Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216791 4.3 警告 MyBB Group - MyBB の misc.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-7275 2014-01-10 14:25 2013-11-20 Show GitHub Exploit DB Packet Storm
216792 4.3 警告 Wallpaper Script - Wallpaper Script におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-7274 2014-01-10 14:10 2013-12-16 Show GitHub Exploit DB Packet Storm
216793 4.9 警告 Linux - Linux Kernel の net/ieee802154/dgram.c 内の dgram_recvmsg 関数における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-7281 2014-01-10 14:00 2013-12-8 Show GitHub Exploit DB Packet Storm
216794 4.3 警告 FolioVision - WordPress 用 Foliopress WYSIWYG プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-1232 2014-01-10 13:46 2014-01-3 Show GitHub Exploit DB Packet Storm
216795 6.8 警告 Technicolor - Technicolor TC7200 におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-0621 2014-01-10 13:39 2014-01-3 Show GitHub Exploit DB Packet Storm
216796 4.3 警告 Technicolor - Technicolor TC7200 におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0620 2014-01-10 13:39 2014-01-3 Show GitHub Exploit DB Packet Storm
216797 5 警告 7 Media Web Solutions, LLC. - 7 Media Web Solutions の eduTrac におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-7097 2014-01-10 11:37 2013-12-16 Show GitHub Exploit DB Packet Storm
216798 4.3 警告 Anthony Mills - WordPress 用 S3 Video プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-7279 2014-01-10 11:01 2013-12-17 Show GitHub Exploit DB Packet Storm
216799 7.5 危険 Naxtech - Naxtech CMS Afroditi における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-7278 2014-01-10 10:39 2013-12-30 Show GitHub Exploit DB Packet Storm
216800 5.8 警告 Mozilla Foundation - Mozilla Firefox の Web App インストレーションサイトになりすまされる脆弱性 CWE-noinfo
情報不足
CVE-2013-5611 2014-01-10 09:44 2013-12-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
280021 - firebirdsql firebird Firebird 1.5.2.4731 installs (1) fb_lock_mgr, (2) gds_drop, and (3) fb_inet_server with setuid firebird permissions, which might allow local users to gain privileges via a buffer overflow as identifi… NVD-CWE-Other
CVE-2006-1241 2018-10-19 01:31 2006-03-16 Show GitHub Exploit DB Packet Storm
280022 - firebirdsql firebird The problems are fixed in the current 1.5.3 version of the Firebird binary distribution. NVD-CWE-Other
CVE-2006-1241 2018-10-19 01:31 2006-03-16 Show GitHub Exploit DB Packet Storm
280023 - linux linux_kernel The ip_push_pending_frames function in Linux 2.4.x and 2.6.x before 2.6.16 increments the IP ID field when sending a RST after receiving unsolicited TCP SYN-ACK packets, which allows remote attackers… NVD-CWE-Other
CVE-2006-1242 2018-10-19 01:31 2006-03-16 Show GitHub Exploit DB Packet Storm
280024 - microsoft ie Buffer overflow in mshtml.dll in Microsoft Internet Explorer 6.0.2900.2180, and probably other versions, allows remote attackers to execute arbitrary code via an HTML tag with a large number of scrip… NVD-CWE-Other
CVE-2006-1245 2018-10-19 01:31 2006-03-17 Show GitHub Exploit DB Packet Storm
280025 - ibm aix rm_mlcache_file in bos.rte.install in AIX 5.1.0 through 5.3.0 allows local users to overwrite arbitrary files via a symlink attack on temporary files. CWE-59
Link Following
CVE-2006-1247 2018-10-19 01:31 2006-04-20 Show GitHub Exploit DB Packet Storm
280026 - apple itunes
quicktime
Integer overflow in Apple QuickTime Player 7.0.3 and 7.0.4 and iTunes 6.0.1 and 6.0.2 allows remote attackers to execute arbitrary code via a FlashPix (FPX) image that contains a field that specifies… CWE-189
Numeric Errors
CVE-2006-1249 2018-10-19 01:31 2006-03-19 Show GitHub Exploit DB Packet Storm
280027 - skullsplitter php_guestbook Cross-site scripting (XSS) vulnerability in guestbook.php in Soren Boysen (SkullSplitter) PHP Guestbook 2.6 allows remote attackers to inject arbitrary web script or HTML via the url parameter. NVD-CWE-Other
CVE-2006-1256 2018-10-19 01:31 2006-03-19 Show GitHub Exploit DB Packet Storm
280028 - skullsplitter php_guestbook This vulnerability can only be exploited if the "magic_quotes_gpc" parameter is set to 'off'. NVD-CWE-Other
CVE-2006-1256 2018-10-19 01:31 2006-03-19 Show GitHub Exploit DB Packet Storm
280029 - microsoft commerce_server The sample files in the authfiles directory in Microsoft Commerce Server 2002 before SP2 allow remote attackers to bypass authentication by logging in to authfiles/login.asp with a valid username and… NVD-CWE-Other
CVE-2006-1257 2018-10-19 01:31 2006-03-19 Show GitHub Exploit DB Packet Storm
280030 - maian support Multiple SQL injection vulnerabilities in Maian Support 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) email or (2) pass parameter to admin/index.php. NVD-CWE-Other
CVE-2006-1259 2018-10-19 01:31 2006-03-19 Show GitHub Exploit DB Packet Storm