Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 31, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
213631 7.5 危険 FreeType Project - FreeType の sfnt/pngshim.c 内の Load_SBit_Png 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2014-9665 2015-02-17 09:47 2014-11-15 Show GitHub Exploit DB Packet Storm
213632 7.5 危険 FreeType Project - FreeType の sfnt/sfobjs.c の woff_open_font 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2014-9668 2015-02-17 09:47 2014-11-12 Show GitHub Exploit DB Packet Storm
213633 7.5 危険 SIPhone - SIPhone Enterprise PBX における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2015-1513 2015-02-16 16:48 2015-01-31 Show GitHub Exploit DB Packet Storm
213634 5 警告 General Electric Company
MACTek Corporation
- MACTek Bullet DTM および複数の GE DTM 製品で使用される HART DTM ライブラリにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-9203 2015-02-16 16:48 2014-12-2 Show GitHub Exploit DB Packet Storm
213635 4.3 警告 FancyFon - FancyFon FAMOC におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-1512 2015-02-16 16:46 2015-01-23 Show GitHub Exploit DB Packet Storm
213636 7.5 危険 FancyFon - FancyFon FAMOC における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2015-1514 2015-02-16 16:46 2015-01-23 Show GitHub Exploit DB Packet Storm
213637 6.9 警告 マカフィー - McAfee Data Loss Prevention Endpoint における任意のメモリ領域に書き込まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-1305 2015-02-16 16:44 2015-01-20 Show GitHub Exploit DB Packet Storm
213638 7.2 危険 トレンドマイクロ - 複数の Trend Micro 製品の tmeext.sys ドライバにおける任意のメモリ領域に書き込まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-9641 2015-02-16 16:44 2014-12-2 Show GitHub Exploit DB Packet Storm
213639 7.5 危険 Another Awesome Stuff - ZeroCMS の管理バックエンドの views/zero_transact_user.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2015-1442 2015-02-16 16:44 2015-01-23 Show GitHub Exploit DB Packet Storm
213640 4.3 警告 fli4l - fli4l の httpd パッケージの Web 管理フロントエンドにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-1444 2015-02-16 16:44 2015-01-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
353571 - bea weblogic_server BEA WebLogic Server and WebLogic Express 9.0, 8.1 through SP5, and 7.0 through SP6 allows anonymous binds to the embedded LDAP server, which allows remote attackers to read user entries or cause a de… NVD-CWE-Other
CVE-2006-0419 2008-09-6 05:59 2006-01-26 Show GitHub Exploit DB Packet Storm
353572 - bea weblogic_server BEA WebLogic Server and WebLogic Express 8.1 through SP4 and 7.0 through SP6 does not properly handle when servlets use relative forwarding, which allows remote attackers to cause a denial of service… NVD-CWE-Other
CVE-2006-0420 2008-09-6 05:59 2006-01-26 Show GitHub Exploit DB Packet Storm
353573 - ideosoft_design ideocontent_manager Cross-site scripting (XSS) vulnerability in IdeoContent Manager allows remote attackers to inject arbitrary web script or HTML via the (1) goto_id parameter to index.php or (2) page parameter to news… NVD-CWE-Other
CVE-2006-0463 2008-09-6 05:59 2006-01-28 Show GitHub Exploit DB Packet Storm
353574 - ideosoft_design ideocontent_manager Multiple SQL injection vulnerabilities in index.php in IdeoContent Manager allow remote attackers to execute arbitrary SQL commands via the (1) goto_id or (2) mid parameter. NVD-CWE-Other
CVE-2006-0464 2008-09-6 05:59 2006-01-28 Show GitHub Exploit DB Packet Storm
353575 - active121 site_manager Cross-site scripting (XSS) vulnerability in risultati_ricerca.php in active121 Site Manager allows remote attackers to inject arbitrary web script or HTML via the cerca parameter. NVD-CWE-Other
CVE-2006-0465 2008-09-6 05:59 2006-01-28 Show GitHub Exploit DB Packet Storm
353576 - communityserver.org community_server Multiple cross-site scripting (XSS) vulnerabilities in Community Server allow remote attackers to inject arbitrary web script or HTML via unknown attack vectors. NOTE: this candidate does not contai… CWE-79
Cross-site Scripting
CVE-2006-0535 2008-09-6 05:59 2006-02-4 Show GitHub Exploit DB Packet Storm
353577 - cerulean_studios trillian Cerulean Trillian 3.1.0.120 allows remote attackers to cause a denial of service (client crash) via an AIM message containing the Mac encoded Rich Text Format (RTF) escape sequences (1) \'d1, (2) \'d… NVD-CWE-Other
CVE-2006-0543 2008-09-6 05:59 2006-02-4 Show GitHub Exploit DB Packet Storm
353578 - microsoft ie urlmon.dll in Microsoft Internet Explorer 7.0 beta 2 (aka 7.0.5296.0) allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a BGSOUND elemen… NVD-CWE-Other
CVE-2006-0544 2008-09-6 05:59 2006-02-4 Show GitHub Exploit DB Packet Storm
353579 - suse suse_linux ld in SUSE Linux 9.1 through 10.0, and SLES 9, in certain circumstances when linking binaries, can leave an empty RPATH or RUNPATH, which allows local attackers to execute arbitrary code as other use… NVD-CWE-Other
CVE-2006-0646 2008-09-6 05:59 2006-02-11 Show GitHub Exploit DB Packet Storm
353580 - pwsphp pwsphp SQL injection vulnerability in index.php in PwsPHP 1.2.3 allows remote attackers to execute arbitrary SQL commands via the id parameter, possibly in message.php in the espace_membre module. NOTE: th… NVD-CWE-Other
CVE-2006-0668 2008-09-6 05:59 2006-02-14 Show GitHub Exploit DB Packet Storm