Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":July 1, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
196871 7.8 重要
Local
FontForge project - FontForge の ValidatePostScriptFontName におけるバッファオーバーリードの脆弱性 CWE-119
バッファエラー
CVE-2017-11573 2017-08-15 17:28 2017-07-30 Show GitHub Exploit DB Packet Storm
196872 7.8 重要
Local
FontForge project - FontForge の readcfftopdicts におけるヒープベースのバッファオーバーリードの脆弱性 CWE-119
バッファエラー
CVE-2017-11572 2017-08-15 17:28 2017-07-31 Show GitHub Exploit DB Packet Storm
196873 7.8 重要
Local
FontForge project - FontForge の addnibble におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2017-11571 2017-08-15 17:28 2017-07-30 Show GitHub Exploit DB Packet Storm
196874 7.8 重要
Local
FontForge project - FontForge の umodenc におけるバッファオーバーリードの脆弱性 CWE-119
バッファエラー
CVE-2017-11570 2017-08-15 17:28 2017-07-30 Show GitHub Exploit DB Packet Storm
196875 7.8 重要
Local
FontForge project - FontForge の PSCharStringToSplines におけるヒープベースのバッファオーバーリードの脆弱性 CWE-119
バッファエラー
CVE-2017-11568 2017-08-15 17:28 2017-07-31 Show GitHub Exploit DB Packet Storm
196876 7.5 重要
Network
Ansible - Ansible における情報を公開される脆弱性 CWE-200
情報漏えい
CVE-2017-7473 2017-08-15 17:25 2017-03-11 Show GitHub Exploit DB Packet Storm
196877 6.6 警告
Network
Cloud Foundry Foundation - 複数の Cloud Foundry 製品における認可・権限・アクセス制御に関する脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-8032 2017-08-15 17:20 2017-06-12 Show GitHub Exploit DB Packet Storm
196878 7.8 重要
Local
Linux - Linux Kernel における境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2017-1000363 2017-08-15 17:06 2017-05-23 Show GitHub Exploit DB Packet Storm
196879 9.8 緊急
Network
Rootkit Hunter project - rkhunter におけるチャネルおよびパスのエラーに関する脆弱性 CWE-417
チャネルおよびパスのエラー
CVE-2017-7480 2017-08-15 16:58 2017-06-29 Show GitHub Exploit DB Packet Storm
196880 6.6 警告
Network
Cloud Foundry Foundation - Cloud Foundry の Cloud Controller および Router における認可・権限・アクセス制御に関する脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-8034 2017-08-15 16:56 2017-07-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:July 1, 2026, 4:27 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
346591 - owasp webscarab Cross-site scripting (XSS) vulnerability in WebScarab before 20060718-1904, when used with Microsoft Internet Explorer 6 SP2 or Konqueror 3.5.3, allows remote attackers to inject arbitrary web script… NVD-CWE-Other
CVE-2006-3841 2018-10-18 06:31 2006-07-26 Show GitHub Exploit DB Packet Storm
346592 - eiqnetworks enterprise_security_analyzer Multiple stack-based buffer overflows in eIQnetworks Enterprise Security Analyzer (ESA) before 2.5.0, as used in products including (a) Sidewinder, (b) iPolicy Security Manager, (c) Astaro Report Man… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2006-3838 2018-10-18 06:31 2006-07-27 Show GitHub Exploit DB Packet Storm
346593 - iss blackice_pc_protection
blackice_server_protection
proventia_desktop
realsecure_desktop
realsecure_network
realsecure_server_sensor
proventia_a_series_xpu
proventia_g_series_xpu
The SMB Mailslot parsing functionality in PAM in multiple ISS products with XPU (24.39/1.78/epj/x.x.x.1780), including Proventia A, G, M, Server, and Desktop, BlackICE PC and Server Protection 3.6, a… CWE-399
 Resource Management Errors
CVE-2006-3840 2018-10-18 06:31 2006-07-27 Show GitHub Exploit DB Packet Storm
346594 - adventnet zoho_virtual_office Cross-site scripting (XSS) vulnerability in Zoho Virtual Office 3.2 Build 3210 allows remote attackers to execute arbitrary web script or HTML via an HTML message. NVD-CWE-Other
CVE-2006-3842 2018-10-18 06:31 2006-07-26 Show GitHub Exploit DB Packet Storm
346595 - mambo mambo_calendar PHP remote file inclusion vulnerability in com_calendar.php in Calendar Mambo Module 1.5.7 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the absolute_path parameter. NVD-CWE-Other
CVE-2006-3843 2018-10-18 06:31 2006-07-26 Show GitHub Exploit DB Packet Storm
346596 - mambo mambo_multibanners PHP remote file inclusion vulnerability in extadminmenus.class.php in the MultiBanners 1.0.1 for Mambo allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path p… CWE-94
Code Injection
CVE-2006-3846 2018-10-18 06:31 2006-07-26 Show GitHub Exploit DB Packet Storm
346597 - canebluem mospray PHP remote file inclusion vulnerability in (1) admin.php, and possibly (2) details.php, (3) modify.php, (4) newgroup.php, (5) newtask.php, and (6) rss.php, in MoSpray (aka com_mospray) 1.8 RC1 allows… CWE-94
Code Injection
CVE-2006-3847 2018-10-18 06:31 2006-07-26 Show GitHub Exploit DB Packet Storm
346598 - krischan_jodies ip_calculator Cross-site scripting (XSS) vulnerability in CGI wrapper for IP Calculator (IPCalc) 0.40 allows remote attackers to inject arbitrary web script or HTML via the URI (REQUEST_URI environment variable), … NVD-CWE-Other
CVE-2006-3848 2018-10-18 06:31 2006-07-26 Show GitHub Exploit DB Packet Storm
346599 - pumpkin_studios warzone
warzone_resurrection
Stack-based buffer overflow in Warzone 2100 and Warzone Resurrection 2.0.3 and earlier allows remote attackers to execute arbitrary code via a (1) long message handled by the recvTextMessage function… NVD-CWE-Other
CVE-2006-3849 2018-10-18 06:31 2006-07-26 Show GitHub Exploit DB Packet Storm
346600 - phptoys micro_guestbook Cross-site scripting (XSS) vulnerability in index.php in Micro GuestBook allows remote attackers to execute arbitrary SQL commands via the (1) name or (2) comment ("text") fields. NVD-CWE-Other
CVE-2006-3852 2018-10-18 06:31 2006-07-26 Show GitHub Exploit DB Packet Storm