Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 5, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227391 10 危険 uploadscript - UploadScript の admin.php における管理者の権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-0246 2012-12-20 18:34 2008-01-11 Show GitHub Exploit DB Packet Storm
227392 7.5 危険 uploadscript - UploadImage の admin.php における管理者の権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-0245 2012-12-20 18:34 2008-01-11 Show GitHub Exploit DB Packet Storm
227393 10 危険 SAP - SAP MaxDB における任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-0244 2012-12-20 18:34 2008-01-11 Show GitHub Exploit DB Packet Storm
227394 5.8 警告 サン・マイクロシステムズ - Sun Java System Identity Manager の /idm/user/login.jsp におけるオープンリダイレクトの脆弱性 CWE-20
不適切な入力確認
CVE-2008-0241 2012-12-20 18:34 2008-01-9 Show GitHub Exploit DB Packet Storm
227395 4.3 警告 サン・マイクロシステムズ - Sun Java System Identity Manager の /idm/help/index.jsp におけるフィッシング攻撃を実行される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-0240 2012-12-20 18:34 2008-01-9 Show GitHub Exploit DB Packet Storm
227396 4.3 警告 サン・マイクロシステムズ - Sun Java System Identity Manager におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-0239 2012-12-20 18:34 2008-01-9 Show GitHub Exploit DB Packet Storm
227397 7.5 危険 Xine - xine-lib の input/libreal/rmff.c におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-0238 2012-12-20 18:34 2008-01-11 Show GitHub Exploit DB Packet Storm
227398 7.5 危険 zero cms - Zero CMS における意図したアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-0233 2012-12-20 18:34 2008-01-10 Show GitHub Exploit DB Packet Storm
227399 7.5 危険 zero cms - Zero CMS における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-0232 2012-12-20 18:34 2008-01-10 Show GitHub Exploit DB Packet Storm
227400 7.5 危険 tuned studios - Tuned Studios Subwoofer などの Web ページテンプレートにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-0231 2012-12-20 18:34 2008-01-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 6, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
223041 8.2 HIGH
Network
opencv opencv An issue was discovered in OpenCV before 3.4.7 and 4.x before 4.1.1. There is an out of bounds read in the function cv::predictOrdered<cv::HaarEvaluator> in modules/objdetect/src/cascadedetect.hpp, w… CWE-125
Out-of-bounds Read
CVE-2019-14491 2024-11-21 13:26 2019-08-2 Show GitHub Exploit DB Packet Storm
223042 7.8 HIGH
Local
gnucobol_project gnucobol GnuCOBOL 2.2 has a buffer overflow in cb_evaluate_expr in cobc/field.c via crafted COBOL source code. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2019-14486 2024-11-21 13:26 2019-08-2 Show GitHub Exploit DB Packet Storm
223043 6.1 MEDIUM
Network
zurmo zurmo Zurmo 3.2.7-2 has XSS via the app/index.php/zurmo/default PATH_INFO. CWE-79
Cross-site Scripting
CVE-2019-14472 2024-11-21 13:26 2019-08-2 Show GitHub Exploit DB Packet Storm
223044 6.1 MEDIUM
Network
testlink testlink TestLink 1.9.19 has XSS via the error.php message parameter. CWE-79
Cross-site Scripting
CVE-2019-14471 2024-11-21 13:26 2019-08-2 Show GitHub Exploit DB Packet Storm
223045 8.0 HIGH
Adjacent
polycom obihai_obi1022_firmware On the Polycom Obihai Obi1022 VoIP phone with firmware 5.1.11, a command injection (missing input validation) issue in the NTP server IP address field for the "Time Service Settings web" interface al… CWE-78
OS Command 
CVE-2019-14259 2024-11-21 13:26 2019-08-2 Show GitHub Exploit DB Packet Storm
223046 7.8 HIGH
Local
gnucobol_project gnucobol GnuCOBOL 2.2 has a buffer overflow in cb_push_op in cobc/field.c via crafted COBOL source code. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2019-14468 2024-11-21 13:26 2019-08-1 Show GitHub Exploit DB Packet Storm
223047 6.1 MEDIUM
Network
dlink 6600-ap_firmware
dwl-3600ap_firmware
An issue was discovered on D-Link 6600-AP and DWL-3600AP Ax 4.2.0.14 21/03/2019 devices. There is a post-authentication admin.cgi?action= XSS vulnerability on the management interface. CWE-79
Cross-site Scripting
CVE-2019-14338 2024-11-21 13:26 2019-08-1 Show GitHub Exploit DB Packet Storm
223048 5.5 MEDIUM
Local
dlink 6600-ap_firmware
dwl-3600ap_firmware
An issue was discovered on D-Link 6600-AP and DWL-3600AP Ax 4.2.0.14 21/03/2019 devices. There is an ability to escape to a shell in the restricted command line interface, as demonstrated by the `/bi… CWE-78
OS Command 
CVE-2019-14337 2024-11-21 13:26 2019-08-1 Show GitHub Exploit DB Packet Storm
223049 5.5 MEDIUM
Local
dlink 6600-ap_firmware
dwl-3600ap_firmware
An issue was discovered on D-Link 6600-AP and DWL-3600AP Ax 4.2.0.14 21/03/2019 devices. There is post-authenticated dump of all of the config files through a certain admin.cgi?action= insecure HTTP … NVD-CWE-noinfo
CVE-2019-14336 2024-11-21 13:26 2019-08-1 Show GitHub Exploit DB Packet Storm
223050 5.5 MEDIUM
Local
dlink 6600-ap_firmware
dwl-3600ap_firmware
dwl-8610ap_firmware
An issue was discovered on D-Link 6600-AP, DWL-3600AP, and DWL-8610AP Ax 4.2.0.14 21/03/2019 devices. There is post-authenticated Certificate and RSA Private Key extraction through an insecure sslcer… CWE-295
Improper Certificate Validation 
CVE-2019-14334 2024-11-21 13:26 2019-08-1 Show GitHub Exploit DB Packet Storm