Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201821 7.7 重要
Network
オラクル - Oracle Hospitality Applications の Oracle Hospitality OPERA 5 Property Services における OPERA Xchange Interface (OXI) に関する脆弱性 CWE-200
CWE-Other
CVE-2016-5565 2016-10-27 11:45 2016-10-18 Show GitHub Exploit DB Packet Storm
201822 7.4 重要
Network
オラクル - Oracle Hospitality Applications の Oracle Hospitality OPERA 5 Property Services における OPERA Application Login に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-5564 2016-10-27 11:44 2016-10-18 Show GitHub Exploit DB Packet Storm
201823 7.9 重要
Network
オラクル - Oracle Hospitality Applications の Oracle Hospitality OPERA 5 Property Services における OPERA File Upload Download に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-5563 2016-10-27 11:44 2016-10-18 Show GitHub Exploit DB Packet Storm
201824 7.3 重要
Physics
オラクル - Oracle Retail Applications の Oracle Retail Xstore Payment における Security に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-5539 2016-10-27 11:44 2016-10-18 Show GitHub Exploit DB Packet Storm
201825 3.3
Local
オラクル - Oracle Database Server の RDBMS Security における脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-5499 2016-10-27 11:43 2016-10-18 Show GitHub Exploit DB Packet Storm
201826 4.4 警告
Network
オラクル - Oracle MySQL の MySQL Server における Server: Performance Schema に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-8290 2016-10-27 11:25 2016-10-18 Show GitHub Exploit DB Packet Storm
201827 4.7 警告
Local
オラクル - Oracle MySQL の MySQL Server における Server: InnoDB に関する脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-8289 2016-10-27 11:25 2016-10-18 Show GitHub Exploit DB Packet Storm
201828 3.1
Network
オラクル - Oracle MySQL の MySQL Server における Server: InnoDB Plugin に関する脆弱性 CWE-Other
その他
CVE-2016-8288 2016-10-27 11:25 2016-10-18 Show GitHub Exploit DB Packet Storm
201829 4.5 警告
Network
オラクル - Oracle MySQL の MySQL Server における Server: Replication に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-8287 2016-10-27 11:25 2016-10-18 Show GitHub Exploit DB Packet Storm
201830 3.1
Network
オラクル - Oracle MySQL の MySQL Server における Server: Security: Privileges に関する脆弱性 CWE-200
情報漏えい
CVE-2016-8286 2016-10-27 11:25 2016-10-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
345571 - lucidcms lucidcms Cross-site scripting (XSS) vulnerability in index.php in LucidCMS 2.0.0 RC4 allows remote attackers to inject arbitrary web script or HTML via the command parameter. NVD-CWE-Other
CVE-2006-1634 2017-07-20 10:30 2006-04-6 Show GitHub Exploit DB Packet Storm
345572 - lucidcms lucidcms LucidCMS 2.0.0 RC4 allows remote attackers to obtain sensitive information via a direct request to /lucid_phplib/translator.php, which reveals the path in an error message. NVD-CWE-Other
CVE-2006-1635 2017-07-20 10:30 2006-04-6 Show GitHub Exploit DB Packet Storm
345573 - interact interact Cross-site scripting (XSS) vulnerability in Interact 2.1.1 allows remote attackers to inject arbitrary web script or HTML via (1) the search_terms parameter to (a) search.php, and (2) the first_name,… NVD-CWE-Other
CVE-2006-1642 2017-07-20 10:30 2006-04-6 Show GitHub Exploit DB Packet Storm
345574 - interact interact SQL injection vulnerability in login.php in Interact 2.1.1 allows remote attackers to execute arbitrary SQL commands via the user_name parameter. NOTE: the provenance of this information is unknown;… NVD-CWE-Other
CVE-2006-1643 2017-07-20 10:30 2006-04-6 Show GitHub Exploit DB Packet Storm
345575 - interact interact login.php in Interact 2.1.1 generates different responses depending on whether or not a username is valid, which allows remote attackers to determine valid usernames. NOTE: the provenance of this in… NVD-CWE-Other
CVE-2006-1644 2017-07-20 10:30 2006-04-6 Show GitHub Exploit DB Packet Storm
345576 - sk_soft skforum Multiple cross-site scripting (XSS) vulnerabilities in SKForum 1.5 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) areaID parameter in area.View.action, (2) time… NVD-CWE-Other
CVE-2006-1661 2017-07-20 10:30 2006-04-7 Show GitHub Exploit DB Packet Storm
345577 - jelsoft vbug_tracker Cross-site scripting (XSS) vulnerability in vbugs.php in Dark_Wizard vBug Tracker 3.5.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the sortorder parameter. NVD-CWE-Other
CVE-2006-1673 2017-07-20 10:30 2006-04-7 Show GitHub Exploit DB Packet Storm
345578 - phpmyadmin phpmyadmin Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin before 2.8.0.3 allow remote attackers to inject arbitrary web script or HTML via unknown vectors in unspecified scripts in the themes… NVD-CWE-Other
CVE-2006-1678 2017-07-20 10:30 2006-04-11 Show GitHub Exploit DB Packet Storm
345579 - talentsoft web\+_shop Cross-site scripting (XSS) vulnerability in webplus.exe in TalentSoft Web+Shop 5.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the deptname parameter, possibly invo… NVD-CWE-Other
CVE-2006-1682 2017-07-20 10:30 2006-04-11 Show GitHub Exploit DB Packet Storm
345580 - apt apt-webshop-system Multiple SQL injection vulnerabilities in modules.php in APT-webshop-system 4.0 PRO, 3.0 BASIC, and 3.0 LIGHT allow remote attackers to execute arbitrary SQL commands via the (1) group, (2) seite, an… NVD-CWE-Other
CVE-2006-1685 2017-07-20 10:30 2006-04-11 Show GitHub Exploit DB Packet Storm