Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 14, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229011 5 警告 pragma systems - Pragma FortressSSH におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2008-0132 2012-12-20 18:34 2008-01-8 Show GitHub Exploit DB Packet Storm
229012 6.8 警告 siteatschool - Site@School の starnet/addons/slideshow_full.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-0129 2012-12-20 18:34 2008-01-8 Show GitHub Exploit DB Packet Storm
229013 4.3 警告 php-stats - Michael Wagner phpstats の phpstats.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-0125 2012-12-20 18:34 2008-03-24 Show GitHub Exploit DB Packet Storm
229014 4.3 警告 s9y - S9Y におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-0124 2012-12-20 18:34 2008-02-25 Show GitHub Exploit DB Packet Storm
229015 7.5 危険 ourproject.org - White_Dune の DuneApp.cpp におけるフォーマットストリングの脆弱性 CWE-20
不適切な入力確認
CVE-2008-0101 2012-12-20 18:34 2008-01-7 Show GitHub Exploit DB Packet Storm
229016 7.5 危険 ourproject.org - White_Dune の Scene.cpp におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-0100 2012-12-20 18:34 2008-01-7 Show GitHub Exploit DB Packet Storm
229017 10 危険 リアルネットワークス - RealPlayer におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-0098 2012-12-20 18:34 2008-01-7 Show GitHub Exploit DB Packet Storm
229018 4.3 警告 phpWebSite - Appalachian State University phpWebSite の search モジュールの index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-0092 2012-12-20 18:34 2008-01-3 Show GitHub Exploit DB Packet Storm
229019 6.8 警告 Xine - xine-lib の input/libreal/sdpplin.c における任意のコードを実行される脆弱性 CWE-189
数値処理の問題
CVE-2008-0073 2012-12-20 18:34 2008-03-24 Show GitHub Exploit DB Packet Storm
229020 6.8 警告 pierreegougelet - XnView におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-0069 2012-12-20 18:34 2008-04-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 14, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
214641 7.8 HIGH
Local
webmin webmin Webmin 1.900 allows remote attackers to execute arbitrary code by leveraging the "Java file manager" and "Upload and Download" privileges to upload a crafted .cgi file via the /updown/upload.cgi URI. CWE-269
 Improper Privilege Management
CVE-2019-9624 2024-11-21 13:51 2019-03-7 Show GitHub Exploit DB Packet Storm
214642 9.8 CRITICAL
Network
fengoffice feng_office Feng Office 3.7.0.5 allows remote attackers to execute arbitrary code via "<!--#exec cmd=" in a .shtml file to ck_upload_handler.php. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2019-9623 2024-11-21 13:51 2019-03-7 Show GitHub Exploit DB Packet Storm
214643 4.3 MEDIUM
Network
ebrigade ebrigade eBrigade through 4.5 allows Arbitrary File Download via ../ directory traversal in the showfile.php file parameter, as demonstrated by reading the user-data/save/backup.sql file. CWE-22
Path Traversal
CVE-2019-9622 2024-11-21 13:51 2019-03-7 Show GitHub Exploit DB Packet Storm
214644 8.8 HIGH
Network
ofcms_project ofcms An issue was discovered in OFCMS before 1.1.3. Remote attackers can execute arbitrary code because blocking of .jsp and .jspx files does not consider (for example) file.jsp::$DATA to the admin/uedito… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2019-9617 2024-11-21 13:51 2019-03-7 Show GitHub Exploit DB Packet Storm
214645 7.2 HIGH
Network
ofcms_project ofcms An issue was discovered in OFCMS before 1.1.3. Remote attackers can execute arbitrary code because blocking of .jsp and .jspx files does not consider (for example) file.jsp::$DATA to the admin/uedito… CWE-706
 Use of Incorrectly-Resolved Name or Reference
CVE-2019-9616 2024-11-21 13:51 2019-03-7 Show GitHub Exploit DB Packet Storm
214646 7.2 HIGH
Network
ofcms_project ofcms An issue was discovered in OFCMS before 1.1.3. It allows admin/system/generate/create?sql= SQL injection, related to SystemGenerateController.java. CWE-89
SQL Injection
CVE-2019-9615 2024-11-21 13:51 2019-03-7 Show GitHub Exploit DB Packet Storm
214647 8.8 HIGH
Network
ofcms_project ofcms An issue was discovered in OFCMS before 1.1.3. A command execution vulnerability exists via a template file with '<#assign ex="freemarker.template.utility.Execute"?new()> ${ ex("' followed by the com… CWE-74
Injection
CVE-2019-9614 2024-11-21 13:51 2019-03-7 Show GitHub Exploit DB Packet Storm
214648 7.2 HIGH
Network
ofcms_project ofcms An issue was discovered in OFCMS before 1.1.3. Remote attackers can execute arbitrary code because blocking of .jsp and .jspx files does not consider (for example) file.jsp::$DATA to the admin/uedito… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2019-9613 2024-11-21 13:51 2019-03-7 Show GitHub Exploit DB Packet Storm
214649 8.8 HIGH
Network
ofcms_project ofcms An issue was discovered in OFCMS before 1.1.3. Remote attackers can execute arbitrary code because blocking of .jsp and .jspx files does not consider (for example) file.jsp::$DATA to the admin/comn/s… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2019-9612 2024-11-21 13:51 2019-03-7 Show GitHub Exploit DB Packet Storm
214650 6.5 MEDIUM
Network
ofcms_project ofcms An issue was discovered in OFCMS before 1.1.3. It allows admin/cms/template/getTemplates.html?res_path=res directory traversal, with ../ in the dir parameter, to write arbitrary content (in the file_… CWE-22
Path Traversal
CVE-2019-9611 2024-11-21 13:51 2019-03-7 Show GitHub Exploit DB Packet Storm