Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201871 5.4 警告
Adjacent
BB&T - iOS 版「U by BB&T」に SSL サーバ証明書の検証不備の脆弱性 CWE-310
CWE-Other
CVE-2016-6550 2016-10-26 15:34 2016-09-30 Show GitHub Exploit DB Packet Storm
201872 8.8 重要
Network
The PHP Group - PHP の ext/phar/dirstream.c の phar_make_dirstream 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-4343 2016-10-26 15:27 2016-02-4 Show GitHub Exploit DB Packet Storm
201873 8.8 重要
Network
The PHP Group - PHP の ext/phar/phar_object.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2016-4342 2016-10-26 15:26 2016-02-4 Show GitHub Exploit DB Packet Storm
201874 9.8 緊急
Network
The PHP Group
アップル
- PHP の ext/mbstring/libmbfl/mbfl/mbfilter.c の mbfl_strcut 関数における整数オーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-4073 2016-10-26 15:26 2016-03-31 Show GitHub Exploit DB Packet Storm
201875 7.5 重要
Network
The PHP Group
アップル
- PHP の ext/standard/url.c の php_raw_url_encode 関数における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2016-4070 2016-10-26 15:25 2016-03-31 Show GitHub Exploit DB Packet Storm
201876 9.8 緊急
Network
The PHP Group
アップル
- PHP の ext/snmp/snmp.c の php_snmp_error 関数におけるフォーマットストリングの脆弱性 CWE-20
不適切な入力確認
CVE-2016-4071 2016-10-26 15:24 2016-03-31 Show GitHub Exploit DB Packet Storm
201877 9.8 緊急
Network
The PHP Group
アップル
- PHP の Phar エクステンションにおける任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2016-4072 2016-10-26 15:23 2016-03-31 Show GitHub Exploit DB Packet Storm
201878 9.8 緊急
Network
LibGD project
Debian
- GD Graphics Library における整数符号エラーの脆弱性 CWE-189
数値処理の問題
CVE-2016-3074 2016-10-26 15:22 2016-04-16 Show GitHub Exploit DB Packet Storm
201879 8.1 重要
Network
オラクル - Oracle Supply Chain Products Suite の Oracle Agile Engineering Data Management における webfileservices に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-5518 2016-10-26 14:33 2016-10-18 Show GitHub Exploit DB Packet Storm
201880 5.5 警告
Local
オラクル - Oracle E-Business Suite の Oracle Applications DBA における AD Utilities に関する脆弱性 CWE-Other
その他
CVE-2016-5517 2016-10-26 14:32 2016-10-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
345571 - lucidcms lucidcms Cross-site scripting (XSS) vulnerability in index.php in LucidCMS 2.0.0 RC4 allows remote attackers to inject arbitrary web script or HTML via the command parameter. NVD-CWE-Other
CVE-2006-1634 2017-07-20 10:30 2006-04-6 Show GitHub Exploit DB Packet Storm
345572 - lucidcms lucidcms LucidCMS 2.0.0 RC4 allows remote attackers to obtain sensitive information via a direct request to /lucid_phplib/translator.php, which reveals the path in an error message. NVD-CWE-Other
CVE-2006-1635 2017-07-20 10:30 2006-04-6 Show GitHub Exploit DB Packet Storm
345573 - interact interact Cross-site scripting (XSS) vulnerability in Interact 2.1.1 allows remote attackers to inject arbitrary web script or HTML via (1) the search_terms parameter to (a) search.php, and (2) the first_name,… NVD-CWE-Other
CVE-2006-1642 2017-07-20 10:30 2006-04-6 Show GitHub Exploit DB Packet Storm
345574 - interact interact SQL injection vulnerability in login.php in Interact 2.1.1 allows remote attackers to execute arbitrary SQL commands via the user_name parameter. NOTE: the provenance of this information is unknown;… NVD-CWE-Other
CVE-2006-1643 2017-07-20 10:30 2006-04-6 Show GitHub Exploit DB Packet Storm
345575 - interact interact login.php in Interact 2.1.1 generates different responses depending on whether or not a username is valid, which allows remote attackers to determine valid usernames. NOTE: the provenance of this in… NVD-CWE-Other
CVE-2006-1644 2017-07-20 10:30 2006-04-6 Show GitHub Exploit DB Packet Storm
345576 - sk_soft skforum Multiple cross-site scripting (XSS) vulnerabilities in SKForum 1.5 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) areaID parameter in area.View.action, (2) time… NVD-CWE-Other
CVE-2006-1661 2017-07-20 10:30 2006-04-7 Show GitHub Exploit DB Packet Storm
345577 - jelsoft vbug_tracker Cross-site scripting (XSS) vulnerability in vbugs.php in Dark_Wizard vBug Tracker 3.5.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the sortorder parameter. NVD-CWE-Other
CVE-2006-1673 2017-07-20 10:30 2006-04-7 Show GitHub Exploit DB Packet Storm
345578 - phpmyadmin phpmyadmin Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin before 2.8.0.3 allow remote attackers to inject arbitrary web script or HTML via unknown vectors in unspecified scripts in the themes… NVD-CWE-Other
CVE-2006-1678 2017-07-20 10:30 2006-04-11 Show GitHub Exploit DB Packet Storm
345579 - talentsoft web\+_shop Cross-site scripting (XSS) vulnerability in webplus.exe in TalentSoft Web+Shop 5.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the deptname parameter, possibly invo… NVD-CWE-Other
CVE-2006-1682 2017-07-20 10:30 2006-04-11 Show GitHub Exploit DB Packet Storm
345580 - apt apt-webshop-system Multiple SQL injection vulnerabilities in modules.php in APT-webshop-system 4.0 PRO, 3.0 BASIC, and 3.0 LIGHT allow remote attackers to execute arbitrary SQL commands via the (1) group, (2) seite, an… NVD-CWE-Other
CVE-2006-1685 2017-07-20 10:30 2006-04-11 Show GitHub Exploit DB Packet Storm