Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
194731 5 警告 ブルーコートシステムズ - Blue Coat ProxySG における重要な認証情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2011-5126 2012-09-3 19:02 2011-06-16 Show GitHub Exploit DB Packet Storm
194732 4.3 警告 ブルーコートシステムズ - Blue Coat Director におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-5125 2012-09-3 18:52 2011-09-8 Show GitHub Exploit DB Packet Storm
194733 10 危険 ブルーコートシステムズ - Blue Coat で使用される BCAAA コンポーネントにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-5124 2012-09-3 18:38 2011-04-4 Show GitHub Exploit DB Packet Storm
194734 4.3 警告 ブルーコートシステムズ - Blue Coat ProxySG の Java 管理コンソールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-5192 2012-09-3 18:15 2010-09-29 Show GitHub Exploit DB Packet Storm
194735 9.3 危険 ブルーコートシステムズ - Blue Coat ProxyAV アプライアンスにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2010-5191 2012-09-3 18:13 2010-06-19 Show GitHub Exploit DB Packet Storm
194736 5 警告 ブルーコートシステムズ - Blue Coat ProxySG のアクティブコンテンツの変換機能における JavaScript の検出を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-5190 2012-09-3 18:12 2010-10-1 Show GitHub Exploit DB Packet Storm
194737 9.3 危険 ブルーコートシステムズ - Blue Coat ProxySG における任意の CLI コマンドを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-5189 2012-09-3 18:09 2010-06-14 Show GitHub Exploit DB Packet Storm
194738 4 警告 Mozilla Foundation - Bugzilla におけるクロスサイトスクリプティングの脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-0466 2012-09-3 16:46 2012-04-27 Show GitHub Exploit DB Packet Storm
194739 4.3 警告 Mozilla Foundation - Bugzilla におけるロックアウトポリシーを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-0465 2012-09-3 16:42 2012-04-27 Show GitHub Exploit DB Packet Storm
194740 7.5 危険 Mozilla Foundation - 複数の Mozilla 製品のブラウザエンジンにおける任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2012-0464 2012-09-3 16:36 2012-03-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 22, 2025, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
269081 - hogstorps hogstorp_guestbook admin/radera/tabort.asp in Hogstorps hogstorp guestbook 2.0 does not verify user credentials, which allows remote attackers to delete arbitrary posts via a modified delID parameter. NVD-CWE-Other
CVE-2006-2771 2017-07-20 10:31 2006-06-2 Show GitHub Exploit DB Packet Storm
269082 - hogstorps hogstorp_guestbook Cross-site scripting (XSS) vulnerability in add.asp in Hogstorps hogstorp guestbook 2.0 allows remote attackers to inject arbitrary web script or HTML via the (1) name, (2) email, and (3) headline pa… NVD-CWE-Other
CVE-2006-2772 2017-07-20 10:31 2006-06-2 Show GitHub Exploit DB Packet Storm
269083 - hogstorps hogstorp_guestbook admin/redigera/redigera2.asp in Hogstorps hogstorp Guestbook 2.0 does not verify user credentials, which allows remote attackers to edit arbitrary posts via unspecified vectors. NOTE: the provenance… NVD-CWE-Other
CVE-2006-2773 2017-07-20 10:31 2006-06-2 Show GitHub Exploit DB Packet Storm
269084 - sun storage_automated_diagnostic_environment A package component in Sun Storage Automated Diagnostic Environment (StorADE) 2.4 uses world-writable permissions for certain critical files and directories, which allows local users to gain privileg… NVD-CWE-Other
CVE-2006-2790 2017-07-20 10:31 2006-06-3 Show GitHub Exploit DB Packet Storm
269085 - sun storage_automated_diagnostic_environment This vulnerability is addressed in the following product release: Sun, Storage Automated Diagnostic Environment, 2.4 (for Solaris 8, 9 and 10) with patch 117654-60 or later. NVD-CWE-Other
CVE-2006-2790 2017-07-20 10:31 2006-06-3 Show GitHub Exploit DB Packet Storm
269086 - new-place captivate Cross-site scripting (XSS) vulnerability in gallery.php in Captivate 1.0 allows remote attackers to inject arbitrary web script or HTML via the page parameter, which is reflected in an error message. CWE-79
Cross-site Scripting
CVE-2006-2796 2017-07-20 10:31 2006-06-3 Show GitHub Exploit DB Packet Storm
269087 - toenda_software_development toendacms Cross-site scripting (XSS) vulnerability in content_footer.php in toendaCMS 0.7.0 allows remote attackers to inject arbitrary web scripts or HTML via the print_url variable. NOTE: the provenance of … NVD-CWE-Other
CVE-2006-2799 2017-07-20 10:31 2006-06-3 Show GitHub Exploit DB Packet Storm
269088 - toenda_software_development toendacms Successful exploitation requires that the user is running a browser that has not URL-encoded the request (e.g. Internet Explorer). NVD-CWE-Other
CVE-2006-2799 2017-07-20 10:31 2006-06-3 Show GitHub Exploit DB Packet Storm
269089 - unak unak_cms Multiple cross-site scripting (XSS) vulnerabilities in Unak CMS 1.5 RC2 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) u_a or (2) u_s parameters. NOTE: this mi… CWE-79
Cross-site Scripting
CVE-2006-2800 2017-07-20 10:31 2006-06-3 Show GitHub Exploit DB Packet Storm
269090 - unak unak_cms Multiple SQL injection vulnerabilities in Unak CMS 1.5 RC2 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) u_a or (2) u_s parameters. NVD-CWE-Other
CVE-2006-2801 2017-07-20 10:31 2006-06-3 Show GitHub Exploit DB Packet Storm