Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 11, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
190951 7.5 重要
Network
Saad Amin - WordPress 用 Simple Student Result プラグインにおける認証に関する脆弱性 CWE-287
不適切な認証
CVE-2017-14766 2017-10-23 16:53 2017-09-21 Show GitHub Exploit DB Packet Storm
190952 7.8 重要
Local
Unisys - Unisys MCP-FIRMWARE におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2017-13684 2017-10-23 16:51 2017-09-29 Show GitHub Exploit DB Packet Storm
190953 9.8 緊急
Network
Shindiri Studio - WordPress 用 Content Timeline プラグインにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2017-14507 2017-10-23 16:44 2017-09-26 Show GitHub Exploit DB Packet Storm
190954 6.1 警告
Network
Elasticsearch - Kibana におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-11479 2017-10-23 16:44 2017-09-18 Show GitHub Exploit DB Packet Storm
190955 5.9 警告
Network
Percona - Percona Toolkit および XtraBackup における情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2015-1027 2017-10-23 16:44 2015-05-6 Show GitHub Exploit DB Packet Storm
190956 7.8 重要
Local
Apache Software Foundation - Apache Tika における XML 外部エンティティの脆弱性 CWE-611
XML 外部エンティティ参照の不適切な制限
CVE-2016-4434 2017-10-23 16:43 2016-05-26 Show GitHub Exploit DB Packet Storm
190957 4.7 警告
Local
OpenHPI project - OpenHPI におけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2015-3248 2017-10-23 16:42 2015-06-19 Show GitHub Exploit DB Packet Storm
190958 8.8 重要
Network
Claydip - Claydip Laravel Airbnb Clone における危険なタイプのファイルの無制限アップロードに関する脆弱性 CWE-434
危険なタイプのファイルの無制限アップロード
CVE-2017-14704 2017-10-23 16:33 2017-09-22 Show GitHub Exploit DB Packet Storm
190959 3.1
Network
Fedora Project
wesnoth
- Battle for Wesnoth における情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2015-5070 2017-10-23 16:23 2015-06-29 Show GitHub Exploit DB Packet Storm
190960 4.3 警告
Network
Fedora Project
wesnoth
- Battle for Wesnoth における情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2015-5069 2017-10-23 16:23 2015-06-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 11, 2026, 5:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
354031 - oaboard oaboard PHP remote file include vulnerability in forum.php in oaBoard 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the inc_stat parameter, a different vulnerability than CVE-2006-00… CWE-94
Code Injection
CVE-2006-0094 2011-08-23 13:00 2006-01-5 Show GitHub Exploit DB Packet Storm
354032 - desklance desklance PHP remote file inclusion vulnerability in support/index.php in DeskLance 2.3 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the main parameter. CWE-94
Code Injection
CVE-2005-3835 2011-08-10 13:00 2005-11-27 Show GitHub Exploit DB Packet Storm
354033 - x-scripts x-poll SQL injection vulnerability in top.php in X-Scripts X-Poll, probably 2.30, allows remote attackers to execute arbitrary SQL commands via the poll parameter. NOTE: the provenance of this information … CWE-89
SQL Injection
CVE-2006-3960 2011-08-5 13:00 2006-08-2 Show GitHub Exploit DB Packet Storm
354034 - newsboard unclassified_newsboard SQL injection vulnerability in search.inc.php in Unclassified NewsBoard before 1.5.3 Patch 4 allows remote attackers to execute arbitrary SQL commands via the (1) DateFrom or (2) DateUntil parameter … CWE-89
SQL Injection
CVE-2005-3686 2011-08-5 13:00 2005-11-19 Show GitHub Exploit DB Packet Storm
354035 - phpcomasy phpcomasy SQL injection vulnerability in index.php in phpComasy 0.7.5 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: an examination of the 0.7.5 source code … CWE-89
SQL Injection
CVE-2005-3744 2011-08-5 13:00 2005-11-22 Show GitHub Exploit DB Packet Storm
354036 - tru-zone nukeet SQL injection vulnerability in the Search module in Tru-Zone Nuke ET 3.2, and possibly earlier versions, allows remote attackers to execute arbitrary SQL commands via the query parameter. CWE-89
SQL Injection
CVE-2005-3748 2011-08-5 13:00 2005-11-22 Show GitHub Exploit DB Packet Storm
354037 - omnistar_interactive omnistar_live SQL injection vulnerability in kb.php in Omnistar Live 5.2 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) id and (2) category_id parameter. NOTE: due to a typo, an… CWE-89
SQL Injection
CVE-2005-3840 2011-08-5 13:00 2005-11-27 Show GitHub Exploit DB Packet Storm
354038 - altantisfaq altantis_knowledge_base_software SQL injection vulnerability in search.php in AtlantisFAQ Knowledge Base Software 2.03 and earlier allows remote attackers to execute arbitrary SQL commands via the searchStr parameter. CWE-89
SQL Injection
CVE-2005-3881 2011-08-5 13:00 2005-11-29 Show GitHub Exploit DB Packet Storm
354039 - cfmagic magic_list_pro SQL injection vulnerability in view_archive.cfm in CFMagic Magic List Pro 2.5 allows remote attackers to execute arbitrary SQL commands via the ListID parameter. CWE-89
SQL Injection
CVE-2005-4073 2011-08-5 13:00 2005-12-8 Show GitHub Exploit DB Packet Storm
354040 - mimms
xine
mimms
xine-lib
Stack-based buffer overflow in libmms, as used by (a) MiMMS 0.0.9 and (b) xine-lib 1.1.0 and earlier, allows remote attackers to cause a denial of service (application crash) and possibly execute arb… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2006-2200 2011-08-2 13:00 2006-06-28 Show GitHub Exploit DB Packet Storm