Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
217211 4.3 警告 IOServer - IOServer の XML Server におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-4680 2013-12-19 18:23 2012-08-27 Show GitHub Exploit DB Packet Storm
217212 6.8 警告 Trimble - SketchUp Viewer にバッファオーバーフローの脆弱性 CWE-119
CWE-Other
CVE-2013-6038 2013-12-19 18:23 2013-12-12 Show GitHub Exploit DB Packet Storm
217213 3.5 注意 IBM - 複数の IBM 製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-5402 2013-12-19 17:42 2013-12-13 Show GitHub Exploit DB Packet Storm
217214 7.2 危険 IBM - IBM Rational ClearCase における権限を取得される脆弱性 CWE-noinfo
情報不足
CVE-2013-5416 2013-12-19 16:55 2013-12-13 Show GitHub Exploit DB Packet Storm
217215 7.2 危険 IBM - IBM Rational ClearCase におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-5415 2013-12-19 16:54 2013-12-13 Show GitHub Exploit DB Packet Storm
217216 3.3 注意 IBM - IBM Rational Focal Point の Webservice Axis Gateway におけるアクセス制限を回避される脆弱性 CWE-noinfo
情報不足
CVE-2013-5398 2013-12-19 16:54 2013-12-13 Show GitHub Exploit DB Packet Storm
217217 3.3 注意 IBM - IBM Rational Focal Point の Webservice Axis Gateway におけるアクセス制限を回避される脆弱性 CWE-noinfo
情報不足
CVE-2013-5397 2013-12-19 16:53 2013-12-13 Show GitHub Exploit DB Packet Storm
217218 4.3 警告 IBM - IBM Sametime Classic Meeting Server の Web アプリケーションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-6733 2013-12-19 16:51 2013-12-10 Show GitHub Exploit DB Packet Storm
217219 3.5 注意 IBM - IBM WebSphere Service Registry and Repository におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-6721 2013-12-19 16:46 2013-12-10 Show GitHub Exploit DB Packet Storm
217220 4.3 警告 IBM - IBM Sterling Connect:Enterprise HTTP Option におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-6327 2013-12-19 16:35 2013-12-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 18, 2026, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
279761 - mybulletinboard mybulletinboard Multiple cross-site scripting (XSS) vulnerabilities in member.php in MyBulletin Board (MyBB) 1.0.3 allow remote attackers to inject arbitrary web script or HTML via the (1) aim, (2) yahoo, (3) msn, o… NVD-CWE-Other
CVE-2006-1272 2018-10-19 01:31 2006-03-19 Show GitHub Exploit DB Packet Storm
279762 - avira antivir_personal Classic Planer in AntiVir PersonalEdition Classic 7 does not drop privileges before executing external programs, which allows local users to gain privileges via notepad.exe, which is used to display … NVD-CWE-Other
CVE-2006-1274 2018-10-19 01:31 2006-03-19 Show GitHub Exploit DB Packet Storm
279763 - upoint at1_file_store Cross-site scripting (XSS) vulnerability in signup.php in @1 File Store 2006.03.07 allows remote attackers to inject arbitrary web script or HTML via the (1) real_name, (2) email, and (3) login param… NVD-CWE-Other
CVE-2006-1277 2018-10-19 01:31 2006-03-19 Show GitHub Exploit DB Packet Storm
279764 - upoint \@1_file_store SQL injection vulnerability in @1 File Store 2006.03.07 allows remote attackers to execute arbitrary SQL commands via the id parameter to (1) functions.php and (2) user.php in the libs directory, (3)… CWE-89
SQL Injection
CVE-2006-1278 2018-10-19 01:31 2006-03-19 Show GitHub Exploit DB Packet Storm
279765 - upoint \@1_file_store Successful exploitation requires that the "magic_quotes_gpc" parameter is disabled. CWE-89
SQL Injection
CVE-2006-1278 2018-10-19 01:31 2006-03-19 Show GitHub Exploit DB Packet Storm
279766 - mybulletinboard mybulletinboard Cross-site scripting (XSS) vulnerability in member.php in MyBulletinBoard (MyBB) 1.04 allows remote attackers to inject arbitrary web script or HTML via the url parameter, a different vulnerability t… NVD-CWE-Other
CVE-2006-1281 2018-10-19 01:31 2006-03-19 Show GitHub Exploit DB Packet Storm
279767 - mybulletinboard mybulletinboard CRLF injection vulnerability in inc/function.php in MyBulletinBoard (MyBB) 1.04 allows remote attackers to conduct cross-site scripting (XSS), poison caches, or hijack pages via CRLF (%0A%0D) sequenc… NVD-CWE-Other
CVE-2006-1282 2018-10-19 01:31 2006-03-19 Show GitHub Exploit DB Packet Storm
279768 - milkeyway milkeyway_captive_portal Multiple SQL injection vulnerabilities in Milkeyway Captive Portal 0.1 and 0.1.1 allow remote attackers to execute arbitrary SQL commands via the (1) username, (2) password, (3) team, (4) level, (5) … NVD-CWE-Other
CVE-2006-1289 2018-10-19 01:31 2006-03-20 Show GitHub Exploit DB Packet Storm
279769 - milkeyway milkeyway_captive_portal Multiple cross-site scripting (XSS) vulnerabilities in Milkeyway Captive Portal 0.1 and 0.1.1 allow remote attackers to inject arbitrary web script or HTML via the (1) ipAddress, (2) act, (3) usernam… NVD-CWE-Other
CVE-2006-1290 2018-10-19 01:31 2006-03-20 Show GitHub Exploit DB Packet Storm
279770 - astalavista_it_engineering contrexx Cross-site scripting (XSS) vulnerability in index.php in Contrexx CMS 1.0.8 and earlier allows remote attackers to inject arbitrary web script or HTML via the query string (PHP_SELF). NVD-CWE-Other
CVE-2006-1293 2018-10-19 01:31 2006-03-20 Show GitHub Exploit DB Packet Storm