Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
214731 5 警告 オラクル - Oracle Fusion Middleware の Oracle Containers for J2EE における HTTP Request Handling に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-0414 2014-04-18 14:54 2014-04-15 Show GitHub Exploit DB Packet Storm
214732 4.3 警告 オラクル - Oracle Fusion Middleware の Oracle Containers for J2EE における HTTP Request Handling に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-0413 2014-04-18 14:54 2014-04-15 Show GitHub Exploit DB Packet Storm
214733 3.5 注意 オラクル - Oracle Supply Chain Products Suite の Oracle Agile PLM Framework における Security に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-2467 2014-04-18 10:13 2014-04-15 Show GitHub Exploit DB Packet Storm
214734 2.1 注意 オラクル - Oracle Supply Chain Products Suite の Oracle Agile PLM Framework における Security に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-2466 2014-04-18 10:12 2014-04-15 Show GitHub Exploit DB Packet Storm
214735 4.3 警告 オラクル - Oracle Supply Chain Products Suite の Oracle Agile PLM Framework における Security に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-2465 2014-04-18 10:12 2014-04-15 Show GitHub Exploit DB Packet Storm
214736 3.5 注意 オラクル - Oracle Supply Chain Products Suite の Oracle Agile PLM Framework における Security に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-2464 2014-04-18 10:12 2014-04-15 Show GitHub Exploit DB Packet Storm
214737 5 警告 オラクル - Oracle Supply Chain Products Suite の Oracle Transportation Management における Security に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-2461 2014-04-18 10:11 2014-04-15 Show GitHub Exploit DB Packet Storm
214738 4 警告 オラクル - Oracle Supply Chain Products Suite の Oracle Transportation Management における CSV Management に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-2460 2014-04-18 10:10 2014-04-15 Show GitHub Exploit DB Packet Storm
214739 3.7 注意 オラクル - Oracle Supply Chain Products Suite の Oracle Transportation Management における Security に関する脆弱性性 CWE-noinfo
情報不足
CVE-2014-2459 2014-04-18 10:10 2014-04-15 Show GitHub Exploit DB Packet Storm
214740 4.3 警告 オラクル - Oracle Supply Chain Products Suite の Oracle Agile Product Lifecycle における Install に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-2458 2014-04-18 10:09 2014-04-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 26, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
289951 - open_newsletter open_newsletter The (1) settings.php and (2) subscribers.php scripts in Open Newsletter 2.5 and earlier do not exit when authentication fails, which allows remote attackers to perform unauthorized administrative act… NVD-CWE-Other
CVE-2006-6785 2017-10-19 10:29 2006-12-28 Show GitHub Exploit DB Packet Storm
289952 - open_newsletter open_newsletter Open Newsletter 2.5 and earlier allows remote authenticated administrators to execute arbitrary PHP code by inserting the code into the email parameter to (1) subscribe.php or (2) unsubscribe.php. NVD-CWE-Other
CVE-2006-6786 2017-10-19 10:29 2006-12-28 Show GitHub Exploit DB Packet Storm
289953 - mxmania newsletter_mx SQL injection vulnerability in admin/admin_mail_adressee.asp in Newsletter MX 1.0.2 and earlier allows remote attackers to execute arbitrary SQL commands via the ID parameter. NVD-CWE-Other
CVE-2006-6787 2017-10-19 10:29 2006-12-28 Show GitHub Exploit DB Packet Storm
289954 - mxmania calendar_mx_basic SQL injection vulnerability in calendar_detail.asp in Calendar MX BASIC 1.0.2 and earlier allows remote attackers to execute arbitrary SQL commands via the ID parameter. NOTE: The provenance of this… NVD-CWE-Other
CVE-2006-6792 2017-10-19 10:29 2006-12-28 Show GitHub Exploit DB Packet Storm
289955 - myphpnuke myphpnuke_my_egallery PHP remote file inclusion vulnerability in gallery/displayCategory.php in the My_eGallery 2.5.6 module in myPHPNuke (MPN) allows remote attackers to execute arbitrary PHP code via a URL in the basepa… NVD-CWE-Other
CVE-2006-6795 2017-10-19 10:29 2006-12-28 Show GitHub Exploit DB Packet Storm
289956 - mtcms mtcms PHP remote file inclusion vulnerability in admin/admin_settings.php in MTCMS 2.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the ins_file parameter. NVD-CWE-Other
CVE-2006-6796 2017-10-19 10:29 2006-12-28 Show GitHub Exploit DB Packet Storm
289957 - sh-news sh-news PHP remote file inclusion vulnerability in misc.php in SH-News 0.93, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via the news_cfg[path] parameter. NVD-CWE-Other
CVE-2006-6801 2017-10-19 10:29 2006-12-29 Show GitHub Exploit DB Packet Storm
289958 - sh-news sh-news Successful exploitation requires that "register_globals" is enabled. NVD-CWE-Other
CVE-2006-6801 2017-10-19 10:29 2006-12-29 Show GitHub Exploit DB Packet Storm
289959 - enthrallweb epages SQL injection vulnerability in actualpic.asp in Enthrallweb ePages allows remote attackers to execute arbitrary SQL commands via the Biz_ID parameter. NVD-CWE-Other
CVE-2006-6802 2017-10-19 10:29 2006-12-29 Show GitHub Exploit DB Packet Storm
289960 - enthrallweb ecars SQL injection vulnerability in Types.asp in Enthrallweb eCars 1.0 allows remote attackers to execute arbitrary SQL commands via the Type_id parameter. NVD-CWE-Other
CVE-2006-6803 2017-10-19 10:29 2006-12-29 Show GitHub Exploit DB Packet Storm