Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227181 7.5 危険 rgallery - WBB 用の rGallery プラグインにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4627 2012-12-20 18:52 2008-10-20 Show GitHub Exploit DB Packet Storm
227182 6.8 警告 zirkon box - Fritz Berger yappa-ng の yappa-ng におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-4626 2012-12-20 18:52 2008-10-20 Show GitHub Exploit DB Packet Storm
227183 7.5 危険 shiftthis - WordPress 用の ShiftThis Newsletter プラグインにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4625 2012-12-20 18:52 2008-10-20 Show GitHub Exploit DB Packet Storm
227184 5 警告 Wireshark - Wireshark の Bluetooth ACL 解析子におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2008-4683 2012-12-20 18:52 2007-04-4 Show GitHub Exploit DB Packet Storm
227185 7.5 危険 phpfastnews - phpFastNews の fastnews-code.php における認証を迂回される脆弱性 CWE-287
不適切な認証
CVE-2008-4622 2012-12-20 18:52 2008-10-20 Show GitHub Exploit DB Packet Storm
227186 7.5 危険 ZeeScripts.com - ZeeScripts Zeeproperty の bannerclick.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4621 2012-12-20 18:52 2008-10-20 Show GitHub Exploit DB Packet Storm
227187 10 危険 サン・マイクロシステムズ - Sun Solaris の RPC サブシステムにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2008-4619 2012-12-20 18:52 2008-10-20 Show GitHub Exploit DB Packet Storm
227188 7.5 危険 pyxicom - Joomla! 用の actualite モジュールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4617 2012-12-20 18:52 2008-10-20 Show GitHub Exploit DB Packet Storm
227189 5 警告 the spanner
WordPress.org
- WordPress の SpamBam プラグインにおける制限を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2008-4616 2012-12-20 18:52 2008-10-20 Show GitHub Exploit DB Packet Storm
227190 10 危険 portalapp - PortalApp の i_utils.asp における脆弱性 CWE-noinfo
情報不足
CVE-2008-4615 2012-12-20 18:52 2008-10-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
223711 5.3 MEDIUM
Network
zingbox inspector A security vulnerability exists in the Zingbox Inspector versions 1.294 and earlier, that can allow an attacker to easily identify instances of Zingbox Inspectors in a local area network. CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2019-15021 2024-11-21 13:27 2019-10-10 Show GitHub Exploit DB Packet Storm
223712 9.8 CRITICAL
Network
zingbox inspector A security vulnerability exists in the Zingbox Inspector versions 1.293 and earlier, that could allow an attacker to supply an invalid software update image to the Zingbox Inspector that could result… CWE-346
 Origin Validation Error
CVE-2019-15020 2024-11-21 13:27 2019-10-10 Show GitHub Exploit DB Packet Storm
223713 9.8 CRITICAL
Network
zingbox inspector A security vulnerability exists in the Zingbox Inspector versions 1.294 and earlier, that could allow an attacker to supply an invalid software update image to the Zingbox Inspector. CWE-20
 Improper Input Validation 
CVE-2019-15019 2024-11-21 13:27 2019-10-10 Show GitHub Exploit DB Packet Storm
223714 7.5 HIGH
Network
zingbox inspector A security vulnerability exists in the Zingbox Inspector versions 1.280 and earlier, where authentication is not required when binding the Inspector instance to a different customer tenant. CWE-306
Missing Authentication for Critical Function
CVE-2019-15018 2024-11-21 13:27 2019-10-10 Show GitHub Exploit DB Packet Storm
223715 8.4 HIGH
Local
zingbox inspector The SSH service is enabled on the Zingbox Inspector versions 1.294 and earlier, exposing SSH to the local network. When combined with PAN-SA-2019-0027, this can allow an attacker to authenticate to t… CWE-798
 Use of Hard-coded Credentials
CVE-2019-15017 2024-11-21 13:27 2019-10-10 Show GitHub Exploit DB Packet Storm
223716 8.8 HIGH
Network
zingbox inspector An SQL injection vulnerability exists in the management interface of Zingbox Inspector versions 1.288 and earlier, that allows for unsanitized data provided by an authenticated user to be passed from… CWE-89
SQL Injection
CVE-2019-15016 2024-11-21 13:27 2019-10-10 Show GitHub Exploit DB Packet Storm
223717 8.4 HIGH
Local
zingbox inspector In the Zingbox Inspector, versions 1.294 and earlier, hardcoded credentials for root and inspector user accounts are present in the system software, which can result in unauthorized users gaining acc… CWE-798
 Use of Hard-coded Credentials
CVE-2019-15015 2024-11-21 13:27 2019-10-10 Show GitHub Exploit DB Packet Storm
223718 8.8 HIGH
Network
zingbox inspector A command injection vulnerability exists in the Zingbox Inspector versions 1.286 and earlier, that allows for an authenticated user to execute arbitrary system commands in the CLI. CWE-78
OS Command 
CVE-2019-15014 2024-11-21 13:27 2019-10-10 Show GitHub Exploit DB Packet Storm
223719 6.8 MEDIUM
Network
renpho renpho An issue was discovered in the RENPHO application 3.0.0 for iOS. It transmits JSON data unencrypted to a server without an integrity check, if a user changes personal data in his profile tab (e.g., e… CWE-319
Cleartext Transmission of Sensitive Information
CVE-2019-14808 2024-11-21 13:27 2019-10-10 Show GitHub Exploit DB Packet Storm
223720 7.8 HIGH
Local
redhat
debian
opensuse
ansible_engine
debian_linux
leap
backports_sle
openstack
In Ansible, all Ansible Engine versions up to ansible-engine 2.8.5, ansible-engine 2.7.13, ansible-engine 2.6.19, were logging at the DEBUG level which lead to a disclosure of credentials if a plugin… - CVE-2019-14846 2024-11-21 13:27 2019-10-9 Show GitHub Exploit DB Packet Storm