Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216321 7.5 危険 タブローソフトウェア - Tableau Server における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-1204 2014-02-4 14:12 2014-01-8 Show GitHub Exploit DB Packet Storm
216322 4.3 警告 Steve Souza - JAMon におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-6235 2014-02-4 14:11 2013-01-23 Show GitHub Exploit DB Packet Storm
216323 5.5 警告 IBM - IBM Financial Transaction Manager の OAC コンポーネントにおけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0833 2014-02-4 14:08 2014-01-24 Show GitHub Exploit DB Packet Storm
216324 3.5 注意 IBM - IBM Financial Transaction Manager の OAC コンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0832 2014-02-4 14:07 2014-01-24 Show GitHub Exploit DB Packet Storm
216325 6.8 警告 IBM - IBM Financial Transaction Manager の OAC コンポーネントにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-0831 2014-02-4 14:07 2014-01-24 Show GitHub Exploit DB Packet Storm
216326 4 警告 IBM - IBM Financial Transaction Manager の OAC コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-0830 2014-02-4 14:06 2014-01-24 Show GitHub Exploit DB Packet Storm
216327 9.3 危険 IBM - IBM SPSS SamplePower の vsflex8l ActiveX コントロールにおける任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2013-6724 2014-02-4 14:06 2013-11-8 Show GitHub Exploit DB Packet Storm
216328 5 警告 IBM - IBM SPSS Collaboration and Deployment Services のサーバにおける任意のファイルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2013-4043 2014-02-4 14:05 2013-06-7 Show GitHub Exploit DB Packet Storm
216329 5 警告 Robert Ancell - Light Display Manager における重要な情報を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2013-4331 2014-02-4 14:04 2013-09-4 Show GitHub Exploit DB Packet Storm
216330 7.5 危険 ideaMK - EPS Viewer の gldll32.dll モジュールにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-4979 2014-02-4 13:52 2013-08-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 23, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
280011 - dsportal dsdownload "magic_quotes_gpc" parameter must be disabled in order for this vulnerability to be exploited. This vulnerability may affect DSPortal, DSDownload versions previous to 1.0 as well. NVD-CWE-Other
CVE-2006-1232 2018-10-19 01:31 2006-03-15 Show GitHub Exploit DB Packet Storm
280012 - mikael_software wmnews Multiple cross-site scripting (XSS) vulnerabilities in WMNews allow remote attackers to inject arbitrary web script or HTML via the (1) ArtCat parameter to wmview.php, (2) ctrrowcol parameter to foot… NVD-CWE-Other
CVE-2006-1233 2018-10-19 01:31 2006-03-15 Show GitHub Exploit DB Packet Storm
280013 - dsportal dscounter SQL injection vulnerability in index.php in DSCounter 1.2, with magic_quotes_gpc disabled, allows remote attackers to execute arbitrary SQL commands via the X-Forwarded-For field (HTTP_X_FORWARDED_FO… NVD-CWE-Other
CVE-2006-1234 2018-10-19 01:31 2006-03-15 Show GitHub Exploit DB Packet Storm
280014 - dsportal dscounter Successful exploitation requires that the "magic_quotes_gpc" parameter is disabled. NVD-CWE-Other
CVE-2006-1234 2018-10-19 01:31 2006-03-15 Show GitHub Exploit DB Packet Storm
280015 - david_ravenscroft hithost Directory traversal vulnerability in admin/deleteuser.php in HitHost 1.0.0 might allow remote attackers to delete directories (possibly only empty directories) via the $deleteuser variable. NOTE: th… NVD-CWE-Other
CVE-2006-1235 2018-10-19 01:31 2006-03-15 Show GitHub Exploit DB Packet Storm
280016 - dsportal dsnewsletter Multiple SQL injection vulnerabilities in DSNewsletter 1.0, with magic_quotes_gpc disabled, allow remote attackers to execute arbitrary SQL commands via the email parameter to (1) include/sub.php, (2… NVD-CWE-Other
CVE-2006-1237 2018-10-19 01:31 2006-03-16 Show GitHub Exploit DB Packet Storm
280017 - dsportal dsnewsletter Successful exploitation requires that the "magic_quotes_gpc" parameter is disabled. NVD-CWE-Other
CVE-2006-1237 2018-10-19 01:31 2006-03-16 Show GitHub Exploit DB Packet Storm
280018 - dsportal dslogin SQL injection vulnerability in DSLogin 1.0, with magic_quotes_gpc disabled, allows remote attackers to execute arbitrary SQL commands and bypass authentication via the $log_userid variable in (1) ind… NVD-CWE-Other
CVE-2006-1238 2018-10-19 01:31 2006-03-16 Show GitHub Exploit DB Packet Storm
280019 - dsportal dslogin Successful exploitation requires that the "magic_quotes_gpc" parameter is disabled. NVD-CWE-Other
CVE-2006-1238 2018-10-19 01:31 2006-03-16 Show GitHub Exploit DB Packet Storm
280020 - firebirdsql firebird Buffer overflow in inet_server.cpp in (1) fb_inet_server and (2) fbserver in Firebird 1.5.2.4731 allows local users to gain privileges via a long value of the -p argument. NVD-CWE-Other
CVE-2006-1240 2018-10-19 01:31 2006-03-16 Show GitHub Exploit DB Packet Storm