Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":July 1, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
205581 9.1 緊急
Network
Exponent CMS project - Exponent CMS におけるブラインド SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2016-9272 2016-11-16 10:22 2016-11-6 Show GitHub Exploit DB Packet Storm
205582 6.1 警告
Network
MoinMoin - MoinMoin における "JavaScript インジェクション" 攻撃を実行される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-7148 2016-11-15 17:56 2016-10-31 Show GitHub Exploit DB Packet Storm
205583 6.1 警告
Network
MoinMoin - MoinMoin における "JavaScript インジェクション" 攻撃を実行される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-7146 2016-11-15 17:56 2016-10-31 Show GitHub Exploit DB Packet Storm
205584 7.2 重要
Network
Dotclear - Dotclear の "Install or upgrade manually" モジュールのブログの外観における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2016-9268 2016-11-15 17:33 2016-11-8 Show GitHub Exploit DB Packet Storm
205585 7.8 重要
Local
Git for Windows project - Windows 用 Git における権限を取得される脆弱性 CWE-Other
その他
CVE-2016-9274 2016-11-15 17:15 2016-11-5 Show GitHub Exploit DB Packet Storm
205586 7.8 重要
Local
Teradata Corporation - Teradata Studio Express の studioexpressinstall におけるシステムファイルを上書きされる脆弱性 CWE-264
CWE-59
CVE-2016-7490 2016-11-15 17:09 2016-10-3 Show GitHub Exploit DB Packet Storm
205587 9.8 緊急
Network
Teradata Corporation - Teradata Virtual Machine Community Edition の /opt/teradata/gsctools/bin/t2a.pl における昇格されたコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-7489 2016-11-15 17:08 2016-10-1 Show GitHub Exploit DB Packet Storm
205588 7.8 重要
Local
Teradata Corporation - Teradata Virtual Machine Community Edition における内容を変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-7488 2016-11-15 17:08 2016-10-1 Show GitHub Exploit DB Packet Storm
205589 7.5 重要
Network
7-Zip - 7z.so ライブラリおよび 7z アプリケーションにおけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-9296 2016-11-15 16:36 2016-07-17 Show GitHub Exploit DB Packet Storm
205590 7.5 重要
Network
Artifex Software - Artifex Software MuJS の jscompile.c コンポーネントにおけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-9294 2016-11-15 16:24 2016-10-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:July 1, 2026, 4:27 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
351941 - datenbank_module datenbank_module Multiple cross-site scripting (XSS) vulnerabilities in Datenbank MOD 2.7 and earlier for Woltlab Burning Board allow remote attackers to inject arbitrary web script or HTML via the fileid parameter t… NVD-CWE-Other
CVE-2006-1097 2017-07-20 10:30 2006-03-9 Show GitHub Exploit DB Packet Storm
351942 - datenbank_module datenbank_module This vulnerability may only affect Datenbank MOD 2.7 and earlier versions in a Woltlab Burning Board environment. NVD-CWE-Other
CVE-2006-1097 2017-07-20 10:30 2006-03-9 Show GitHub Exploit DB Packet Storm
351943 - bmail bmail SQL injection vulnerability in bmail before Aardvark PR9.1 allows remote attackers to execute arbitrary SQL commands via unspecified vectors involving GBK character sets. NVD-CWE-Other
CVE-2006-1118 2017-07-20 10:30 2006-03-9 Show GitHub Exploit DB Packet Storm
351944 - gallery_project gallery Gallery 2 up to 2.0.2 allows remote attackers to spoof their IP address via a modified X-Forwarded-For (X_FORWARDED_FOR) HTTP header, which is checked by Gallery before other more reliable sources of… NVD-CWE-Other
CVE-2006-1126 2017-07-20 10:30 2006-03-10 Show GitHub Exploit DB Packet Storm
351945 - gallery_project gallery Cross-site scripting (XSS) vulnerability in Gallery 2 up to 2.0.2 allows remote attackers to inject arbitrary web script or HTML via the X-Forwarded-For (X_FORWARDED_FOR) HTTP header, which is not pr… NVD-CWE-Other
CVE-2006-1127 2017-07-20 10:30 2006-03-10 Show GitHub Exploit DB Packet Storm
351946 - gallery_project gallery Directory traversal vulnerability in the session handling class (GallerySession.class) in Gallery 2 up to 2.0.2 allows remote attackers to access and delete files by specifying the session in a cooki… NVD-CWE-Other
CVE-2006-1128 2017-07-20 10:30 2006-03-10 Show GitHub Exploit DB Packet Storm
351947 - bitweaver bitweaver Cross-site scripting (XSS) vulnerability in read.php in bitweaver CMS 1.2.1 allows remote attackers to inject arbitrary web script or HTML via the comment_title parameter. NVD-CWE-Other
CVE-2006-1131 2017-07-20 10:30 2006-03-10 Show GitHub Exploit DB Packet Storm
351948 - sblog sblog Multiple cross-site scripting (XSS) vulnerabilities in sBlog 0.7.2 allow remote attackers to inject arbitrary web script or HTML via the (1) keyword parameter to search.php or (2) username parameter … NVD-CWE-Other
CVE-2006-1135 2017-07-20 10:30 2006-03-10 Show GitHub Exploit DB Packet Storm
351949 - redblog redblog SQL injection vulnerability in rss.php in RedBLoG 0.5 allows remote attackers to execute arbitrary SQL commands via the cat_id parameter. NVD-CWE-Other
CVE-2006-1140 2017-07-20 10:30 2006-03-10 Show GitHub Exploit DB Packet Storm
351950 - inter7 qmailadmin Buffer overflow in qmailadmin.c in QmailAdmin before 1.2.10 allows remote attackers to execute arbitrary code via a long PATH_INFO environment variable. NVD-CWE-Other
CVE-2006-1141 2017-07-20 10:30 2006-03-10 Show GitHub Exploit DB Packet Storm