Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
193861 6.1 警告
Network
MyBB Group - MyBB および Merge System のメンバー検証におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-9405 2017-02-13 15:31 2016-03-11 Show GitHub Exploit DB Packet Storm
193862 6.1 警告
Network
MyBB Group - MyBB および Merge System におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-9404 2017-02-13 15:31 2016-03-11 Show GitHub Exploit DB Packet Storm
193863 9.8 緊急
Network
MyBB Group - MyBB および Merge System の newreply.php における脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-9403 2017-02-13 15:31 2016-03-11 Show GitHub Exploit DB Packet Storm
193864 9.8 緊急
Network
MyBB Group - MyBB および Merge System の moderation ツールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2016-9402 2017-02-13 15:31 2016-03-11 Show GitHub Exploit DB Packet Storm
193865 7.5 重要
Network
MyBB Group - MyBB および Merge System におけるインストールパスを取得される脆弱性 CWE-532
ログファイルからの情報漏えい
CVE-2015-8977 2017-02-13 15:30 2015-09-7 Show GitHub Exploit DB Packet Storm
193866 6.1 警告
Network
MyBB Group - MyBB および Merge System におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-8976 2017-02-13 15:30 2015-09-7 Show GitHub Exploit DB Packet Storm
193867 6.1 警告
Network
MyBB Group - MyBB および Merge System のエラーハンドラにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-8975 2017-02-13 15:30 2015-09-7 Show GitHub Exploit DB Packet Storm
193868 10 緊急
Network
MyBB Group - MyBB および Merge System の管理制御パネルの Group Promotions モジュールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2015-8974 2017-02-13 15:30 2015-09-7 Show GitHub Exploit DB Packet Storm
193869 8.3 重要
Network
MyBB Group - MyBB および Merge System の xmlhttp.php におけるアクセス制限を回避される脆弱性 CWE-284
不適切なアクセス制御
CVE-2015-8973 2017-02-13 15:30 2015-09-7 Show GitHub Exploit DB Packet Storm
193870 7.5 重要
Network
Libical project - Libical の icaltime_from_string 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-125
境界外読み取り
CVE-2016-5827 2017-02-13 15:25 2016-06-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 19, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293921 - extremail extremail Integer overflow in eXtremail 2.1.1 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary code, via a long USER command containing "%s" sequences to the pop… CWE-189
Numeric Errors
CVE-2007-5467 2017-09-29 10:29 2007-10-16 Show GitHub Exploit DB Packet Storm
293922 - extremail extremail More information available at: http://www.securityfocus.com/bid/26074/discuss CWE-189
Numeric Errors
CVE-2007-5467 2017-09-29 10:29 2007-10-16 Show GitHub Exploit DB Packet Storm
293923 - kwsphp kwsphp SQL injection vulnerability in index.php in the mg2 1.0 module for KwsPHP allows remote attackers to execute arbitrary SQL commands via the album parameter. CWE-89
SQL Injection
CVE-2007-5485 2017-09-29 10:29 2007-10-17 Show GitHub Exploit DB Packet Storm
293924 - artmedic_webdesign artmedic_cms Directory traversal vulnerability in index.php in Artmedic CMS 3.4 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the page parameter. CWE-22
Path Traversal
CVE-2007-5489 2017-09-29 10:29 2007-10-18 Show GitHub Exploit DB Packet Storm
293925 - okulumunsitesi portal SQL injection vulnerability in default.asp in Okul Otomasyon Portal 2.0 allows remote attackers to execute arbitrary SQL commands via the id parameter. CWE-89
SQL Injection
CVE-2007-5490 2017-09-29 10:29 2007-10-18 Show GitHub Exploit DB Packet Storm
293926 - redhat enterprise_linux Memory leak in the Red Hat Content Accelerator kernel patch in Red Hat Enterprise Linux (RHEL) 4 and 5 allows local users to cause a denial of service (memory consumption) via a large number of open … CWE-399
 Resource Management Errors
CVE-2007-5494 2017-09-29 10:29 2007-11-30 Show GitHub Exploit DB Packet Storm
293927 - selinux setroubleshoot sealert in setroubleshoot 2.0.5 allows local users to overwrite arbitrary files via a symlink attack on the sealert.log temporary file. CWE-59
Link Following
CVE-2007-5495 2017-09-29 10:29 2008-05-24 Show GitHub Exploit DB Packet Storm
293928 - selinux setroubleshoot Cross-site scripting (XSS) vulnerability in setroubleshoot 2.0.5 allows local users to inject arbitrary web script or HTML via a crafted (1) file or (2) process name, which triggers an Access Vector … CWE-79
Cross-site Scripting
CVE-2007-5496 2017-09-29 10:29 2008-05-24 Show GitHub Exploit DB Packet Storm
293929 - linux linux_kernel The Xen hypervisor block backend driver for Linux kernel 2.6.18, when running on a 64-bit host with a 32-bit paravirtualized guest, allows local privileged users in the guest OS to cause a denial of … CWE-399
 Resource Management Errors
CVE-2007-5498 2017-09-29 10:29 2008-05-8 Show GitHub Exploit DB Packet Storm
293930 - limesurvey limesurvey PHP remote file inclusion vulnerability in classes/core/language.php in LimeSurvey 1.5.2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the rootdir parameter. CWE-94
Code Injection
CVE-2007-5573 2017-09-29 10:29 2007-10-19 Show GitHub Exploit DB Packet Storm