Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
196111 3.7 注意 GNU Project - GNU nano におけるファイルの所有者を変更される脆弱性 CWE-362
競合状態
CVE-2010-1161 2012-06-26 16:19 2010-04-15 Show GitHub Exploit DB Packet Storm
196112 1.9 注意 GNU Project - GNU nano における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2010-1160 2012-06-26 16:19 2010-04-7 Show GitHub Exploit DB Packet Storm
196113 6.8 警告 Apache Software Foundation - Apache HTTP Server の mod_auth_shadow モジュールにおけるデータを変更される脆弱性 CWE-362
競合状態
CVE-2010-1151 2012-06-26 16:19 2010-04-20 Show GitHub Exploit DB Packet Storm
196114 2.1 注意 freedesktop.org - udisks の probers/udisks-dm-export.c における暗号鍵を発見される脆弱性 CWE-200
情報漏えい
CVE-2010-1149 2012-06-26 16:19 2010-04-6 Show GitHub Exploit DB Packet Storm
196115 9.3 危険 georg greve - SpamAssassin Milter プラグインにおける任意のシステムコマンドを実行される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2010-1132 2012-06-26 16:19 2010-03-27 Show GitHub Exploit DB Packet Storm
196116 4.3 警告 アップル
マイクロソフト
- Apple Safari で使用される JavaScriptCore.dll におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2010-1131 2012-06-26 16:19 2010-03-27 Show GitHub Exploit DB Packet Storm
196117 5.8 警告 アップル - WebKit の JavaScript 実装におけるキーストロークを form フィールドに送信される脆弱性 CWE-200
情報漏えい
CVE-2010-1126 2012-06-26 16:19 2010-03-26 Show GitHub Exploit DB Packet Storm
196118 2.1 注意 chip salzenberg - Chip Salzenberg Deliver におけるサービス運用妨害 (DoS) の脆弱性 CWE-362
競合状態
CVE-2010-1123 2012-06-26 16:19 2010-03-26 Show GitHub Exploit DB Packet Storm
196119 5 警告 ASP indir - LookMer Music Portal におけるデータベースをダウンロードされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-1116 2012-06-26 16:19 2010-03-25 Show GitHub Exploit DB Packet Storm
196120 5 警告 comscripts - Web Server Creator - Web Portal の news/include/customize.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-1115 2012-06-26 16:19 2010-03-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 4, 2025, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
269541 - zanfi_solutions zanfi_cms_lite PHP remote file inclusion vulnerability in index.php in Zanfi CMS lite 1.1 allows remote attackers to execute arbitrary PHP code via the inc parameter. NVD-CWE-Other
CVE-2004-2195 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
269542 - zanfi_solutions zanfi_cms_lite Zanfi CMS lite 1.1 allows remote attackers to obtain the full path of the web server via direct requests without required arguments to (1) adm_pages.php, (2) corr_pages.php, (3) del_block.php, (4) de… NVD-CWE-Other
CVE-2004-2196 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
269543 - kdocker kdocker kdocker.cpp in kdocker 0.1 through 0.8 does not properly check the ownership of files, which could allow local users to execute arbitrary programs. NVD-CWE-Other
CVE-2004-2197 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
269544 - duware duclassmate account.asp in DUware DUclassmate 1.0 through 1.1 allows remote attackers to change the passwords for arbitrary users by modifying the MM_recordId parameter on the "My Account" page. NVD-CWE-Other
CVE-2004-2198 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
269545 - duware duclassified Cross-site scripting (XSS) vulnerability in DUware DUclassified 4.0 allows remote attackers to inject arbitrary web script or HTML via the message text. NVD-CWE-Other
CVE-2004-2199 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
269546 - duware duforum Cross-site scripting (XSS) vulnerability in DUware DUforum 3.0 through 3.1 allows remote attackers to inject arbitrary web script or HTML via via the message text. NVD-CWE-Other
CVE-2004-2200 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
269547 - duware duforum SQL injection vulnerability in DUware DUforum 3.0 through 3.1 allows remote attackers to execute arbitrary SQL commands via the FOR_ID parameter in messages.asp, (2) MSG_ID parameter in messageDetail… NVD-CWE-Other
CVE-2004-2201 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
269548 - duware duclassified Multiple SQL injection vulnerabilities in DUware DUclassified 4.0 through 4.2 allows remote attackers to bypass authentication and execute other commands on the server's underlying database via the (… NVD-CWE-Other
CVE-2004-2202 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
269549 - ansel ansel Ansel 1.2 through 2.0 uses insecure default permissions, which allows remote attackers to gain access to web readable directories. NVD-CWE-Other
CVE-2004-2203 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
269550 - macromedia coldfusion Macromedia ColdFusion MX 6.0 and 6.1 application server, when running with the CreateObject function or CFOBJECT tag enabled, allows local users to conduct unauthorized activities and obtain administ… NVD-CWE-Other
CVE-2004-2204 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm