Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
196781 4.7 警告
Local
IBM - IBM InfoSphere Information Server における任意のコマンドを実行される脆弱性 CWE-200
情報漏えい
CVE-2015-7493 2017-03-2 13:58 2015-09-29 Show GitHub Exploit DB Packet Storm
196782 7.2 重要
Network
IBM - IBM Tivoli Key Lifecycle Manager における任意のファイルをアップロードされる脆弱性 CWE-434
危険なタイプのファイルの無制限アップロード
CVE-2016-6104 2017-03-2 13:52 2016-06-29 Show GitHub Exploit DB Packet Storm
196783 4.3 警告
Network
IBM - IBM Jazz Team Server におけるデプロイメント情報を公開される脆弱性 CWE-200
情報漏えい
CVE-2016-2866 2017-03-2 13:52 2016-03-9 Show GitHub Exploit DB Packet Storm
196784 7.2 重要
Network
Mail-Masta - WordPress 用 Mail Masta プラグインの /inc/campaign_save.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2017-6098 2017-03-2 13:49 2017-02-27 Show GitHub Exploit DB Packet Storm
196785 7.2 重要
Network
Mail-Masta - WordPress 用 Mail Masta プラグインの /inc/campaign/count_of_send.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2017-6097 2017-03-2 13:49 2017-02-27 Show GitHub Exploit DB Packet Storm
196786 7.2 重要
Network
Mail-Masta - WordPress 用 Mail Masta プラグインの /inc/lists/view-list.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2017-6096 2017-03-2 13:49 2017-02-27 Show GitHub Exploit DB Packet Storm
196787 9.8 緊急
Network
Mail-Masta - WordPress 用 Mail Masta プラグインの /inc/lists/csvexport.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2017-6095 2017-03-2 13:49 2017-02-27 Show GitHub Exploit DB Packet Storm
196788 4.4 警告
Local
アップル - Apple iOS の連絡先コンポーネントにおけるアプリケーションのアドレスブックへのアクセスが制限されない脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-4686 2017-03-1 17:37 2016-10-24 Show GitHub Exploit DB Packet Storm
196789 5.9 警告
Network
アップル - Apple iOS の iTunes バックアップコンポーネントにおけるファイルを解読される脆弱性 CWE-326
不適切な暗号強度
CVE-2016-4685 2017-03-1 17:37 2016-10-24 Show GitHub Exploit DB Packet Storm
196790 5.3 警告
Local
アップル - Apple iOS および watchOS のアカウントコンポーネントにおける認証制限を回避される脆弱性 CWE-285
不適切な認可
CVE-2016-7651 2017-03-1 16:50 2016-12-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 13, 2026, 5:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
348291 - babe_logger babe_logger SQL injection vulnerability in Babe Logger 2 allows remote attackers to execute arbitrary SQL commands via the (1) gal parameter to index.php or (2) id parameter to comments.php. NVD-CWE-Other
CVE-2005-3920 2009-10-9 13:33 2005-11-30 Show GitHub Exploit DB Packet Storm
348292 - socketkb socketkb PHP file include vulnerability in SocketKB 1.1.0 and earlier allows remote attackers to include arbitrary local files via the __f parameter. NVD-CWE-Other
CVE-2005-3936 2009-10-9 13:33 2005-12-1 Show GitHub Exploit DB Packet Storm
348293 - softbiz b2b_trading_marketplace_script SQL injection vulnerability in Softbiz B2B Trading Marketplace Script 1.1 and earler allows remote attackers to execute arbitrary SQL commands via the cid parameter in (1) selloffers.php, (2) buyoffe… NVD-CWE-Other
CVE-2005-3937 2009-10-9 13:33 2005-12-1 Show GitHub Exploit DB Packet Storm
348294 - sun java_plug-in The Java Plug-in 1.4.2_03 and 1.4.2_04 controls, and the 1.4.2_03 and 1.4.2_04 <applet> redirector controls, allow remote attackers to cause a denial of service (Internet Explorer crash) by creating … CWE-16
Configuration
CVE-2005-4845 2009-08-28 13:00 2005-12-31 Show GitHub Exploit DB Packet Storm
348295 - gnu mailman Cross-site scripting vulnerabilities in Mailman before 2.0.11 allow remote attackers to execute script via (1) the admin login page, or (2) the Pipermail index summaries. NVD-CWE-Other
CVE-2002-0388 2009-07-22 06:00 2002-06-18 Show GitHub Exploit DB Packet Storm
348296 - wowbb wowbb_web_forum Multiple SQL injection vulnerabilities in WowBB Forum 1.61 allow remote attackers to execute arbitrary SQL commands via the (1) sort_by or (2) page parameters to view_user.php, or the (3) forum_id pa… NVD-CWE-Other
CVE-2004-2181 2009-06-25 13:25 2004-12-31 Show GitHub Exploit DB Packet Storm
348297 - abe_timmerman zml.cgi Directory traversal vulnerability in zml.cgi allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter. NVD-CWE-Other
CVE-2001-1209 2009-04-30 13:08 2001-12-31 Show GitHub Exploit DB Packet Storm
348298 - virtual_programming vp-asp SQL injection vulnerability in shopadmin.asp in VP-ASP 4.0 allows remote attackers to execute arbitrary SQL commands and bypass authentication via the (1) username or (2) password fields. NVD-CWE-Other
CVE-2002-1919 2009-04-11 13:14 2002-12-31 Show GitHub Exploit DB Packet Storm
348299 - easyscripts easynews easyNews 1.5 and earlier stores administration passwords in cleartext in settings.php, which allows local users to obtain the passwords and gain access. NVD-CWE-Other
CVE-2001-1527 2009-04-3 13:11 2001-12-31 Show GitHub Exploit DB Packet Storm
348300 - newsscript.co.uk newsscript newsscript.pl for NewsScript allows remote attackers to gain privileges by setting the mode parameter to admin. CWE-264
Permissions, Privileges, and Access Controls
CVE-2005-0735 2009-04-3 13:00 2005-05-2 Show GitHub Exploit DB Packet Storm