Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
218461 7.5 危険 sauerbraten - Sauerbraten におけるバッファオーバーフローの脆弱性 - CVE-2006-1100 2014-03-11 17:43 2006-03-9 Show GitHub Exploit DB Packet Storm
218462 10 危険 van dyke technologies - SecureCRT および SecureFX におけるバッファオーバーフローの脆弱性 - CVE-2006-1038 2014-03-11 17:43 2006-03-7 Show GitHub Exploit DB Packet Storm
218463 7.5 危険 igenus - iGENUS Webmail における任意のローカルファイルを含められる脆弱性 CWE-94
コード・インジェクション
CVE-2006-1031 2014-03-11 17:43 2006-03-7 Show GitHub Exploit DB Packet Storm
218464 7.5 危険 マイクロソフト - Microsoft Internet Explorer 6.0 におけるバッファオーバーフローの脆弱性 - CVE-2006-1016 2014-03-11 17:43 2006-03-7 Show GitHub Exploit DB Packet Storm
218465 6.4 警告 crossfire - CrossFire におけるバッファオーバーフローの脆弱性 - CVE-2006-1010 2014-03-11 17:43 2006-03-6 Show GitHub Exploit DB Packet Storm
218466 4.3 警告 Cactusoft International FZ-LLC & Cactusoft Ltd. - Parodia の agencyprofile.asp におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-1004 2014-03-11 17:43 2006-03-6 Show GitHub Exploit DB Packet Storm
218467 7.1 危険 ベリタス - Windows 用 NetBackup の NetBackup Sharepoint Services サーバデーモン (bpspsserver) におけるバッファオーバーフローの脆弱性 - CVE-2006-0991 2014-03-11 17:43 2006-03-28 Show GitHub Exploit DB Packet Storm
218468 5 警告 craig morrison - Craig Morrison Mail Transport System Professional におけるメールを返信される脆弱性 - CVE-2006-0977 2014-03-11 17:43 2006-03-3 Show GitHub Exploit DB Packet Storm
218469 4.6 警告 ncp network communications - NCP Network Communication Secure Client の Client Firewall におけるファイアウォールプログラムの実行ルールを回避される脆弱性 - CVE-2006-0964 2014-03-11 17:43 2006-03-2 Show GitHub Exploit DB Packet Storm
218470 4.3 警告 brown bear software - Brown Bear iCal におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-0924 2014-03-11 17:43 2006-02-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 10, 2026, 4:58 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292141 - google tunnelblick The errorExitIfAttackViaString function in Tunnelblick 3.3beta20 and earlier allows local users to delete arbitrary files by constructing a (1) symlink or (2) hard link, a different vulnerability tha… CWE-59
Link Following
CVE-2012-4676 2024-11-21 10:43 2012-08-27 Show GitHub Exploit DB Packet Storm
292142 - pluxml pluxml Cross-site scripting (XSS) vulnerability in PluXml 5.1.6 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to file update. CWE-79
Cross-site Scripting
CVE-2012-4675 2024-11-21 10:43 2012-08-27 Show GitHub Exploit DB Packet Storm
292143 - pluxml pluxml PluXml before 5.1.6 allows remote attackers to obtain the installation path via the PHPSESSID. CWE-200
Information Exposure
CVE-2012-4674 2024-11-21 10:43 2012-08-27 Show GitHub Exploit DB Packet Storm
292144 - thomas_hunter neoinvoice SQL injection vulnerability in application/controllers/invoice.php in NeoInvoice might allow remote attackers to execute arbitrary SQL commands via vectors involving the sort_col variable in the list… CWE-89
SQL Injection
CVE-2012-4673 2024-11-21 10:43 2012-08-26 Show GitHub Exploit DB Packet Storm
292145 - apple ichat_server Apple iChat Server does not verify that a request was made for an XMPP Server Dialback response, which allows remote XMPP servers to spoof domains via responses for domains that were not asserted. CWE-20
 Improper Input Validation 
CVE-2012-4672 2024-11-21 10:43 2012-08-26 Show GitHub Exploit DB Packet Storm
292146 - psyced psyced psyced before 20120821 does not verify that a request was made for an XMPP Server Dialback response, which allows remote XMPP servers to spoof domains via responses for domains that were not asserted. CWE-20
 Improper Input Validation 
CVE-2012-4671 2024-11-21 10:43 2012-08-26 Show GitHub Exploit DB Packet Storm
292147 - tigase tigase_xmpp_server Tigase XMPP Server before 5.1.0 does not verify that a request was made for an XMPP Server Dialback response, which allows remote XMPP servers to spoof domains via a (1) Verify Response or (2) Author… CWE-20
 Improper Input Validation 
CVE-2012-4670 2024-11-21 10:43 2012-08-26 Show GitHub Exploit DB Packet Storm
292148 - isode m-link M-Link R14.6 before R14.6v14 and R15.1 before R15.1v10 does not verify that a request was made for an XMPP Server Dialback response, which allows remote XMPP servers to spoof domains via responses fo… CWE-20
 Improper Input Validation 
CVE-2012-4669 2024-11-21 10:43 2012-08-26 Show GitHub Exploit DB Packet Storm
292149 - roundcube webmail Cross-site scripting (XSS) vulnerability in Roundcube Webmail 0.8.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the signature in an email. CWE-79
Cross-site Scripting
CVE-2012-4668 2024-11-21 10:43 2012-08-25 Show GitHub Exploit DB Packet Storm
292150 - darold squidclamav Multiple cross-site scripting (XSS) vulnerabilities in SquidClamav 5.x before 5.8 allow remote attackers to inject arbitrary web script or HTML via the (1) url, (2) virus, (3) source, or (4) user par… CWE-79
Cross-site Scripting
CVE-2012-4667 2024-11-21 10:43 2012-08-25 Show GitHub Exploit DB Packet Storm