Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1401 9.8 緊急
Network
Centreon Centreon AWIE CentreonのCentreon AWIEにおける重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2025-15026 2026-01-28 12:30 2026-01-5 Show GitHub Exploit DB Packet Storm
1402 6.8 警告
Adjacent
TP-LINK Technologies Archer MR600 Archer MR600におけるOSコマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2025-14756 2026-01-28 09:58 2026-01-27 Show GitHub Exploit DB Packet Storm
1403 9.8 緊急
Network
Sagemcom F@ST 3686 Firmware SagemcomのF@ST 3686 Firmwareにおける古典的バッファオーバーフローの脆弱性 CWE-120
古典的バッファオーバーフロー
CVE-2025-29329 2026-01-27 17:41 2026-01-12 Show GitHub Exploit DB Packet Storm
1404 8.8 重要
Network
デル data domain operating system
powerprotect data domain
PowerProtect DM5500 Firmware
デル等の複数ベンダの製品におけるアクセス制御の不十分な粒度に関する脆弱性 CWE-1220
CWE-Other
CVE-2025-29987 2026-01-27 17:41 2025-04-3 Show GitHub Exploit DB Packet Storm
1405 8.1 重要
Network
ThemeGoods Photography ThemeGoodsのWordPress用Photographyにおける信頼できないデータのデシリアライゼーションに関する脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2025-47579 2026-01-27 17:41 2025-09-9 Show GitHub Exploit DB Packet Storm
1406 7.5 重要
Network
ThemeGoods Photography ThemeGoodsのWordPress用Photographyにおける信頼できないデータのデシリアライゼーションに関する脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2025-47584 2026-01-27 17:41 2025-06-6 Show GitHub Exploit DB Packet Storm
1407 6.5 警告
Network
XiaoLiuChu pss.sale.com XiaoLiuChuのpss.sale.comにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2025-51626 2026-01-27 17:41 2026-01-9 Show GitHub Exploit DB Packet Storm
1408 9.8 緊急
Network
アドバンテック株式会社 IoT Edge Windows
IoT Edge Linux docker
IoTSuite Starter Linux docker
IoTSuite Growth Linux docker
IoTSuite/ SaaSComposer
アドバンテック株式会社のIoT Edge Linux docker等の複数製品におけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2025-52694 2026-01-27 17:41 2026-01-12 Show GitHub Exploit DB Packet Storm
1409 9.1 緊急
Network
OPTIMAL SYSTEMS GmbH enaio OPTIMAL SYSTEMS GmbHのenaioにおけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2025-56425 2026-01-27 17:41 2026-01-8 Show GitHub Exploit DB Packet Storm
1410 7.5 重要
Network
QNAP Systems Qfiling QNAP SystemsのQfilingにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2025-59384 2026-01-27 17:40 2026-01-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 23, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
283041 - aspindir hazirsite SQL injection vulnerability in giris_yap.asp in Hazir Site 2.0 allows remote attackers to bypass authentication via the (1) k_a class or (2) sifre parameter. NVD-CWE-Other
CVE-2006-7161 2018-10-17 01:29 2007-03-8 Show GitHub Exploit DB Packet Storm
283042 - phpbb dimension PHP remote file inclusion vulnerability in includes/functions.php in the Dimension module of phpBB allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter. N… NVD-CWE-Other
CVE-2006-7174 2018-10-17 01:29 2007-03-22 Show GitHub Exploit DB Packet Storm
283043 - madwifi madwifi MadWifi, when Ad-Hoc mode is used, allows remote attackers to cause a denial of service (system crash) via unspecified vectors that lead to a kernel panic in the ieee80211_input function, related to … NVD-CWE-Other
CVE-2006-7177 2018-10-17 01:29 2007-03-30 Show GitHub Exploit DB Packet Storm
283044 - madwifi madwifi MadWifi before 0.9.3 does not properly handle reception of an AUTH frame by an IBSS node, which allows remote attackers to cause a denial of service (system crash) via a certain AUTH frame. NVD-CWE-Other
CVE-2006-7178 2018-10-17 01:29 2007-03-30 Show GitHub Exploit DB Packet Storm
283045 - madwifi madwifi ieee80211_input.c in MadWifi before 0.9.3 does not properly process Channel Switch Announcement Information Elements (CSA IEs), which allows remote attackers to cause a denial of service (loss of com… NVD-CWE-Other
CVE-2006-7179 2018-10-17 01:29 2007-03-30 Show GitHub Exploit DB Packet Storm
283046 - madwifi madwifi ieee80211_output.c in MadWifi before 0.9.3 sends unencrypted packets before WPA authentication succeeds, which allows remote attackers to obtain sensitive information (related to network structure), … NVD-CWE-Other
CVE-2006-7180 2018-10-17 01:29 2007-03-30 Show GitHub Exploit DB Packet Storm
283047 - mnews mnews PHP remote file inclusion vulnerability in noticias.php in MNews 2.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the inc parameter. NVD-CWE-Other
CVE-2006-7182 2018-10-17 01:29 2007-03-30 Show GitHub Exploit DB Packet Storm
283048 - microsoft .net_framework Microsoft ASP .NET Framework 2.0.50727.42 does not properly handle comment (/* */) enclosures, which allows remote attackers to bypass request filtering and conduct cross-site scripting (XSS) attacks… NVD-CWE-Other
CVE-2006-7192 2018-10-17 01:29 2007-04-11 Show GitHub Exploit DB Packet Storm
283049 - adam_van_dongen com_forum
phpbb_component
PHP remote file inclusion vulnerability in download.php in the Adam van Dongen Forum (com_forum) component (aka phpBB component) 1.2.4RC3 and earlier for Mambo allows remote attackers to execute arbi… CWE-20
 Improper Input Validation 
CVE-2006-7208 2018-10-17 01:29 2007-06-27 Show GitHub Exploit DB Packet Storm
283050 - adam_van_dongen com_forum
phpbb_component
requires that PHP's 'register_globals' setting be enabled CWE-20
 Improper Input Validation 
CVE-2006-7208 2018-10-17 01:29 2007-06-27 Show GitHub Exploit DB Packet Storm