Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 4, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227421 7.5 危険 spacial audio solutions - SAM Broadcaster samPHPweb の songinfo.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-0187 2012-12-20 18:34 2008-01-9 Show GitHub Exploit DB Packet Storm
227422 4.3 警告 phprisk - NetRisk の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-0186 2012-12-20 18:34 2008-01-9 Show GitHub Exploit DB Packet Storm
227423 6.4 警告 prenotazioni on line - Line System 上で稼動している Sys-Hotel における絶対パストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-0184 2012-12-20 18:34 2008-01-9 Show GitHub Exploit DB Packet Storm
227424 4.3 警告 Plone Foundation - Plone CMS におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2008-0164 2012-12-20 18:34 2008-03-14 Show GitHub Exploit DB Packet Storm
227425 7.2 危険 sam lantinga - splitvt の misc.c における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-0162 2012-12-20 18:34 2008-02-21 Show GitHub Exploit DB Packet Storm
227426 5 警告 shop-script - Shop-Script の index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-0158 2012-12-20 18:34 2008-01-8 Show GitHub Exploit DB Packet Storm
227427 5 警告 pragma systems - Pragma TelnetServer の telnetd.exe におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2008-0153 2012-12-20 18:34 2008-01-8 Show GitHub Exploit DB Packet Storm
227428 4.3 警告 seattle lab software - SLnet.exe の SeattleLab SLNet RF Telnet Server におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2008-0152 2012-12-20 18:34 2008-01-8 Show GitHub Exploit DB Packet Storm
227429 5 警告 tutos - TUTOS におけるシステム情報を読み取られる脆弱性 CWE-DesignError
CVE-2008-0149 2012-12-20 18:34 2008-01-8 Show GitHub Exploit DB Packet Storm
227430 10 危険 tutos - TUTOS における任意のシェルコマンドを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-0148 2012-12-20 18:34 2008-01-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 5, 2026, 4:51 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
223431 7.5 HIGH
Network
naver vaccine nsGreen.dll in Naver Vaccine 2.1.4 allows remote attackers to overwrite arbitary files via directory traversal sequences in a filename within nsz archive. CWE-22
Path Traversal
CVE-2019-13157 2024-11-21 13:24 2019-11-22 Show GitHub Exploit DB Packet Storm
223432 5.4 MEDIUM
Network
quest kace_systems_management_appliance Quest KACE Systems Management Appliance Server Center 9.1.317 has an XSS vulnerability (via the title field in the /common/ticket_associated_tickets.php service desk ticket functionality) that allows… CWE-79
Cross-site Scripting
CVE-2019-13081 2024-11-21 13:24 2019-11-7 Show GitHub Exploit DB Packet Storm
223433 5.4 MEDIUM
Network
quest kace_systems_management_appliance Quest KACE Systems Management Appliance Server Center 9.1.317 has an XSS vulnerability (via an SVG image and HTML file) that allows an authenticated user to execute arbitrary JavaScript in an adminis… CWE-79
Cross-site Scripting
CVE-2019-13080 2024-11-21 13:24 2019-11-7 Show GitHub Exploit DB Packet Storm
223434 8.8 HIGH
Network
quest kace_systems_management_appliance Quest KACE Systems Management Appliance Server Center 9.1.317 is vulnerable to SQL injection. An authenticated user has the ability to execute arbitrary commands against the database. The affected co… CWE-89
SQL Injection
CVE-2019-13079 2024-11-21 13:24 2019-11-7 Show GitHub Exploit DB Packet Storm
223435 8.8 HIGH
Network
quest kace_systems_management_appliance Quest KACE Systems Management Appliance Server Center 9.1.317 is vulnerable to SQL injection. An authenticated user has the ability to execute arbitrary commands against the database. The affected co… CWE-89
SQL Injection
CVE-2019-13078 2024-11-21 13:24 2019-11-7 Show GitHub Exploit DB Packet Storm
223436 6.1 MEDIUM
Network
quest kace_systems_management_appliance Quest KACE Systems Management Appliance Server Center 9.1.317 has an XSS vulnerability (via the sam_detail_titled.php SAM_TYPE parameter) that allows an attacker to create a malicious link in order t… CWE-79
Cross-site Scripting
CVE-2019-13077 2024-11-21 13:24 2019-11-7 Show GitHub Exploit DB Packet Storm
223437 8.8 HIGH
Network
quest kace_systems_management_appliance Quest KACE Systems Management Appliance Server Center 9.1.317 is vulnerable to SQL injection. An authenticated user has the ability to execute arbitrary commands against the database. The affected co… CWE-89
SQL Injection
CVE-2019-13076 2024-11-21 13:24 2019-11-7 Show GitHub Exploit DB Packet Storm
223438 6.1 MEDIUM
Network
sahipro sahi_pro Sahi Pro 8.0.0 has a script manager arena located at _s_/dyn/pro/DBReports with many different areas that are vulnerable to reflected XSS, by updating a script's Script Name, Suite Name, Base URL, An… CWE-79
Cross-site Scripting
CVE-2019-13066 2024-11-21 13:24 2019-10-30 Show GitHub Exploit DB Packet Storm
223439 7.5 HIGH
Network
hinet gpon_firmware A service which is hosted on port 3097 in HiNet GPON firmware < I040GWR190731 allows an attacker to execute a specific command to read arbitrary files. CVSS 3.0 Base score 9.3. CVSS vector: (CVSS:3.0… NVD-CWE-noinfo
CVE-2019-13412 2024-11-21 13:24 2019-10-18 Show GitHub Exploit DB Packet Storm
223440 7.5 HIGH
Network
topmeeting topmeeting TOPMeeting before version 8.8 (2019/08/19) shows attendees account and password in front end page that allows an attacker to obtain sensitive information by browsing the source code of the page. CWE-200
Information Exposure
CVE-2019-13410 2024-11-21 13:24 2019-10-18 Show GitHub Exploit DB Packet Storm