Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
223241 6.8 警告 propertymaxpro - PropertyMax Pro FREE の管理ログイン機能における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-1952 2012-12-20 19:10 2009-06-5 Show GitHub Exploit DB Packet Storm
223242 4.3 警告 propertymaxpro - PropertyMax Pro FREE の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-1951 2012-12-20 19:10 2009-06-5 Show GitHub Exploit DB Packet Storm
223243 7.8 危険 unclassified - UNB の import_wbb1.php における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2009-1949 2012-12-20 19:10 2009-06-5 Show GitHub Exploit DB Packet Storm
223244 5.1 警告 unclassified - UNB の forum.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-1948 2012-12-20 19:10 2009-06-5 Show GitHub Exploit DB Packet Storm
223245 7.5 危険 tzo - WebCal の webCal3_detail.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-1945 2012-12-20 19:10 2009-06-5 Show GitHub Exploit DB Packet Storm
223246 10 危険 SafeNet, Inc - SafeNet SoftRemote の IKE サービスにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-1943 2012-12-20 19:10 2009-06-5 Show GitHub Exploit DB Packet Storm
223247 5 警告 phpeasycode - PAD Site Scripts におけるデータベースをダウンロードされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-1941 2012-12-20 19:10 2009-06-5 Show GitHub Exploit DB Packet Storm
223248 6.8 警告 webSPELL - webSPELL の src/func/language.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-1912 2012-12-20 19:10 2009-02-5 Show GitHub Exploit DB Packet Storm
223249 7.5 危険 rafal kucharski - RTWebalbum の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-1910 2012-12-20 19:10 2009-06-4 Show GitHub Exploit DB Packet Storm
223250 10 危険 サン・マイクロシステムズ - Fedora 上で稼動する OpenJDK の IcedTea における任意のコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-1896 2012-12-20 19:10 2009-08-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 26, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
279521 - wine wine gdi/driver.c and gdi/printdrv.c in Wine 20050930, and other versions, implement the SETABORTPROC GDI Escape function call for Windows Metafile (WMF) files, which allows attackers to execute arbitrary… NVD-CWE-Other
CVE-2006-0106 2018-10-20 00:42 2006-01-7 Show GitHub Exploit DB Packet Storm
279522 - javier_suarez_sanz foro_domus Cross-site scripting (XSS) vulnerability in escribir.php in Foro Domus 2.10 allows remote attackers to inject arbitrary web script via the email parameter. NVD-CWE-Other
CVE-2006-0110 2018-10-20 00:42 2006-01-7 Show GitHub Exploit DB Packet Storm
279523 - inetstore inetstore_online Cross-site scripting vulnerability search.inetstore in iNETstore Ebusiness Software 2.0 allows remote attackers to inject arbitrary web script or HTML via the searchterm parameter. NVD-CWE-Other
CVE-2006-0116 2018-10-20 00:42 2006-01-9 Show GitHub Exploit DB Packet Storm
279524 - adn_forum adn_forum Multiple SQL injection vulnerabilities in ADN Forum 1.0b allow remote attackers to execute arbitrary SQL commands via the (1) fid parameter in index.php and (2) pagid parameter in verpag.php, and pos… CWE-89
SQL Injection
CVE-2006-0123 2018-10-20 00:42 2006-01-9 Show GitHub Exploit DB Packet Storm
279525 - adn_forum adn_forum Cross-site scripting (XSS) vulnerability in crear.php in ADN Forum 1.0b allows remote attackers to inject arbitrary web script or HTML via the titulo parameter, which is used by the "Topic name" fiel… NVD-CWE-Other
CVE-2006-0124 2018-10-20 00:42 2006-01-9 Show GitHub Exploit DB Packet Storm
279526 - boastmachine boastmachine boastMachine 3.1 allows remote attackers to obtain sensitive information via a direct request to (1) footer.php and (2) side_menu.php, which reveals the path in an error message. NVD-CWE-Other
CVE-2006-0131 2018-10-20 00:42 2006-01-9 Show GitHub Exploit DB Packet Storm
279527 - webftp webftp Directory traversal vulnerability in webftp.php in SysCP WebFTP 1.2.6 and possibly earlier allows remote attackers to include and execute arbitrary local PHP scripts, and possibly read other types of… NVD-CWE-Other
CVE-2006-0132 2018-10-20 00:42 2006-01-9 Show GitHub Exploit DB Packet Storm
279528 - ibm aix Multiple directory traversal vulnerabilities in AIX 5.3 ML03 allow local users to determine the existence of files and read partial contents of certain files via a .. (dot dot) in the argument to (1)… NVD-CWE-Other
CVE-2006-0133 2018-10-20 00:42 2006-01-9 Show GitHub Exploit DB Packet Storm
279529 - thewebforum thewebforum Cross-site scripting (XSS) vulnerability in register.php in TheWebForum (twf) 1.2.1 allows remote attackers to inject arbitrary web script or HTML via the www parameter. NVD-CWE-Other
CVE-2006-0134 2018-10-20 00:42 2006-01-9 Show GitHub Exploit DB Packet Storm
279530 - thewebforum thewebforum SQL injection vulnerability in login.php in TheWebForum (twf) 1.2.1 allows remote attackers to execute arbitrary SQL commands and bypass login authentication via the username parameter (aka the u var… NVD-CWE-Other
CVE-2006-0135 2018-10-20 00:42 2006-01-9 Show GitHub Exploit DB Packet Storm