Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216931 3.3 注意 HOT - HOT HOTBOX Router のソフトウェアにおける事前共有鍵を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2013-5037 2014-01-6 16:51 2013-09-9 Show GitHub Exploit DB Packet Storm
216932 4.3 警告 ヒューレット・パッカード - HP Service Manager WebTier および Windows Client におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-6198 2014-01-6 16:34 2013-12-19 Show GitHub Exploit DB Packet Storm
216933 5.2 警告 ヒューレット・パッカード - HP Service Manager WebTier および Windows Client における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2013-6197 2014-01-6 16:34 2013-12-19 Show GitHub Exploit DB Packet Storm
216934 4.3 警告 Novell - Novell Identity Manager 用 Roles Based Provisioning Module におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1096 2014-01-6 16:33 2013-11-17 Show GitHub Exploit DB Packet Storm
216935 10 危険 ヒューレット・パッカード - HP Application Information Optimizer の Archive Query Server における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2013-6189 2014-01-6 16:32 2013-12-19 Show GitHub Exploit DB Packet Storm
216936 4.3 警告 Joomla! - Joomla! の libraries/idna_convert/example.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-5583 2014-01-6 16:32 2013-08-5 Show GitHub Exploit DB Packet Storm
216937 7.5 危険 OpenX
Revive Adserver
- Revive Adserver および OpenX Source における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-7149 2014-01-6 16:31 2013-12-20 Show GitHub Exploit DB Packet Storm
216938 5.4 警告 シスコシステムズ - Cisco IOS XE におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-6981 2014-01-6 16:31 2013-12-24 Show GitHub Exploit DB Packet Storm
216939 5.2 警告 Linux
レッドハット
- Linux Kernel の Xen におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2011-2519 2014-01-6 16:19 2011-09-6 Show GitHub Exploit DB Packet Storm
216940 9.3 危険 アップル - Apple QuickTime の Picture Viewer における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2010-1819 2014-01-6 15:55 2010-09-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 23, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
279331 - phpwcms phpwcms Directory traversal vulnerability in include/inc_ext/spaw/spaw_control.class.php in phpwcms 1.2.5-DEV allows remote attackers to include arbitrary local files via .. (dot dot) sequences in the spaw_r… NVD-CWE-Other
CVE-2006-2519 2018-10-19 01:40 2006-05-23 Show GitHub Exploit DB Packet Storm
279332 - bitberry_software bitzipper Directory traversal vulnerability in BitZipper 4.1.2 SR-1 and earlier allows remote attackers to create files in arbitrary directories via a .. (dot dot) in the filename of a file that is stored in … NVD-CWE-Other
CVE-2006-2520 2018-10-19 01:40 2006-05-23 Show GitHub Exploit DB Packet Storm
279333 - power_place php_easy_galerie PHP remote file inclusion vulnerability in index.php in PHP Easy Galerie 1.1 allows remote attackers to execute arbitrary PHP code via a URL in the includepath parameter. NVD-CWE-Other
CVE-2006-2526 2018-10-19 01:40 2006-05-23 Show GitHub Exploit DB Packet Storm
279334 - smartisoft phpbazar Admin/admin.php in phpBazar 2.1.0 and earlier allows remote attackers to bypass the authentication process and gain unauthorized access to the administrative section by setting the action parameter t… NVD-CWE-Other
CVE-2006-2527 2018-10-19 01:40 2006-05-23 Show GitHub Exploit DB Packet Storm
279335 - snitz_communications avatar_mod avatar_upload.asp in Avatar MOD 1.3 for Snitz Forums 3.4, and possibly other versions, allows remote attackers to bypass file type checks and upload arbitrary files via a null byte in the file name, … CWE-264
Permissions, Privileges, and Access Controls
CVE-2006-2530 2018-10-19 01:40 2006-05-23 Show GitHub Exploit DB Packet Storm
279336 - ipswitch whatsup Ipswitch WhatsUp Professional 2006 only verifies the user's identity via HTTP headers, which allows remote attackers to spoof being a trusted console and bypass authentication by setting HTTP User-Ag… NVD-CWE-Other
CVE-2006-2531 2018-10-19 01:40 2006-05-23 Show GitHub Exploit DB Packet Storm
279337 - greg_donald destiney_rated_images_script stats.php in Destiney Rated Images Script 0.5.0 allows remote attackers to obtain the installation path via an invalid s parameter, which displays the path in an error message. NOTE: this issue was … NVD-CWE-Other
CVE-2006-2532 2018-10-19 01:40 2006-05-23 Show GitHub Exploit DB Packet Storm
279338 - greg_donald destiney_rated_images_script Cross-site scripting (XSS) vulnerability in (1) addWeblog.php and (2) leaveComments.php in Destiney Rated Images Script 0.5.0 does not properly filter all vulnerable HTML tags, which allows remote at… NVD-CWE-Other
CVE-2006-2533 2018-10-19 01:40 2006-05-23 Show GitHub Exploit DB Packet Storm
279339 - greg_donald destiney_links_script Destiney Links Script 2.1.2 does not protect library and other support files, which allows remote attackers to obtain the installation path via a direct URL to files in the (1) include and (2) themes… NVD-CWE-Other
CVE-2006-2534 2018-10-19 01:40 2006-05-23 Show GitHub Exploit DB Packet Storm
279340 - greg_donald destiney_links_script index.php in Destiney Links Script 2.1.2 allows remote attackers to obtain the installation path via an invalid show parameter referencing a non-existent file, which reveals the path in the resulting… CWE-200
Information Exposure
CVE-2006-2535 2018-10-19 01:40 2006-05-23 Show GitHub Exploit DB Packet Storm