Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":July 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
202921 9.8 緊急
Network
Facebook - Facebook HHVM の wddx の無限再帰における脆弱性 CWE-674
不適切な再帰制御
CVE-2016-6875 2017-03-7 16:43 2016-08-2 Show GitHub Exploit DB Packet Storm
202922 9.8 緊急
Network
Facebook - Facebook HHVM の array_*_recursive 関数における脆弱性 CWE-674
不適切な再帰制御
CVE-2016-6874 2017-03-7 16:43 2016-08-2 Show GitHub Exploit DB Packet Storm
202923 9.8 緊急
Network
Facebook - Facebook HHVM の圧縮の自己再帰における脆弱性 CWE-674
不適切な再帰制御
CVE-2016-6873 2017-03-7 16:43 2016-08-2 Show GitHub Exploit DB Packet Storm
202924 9.8 緊急
Network
Facebook - Facebook HHVM の StringUtil::implode における整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2016-6872 2017-03-7 16:43 2016-08-2 Show GitHub Exploit DB Packet Storm
202925 9.8 緊急
Network
Facebook - Facebook HHVM の bcmath における整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2016-6871 2017-03-7 16:43 2016-08-2 Show GitHub Exploit DB Packet Storm
202926 9.8 緊急
Network
Facebook - Facebook HHVM の複数の関数における境界外書き込みの脆弱性 CWE-787
境界外書き込み
CVE-2016-6870 2017-03-7 16:43 2016-07-2 Show GitHub Exploit DB Packet Storm
202927 7.5 重要
Network
WSO2 - WSO2 Identity Server の XACML フロー機能における XML 外部エンティティの脆弱性 CWE-611
XML 外部エンティティ参照の不適切な制限
CVE-2016-4312 2017-03-7 16:17 2016-08-12 Show GitHub Exploit DB Packet Storm
202928 8.8 重要
Network
WSO2 - WSO2 Identity Server の XACML フロー機能におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2016-4311 2017-03-7 16:17 2016-08-12 Show GitHub Exploit DB Packet Storm
202929 9.8 緊急
Network
Zend Technologies Ltd.
Fedora Project
- Zend Framework の Zend_Db_Select の order および group メソッドにおける SQL インジェクション攻撃を実行される脆弱性 CWE-89
SQLインジェクション
CVE-2016-6233 2017-03-7 15:36 2016-07-13 Show GitHub Exploit DB Packet Storm
202930 5.9 警告
Network
Timo Sirainen - Dovecot の auth コンポーネントにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-8652 2017-03-7 15:29 2016-12-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:July 1, 2026, 4:27 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
346211 - john_andersson zixforum SQL injection vulnerability in ReplyNew.asp in ZIXForum 1.12 allows remote attackers to execute arbitrary SQL commands via the RepId parameter. NVD-CWE-Other
CVE-2006-4612 2018-10-18 06:38 2006-09-7 Show GitHub Exploit DB Packet Storm
346212 - pocket_pc pocket_pc PDAapps Verichat for Pocket PC 1.30bh stores usernames and passwords in plaintext in the Windows Mobile registry, which allows local users to obtain sensitive information via keys under \HKEY_CURRENT… NVD-CWE-Other
CVE-2006-4614 2018-10-18 06:38 2006-09-7 Show GitHub Exploit DB Packet Storm
346213 - shape_services im\+_mobile_instant_messenger Shape Services IM+ Mobile Instant Messenger for Pocket PC 3.10 stores usernames and passwords in plaintext in %PROGRAMFILES%\IMPlus\implus.cfg, which allows local users to obtain sensitive informatio… NVD-CWE-Other
CVE-2006-4615 2018-10-18 06:38 2006-09-7 Show GitHub Exploit DB Packet Storm
346214 - john_lim adodb PHP remote file inclusion vulnerability in adodb-postgres7.inc.php in John Lim ADOdb, possibly 4.01 and earlier, as used in Intechnic In-link 2.3.4, allows remote attackers to execute arbitrary PHP c… NVD-CWE-Other
CVE-2006-4618 2018-10-18 06:38 2006-09-7 Show GitHub Exploit DB Packet Storm
346215 - avira antivir_personal The start update window in update.exe in Avira AntiVir PersonalEdition Classic 7.0 build 151 allows local users to gain system privileges via a "Shatter" style attack on the (1) IParam parameter, and… NVD-CWE-Other
CVE-2006-4619 2018-10-18 06:38 2006-09-7 Show GitHub Exploit DB Packet Storm
346216 - alt-n webadmin The useredit_account.wdm module in Alt-N WebAdmin 3.2.5 running with MDaemon 9.0.6, and possibly earlier versions, allows remote authenticated domain administrators to gain privileges and obtain acce… NVD-CWE-Other
CVE-2006-4620 2018-10-18 06:38 2006-09-7 Show GitHub Exploit DB Packet Storm
346217 - alt-n webadmin Successful exploitation requires that the attacker is already a Domain administrator within the default domain of a MDaemon server. This vulnerability is addressed in the following product release: … NVD-CWE-Other
CVE-2006-4620 2018-10-18 06:38 2006-09-7 Show GitHub Exploit DB Packet Storm
346218 - comscripts annoncev PHP remote file inclusion vulnerability in annonce.php in AnnonceV (aka annoncesV) 1.1 allows remote attackers to execute arbitrary PHP code via a URL in the page parameter. NVD-CWE-Other
CVE-2006-4622 2018-10-18 06:38 2006-09-7 Show GitHub Exploit DB Packet Storm
346219 - linux linux_kernel The Unidirectional Lightweight Encapsulation (ULE) decapsulation component in dvb-core/dvb_net.c in the dvb driver in the Linux kernel 2.6.17.8 allows remote attackers to cause a denial of service (c… NVD-CWE-Other
CVE-2006-4623 2018-10-18 06:38 2006-09-12 Show GitHub Exploit DB Packet Storm
346220 - linux linux_kernel There is a patch available for the affected product release. NVD-CWE-Other
CVE-2006-4623 2018-10-18 06:38 2006-09-12 Show GitHub Exploit DB Packet Storm