Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
223851 4.3 警告 refbase - refbase におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-6400 2012-12-20 19:10 2009-03-5 Show GitHub Exploit DB Packet Storm
223852 10 危険 psi-im - PSI Jabber クライアントにおける整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2008-6393 2012-12-20 19:10 2009-03-3 Show GitHub Exploit DB Packet Storm
223853 4.3 警告 w3matter - W3matter RevSense の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-6385 2012-12-20 19:10 2009-03-2 Show GitHub Exploit DB Packet Storm
223854 7.5 危険 phpbb-seo - Multi SEO phpBB の include/global.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-6377 2012-12-20 19:10 2009-03-2 Show GitHub Exploit DB Packet Storm
223855 8.5 危険 socialgroupie - Social Groupie の Photos/create_album.php における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-6367 2012-12-20 19:10 2009-03-2 Show GitHub Exploit DB Packet Storm
223856 4.3 警告 phpf1 - Max's Guestbook の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-6359 2012-12-20 19:10 2009-03-2 Show GitHub Exploit DB Packet Storm
223857 7.5 危険 socialgroupie - Social Groupie の group_index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6358 2012-12-20 19:10 2009-03-2 Show GitHub Exploit DB Packet Storm
223858 5 警告 the net guys - The Net Guys ASPired2Protect におけるユーザ名などを含むデータベースをダウンロードされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-6355 2012-12-20 19:10 2009-03-2 Show GitHub Exploit DB Packet Storm
223859 5 警告 the net guys - The Net Guys ASPired2poll におけるユーザ名などを含むデータベースをダウンロードされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-6354 2012-12-20 19:10 2009-03-2 Show GitHub Exploit DB Packet Storm
223860 7.5 危険 xpoze - Xpoze Pro の home.html における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6352 2012-12-20 19:10 2009-03-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 26, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
279521 - wine wine gdi/driver.c and gdi/printdrv.c in Wine 20050930, and other versions, implement the SETABORTPROC GDI Escape function call for Windows Metafile (WMF) files, which allows attackers to execute arbitrary… NVD-CWE-Other
CVE-2006-0106 2018-10-20 00:42 2006-01-7 Show GitHub Exploit DB Packet Storm
279522 - javier_suarez_sanz foro_domus Cross-site scripting (XSS) vulnerability in escribir.php in Foro Domus 2.10 allows remote attackers to inject arbitrary web script via the email parameter. NVD-CWE-Other
CVE-2006-0110 2018-10-20 00:42 2006-01-7 Show GitHub Exploit DB Packet Storm
279523 - inetstore inetstore_online Cross-site scripting vulnerability search.inetstore in iNETstore Ebusiness Software 2.0 allows remote attackers to inject arbitrary web script or HTML via the searchterm parameter. NVD-CWE-Other
CVE-2006-0116 2018-10-20 00:42 2006-01-9 Show GitHub Exploit DB Packet Storm
279524 - adn_forum adn_forum Multiple SQL injection vulnerabilities in ADN Forum 1.0b allow remote attackers to execute arbitrary SQL commands via the (1) fid parameter in index.php and (2) pagid parameter in verpag.php, and pos… CWE-89
SQL Injection
CVE-2006-0123 2018-10-20 00:42 2006-01-9 Show GitHub Exploit DB Packet Storm
279525 - adn_forum adn_forum Cross-site scripting (XSS) vulnerability in crear.php in ADN Forum 1.0b allows remote attackers to inject arbitrary web script or HTML via the titulo parameter, which is used by the "Topic name" fiel… NVD-CWE-Other
CVE-2006-0124 2018-10-20 00:42 2006-01-9 Show GitHub Exploit DB Packet Storm
279526 - boastmachine boastmachine boastMachine 3.1 allows remote attackers to obtain sensitive information via a direct request to (1) footer.php and (2) side_menu.php, which reveals the path in an error message. NVD-CWE-Other
CVE-2006-0131 2018-10-20 00:42 2006-01-9 Show GitHub Exploit DB Packet Storm
279527 - webftp webftp Directory traversal vulnerability in webftp.php in SysCP WebFTP 1.2.6 and possibly earlier allows remote attackers to include and execute arbitrary local PHP scripts, and possibly read other types of… NVD-CWE-Other
CVE-2006-0132 2018-10-20 00:42 2006-01-9 Show GitHub Exploit DB Packet Storm
279528 - ibm aix Multiple directory traversal vulnerabilities in AIX 5.3 ML03 allow local users to determine the existence of files and read partial contents of certain files via a .. (dot dot) in the argument to (1)… NVD-CWE-Other
CVE-2006-0133 2018-10-20 00:42 2006-01-9 Show GitHub Exploit DB Packet Storm
279529 - thewebforum thewebforum Cross-site scripting (XSS) vulnerability in register.php in TheWebForum (twf) 1.2.1 allows remote attackers to inject arbitrary web script or HTML via the www parameter. NVD-CWE-Other
CVE-2006-0134 2018-10-20 00:42 2006-01-9 Show GitHub Exploit DB Packet Storm
279530 - thewebforum thewebforum SQL injection vulnerability in login.php in TheWebForum (twf) 1.2.1 allows remote attackers to execute arbitrary SQL commands and bypass login authentication via the username parameter (aka the u var… NVD-CWE-Other
CVE-2006-0135 2018-10-20 00:42 2006-01-9 Show GitHub Exploit DB Packet Storm