Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 12, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228271 7.5 危険 w2b - W2B phpHotResources の cat.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1844 2012-12-20 18:52 2008-04-16 Show GitHub Exploit DB Packet Storm
228272 7.5 危険 w2b - W2B DatingClub の browse.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1843 2012-12-20 18:52 2008-04-16 Show GitHub Exploit DB Packet Storm
228273 4.3 警告 work system e-commerce - WORK system e-commerce の module/main.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1839 2012-12-20 18:52 2008-04-16 Show GitHub Exploit DB Packet Storm
228274 4.3 警告 swfdec - Swfdec の swfdec_load_object.c における任意のファイルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-1834 2012-12-20 18:52 2008-04-16 Show GitHub Exploit DB Packet Storm
228275 4.4 警告 SAP - Linux 上で稼動する SAP MaxDB の dbmsrv における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-1810 2012-12-20 18:52 2008-08-1 Show GitHub Exploit DB Packet Storm
228276 9.3 危険 Skype Technologies S.A. - Skype における警告ダイアログを回避される脆弱性 CWE-20
不適切な入力確認
CVE-2008-1805 2012-12-20 18:52 2008-06-6 Show GitHub Exploit DB Packet Storm
228277 9.3 危険 Rdesktop - rdesktop の process_redirect_pdu 関数におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-1802 2012-12-20 18:52 2008-05-12 Show GitHub Exploit DB Packet Storm
228278 5 警告 sabros.us - sabros.us の thumbnails.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-1799 2012-12-20 18:52 2008-04-15 Show GitHub Exploit DB Packet Storm
228279 7.1 危険 securecomputing - Secure Computing Webwasher におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2008-1797 2012-12-20 18:52 2008-04-15 Show GitHub Exploit DB Packet Storm
228280 6.8 警告 prozilla - Prozilla Forum の forum.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1789 2012-12-20 18:52 2008-04-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 12, 2026, 5:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
311841 7.8 HIGH
Local
br-automation industrial_automation_aprol An untrusted search path vulnerability in B&R APROL <= R 4.4-00P3 may be used by an authenticated local attacker to get other users to execute arbitrary code under their privileges. CWE-426
 Untrusted Search Path
CVE-2024-5623 2024-09-14 05:19 2024-08-29 Show GitHub Exploit DB Packet Storm
311842 8.8 HIGH
Network
portabilis i-educar i-Educar is free, fully online school management software that can be used by school secretaries, teachers, coordinators, and area managers. A SQL Injection vulnerability was found prior to the 2.9 b… CWE-89
SQL Injection
CVE-2024-45059 2024-09-14 05:09 2024-08-29 Show GitHub Exploit DB Packet Storm
311843 8.1 HIGH
Network
portabilis i-educar i-Educar is free, fully online school management software that can be used by school secretaries, teachers, coordinators, and area managers. Prior to the 2.9 branch, an attacker with only minimal vie… CWE-862
 Missing Authorization
CVE-2024-45058 2024-09-14 05:06 2024-08-29 Show GitHub Exploit DB Packet Storm
311844 6.1 MEDIUM
Network
portabilis i-educar i-Educar is free, fully online school management software that can be used by school secretaries, teachers, coordinators, and area managers. A Reflected Cross-Site Scripting (XSS) vulnerability was i… CWE-79
Cross-site Scripting
CVE-2024-45057 2024-09-14 05:03 2024-08-29 Show GitHub Exploit DB Packet Storm
311845 7.5 HIGH
Network
huawei harmonyos
emui
Vulnerability of permission verification for APIs in the DownloadProviderMain module Impact: Successful exploitation of this vulnerability will affect availability. NVD-CWE-noinfo
CVE-2024-45442 2024-09-14 05:00 2024-09-4 Show GitHub Exploit DB Packet Storm
311846 5.4 MEDIUM
Network
squaredup squaredup_ds_for_scom SquaredUp DS for SCOM 6.2.1.11104 allows XSS. CWE-79
Cross-site Scripting
CVE-2024-45180 2024-09-14 04:55 2024-09-4 Show GitHub Exploit DB Packet Storm
311847 8.1 HIGH
Network
idec windo\/i-nv4
windldr
Cleartext storage of sensitive information vulnerability exists in WindLDR and WindO/I-NV4. If this vulnerability is exploited, an attacker who obtained the product's project file may obtain user cre… CWE-312
 Cleartext Storage of Sensitive Information
CVE-2024-41716 2024-09-14 04:53 2024-09-4 Show GitHub Exploit DB Packet Storm
311848 4.3 MEDIUM
Network
audiobookshelf audiobookshelf audiobookshelf is a self-hosted audiobook and podcast server. A non-admin user is not allowed to create libraries (or access only the ones they have permission to). However, the `LibraryController` i… CWE-22
Path Traversal
CVE-2024-43797 2024-09-14 04:49 2024-09-3 Show GitHub Exploit DB Packet Storm
311849 9.8 CRITICAL
Network
zyxel nwa110ax_firmware
nwa1123-ac_pro_firmware
nwa1123acv3_firmware
nwa130be_firmware
nwa210ax_firmware
nwa220ax-6e_firmware
nwa50ax_firmware
nwa50ax_pro_firmware
nwa55axe_firmware…
The improper neutralization of special elements in the parameter "host" in the CGI program of Zyxel NWA1123ACv3 firmware version 6.70(ABVT.4) and earlier, WAC500 firmware version 6.70(ABVS.4) and e… CWE-78
OS Command 
CVE-2024-7261 2024-09-14 04:39 2024-09-3 Show GitHub Exploit DB Packet Storm
311850 9.8 CRITICAL
Network
cisco smart_license_utility A vulnerability in Cisco Smart Licensing Utility could allow an unauthenticated, remote attacker to log in to an affected system by using a static administrative credential. This vulnerability is … CWE-798
 Use of Hard-coded Credentials
CVE-2024-20439 2024-09-14 04:35 2024-09-5 Show GitHub Exploit DB Packet Storm