Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226961 9.3 危険 ソフォス - Sophos Anti-Virus における HTML 文書内のマルウェアの検出を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2008-5541 2012-12-20 18:52 2008-12-12 Show GitHub Exploit DB Packet Storm
226962 9.3 危険 securecomputing - Secure Computing Secure Web Gateway における HTML ドキュメント内のマルウェアの検出を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2008-5540 2012-12-20 18:52 2008-12-12 Show GitHub Exploit DB Packet Storm
226963 9.3 危険 Beijing Rising International Software - RISING Antivirus における HTML 文書内のマルウェアの検出を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2008-5539 2012-12-20 18:52 2008-12-12 Show GitHub Exploit DB Packet Storm
226964 9.3 危険 ウェブルート株式会社 - Prevx Prevx における HTML 文書内のマルウェアの検知を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2008-5538 2012-12-20 18:52 2008-12-12 Show GitHub Exploit DB Packet Storm
226965 9.3 危険 クイックヒール・テクノロジーズ・ジャパン株式会社 - CAT-QuickHeal におけるマルウェアの検知を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2008-5524 2012-12-20 18:52 2008-12-12 Show GitHub Exploit DB Packet Storm
226966 7.5 危険 pozscripts - PozScripts Business Directory Script の showcategory.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5496 2012-12-20 18:52 2008-12-12 Show GitHub Exploit DB Packet Storm
226967 7.5 危険 phpstore - PHPStore Wholesales の track.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5493 2012-12-20 18:52 2008-12-12 Show GitHub Exploit DB Packet Storm
226968 9.3 危険 verypdf - VeryDOC PDF Viewer OCX Control の pdfview.ocx におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-5492 2012-12-20 18:52 2008-12-12 Show GitHub Exploit DB Packet Storm
226969 7.5 危険 slimcms - SlimCMS の edit.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5491 2012-12-20 18:52 2008-12-12 Show GitHub Exploit DB Packet Storm
226970 7.5 危険 phpstore - PHPStore Yahoo Answers の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5490 2012-12-20 18:52 2008-12-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 8, 2026, 4:54 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
223271 8.8 HIGH
Network
softing uagate_si_firmware
uagate_mb_firmware
uagate_840d_firmware
An issue was discovered in Softing uaGate (SI, MB, 840D) firmware through 1.71.00.1225. A CGI script is vulnerable to command injection via a maliciously crafted form parameter. CWE-77
Command Injection
CVE-2019-15051 2024-11-21 13:27 2019-10-11 Show GitHub Exploit DB Packet Storm
223272 5.9 MEDIUM
Network
arista extensible_operating_system A vulnerability has been found in the implementation of the Label Distribution Protocol (LDP) protocol in EOS. Under race conditions, the LDP agent can establish an LDP session with a malicious peer … CWE-362
Race Condition
CVE-2019-14810 2024-11-21 13:27 2019-10-11 Show GitHub Exploit DB Packet Storm
223273 7.5 HIGH
Network
zingbox inspector A security vulnerability exists in Zingbox Inspector versions 1.294 and earlier, that results in passwords for 3rd party integrations being stored in cleartext in device configuration. CWE-312
 Cleartext Storage of Sensitive Information
CVE-2019-15023 2024-11-21 13:27 2019-10-10 Show GitHub Exploit DB Packet Storm
223274 7.5 HIGH
Network
zingbox inspector A security vulnerability exists in Zingbox Inspector versions 1.294 and earlier, that allows for the Inspector to be susceptible to ARP spoofing. CWE-290
 Authentication Bypass by Spoofing
CVE-2019-15022 2024-11-21 13:27 2019-10-10 Show GitHub Exploit DB Packet Storm
223275 5.3 MEDIUM
Network
zingbox inspector A security vulnerability exists in the Zingbox Inspector versions 1.294 and earlier, that can allow an attacker to easily identify instances of Zingbox Inspectors in a local area network. CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2019-15021 2024-11-21 13:27 2019-10-10 Show GitHub Exploit DB Packet Storm
223276 9.8 CRITICAL
Network
zingbox inspector A security vulnerability exists in the Zingbox Inspector versions 1.293 and earlier, that could allow an attacker to supply an invalid software update image to the Zingbox Inspector that could result… CWE-346
 Origin Validation Error
CVE-2019-15020 2024-11-21 13:27 2019-10-10 Show GitHub Exploit DB Packet Storm
223277 9.8 CRITICAL
Network
zingbox inspector A security vulnerability exists in the Zingbox Inspector versions 1.294 and earlier, that could allow an attacker to supply an invalid software update image to the Zingbox Inspector. CWE-20
 Improper Input Validation 
CVE-2019-15019 2024-11-21 13:27 2019-10-10 Show GitHub Exploit DB Packet Storm
223278 7.5 HIGH
Network
zingbox inspector A security vulnerability exists in the Zingbox Inspector versions 1.280 and earlier, where authentication is not required when binding the Inspector instance to a different customer tenant. CWE-306
Missing Authentication for Critical Function
CVE-2019-15018 2024-11-21 13:27 2019-10-10 Show GitHub Exploit DB Packet Storm
223279 8.4 HIGH
Local
zingbox inspector The SSH service is enabled on the Zingbox Inspector versions 1.294 and earlier, exposing SSH to the local network. When combined with PAN-SA-2019-0027, this can allow an attacker to authenticate to t… CWE-798
 Use of Hard-coded Credentials
CVE-2019-15017 2024-11-21 13:27 2019-10-10 Show GitHub Exploit DB Packet Storm
223280 8.8 HIGH
Network
zingbox inspector An SQL injection vulnerability exists in the management interface of Zingbox Inspector versions 1.288 and earlier, that allows for unsanitized data provided by an authenticated user to be passed from… CWE-89
SQL Injection
CVE-2019-15016 2024-11-21 13:27 2019-10-10 Show GitHub Exploit DB Packet Storm