-Other
CVE-2014-2964 2014-08-16 02:38 2014-08-15 Show GitHub Exploit DB Packet Storm
257725 - cobham aviator_700d
aviator_700e
<a href="http://cwe.mitre.org/data/definitions/798.html">CWE-798: Use of Hard-coded Credentials</a> NVD-CWE-Other
CVE-2014-2964 2014-08-16 02:38 2014-08-15 Show GitHub Exploit DB Packet Storm
257726 - cobham sailor_900_firmware
sailor_6000_series_firmware
Cobham Sailor 900 and 6000 satellite terminals with firmware 1.08 MFHF and 2.11 VHF have hardcoded credentials for the administrator account, which allows attackers to obtain administrative control b… NVD-CWE-Other
CVE-2014-2940 2014-08-16 02:21 2014-08-15 Show GitHub Exploit DB Packet Storm
257727 - cobham sailor_900_firmware
sailor_6000_series_firmware
<a href="http://cwe.mitre.org/data/definitions/798.html">CWE-798: Use of Hard-coded Credentials</a> NVD-CWE-Other
CVE-2014-2940 2014-08-16 02:21 2014-08-15 Show GitHub Exploit DB Packet Storm
257728 - cobham aviator_200
aviator_300
aviator_350
aviator_700d
explorer_bgan
sailor_900_vsat
sailor_fleetbroadband_150
sailor_fleetbroadband_250
sailor_fleetbroadband_500
Cobham SAILOR 900 VSAT; SAILOR FleetBroadBand 150, 250, and 500; EXPLORER BGAN; and AVIATOR 200, 300, 350, and 700D devices do not properly restrict password recovery, which allows attackers to obtai… NVD-CWE-Other
CVE-2013-7180 2014-08-16 02:02 2014-08-15 Show GitHub Exploit DB Packet Storm
257729 - cobham aviator_200
aviator_300
aviator_350
aviator_700d
explorer_bgan
sailor_900_vsat
sailor_fleetbroadband_150
sailor_fleetbroadband_250
sailor_fleetbroadband_500
<a href="http://cwe.mitre.org/data/definitions/640.html">CWE-640: Weak Password Recovery Mechanism for Forgotten Password</a> NVD-CWE-Other
CVE-2013-7180 2014-08-16 02:02 2014-08-15 Show GitHub Exploit DB Packet Storm
257730 - cobham ailor_6110_mini-c_gmdss
sailor_6006_message_terminal
sailor_6222_vhf
sailor_6300_mf_\/_hf
The thraneLINK protocol implementation on Cobham devices does not verify firmware signatures, which allows attackers to execute arbitrary code by leveraging physical access or terminal access to send… NVD-CWE-Other
CVE-2014-0328 2014-08-16 01:58 2014-08-15 Show GitHub Exploit DB Packet Storm