Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 14, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2651 7.2 重要
Network
オラクル Oracle WebLogic Server オラクルのOracle WebLogic Serverにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-34292 2026-04-27 11:22 2026-04-21 Show GitHub Exploit DB Packet Storm
2652 6.5 警告
Network
オラクル PeopleSoft Enterprise SCM Purchasing オラクルのPeopleSoft Enterprise SCM Purchasingにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-34295 2026-04-27 11:22 2026-04-21 Show GitHub Exploit DB Packet Storm
2653 4.3 警告
Network
オラクル Oracle Agile Product Lifecycle Management for Process オラクルのOracle Agile Product Lifecycle Management for Processにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-34296 2026-04-27 11:22 2026-04-21 Show GitHub Exploit DB Packet Storm
2654 7.5 重要
Network
オラクル Oracle HCM Common Architecture オラクルのOracle HCM Common Architectureにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-34297 2026-04-27 11:22 2026-04-21 Show GitHub Exploit DB Packet Storm
2655 6.5 警告
Network
オラクル Oracle Financial Services Analytical Applications Infrastructure オラクルのOracle Financial Services Analytical Applications Infrastructureにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-34313 2026-04-27 11:22 2026-04-21 Show GitHub Exploit DB Packet Storm
2656 6.8 警告
Network
オラクル Oracle Financial Services Analytical Applications Infrastructure オラクルのOracle Financial Services Analytical Applications Infrastructureにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-34314 2026-04-27 11:22 2026-04-21 Show GitHub Exploit DB Packet Storm
2657 4.8 警告
Network
オラクル Oracle Financial Services Analytical Applications Infrastructure オラクルのOracle Financial Services Analytical Applications Infrastructureにおける認可に関する脆弱性 CWE-285
不適切な認可
CVE-2026-34321 2026-04-27 11:22 2026-04-21 Show GitHub Exploit DB Packet Storm
2658 6.3 警告
Network
オラクル Oracle Life Sciences InForm オラクルのOracle Life Sciences InFormにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-34323 2026-04-27 11:22 2026-04-21 Show GitHub Exploit DB Packet Storm
2659 6.5 警告
Network
オラクル Oracle Life Sciences InForm オラクルのOracle Life Sciences InFormにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-34324 2026-04-27 11:22 2026-04-21 Show GitHub Exploit DB Packet Storm
2660 6.8 警告
Local
オラクル Oracle Financial Services Analytical Applications Infrastructure オラクルのOracle Financial Services Analytical Applications Infrastructureにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-34325 2026-04-27 11:22 2026-04-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 14, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
315671 9.8 CRITICAL
Network
ultimate_php_board_project ultimate_php_board register.php in Ultimate PHP Board (UPB) 1.0 and 1.0b uses an administrative account Admin with a capital "A," but allows a remote attacker to impersonate the administrator by registering an account … CWE-178
 Improper Handling of Case Sensitivity
CVE-2002-1820 2024-02-16 06:19 2002-12-31 Show GitHub Exploit DB Packet Storm
315672 - openpkg
trustix
hp
avaya
debian
php
openpkg
secure_linux
hp-ux
converged_communications_server
debian_linux
php
The memory_limit functionality in PHP 4.x up to 4.3.7, and 5.x up to 5.0.0RC3, under certain conditions such as when register_globals is enabled, allows remote attackers to execute arbitrary code by … CWE-367
 Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2004-0594 2024-02-16 06:17 2004-07-27 Show GitHub Exploit DB Packet Storm
315673 7.5 HIGH
Network
pldaniels altermime Off-by-one error in alterMIME 0.1.10 and 0.1.11 allows remote attackers to cause a denial of service (crash) via an x-header that causes snprintf overwrite the FFGET_FILE variable with a (null) byte. CWE-193
 Off-by-one Error
CVE-2002-1721 2024-02-16 06:13 2002-12-31 Show GitHub Exploit DB Packet Storm
315674 7.5 HIGH
Network
hadrons xfstt Off-by-one error in certain versions of xfstt allows remote attackers to read potentially sensitive memory via a malformed client request in the connection handshake, which leaks the memory in the se… CWE-193
 Off-by-one Error
CVE-2003-0625 2024-02-16 06:12 2003-08-27 Show GitHub Exploit DB Packet Storm
315675 - tcpdump tcpdump Integer underflow in the isakmp_id_print for TCPDUMP 3.8.1 and earlier allows remote attackers to cause a denial of service (crash) via an ISAKMP packet with an Identification payload with a length t… CWE-125
CWE-191
Out-of-bounds Read
 Integer Underflow (Wrap or Wraparound)
CVE-2004-0184 2024-02-16 06:09 2004-05-4 Show GitHub Exploit DB Packet Storm
315676 - openbsd openbsd isakmpd in OpenBSD 3.4 and earlier allows remote attackers to cause a denial of service (crash) via an ISAKMP packet with a delete payload containing a large number of SPIs, which triggers an out-of-… CWE-125
Out-of-bounds Read
CVE-2004-0221 2024-02-16 06:09 2004-05-4 Show GitHub Exploit DB Packet Storm
315677 8.8 HIGH
Network
phpbb phpbb prefs.php in phpBB 1.4.0 and earlier allows remote authenticated users to execute arbitrary PHP code via an invalid language value, which prevents the variables (1) $l_statsblock in prefs.php or (2) … CWE-665
 Improper Initialization
CVE-2001-1471 2024-02-16 06:06 2001-07-31 Show GitHub Exploit DB Packet Storm
315678 7.5 HIGH
Network
isc
canonical
apple
bind
ubuntu_linux
mac_os_x_server
mac_os_x
BIND before 9.2.6-P1 and 9.3.x before 9.3.2-P1 allows remote attackers to cause a denial of service (crash) via certain SIG queries, which cause an assertion failure when multiple RRsets are returned. CWE-617
 Reachable Assertion
CVE-2006-4095 2024-02-16 06:04 2006-09-6 Show GitHub Exploit DB Packet Storm
315679 - wirlab kphone sipclient.cpp in KPhone 4.0.1 and earlier allows remote attackers to cause a denial of service (crash) via a STUN response packet with a large attrLen value that causes an out-of-bounds read. CWE-125
Out-of-bounds Read
CVE-2004-1940 2024-02-16 05:54 2004-12-31 Show GitHub Exploit DB Packet Storm
315680 - cisco
symantec
hp
avaya
redhat
freebsd
openbsd
apple
sco
4d
checkpoint
dell
forcepoint
litespeedtech
neoteris
novell
openssl
sgi
stonesoft
tarantella
vmware
bluecoat
securecomputing
sun
firewall_services_module
clientless_vpn_gateway_4400
apache-based_web_server
aaa_server
sg203
hp-ux
enterprise_linux_desktop
ciscoworks_common_management_foundation
freebsd
The SSL/TLS handshaking code in OpenSSL 0.9.7a, 0.9.7b, and 0.9.7c, when using Kerberos ciphersuites, does not properly check the length of Kerberos tickets during a handshake, which allows remote at… CWE-125
Out-of-bounds Read
CVE-2004-0112 2024-02-16 05:54 2004-11-23 Show GitHub Exploit DB Packet Storm