Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
215081 4.3 警告 WP Symposium - WordPress 用の WP Symposium プラグインの invite.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-2695 2014-04-1 12:24 2013-04-12 Show GitHub Exploit DB Packet Storm
215082 5.8 警告 WP Symposium - WordPress 用の WP Symposium プラグインの invite.php におけるオープンリダイレクトの脆弱性 CWE-20
不適切な入力確認
CVE-2013-2694 2014-04-1 12:23 2013-04-12 Show GitHub Exploit DB Packet Storm
215083 4.3 警告 Cartpauj.com - WordPress 用 Mingle Forum プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0734 2014-04-1 12:23 2013-02-20 Show GitHub Exploit DB Packet Storm
215084 5.8 警告 シーメンス - Siemens SIMATIC S7-1500 CPU PLC デバイスの統合 Web サーバにおけるヘッダを挿入される脆弱性 CWE-Other
その他
CVE-2014-2247 2014-03-31 15:09 2014-03-12 Show GitHub Exploit DB Packet Storm
215085 6.8 警告 ownCloud - ownCloud における Web セッションをハイジャックされる脆弱性 CWE-287
不適切な認証
CVE-2014-2047 2014-03-31 15:09 2014-03-7 Show GitHub Exploit DB Packet Storm
215086 4.3 警告 シスコシステムズ - Cisco Prime Security Manager のダッシュボード関連の HTML ドキュメントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2118 2014-03-31 15:07 2014-03-27 Show GitHub Exploit DB Packet Storm
215087 7.8 危険 シスコシステムズ - Cisco IOS および IOS XE におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-2113 2014-03-31 15:06 2014-03-26 Show GitHub Exploit DB Packet Storm
215088 7.8 危険 シスコシステムズ - Cisco IOS の SSL VPN 機能におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-2112 2014-03-31 15:05 2014-03-26 Show GitHub Exploit DB Packet Storm
215089 7.1 危険 シスコシステムズ - Cisco IOS の Application Layer Gateway モジュールにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-2111 2014-03-31 15:04 2014-03-26 Show GitHub Exploit DB Packet Storm
215090 7.8 危険 シスコシステムズ - Cisco IOS の TCP Input モジュールにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-2109 2014-03-31 15:03 2014-03-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 25, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
290171 - tomasz_rekawek yet_another_asterisk_panel PHP remote file inclusion vulnerability in includes/common.php in Yaap 1.5 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the root_path parameter, possibly related to … NVD-CWE-Other
CVE-2007-2664 2017-10-11 10:32 2007-05-15 Show GitHub Exploit DB Packet Storm
290172 - php_firstpost php_firstpost PHP remote file inclusion vulnerability in block.php in PhpFirstPost 0.1 allows remote attackers to execute arbitrary PHP code via a URL in the Include parameter. NVD-CWE-Other
CVE-2007-2665 2017-10-11 10:32 2007-05-15 Show GitHub Exploit DB Packet Storm
290173 - db_soft_lab vimp_x Buffer overflow in the DB Software Laboratory VImpX ActiveX control in VImpX.ocx 4.7.3 allows remote attackers to execute arbitrary code via a long LogFile parameter. NVD-CWE-Other
CVE-2007-2667 2017-10-11 10:32 2007-05-15 Show GitHub Exploit DB Packet Storm
290174 - webdesproxy webdesproxy Buffer overflow in webdesproxy 0.0.1 allows remote attackers to execute arbitrary code via a long URL, possibly involving the process_connection_request function in webdesproxy.c. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2007-2668 2017-10-11 10:32 2007-05-15 Show GitHub Exploit DB Packet Storm
290175 - thinc4orce_marketing_group php_coupon_script SQL injection vulnerability in index.php in PHP Coupon Script 3.0 allows remote attackers to execute arbitrary SQL commands via the bus parameter in a viewbus page. NVD-CWE-Other
CVE-2007-2672 2017-10-11 10:32 2007-05-15 Show GitHub Exploit DB Packet Storm
290176 - censura censura SQL injection vulnerability in includes/funcs_vendors.php in Censura 1.15.04, and other versions before 1.16.04, allows remote attackers to execute arbitrary SQL commands via the vendorid parameter i… CWE-89
SQL Injection
CVE-2007-2673 2017-10-11 10:32 2007-05-15 Show GitHub Exploit DB Packet Storm
290177 - pre_projects pre_shopping_mall SQL injection vulnerability in detail.php in Pre Shopping Mall 1.0 allows remote attackers to execute arbitrary SQL commands via the prodid parameter. NVD-CWE-Other
CVE-2007-2674 2017-10-11 10:32 2007-05-15 Show GitHub Exploit DB Packet Storm
290178 - pre_projects pre_classifieds_listings SQL injection vulnerability in search.php in Pre Classifieds Listings 1.0 allows remote attackers to execute arbitrary SQL commands via the category parameter. NVD-CWE-Other
CVE-2007-2675 2017-10-11 10:32 2007-05-15 Show GitHub Exploit DB Packet Storm
290179 - open_translation_engine open_translation_engine PHP remote file inclusion vulnerability in skins/header.php in Open Translation Engine (OTE) 0.7.8 allows remote attackers to execute arbitrary PHP code via a URL in the ote_home parameter. NVD-CWE-Other
CVE-2007-2676 2017-10-11 10:32 2007-05-15 Show GitHub Exploit DB Packet Storm
290180 - phpchess phpchess Multiple PHP remote file inclusion vulnerabilities in phpChess Community Edition 2.0 allow remote attackers to execute arbitrary PHP code via a URL in (1) the config parameter to includes/language.ph… NVD-CWE-Other
CVE-2007-2677 2017-10-11 10:32 2007-05-15 Show GitHub Exploit DB Packet Storm