Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
219541 7.5 危険 Appnitro Software - Machform の view.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-4948 2013-07-31 15:27 2013-07-2 Show GitHub Exploit DB Packet Storm
219542 7.5 危険 Sawmill - Sawmill のデータベースのページの更新および作成における脆弱性 CWE-noinfo
情報不足
CVE-2013-4947 2013-07-31 15:18 2013-07-9 Show GitHub Exploit DB Packet Storm
219543 4.3 警告 BMC Software - BMC Service Desk Express におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4946 2013-07-31 15:11 2013-06-12 Show GitHub Exploit DB Packet Storm
219544 7.5 危険 BMC Software - BMC Service Desk Express における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-4945 2013-07-31 15:08 2013-06-12 Show GitHub Exploit DB Packet Storm
219545 2.1 注意 Drupal Indonesia - Drupal 用 TinyBox モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4140 2013-07-31 14:44 2013-07-10 Show GitHub Exploit DB Packet Storm
219546 2.6 注意 BuddyDev.com - WordPress 用 BuddyPress Extended Friendship Request プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4944 2013-07-31 14:36 2013-07-2 Show GitHub Exploit DB Packet Storm
219547 4.3 警告 OpenX - OpenX Source におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-3515 2013-07-31 14:08 2013-05-8 Show GitHub Exploit DB Packet Storm
219548 4.3 警告 Monkey Project - Monkey HTTP Daemon の Directory Listing プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-2181 2013-07-31 13:55 2013-06-14 Show GitHub Exploit DB Packet Storm
219549 9.3 危険 キングソフト株式会社 - Kingsoft Spreadsheets 2012 におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-0723 2013-07-31 13:47 2013-07-29 Show GitHub Exploit DB Packet Storm
219550 5 警告 ヒューレット・パッカード
レッドハット
- 複数の Red Hat JBoss 製品の JBossWS Native におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2011-1483 2013-07-30 17:40 2011-04-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 19, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
278681 - rocks_clusters rocks_clusters Rocks Clusters 4.1 and earlier allows local users to gain privileges via commands enclosed with escaped backticks (\`) in an argument to the (1) mount-loop (mount-loop.c) or (2) umount-loop (umount-l… NVD-CWE-Other
CVE-2006-3693 2018-10-19 01:48 2006-07-21 Show GitHub Exploit DB Packet Storm
278682 - agnitum
lavasoft
novell
outpost_firewall
lavasoft_personal_firewall
client_firewall
Agnitum Outpost Firewall Pro 3.51.759.6511 (462), as used in (1) Lavasoft Personal Firewall 1.0.543.5722 (433) and (2) Novell BorderManager Novell Client Firewall 2.0, does not properly restrict user… CWE-264
Permissions, Privileges, and Access Controls
CVE-2006-3697 2018-10-19 01:48 2006-07-21 Show GitHub Exploit DB Packet Storm
278683 - oracle database_server Unspecified vulnerability in the Core RDBMS component in Oracle Database 9.0.1.5 and 9.2.0.6 has unknown impact and attack vectors, aka Oracle Vuln# DB02. NVD-CWE-noinfo
CVE-2006-3699 2018-10-19 01:48 2006-07-21 Show GitHub Exploit DB Packet Storm
278684 - newsphp newsphp Multiple cross-site scripting (XSS) vulnerabilities in index.php in NewsPHP 2006 PRO allow remote attackers to inject arbitrary web script or HTML via the (1) words, (2) id, (3) cat_id, and (4) tim p… NVD-CWE-Other
CVE-2006-3358 2018-10-19 01:47 2006-07-7 Show GitHub Exploit DB Packet Storm
278685 - newsphp newsphp Multiple SQL injection vulnerabilities in index.php in NewsPHP 2006 PRO allow remote attackers to inject arbitrary web script or HTML via the (1) words, (2) id, (3) topmenuitem, and (4) cat_id parame… NVD-CWE-Other
CVE-2006-3359 2018-10-19 01:47 2006-07-7 Show GitHub Exploit DB Packet Storm
278686 - geeklog
toenda_software_development
geeklog
toendacms
Unrestricted file upload vulnerability in connectors/php/connector.php in FCKeditor mcpuk file manager, as used in (1) Geeklog 1.4.0 through 1.4.0sr3, (2) toendaCMS 1.0.0 Shizouka Stable and earlier,… NVD-CWE-Other
CVE-2006-3362 2018-10-19 01:47 2006-07-7 Show GitHub Exploit DB Packet Storm
278687 - geeklog
toenda_software_development
geeklog
toendacms
Upgrade to Geeklog version 1.4.0sr4 : http://www.geeklog.net/filemgmt/index.php?id=727 NVD-CWE-Other
CVE-2006-3362 2018-10-19 01:47 2006-07-7 Show GitHub Exploit DB Packet Storm
278688 - xoops xoops_glossaire_module PHP remote file inclusion vulnerability in index.php in the Glossaire module 1.7 for Xoops allows remote attackers to execute arbitrary PHP code via a URL in the pa parameter. NVD-CWE-Other
CVE-2006-3363 2018-10-19 01:47 2006-07-7 Show GitHub Exploit DB Packet Storm
278689 - f-art_agency blog_cms SQL injection vulnerability in index.php in the NP_SEO plugin in BLOG:CMS before 4.1.0 allows remote attackers to execute arbitrary SQL commands via the id parameter. NVD-CWE-Other
CVE-2006-3364 2018-10-19 01:47 2006-07-7 Show GitHub Exploit DB Packet Storm
278690 - f-art_agency blog_cms Upgrade to BLOG:CMS version 4.1.0 : http://sourceforge.net/project/showfiles.php?group_id=111880 NVD-CWE-Other
CVE-2006-3364 2018-10-19 01:47 2006-07-7 Show GitHub Exploit DB Packet Storm