Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 14, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201651 4.3 警告
Network
オラクル - Oracle Commerce の Oracle Commerce Platform における Dynamo Application Framework に関する脆弱性 CWE-200
情報漏えい
CVE-2017-3296 2017-02-1 11:23 2017-01-17 Show GitHub Exploit DB Packet Storm
201652 7.6 重要
Network
オラクル - Oracle Siebel CRM の Siebel UI Framework における Open UI に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2017-3330 2017-02-1 11:18 2017-01-17 Show GitHub Exploit DB Packet Storm
201653 8.2 重要
Network
オラクル - Oracle Siebel CRM の Siebel UI Framework における EAI に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2017-3325 2017-02-1 11:18 2017-01-17 Show GitHub Exploit DB Packet Storm
201654 3.1
Network
オラクル - Oracle Siebel CRM の Siebel UI Framework における Open UI に関する脆弱性 CWE-noinfo
情報不足
CVE-2017-3264 2017-02-1 11:18 2017-01-17 Show GitHub Exploit DB Packet Storm
201655 9 緊急
Network
オラクル - Oracle Database Server の OJVM における脆弱性 CWE-noinfo
情報不足
CVE-2017-3310 2017-02-1 11:00 2017-01-17 Show GitHub Exploit DB Packet Storm
201656 3.3
Local
オラクル - Oracle Database Server の RDBMS Security における脆弱性 CWE-200
情報漏えい
CVE-2017-3240 2017-02-1 11:00 2017-01-17 Show GitHub Exploit DB Packet Storm
201657 10 緊急
Network
オラクル - Oracle Primavera Products Suite の Primavera P6 Enterprise Project Portfolio Management における Web Access に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2017-3324 2017-02-1 10:48 2017-01-17 Show GitHub Exploit DB Packet Storm
201658 8.1 重要
Network
オラクル - Oracle Primavera Products Suite の Primavera P6 Enterprise Project Portfolio Management における Team Member に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2017-3263 2017-02-1 10:48 2017-01-17 Show GitHub Exploit DB Packet Storm
201659 6.5 警告
Network
WordPress.org - WordPress の wp-admin/includes/ajax-actions.php の wp_ajax_update_plugin 関数におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2016-6897 2017-02-1 10:37 2016-06-16 Show GitHub Exploit DB Packet Storm
201660 7.1 重要
Network
WordPress.org - WordPress の wp-admin/includes/ajax-actions.php の wp_ajax_update_plugin 関数におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2016-6896 2017-02-1 10:37 2016-08-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 14, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
345201 - shadowed_portal shadowed_portal PHP remote file inclusion vulnerability in bottom.php in Shadowed Portal 5.599 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the root parameter. NVD-CWE-Other
CVE-2006-4826 2017-10-19 10:29 2006-09-16 Show GitHub Exploit DB Packet Storm
345202 - vmist downstat Multiple PHP remote file inclusion vulnerabilities in Vmist Downstat 1.8 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the art parameter to (1) admin.php, (2) chart.ph… NVD-CWE-Other
CVE-2006-4827 2017-10-19 10:29 2006-09-16 Show GitHub Exploit DB Packet Storm
345203 - vmist downstat Successful exploitation requires that "register_globals" is enabled. NVD-CWE-Other
CVE-2006-4827 2017-10-19 10:29 2006-09-16 Show GitHub Exploit DB Packet Storm
345204 - george_lewe teamcal_pro PHP remote file inclusion vulnerability in includes/footer.html.inc.php in TeamCal Pro 2.8.001 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the tc_config[app_root] p… NVD-CWE-Other
CVE-2006-4845 2017-10-19 10:29 2006-09-19 Show GitHub Exploit DB Packet Storm
345205 - mobilepublisherphp mobilepublisherphp PHP remote file inclusion vulnerability in header.php in MobilePublisherPHP 1.5 RC2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the abspath parameter. NVD-CWE-Other
CVE-2006-4849 2017-10-19 10:29 2006-09-19 Show GitHub Exploit DB Packet Storm
345206 - haberx haberx SQL injection vulnerability in kategorix.asp in Haberx 1.02 through 1.1 allows remote attackers to execute arbitrary SQL commands via the id parameter in kategorihaberx.asp. NVD-CWE-Other
CVE-2006-4853 2017-10-19 10:29 2006-09-19 Show GitHub Exploit DB Packet Storm
345207 - limbo_cms limbo_cms Unrestricted file upload vulnerability in contact.html.php in the Contact (com_contact) component in Limbo (aka Lite Mambo) CMS 1.0.4.2L and earlier allows remote attackers to upload PHP code to the … NVD-CWE-Other
CVE-2006-4859 2017-10-19 10:29 2006-09-20 Show GitHub Exploit DB Packet Storm
345208 - gnuturk gnuturk_portal_system SQL injection vulnerability in mods.php in GNUTurk 2G and earlier allows remote attackers to execute arbitrary SQL commands via the t_id parameter when the go parameter is "Forum." NVD-CWE-Other
CVE-2006-4867 2017-10-19 10:29 2006-09-20 Show GitHub Exploit DB Packet Storm
345209 - perlunity phpunity_postcard PHP remote file inclusion vulnerability in phpunity-postcard.php in phpunity.postcard allows remote attackers to execute arbitrary PHP code via a URL in the gallery_path parameter. CWE-94
Code Injection
CVE-2006-4869 2017-10-19 10:29 2006-09-20 Show GitHub Exploit DB Packet Storm
345210 - aewebworks aedating Multiple PHP remote file inclusion vulnerabilities in AEDating 4.1, and possibly earlier versions, allow remote attackers to execute arbitrary PHP code via a URL in the dir[inc] parameter in (1) inc/… NVD-CWE-Other
CVE-2006-4870 2017-10-19 10:29 2006-09-20 Show GitHub Exploit DB Packet Storm