Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 16, 2025, 12:02 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
196901 4.3 警告 CubeCart Limited - CubeCart の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1550 2012-06-26 16:02 2008-03-31 Show GitHub Exploit DB Packet Storm
196902 6.8 警告 aeries - Eagle Software Aries Student Information System の ABI における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1549 2012-06-26 16:02 2008-03-31 Show GitHub Exploit DB Packet Storm
196903 4.3 警告 aeries - Eagle Software Aries Student Information System の ABI におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1548 2012-06-26 16:02 2008-03-31 Show GitHub Exploit DB Packet Storm
196904 7.5 危険 airspan - Airspan WiMAX ProST 上で稼動する ProST Web Management コンポーネントの Advanced User Interface Page コンポーネントにおける管理者アクセスの一部を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2008-1543 2012-06-26 16:02 2008-03-28 Show GitHub Exploit DB Packet Storm
196905 7.5 危険 airspan - Airspan BSDU における管理者アクセス権を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2008-1542 2012-06-26 16:02 2008-03-28 Show GitHub Exploit DB Packet Storm
196906 7.5 危険 futurenuke - PHP Nuke Platinum の includes/dynamic_titles.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1539 2012-06-26 16:02 2008-03-28 Show GitHub Exploit DB Packet Storm
196907 9.3 危険 GNU Project - gpg におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2008-1530 2012-06-26 16:02 2008-03-26 Show GitHub Exploit DB Packet Storm
196908 6.8 警告 danneo - Danneo CMS の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1513 2012-06-26 16:02 2008-03-25 Show GitHub Exploit DB Packet Storm
196909 4.3 警告 Alkacon Software - Alkacon OpenCMS の system/workplace/admin/accounts/users_list.jsp におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1510 2012-06-26 16:02 2008-03-25 Show GitHub Exploit DB Packet Storm
196910 7.5 危険 efestech - EfesTech E-Kontor における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1508 2012-06-26 16:02 2008-03-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 16, 2025, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
270391 - n-base nh2012
nh2012r
nh2015
nh2048
nh3012
NBase switches NH2012, NH2012R, NH2015, and NH2048 have a back door password that cannot be disabled, which allows remote attackers to modify the switch's configuration. NVD-CWE-Other
CVE-1999-1420 2016-10-18 11:04 1998-07-20 Show GitHub Exploit DB Packet Storm
270392 - n-base nh208
nh215
NBase switches NH208 and NH215 run a TFTP server which allows remote attackers to send software updates to modify the switch or cause a denial of service (crash) by guessing the target filenames, whi… NVD-CWE-Other
CVE-1999-1421 2016-10-18 11:04 1998-07-20 Show GitHub Exploit DB Packet Storm
270393 - slackware slackware_linux The default configuration of Slackware 3.4, and possibly other versions, includes . (dot, the current directory) in the PATH environmental variable, which could allow local users to create Trojan hor… NVD-CWE-Other
CVE-1999-1422 2016-10-18 11:04 1999-01-2 Show GitHub Exploit DB Packet Storm
270394 - dit transferpro DIT TransferPro installs devices with world-readable and world-writable permissions, which could allow local users to damage disks through the ff device driver. NVD-CWE-Other
CVE-1999-1429 2016-10-18 11:04 1998-01-5 Show GitHub Exploit DB Packet Storm
270395 - royal davinci PIM software for Royal daVinci does not properly password-protext access to data stored in the .mdb (Microsoft Access) file, which allows local users to read the data without a password by directly a… NVD-CWE-Other
CVE-1999-1430 2016-10-18 11:04 1999-01-1 Show GitHub Exploit DB Packet Storm
270396 - microsoft zero_administration_kit ZAK in Appstation mode allows users to bypass the "Run only allowed apps" policy by starting Explorer from Office 97 applications (such as Word), installing software into the TEMP directory, and chan… NVD-CWE-Other
CVE-1999-1431 2016-10-18 11:04 2005-01-7 Show GitHub Exploit DB Packet Storm
270397 - hp jetadmin HP JetAdmin D.01.09 on Solaris allows local users to change the permissions of arbitrary files via a symlink attack on the /tmp/jetadmin.log file. NVD-CWE-Other
CVE-1999-1433 2016-10-18 11:04 1998-07-15 Show GitHub Exploit DB Packet Storm
270398 - slackware slackware_linux login in Slackware Linux 3.2 through 3.5 does not properly check for an error when the /etc/group file is missing, which prevents it from dropping privileges, causing it to assign root privileges to … NVD-CWE-Other
CVE-1999-1434 2016-10-18 11:04 1998-07-13 Show GitHub Exploit DB Packet Storm
270399 - nec socks_5 Buffer overflow in libsocks5 library of Socks 5 (socks5) 1.0r5 allows local users to gain privileges via long environmental variables. NVD-CWE-Other
CVE-1999-1435 2016-10-18 11:04 1998-07-10 Show GitHub Exploit DB Packet Storm
270400 - ray_chan www_authorization_gateway Ray Chan WWW Authorization Gateway 0.1 CGI program allows remote attackers to execute arbitrary commands via shell metacharacters in the "user" parameter. NVD-CWE-Other
CVE-1999-1436 2016-10-18 11:04 1998-07-8 Show GitHub Exploit DB Packet Storm