Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
217191 4.9 警告 strongSwan - strongSwan における他のユーザとして認証される脆弱性 CWE-287
不適切な認証
CVE-2013-2944 2013-12-19 19:11 2013-04-30 Show GitHub Exploit DB Packet Storm
217192 6.5 警告 Moodle - Moodle における任意の site-wide リポジトリを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-1836 2013-12-19 19:08 2013-03-25 Show GitHub Exploit DB Packet Storm
217193 3.5 注意 Moodle - Moodle における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-1835 2013-12-19 19:08 2013-03-25 Show GitHub Exploit DB Packet Storm
217194 4 警告 Moodle - Moodle の notes/edit.php におけるノートを別のユーザに再割り当てされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-1834 2013-12-19 19:08 2013-03-25 Show GitHub Exploit DB Packet Storm
217195 3.5 注意 Moodle - Moodle の File Picker モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1833 2013-12-19 19:08 2013-03-25 Show GitHub Exploit DB Packet Storm
217196 4 警告 Moodle - Moodle の repository/webdav/lib.php における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-1832 2013-12-19 19:08 2013-03-25 Show GitHub Exploit DB Packet Storm
217197 5 警告 Moodle - Moodle の lib/setuplib.php における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-1831 2013-12-19 19:07 2013-03-25 Show GitHub Exploit DB Packet Storm
217198 5 警告 Moodle - Moodle の user/view.php における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-1830 2013-12-19 19:07 2013-03-25 Show GitHub Exploit DB Packet Storm
217199 7.2 危険 freedesktop.org - Dbus-glib の dbus-gproxy における権限を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2013-0292 2013-12-19 19:07 2013-03-5 Show GitHub Exploit DB Packet Storm
217200 6.4 警告 Zend Technologies Ltd. - Zend Framework の Zend_XmlRpc における任意のファイルを読まれる脆弱性 CWE-noinfo
情報不足
CVE-2012-3363 2013-12-19 19:07 2013-02-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 20, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
280211 - future_internet future_internet Multiple SQL injection vulnerabilities in Future Internet allow remote attackers to execute arbitrary SQL commands via the (1) newsId or (2) categoryid parameter in a Portal.Showpage action in index.… NVD-CWE-Other
CVE-2006-6776 2018-10-18 06:49 2006-12-28 Show GitHub Exploit DB Packet Storm
280212 - future_internet future_internet Cross-site scripting (XSS) vulnerability in index.cfm in Future Internet allows remote attackers to inject arbitrary web script or HTML via the categoryId parameter in a Portal.ShowPage action. NVD-CWE-Other
CVE-2006-6777 2018-10-18 06:49 2006-12-28 Show GitHub Exploit DB Packet Storm
280213 - timberwolf timberwolf Cross-site scripting (XSS) vulnerability in shownews.php in TimberWolf 1.2.2 allows remote attackers to inject arbitrary web script or HTML via the nid parameter. NVD-CWE-Other
CVE-2006-6778 2018-10-18 06:49 2006-12-28 Show GitHub Exploit DB Packet Storm
280214 - jelsoft vbulletin Cross-site scripting (XSS) vulnerability in Jelsoft vBulletin allows remote attackers to inject arbitrary web script or HTML via an SWF file that uses ActionScript to trigger execution of JavaScript. NVD-CWE-Other
CVE-2006-6779 2018-10-18 06:49 2006-12-28 Show GitHub Exploit DB Packet Storm
280215 - jelsoft vbulletin Successful exploitation requires the ability to upload SWF files, which is disabled by default, and must be enabled by site administrators. NVD-CWE-Other
CVE-2006-6779 2018-10-18 06:49 2006-12-28 Show GitHub Exploit DB Packet Storm
280216 - hlstats hlstats SQL injection vulnerability in the login form in HLstats 1.20 through 1.34 allows remote attackers to execute arbitrary SQL commands via the killLimit parameter. NVD-CWE-Other
CVE-2006-6780 2018-10-18 06:49 2006-12-28 Show GitHub Exploit DB Packet Storm
280217 - hlstats hlstats HLstats 1.20 through 1.34 allows remote attackers to obtain sensitive information via playinfo mode, with certain values of the player and playerdata[lastName][] parameters, which reveals the path in… NVD-CWE-Other
CVE-2006-6781 2018-10-18 06:49 2006-12-28 Show GitHub Exploit DB Packet Storm
280218 - logahead logahead_unu logahead UNU 1.0 before 20061226 allows remote attackers to upload arbitrary files via unspecified vectors related to plugins/widged/_widged.php (aka the WidgEd plugin), possibly because of an authen… CWE-287
Improper Authentication
CVE-2006-6783 2018-10-18 06:49 2006-12-28 Show GitHub Exploit DB Packet Storm
280219 - netbula anyboard SQL injection vulnerability in Netbula Anyboard allows remote attackers to execute arbitrary SQL commands via the user name in the login form. NVD-CWE-Other
CVE-2006-6784 2018-10-18 06:49 2006-12-28 Show GitHub Exploit DB Packet Storm
280220 - luckybot luckybot Multiple PHP remote file inclusion vulnerabilities in LuckyBot 3 allow remote attackers to execute arbitrary PHP code via a URL in the dir parameter to (1) run.php or (2) ircbot.class.php. NVD-CWE-Other
CVE-2006-6788 2018-10-18 06:49 2006-12-28 Show GitHub Exploit DB Packet Storm