Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 14, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201011 9.8 緊急
Network
Exponent CMS project - Exponent CMS におけるブラインド SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2017-5879 2017-02-17 18:15 2017-02-6 Show GitHub Exploit DB Packet Storm
201012 6.1 警告
Network
dotCMS - dotCMS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-5876 2017-02-17 18:15 2017-02-6 Show GitHub Exploit DB Packet Storm
201013 8.8 重要
Network
ZoneMinder - ZoneMinder におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2017-5368 2017-02-17 18:15 2017-02-3 Show GitHub Exploit DB Packet Storm
201014 5.3 警告
Network
OpenAFS - OpenAFS における重要なディレクトリ情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-9772 2017-02-17 18:15 2016-11-30 Show GitHub Exploit DB Packet Storm
201015 5.5 警告
Local
Debian
LibTIFF
- LibTIFF の tiffcrop.c の writeBufferToSeparateStrips 関数における整数オーバーフローの脆弱性 CWE-125
境界外読み取り
CVE-2016-9532 2017-02-17 18:15 2016-11-11 Show GitHub Exploit DB Packet Storm
201016 7.5 重要
Network
openSUSE project
GraphicsMagick
- GraphicsMagick の Utah RLE リーダにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2016-7448 2017-02-17 18:15 2016-09-5 Show GitHub Exploit DB Packet Storm
201017 6.1 警告
Network
アドビシステムズ - Adobe Campaign におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-2969 2017-02-17 17:26 2017-02-14 Show GitHub Exploit DB Packet Storm
201018 9.1 緊急
Network
アドビシステムズ - Adobe Campaign におけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2017-2968 2017-02-17 17:26 2017-02-14 Show GitHub Exploit DB Packet Storm
201019 7.5 重要
Network
アドビシステムズ - Adobe Digital Editions におけるメモリを破損される脆弱性 CWE-119
バッファエラー
CVE-2017-2981 2017-02-17 16:36 2017-02-14 Show GitHub Exploit DB Packet Storm
201020 7.5 重要
Network
アドビシステムズ - Adobe Digital Editions におけるメモリを破損される脆弱性 CWE-119
バッファエラー
CVE-2017-2980 2017-02-17 16:36 2017-02-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 14, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
345021 - ubbcentral ubb.threads PHP remote file inclusion vulnerability in addpost_newpoll.php in UBB.threads 6.4 through 6.5.2 and 6.5.1.1 (trial) allows remote attackers to execute arbitrary PHP code via a URL in the thispath par… NVD-CWE-Other
CVE-2006-2568 2017-10-19 10:29 2006-05-25 Show GitHub Exploit DB Packet Storm
345022 - 4r_linklist
woltlab
4r_linklist
burning_board
SQL injection vulnerability in links.php in 4R Linklist 1.0 RC2 and earlier, a module for Woltlab Burning Board, allows remote attackers to execute arbitrary SQL commands via the cat parameter. NVD-CWE-Other
CVE-2006-2569 2017-10-19 10:29 2006-05-25 Show GitHub Exploit DB Packet Storm
345023 - calogic calogic_calendars PHP remote file inclusion vulnerability in CaLogic Calendars 1.2.2 allows remote attackers to execute arbitrary PHP code via a URL in the GLOBALS["CLPath"] parameter to (1) reconfig.php and (2) srxcl… NVD-CWE-Other
CVE-2006-2570 2017-10-19 10:29 2006-05-25 Show GitHub Exploit DB Packet Storm
345024 - docebo docebo Multiple PHP remote file inclusion vulnerabilities in Docebo 3.0.3 and earlier, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in (1) GLOBALS[where_f… NVD-CWE-Other
CVE-2006-2576 2017-10-19 10:29 2006-05-25 Show GitHub Exploit DB Packet Storm
345025 - v-webmail v-webmail PHP remote file inclusion vulnerability in includes/mailaccess/pop3/core.php in V-Webmail 1.3 allows remote attackers to execute arbitrary PHP code via a URL in the CONFIG[pear_dir] parameter. NVD-CWE-Other
CVE-2006-2665 2017-10-19 10:29 2006-05-31 Show GitHub Exploit DB Packet Storm
345026 - v-webmail v-webmail PHP remote file inclusion vulnerability in includes/mailaccess/pop3.php in V-Webmail 1.5 through 1.6.4 allows remote attackers to execute arbitrary PHP code via a URL in the CONFIG[pear_dir] paramete… NVD-CWE-Other
CVE-2006-2666 2017-10-19 10:29 2006-05-31 Show GitHub Exploit DB Packet Storm
345027 - back-end back-end_cms PHP remote file inclusion vulnerability in BE_config.php in Back-End CMS 0.7.2.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the _PSL[classdir] parameter. NVD-CWE-Other
CVE-2006-2682 2017-10-19 10:29 2006-05-31 Show GitHub Exploit DB Packet Storm
345028 - open-medium open-medium_cms PHP remote file inclusion vulnerability in 404.php in open-medium.CMS 0.25 allows remote attackers to execute arbitrary PHP code via a URL in the REDSYS[MYPATH][TEMPLATES] parameter. NVD-CWE-Other
CVE-2006-2683 2017-10-19 10:29 2006-05-31 Show GitHub Exploit DB Packet Storm
345029 - kevin_johnson basic_analysis_and_security_engine PHP remote file inclusion vulnerability in Basic Analysis and Security Engine (BASE) 1.2.4 and earlier, with register_globals enabled, allows remote attackers to execute arbitrary PHP code via a URL … CWE-94
Code Injection
CVE-2006-2685 2017-10-19 10:29 2006-05-31 Show GitHub Exploit DB Packet Storm
345030 - actionapps actionapps PHP remote file inclusion vulnerabilities in ActionApps 2.8.1 allow remote attackers to execute arbitrary PHP code via a URL in the GLOBALS[AA_INC_PATH] parameter in (1) cached.php3, (2) cron.php3, (… CWE-94
Code Injection
CVE-2006-2686 2017-10-19 10:29 2006-05-31 Show GitHub Exploit DB Packet Storm