Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
244341 7.5 危険 codeavalanche - CodeAvalanche FreeWallpaper における管理者パスワードを含むデータベースファイルをダウンロードされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-5897 2012-06-26 16:10 2009-01-12 Show GitHub Exploit DB Packet Storm
244342 7.5 危険 codeavalanche - CodeAvalanche RateMySite における管理者パスワードを含むデータベースファイルをダウンロードされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-5896 2012-06-26 16:10 2009-01-12 Show GitHub Exploit DB Packet Storm
244343 7.5 危険 gobbl - Gobbl CMS の admin/auth.php における管理アクセス権を取得される脆弱性 CWE-287
不適切な認証
CVE-2008-5880 2012-06-26 16:10 2009-01-8 Show GitHub Exploit DB Packet Storm
244344 4.3 警告 FastStone Soft - FastStone Image Viewer におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2008-5870 2012-06-26 16:10 2009-01-8 Show GitHub Exploit DB Packet Storm
244345 5 警告 freelyrics - FreeLyrics の source.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-5861 2012-06-26 16:10 2009-01-6 Show GitHub Exploit DB Packet Storm
244346 5.1 警告 constructr - Constructr CMS の backend/template.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-5860 2012-06-26 16:10 2009-01-6 Show GitHub Exploit DB Packet Storm
244347 5.1 警告 constructr - Constructr CMS の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5859 2012-06-26 16:10 2009-01-6 Show GitHub Exploit DB Packet Storm
244348 5 警告 class - ClaSS の scripts/export.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-5856 2012-06-26 16:10 2009-01-6 Show GitHub Exploit DB Packet Storm
244349 5 警告 chicomas - Chilek Content Management System におけるデータベースのバックアップを読み取られる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-5853 2012-06-26 16:10 2009-01-6 Show GitHub Exploit DB Packet Storm
244350 5 警告 emefa - Emefa Guestbook におけるデータベースファイルをダウンロードされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-5852 2012-06-26 16:10 2009-01-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
219271 8.8 HIGH
Network
risi gestao_de_horarios RISI Gestao de Horarios v3201.09.08 rev.23 allows SQL Injection. CWE-89
SQL Injection
CVE-2019-6491 2024-11-21 13:46 2019-03-22 Show GitHub Exploit DB Packet Storm
219272 9.8 CRITICAL
Network
blogengine blogengine.net An issue was discovered in BlogEngine.NET through 3.3.6.0. A path traversal and Local File Inclusion vulnerability in PostList.ascx.cs can cause unauthenticated users to load a PostView.ascx componen… CWE-22
Path Traversal
CVE-2019-6714 2024-11-21 13:46 2019-03-22 Show GitHub Exploit DB Packet Storm
219273 5.9 MEDIUM
Network
mastercard qkr\!_with_masterpass The MasterCard Qkr! app before 5.0.8 for iOS has Missing SSL Certificate Validation. NOTE: this CVE only applies to obsolete versions from 2016 or earlier. CWE-295
Improper Certificate Validation 
CVE-2019-6702 2024-11-21 13:46 2019-03-22 Show GitHub Exploit DB Packet Storm
219274 7.5 HIGH
Network
python
debian
opensuse
suse
canonical
python-gnupg
debian_linux
leap
backports
ubuntu_linux
python-gnupg 0.4.3 allows context-dependent attackers to trick gnupg to decrypt other ciphertext than intended. To perform the attack, the passphrase to gnupg must be controlled by the adversary and … CWE-20
 Improper Input Validation 
CVE-2019-6690 2024-11-21 13:46 2019-03-22 Show GitHub Exploit DB Packet Storm
219275 5.5 MEDIUM
Local
qemu
fedoraproject
qemu
fedora
In QEMU 3.1, scsi_handle_inquiry_reply in hw/scsi/scsi-generic.c allows out-of-bounds write and read operations. CWE-125
CWE-787
Out-of-bounds Read
 Out-of-bounds Write
CVE-2019-6501 2024-11-21 13:46 2019-03-22 Show GitHub Exploit DB Packet Storm
219276 5.5 MEDIUM
Local
iobit smart_defrag SmartDefragDriver.sys (2.0) in IObit Smart Defrag 6 never frees an executable kernel pool that is allocated with user defined bytes and size when IOCTL 0x9C401CC4 is called. This kernel pointer can b… CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2019-6492 2024-11-21 13:46 2019-03-22 Show GitHub Exploit DB Packet Storm
219277 8.8 HIGH
Network
chinamobileltd gpn2.4p21-c-cn_firmware ChinaMobile PLC Wireless Router GPN2.4P21-C-CN devices with firmware W2001EN-00 have CSRF via the cgi-bin/webproc?getpage=html/index.html subpage=wlsecurity URI, allowing an Attacker to change the Wi… CWE-352
 Origin Validation Error
CVE-2019-6282 2024-11-21 13:46 2019-03-22 Show GitHub Exploit DB Packet Storm
219278 8.8 HIGH
Network
chinamobileltd gpn2.4p21-c-cn_firmware ChinaMobile PLC Wireless Router GPN2.4P21-C-CN devices with firmware W2001EN-00 have an Incorrect Access Control vulnerability via the cgi-bin/webproc?getpage=html/index.html subpage=wlsecurity URI, … NVD-CWE-noinfo
CVE-2019-6279 2024-11-21 13:46 2019-03-22 Show GitHub Exploit DB Packet Storm
219279 8.8 HIGH
Network
gl-inet gl-ar300m-lite_firmware Command injection vulnerability in firmware_cgi in GL.iNet GL-AR300M-Lite devices with firmware 2.27 allows remote attackers to execute arbitrary code. CWE-77
Command Injection
CVE-2019-6275 2024-11-21 13:46 2019-03-22 Show GitHub Exploit DB Packet Storm
219280 5.5 MEDIUM
Local
systemd_project
opensuse
netapp
debian
fedoraproject
canonical
redhat
mcafee
systemd
leap
active_iq_performance_analytics_services
debian_linux
fedora
ubuntu_linux
enterprise_linux_desktop
enterprise_linux_workstation
enterprise_linux_server
enterpr…
An issue was discovered in sd-bus in systemd 239. bus_process_object() in libsystemd/sd-bus/bus-objects.c allocates a variable-length stack buffer for temporarily storing the object path of incoming … CWE-787
 Out-of-bounds Write
CVE-2019-6454 2024-11-21 13:46 2019-03-22 Show GitHub Exploit DB Packet Storm