Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 8, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
209451 4.3 警告 AVAST Software s.r.o. - アバストにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2015-5662 2015-10-20 17:57 2015-10-16 Show GitHub Exploit DB Packet Storm
209452 2.6 注意 SAND STUDIO - Android アプリ AirDroid における暗黙的 Intent の扱いに関する脆弱性 CWE-DesignError
CVE-2015-5661 2015-10-20 17:57 2015-10-16 Show GitHub Exploit DB Packet Storm
209453 4.9 警告 Linux - Linux Kernel の drivers/net/slip/slhc.c の slhc_init 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2015-7799 2015-10-20 17:56 2015-09-29 Show GitHub Exploit DB Packet Storm
209454 6.9 警告 Linux - Linux Kernel の IPC オブジェクトの実装における権限を取得される脆弱性 CWE-362
競合状態
CVE-2015-7613 2015-10-20 17:56 2015-09-30 Show GitHub Exploit DB Packet Storm
209455 7.8 危険 Linux - Linux Kernel の net/rds/connection.c の __rds_conn_create 関数におけサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2015-6937 2015-10-20 17:56 2015-09-9 Show GitHub Exploit DB Packet Storm
209456 2.1 注意 Linux - Linux Kernel の drivers/vhost/vhost.c の vhost_dev_ioctl 関数 におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2015-6252 2015-10-20 17:56 2015-08-10 Show GitHub Exploit DB Packet Storm
209457 4.6 警告 Linux - Linux Kernel の drivers/scsi/sg.c の sg_start_req 関数における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2015-5707 2015-10-20 17:56 2015-03-22 Show GitHub Exploit DB Packet Storm
209458 4.7 警告 Linux - Linux Kernel の net/sctp/protocol.c の sctp_init 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2015-5283 2015-10-20 17:56 2015-10-3 Show GitHub Exploit DB Packet Storm
209459 6.1 警告 Linux - Linux Kernel の drivers/net/virtio_net.c の virtnet_probe 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2015-5156 2015-10-20 17:56 2015-08-7 Show GitHub Exploit DB Packet Storm
209460 4.9 警告 Linux - Linux Kernel の fs/ext4/extents.c の ext4_zero_range 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2015-0275 2015-10-20 17:56 2015-04-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 8, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
297871 - pico picopublisher Multiple SQL injection vulnerabilities in PicoPublisher 2.0 allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) page.php or (2) single.php. CWE-89
SQL Injection
CVE-2012-5912 2024-11-21 10:45 2012-11-18 Show GitHub Exploit DB Packet Storm
297872 - b2evolution b2evolution Cross-site scripting (XSS) vulnerability in blogs/blog1.php in b2evolution 4.1.3 allows remote attackers to inject arbitrary web script or HTML via the message body. CWE-79
Cross-site Scripting
CVE-2012-5911 2024-11-21 10:45 2012-11-18 Show GitHub Exploit DB Packet Storm
297873 - b2evolution b2evolution SQL injection vulnerability in blogs/htsrv/viewfile.php in b2evolution 4.1.3 allows remote authenticated users to execute arbitrary SQL commands via the root parameter. CWE-89
SQL Injection
CVE-2012-5910 2024-11-21 10:45 2012-11-18 Show GitHub Exploit DB Packet Storm
297874 - mybb mybb SQL injection vulnerability in admin/modules/user/users.php in MyBB (aka MyBulletinBoard) 1.6.6 allows remote attackers to execute arbitrary SQL commands via the conditions[usergroup][] parameter in … CWE-89
SQL Injection
CVE-2012-5909 2024-11-21 10:45 2012-11-18 Show GitHub Exploit DB Packet Storm
297875 - mybb mybb Cross-site scripting (XSS) vulnerability in admin/modules/user/users.php in MyBB (aka MyBulletinBoard) 1.6.6 allows remote attackers to inject arbitrary web script or HTML via the conditions[usergrou… CWE-79
Cross-site Scripting
CVE-2012-5908 2024-11-21 10:45 2012-11-18 Show GitHub Exploit DB Packet Storm
297876 - tomatocart tomatocart Directory traversal vulnerability in json.php in TomatoCart 1.2.0 Alpha 2 and possibly earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the module parameter in a "3" acti… CWE-22
Path Traversal
CVE-2012-5907 2024-11-21 10:45 2012-11-18 Show GitHub Exploit DB Packet Storm
297877 - morequick greenbrowser Multiple cross-site scripting (XSS) vulnerabilities in GreenBrowser 6.1.0117 and 6.1.0216 allow remote attackers to inject arbitrary web script or HTML via (1) the URI in an about: page or (2) the la… CWE-79
Cross-site Scripting
CVE-2012-5906 2024-11-21 10:45 2012-11-18 Show GitHub Exploit DB Packet Storm
297878 - elif_keir knftpd Buffer overflow in KnFTPd 1.0.0 allows remote authenticated users to cause a denial of service (crash) via a long string in a FEAT command. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-5905 2024-11-21 10:45 2012-11-18 Show GitHub Exploit DB Packet Storm
297879 - irfanview irfanview Heap-based buffer overflow in IrfanView before 4.33 allows remote attackers to execute arbitrary code via a crafted RLE compressed bitmap file such as a DIB, RLE, or BMP image. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-5904 2024-11-21 10:45 2012-11-18 Show GitHub Exploit DB Packet Storm
297880 - simple_machines smf Cross-site scripting (XSS) vulnerability in Simple Machines Forum (SMF) 2.0.2 allows remote attackers to inject arbitrary web script or HTML via the scheduled parameter to index.php. CWE-79
Cross-site Scripting
CVE-2012-5903 2024-11-21 10:45 2012-11-18 Show GitHub Exploit DB Packet Storm