Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
219121 6 警告 Open-Xchange - Open-Xchange Server のサブスクリプション機能における任意のアウトバウンド TCP トラフィックを誘発される脆弱性 CWE-20
不適切な入力確認
CVE-2013-1648 2013-09-6 16:33 2013-03-13 Show GitHub Exploit DB Packet Storm
219122 5 警告 Open-Xchange - Open-Xchange Server における CRLF インジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2013-1647 2013-09-6 16:20 2013-03-13 Show GitHub Exploit DB Packet Storm
219123 4.3 警告 Open-Xchange - Open-Xchange Server におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1646 2013-09-6 16:18 2013-03-13 Show GitHub Exploit DB Packet Storm
219124 4 警告 Open-Xchange - Open-Xchange Server におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-1645 2013-09-6 16:14 2013-03-13 Show GitHub Exploit DB Packet Storm
219125 3.5 注意 Open-Xchange - Open-Xchange App Suite および Server におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-5698 2013-09-6 16:11 2013-06-3 Show GitHub Exploit DB Packet Storm
219126 3.5 注意 Open-Xchange - Open-Xchange App Suite における他のユーザの電子メールの認証情報を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2013-4790 2013-09-6 16:03 2013-07-31 Show GitHub Exploit DB Packet Storm
219127 4.3 警告 Open-Xchange - Open-Xchange App Suite および Server におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-3106 2013-09-6 15:03 2013-06-3 Show GitHub Exploit DB Packet Storm
219128 4.3 警告 Open-Xchange - Open-Xchange App Suite および Server におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-2583 2013-09-6 14:54 2013-04-17 Show GitHub Exploit DB Packet Storm
219129 5 警告 Open-Xchange - Open-Xchange App Suite および Server のリダイレクトサーブレットにおける CRLF インジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2013-2582 2013-09-6 14:47 2013-04-17 Show GitHub Exploit DB Packet Storm
219130 5.8 警告 DELL EMC (旧 EMC Corporation) - EMC RSA Archer GRC におけるオープンリダイレクトの脆弱性 CWE-20
不適切な入力確認
CVE-2013-3277 2013-09-6 12:06 2013-09-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 23, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
278071 - dale_ray myquiz myquiz.pl in Dale Ray MyQuiz 1.01 allows remote attackers to execute arbitrary commands via shell metacharacters in the URL, which are not properly handled as part of the PATH_INFO environment variab… NVD-CWE-Other
CVE-2006-0628 2018-10-20 00:45 2006-02-10 Show GitHub Exploit DB Packet Storm
278072 - aol instant_messenger Unspecified vulnerability in AOL Instant Messenger (AIM) 5.9.3861 allows user-assisted remote attackers to cause a denial of service (client crash) and possibly execute arbitrary code by tricking the… NVD-CWE-Other
CVE-2006-0629 2018-10-20 00:45 2006-02-10 Show GitHub Exploit DB Packet Storm
278073 - ritlabs the_bat RITLabs The Bat! before 3.0.0.15 displays certain important headers from encapsulated data in message/partial MIME messages, instead of the real headers, which is in violation of RFC2046 header mergi… NVD-CWE-Other
CVE-2006-0630 2018-10-20 00:45 2006-02-10 Show GitHub Exploit DB Packet Storm
278074 - phpbb_group phpbb The gen_rand_string function in phpBB 2.0.19 uses insufficiently random data (small value space) to create the activation key ("validation ID") that is sent by e-mail when establishing a password, wh… NVD-CWE-Other
CVE-2006-0632 2018-10-20 00:45 2006-02-10 Show GitHub Exploit DB Packet Storm
278075 - borland_software c\+\+_builder Borland C++Builder 6 (BCB6) with Update Pack 4 Enterprise edition (ent_upd4) evaluates the "i>sizeof(int)" expression to false when i equals -1, which might introduce integer overflow vulnerabilities… NVD-CWE-Other
CVE-2006-0634 2018-10-20 00:45 2006-02-10 Show GitHub Exploit DB Packet Storm
278076 - fabrice_bellard tiny_c_compiler Tiny C Compiler (TCC) 0.9.23 (aka TinyCC) evaluates the "i>sizeof(int)" expression to false when i equals -1, which might introduce integer overflow vulnerabilities into applications that could be ex… NVD-CWE-Other
CVE-2006-0635 2018-10-20 00:45 2006-02-10 Show GitHub Exploit DB Packet Storm
278077 - eyeos_project eyeos desktop.php in eyeOS 0.8.9 and earlier tests for the existence of the _SESSION variable before calling the session_start function, which allows remote attackers to execute arbitrary PHP code and poss… NVD-CWE-Other
CVE-2006-0636 2018-10-20 00:45 2006-02-10 Show GitHub Exploit DB Packet Storm
278078 - qualcomm eudora_worldmail Buffer overflow in cram.dll in QUALCOMM Eudora WorldMail 3.0 allows remote attackers to execute arbitrary code via an IMAP APPEND command with a long message literal argument, as demonstrated by Worl… NVD-CWE-Other
CVE-2006-0637 2018-10-20 00:45 2006-02-10 Show GitHub Exploit DB Packet Storm
278079 - mybulletinboard mybulletinboard SQL injection vulnerability in moderation.php in MyBB (aka MyBulletinBoard) 1.0.3 allows remote authenticated users, with certain privileges for moderating and merging posts, to execute arbitrary SQL… NVD-CWE-Other
CVE-2006-0638 2018-10-20 00:45 2006-02-10 Show GitHub Exploit DB Packet Storm
278080 - mybulletinboard mybulletinboard Cross-site scripting (XSS) vulnerability in search.php in MyBB (aka MyBulletinBoard) 1.0.2 allows remote attackers with knowledge of the table prefix to inject arbitrary web script or HTML via a URL … NVD-CWE-Other
CVE-2006-0639 2018-10-20 00:45 2006-02-10 Show GitHub Exploit DB Packet Storm