Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216531 7.5 危険 Hornbill Corporate Limited - Hornbill Supportworks ITSM の reports/calldiary.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-2594 2014-01-23 17:14 2013-04-24 Show GitHub Exploit DB Packet Storm
216532 2.1 注意 kernel.org
レッドハット
- util-linux のマウントおよびアンマウントにおける制限されたディレクトリの存在を特定される脆弱性 CWE-200
情報漏えい
CVE-2013-0157 2014-01-23 16:53 2013-02-21 Show GitHub Exploit DB Packet Storm
216533 4.3 警告 Hiox Softwares Pvt Ltd. - HIOX Guest Book の add.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-1620 2014-01-23 16:44 2014-01-5 Show GitHub Exploit DB Packet Storm
216534 6.8 警告 Expat - Expat におけるサービス運用妨害 (DoS) の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-0340 2014-01-23 16:33 2013-02-21 Show GitHub Exploit DB Packet Storm
216535 7.5 危険 CUBIC FACTORY - CUBIC CMS における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-1619 2014-01-23 16:28 2014-01-8 Show GitHub Exploit DB Packet Storm
216536 7.8 危険 Ecava - Ecava IntegraXor の SCADA サーバにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-0753 2014-01-23 16:17 2014-01-16 Show GitHub Exploit DB Packet Storm
216537 2.6 注意 httplib2 Project
Canonical
- httplib2 における SSL サーバになりすまされる脆弱性 CWE-20
不適切な入力確認
CVE-2013-2037 2014-01-23 16:11 2013-04-23 Show GitHub Exploit DB Packet Storm
216538 7.5 危険 UAEPD - UAEPD Shopping Cart Script における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-1618 2014-01-23 15:57 2014-01-8 Show GitHub Exploit DB Packet Storm
216539 5.8 警告 FreeBSD - FreeBSD で使用される bsnmpd の lib/snmpagent.c におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-1452 2014-01-23 15:49 2014-01-14 Show GitHub Exploit DB Packet Storm
216540 6.5 警告 Open Dynamics - Collabtive の managetimetracker.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-6872 2014-01-23 15:44 2013-11-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 25, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
289671 - web_group_communication_center web_group_communication_center SQL injection vulnerability in quiz.php in Web Group Communication Center (WGCC) 0.5.6b and earlier allows remote attackers to execute arbitrary SQL commands via the qzid parameter. NVD-CWE-Other
CVE-2006-5514 2017-10-19 10:29 2006-10-27 Show GitHub Exploit DB Packet Storm
289672 - christopher_fowler rssonate Multiple PHP remote file inclusion vulnerabilities in Christopher Fowler (Rhode Island) RSSonate allow remote attackers to execute arbitrary PHP code via a URL in the PROJECT_ROOT parameter to (1) xm… NVD-CWE-Other
CVE-2006-5518 2017-10-19 10:29 2006-10-27 Show GitHub Exploit DB Packet Storm
289673 - mambweather mambweather PHP remote file inclusion vulnerability in Savant2/Savant2_Plugin_options.php in the MambWeather 1.8.1 and earlier component for Mambo allows remote attackers to execute arbitrary PHP code via a URL … CWE-94
Code Injection
CVE-2006-5519 2017-10-19 10:29 2006-10-27 Show GitHub Exploit DB Packet Storm
289674 - net_dns net_dns PHP remote file inclusion vulnerability in DNS/RR.php in Net_DNS 0.03 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the phpdns_basedir parameter. NVD-CWE-Other
CVE-2006-5521 2017-10-19 10:29 2006-10-27 Show GitHub Exploit DB Packet Storm
289675 - johannes_erdfelt kawf Multiple PHP remote file inclusion vulnerabilities in Johannes Erdfelt Kawf 1.0 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the config parameter in (1) main.php or (… NVD-CWE-Other
CVE-2006-5522 2017-10-19 10:29 2006-10-27 Show GitHub Exploit DB Packet Storm
289676 - ez-ticket ez-ticket PHP remote file inclusion vulnerability in common.php in EZ-Ticket 0.0.1 allows remote attackers to execute arbitrary PHP code via a URL in the ezt_root_path parameter. NVD-CWE-Other
CVE-2006-5523 2017-10-19 10:29 2006-10-27 Show GitHub Exploit DB Packet Storm
289677 - phpnuke php-nuke Incomplete blacklist vulnerability in mainfile.php in PHP-Nuke 7.9 and earlier allows remote attackers to conduct SQL injection attacks via (1) "/**/UNION " or (2) " UNION/**/" sequences, which are n… NVD-CWE-Other
CVE-2006-5525 2017-10-19 10:29 2006-10-27 Show GitHub Exploit DB Packet Storm
289678 - fully_modded_phpbb fully_modded_phpbb Multiple PHP remote file inclusion vulnerabilities in Teake Nutma Foing, as modified in Fully Modded phpBB (phpbbfm) 2021.4.40 and earlier, allow remote attackers to execute arbitrary PHP code via a … NVD-CWE-Other
CVE-2006-5526 2017-10-19 10:29 2006-10-27 Show GitHub Exploit DB Packet Storm
289679 - ascended_development ascended_guestbook PHP remote file inclusion vulnerability in embedded.php in Ascended Guestbook 1.0.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the CONFIG[path] parameter. NVD-CWE-Other
CVE-2006-5531 2017-10-19 10:29 2006-10-27 Show GitHub Exploit DB Packet Storm
289680 - ueberproject_management_system ueberproject_management_system PHP remote file inclusion vulnerability in login/secure.php in UeberProject Management System 1.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the cfg[homepath] para… NVD-CWE-Other
CVE-2006-5539 2017-10-19 10:29 2006-10-27 Show GitHub Exploit DB Packet Storm