Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
223101 2.1 注意 サン・マイクロシステムズ - Sun Java System Access Manager および OpenSSO Enterprise などにおける平文パスワードを特定される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-2712 2012-12-20 19:10 2009-08-5 Show GitHub Exploit DB Packet Storm
223102 5 警告 strongSwan - strongSwan の asn1_length 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-310
暗号の問題
CVE-2009-2661 2012-12-20 19:10 2009-07-23 Show GitHub Exploit DB Packet Storm
223103 7.5 危険 ZNC - ZNC におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-2658 2012-12-20 19:10 2009-08-4 Show GitHub Exploit DB Packet Storm
223104 9.3 危険 sorcerersoftware - Sorcerer Software MultiMedia Jukebox におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-2650 2012-12-20 19:10 2009-07-30 Show GitHub Exploit DB Packet Storm
223105 6.8 警告 rich white - School Data Navigator の app_and_readme/navigator/index.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2009-2641 2012-12-20 19:10 2009-07-28 Show GitHub Exploit DB Packet Storm
223106 7.5 危険 prosmdr - ProSMDR の login.aspx における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2612 2012-12-20 19:10 2009-07-27 Show GitHub Exploit DB Packet Storm
223107 3.5 注意 scott courtney - Drupal 用の Links Package モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-2610 2012-12-20 19:10 2009-06-25 Show GitHub Exploit DB Packet Storm
223108 7.5 危険 pinme - Joomla! 用の com_pinboard コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2607 2012-12-20 19:10 2009-07-27 Show GitHub Exploit DB Packet Storm
223109 6.8 警告 traidnt - Traidnt Up の adminquery.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2605 2012-12-20 19:10 2009-07-27 Show GitHub Exploit DB Packet Storm
223110 7.5 危険 zenhelpdesk - Zen Help Desk の adminlogin.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2604 2012-12-20 19:10 2009-07-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 23, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
279121 - redaxo redaxo Multiple PHP remote file inclusion vulnerabilities in Redaxo 3.0 allow remote attackers to execute arbitrary PHP code via a URL in the REX[INCLUDE_PATH] parameter to (1) simple_user/pages/index.inc.p… NVD-CWE-Other
CVE-2006-2844 2018-10-19 01:43 2006-06-7 Show GitHub Exploit DB Packet Storm
279122 - redaxo redaxo PHP remote file inclusion vulnerability in Redaxo 3.0 up to 3.2 allows remote attackers to execute arbitrary PHP code via a URL in the REX[INCLUDE_PATH] parameter to image_resize/pages/index.inc.php. NVD-CWE-Other
CVE-2006-2845 2018-10-19 01:43 2006-06-7 Show GitHub Exploit DB Packet Storm
279123 - full_revolution aspweblinks SQL injection vulnerability in links.asp in aspWebLinks 2.0 allows remote attackers to execute arbitrary SQL commands via the linkID parameter. NVD-CWE-Other
CVE-2006-2847 2018-10-19 01:43 2006-06-7 Show GitHub Exploit DB Packet Storm
279124 - full_revolution aspweblinks links.asp in aspWebLinks 2.0 allows remote attackers to change the administrative password, possibly via a direct request with a modified txtAdministrativePassword field. NVD-CWE-Other
CVE-2006-2848 2018-10-19 01:43 2006-06-7 Show GitHub Exploit DB Packet Storm
279125 - andrew_godwin bytehoard PHP remote file inclusion vulnerability in includes/webdav/server.php in Bytehoard 2.1 Epsilon/Delta allows remote attackers to execute arbitrary PHP code via a URL in the bhconfig[bhfilepath] parame… NVD-CWE-Other
CVE-2006-2849 2018-10-19 01:43 2006-06-7 Show GitHub Exploit DB Packet Storm
279126 - dotwidget dotwidget_cms PHP remote file inclusion vulnerability in dotWidget CMS 1.0.6 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the file_path paramete… CWE-94
Code Injection
CVE-2006-2852 2018-10-19 01:43 2006-06-7 Show GitHub Exploit DB Packet Storm
279127 - lifetype lifetype SQL injection vulnerability in index.php in LifeType 1.0.4 allows remote attackers to execute arbitrary SQL commands via the articleId parameter in a ViewArticle action (viewarticleaction.class.php). NVD-CWE-Other
CVE-2006-2857 2018-10-19 01:43 2006-06-7 Show GitHub Exploit DB Packet Storm
279128 - locazo locazolist_classifieds SQL injection vulnerability in viewmsg.asp in LocazoList Classifieds 1.05e allows remote attackers to execute arbitrary SQL commands via the msgid parameter. NVD-CWE-Other
CVE-2006-2858 2018-10-19 01:43 2006-06-7 Show GitHub Exploit DB Packet Storm
279129 - webspot webspotblogging PHP remote file inclusion vulnerability in Webspotblogging 3.0.1 allows remote attackers to execute arbitrary PHP code via a URL in the path parameter to (1) inc/logincheck.inc.php, (2) inc/adminhead… CWE-94
Code Injection
CVE-2006-2860 2018-10-19 01:43 2006-06-7 Show GitHub Exploit DB Packet Storm
279130 - dotclear dotclear PHP remote file inclusion vulnerability in layout/prepend.php in DotClear 1.2.4 and earlier allows remote attackers to execute arbitrary PHP code via a FTP URL in the blog_dc_path parameter, which pa… NVD-CWE-Other
CVE-2006-2866 2018-10-19 01:43 2006-06-7 Show GitHub Exploit DB Packet Storm