Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216571 3.3 注意 VMware - 複数の VMware 製品におけるサービス運用妨害 (DoS) の脆弱性 CWE-DesignError
CVE-2014-1208 2014-01-22 11:29 2014-01-16 Show GitHub Exploit DB Packet Storm
216572 4.3 警告 VMware - VMware ESXi および ESX におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2014-1207 2014-01-22 11:29 2014-01-16 Show GitHub Exploit DB Packet Storm
216573 7.5 危険 Sonatype Inc. - Sonatype Nexus における任意のオブジェクトを作成される脆弱性 CWE-94
コード・インジェクション
CVE-2014-0792 2014-01-22 11:04 2014-01-7 Show GitHub Exploit DB Packet Storm
216574 4.3 警告 The GetSimple Team - GetSimple CMS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-7243 2014-01-21 17:06 2013-12-31 Show GitHub Exploit DB Packet Storm
216575 6.8 警告 Conceptronic - Conceptronic CIPCAMPTIWL Camera のファームウェアにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-7204 2014-01-21 17:06 2013-12-23 Show GitHub Exploit DB Packet Storm
216576 4.3 警告 Rick Mead - WordPress 用 Media Library Categories プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-6630 2014-01-21 17:04 2012-05-15 Show GitHub Exploit DB Packet Storm
216577 6.8 警告 XYZScripts - WordPress 用 Newsletter Manager プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-6629 2014-01-21 17:03 2012-05-15 Show GitHub Exploit DB Packet Storm
216578 4.3 警告 XYZScripts - WordPress 用 Newsletter Manager プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-6628 2014-01-21 17:03 2012-04-20 Show GitHub Exploit DB Packet Storm
216579 4.3 警告 XYZScripts - WordPress 用 Newsletter Manager プラグインの admin/test_mail.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-6627 2014-01-21 17:02 2012-05-15 Show GitHub Exploit DB Packet Storm
216580 4.3 警告 VastHTML - WordPress 用 ForumPress WP Forum Server プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-6623 2014-01-21 17:01 2012-07-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 25, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
289671 - web_group_communication_center web_group_communication_center SQL injection vulnerability in quiz.php in Web Group Communication Center (WGCC) 0.5.6b and earlier allows remote attackers to execute arbitrary SQL commands via the qzid parameter. NVD-CWE-Other
CVE-2006-5514 2017-10-19 10:29 2006-10-27 Show GitHub Exploit DB Packet Storm
289672 - christopher_fowler rssonate Multiple PHP remote file inclusion vulnerabilities in Christopher Fowler (Rhode Island) RSSonate allow remote attackers to execute arbitrary PHP code via a URL in the PROJECT_ROOT parameter to (1) xm… NVD-CWE-Other
CVE-2006-5518 2017-10-19 10:29 2006-10-27 Show GitHub Exploit DB Packet Storm
289673 - mambweather mambweather PHP remote file inclusion vulnerability in Savant2/Savant2_Plugin_options.php in the MambWeather 1.8.1 and earlier component for Mambo allows remote attackers to execute arbitrary PHP code via a URL … CWE-94
Code Injection
CVE-2006-5519 2017-10-19 10:29 2006-10-27 Show GitHub Exploit DB Packet Storm
289674 - net_dns net_dns PHP remote file inclusion vulnerability in DNS/RR.php in Net_DNS 0.03 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the phpdns_basedir parameter. NVD-CWE-Other
CVE-2006-5521 2017-10-19 10:29 2006-10-27 Show GitHub Exploit DB Packet Storm
289675 - johannes_erdfelt kawf Multiple PHP remote file inclusion vulnerabilities in Johannes Erdfelt Kawf 1.0 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the config parameter in (1) main.php or (… NVD-CWE-Other
CVE-2006-5522 2017-10-19 10:29 2006-10-27 Show GitHub Exploit DB Packet Storm
289676 - ez-ticket ez-ticket PHP remote file inclusion vulnerability in common.php in EZ-Ticket 0.0.1 allows remote attackers to execute arbitrary PHP code via a URL in the ezt_root_path parameter. NVD-CWE-Other
CVE-2006-5523 2017-10-19 10:29 2006-10-27 Show GitHub Exploit DB Packet Storm
289677 - phpnuke php-nuke Incomplete blacklist vulnerability in mainfile.php in PHP-Nuke 7.9 and earlier allows remote attackers to conduct SQL injection attacks via (1) "/**/UNION " or (2) " UNION/**/" sequences, which are n… NVD-CWE-Other
CVE-2006-5525 2017-10-19 10:29 2006-10-27 Show GitHub Exploit DB Packet Storm
289678 - fully_modded_phpbb fully_modded_phpbb Multiple PHP remote file inclusion vulnerabilities in Teake Nutma Foing, as modified in Fully Modded phpBB (phpbbfm) 2021.4.40 and earlier, allow remote attackers to execute arbitrary PHP code via a … NVD-CWE-Other
CVE-2006-5526 2017-10-19 10:29 2006-10-27 Show GitHub Exploit DB Packet Storm
289679 - ascended_development ascended_guestbook PHP remote file inclusion vulnerability in embedded.php in Ascended Guestbook 1.0.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the CONFIG[path] parameter. NVD-CWE-Other
CVE-2006-5531 2017-10-19 10:29 2006-10-27 Show GitHub Exploit DB Packet Storm
289680 - ueberproject_management_system ueberproject_management_system PHP remote file inclusion vulnerability in login/secure.php in UeberProject Management System 1.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the cfg[homepath] para… NVD-CWE-Other
CVE-2006-5539 2017-10-19 10:29 2006-10-27 Show GitHub Exploit DB Packet Storm