Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":July 1, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225421 3.5 注意 IBM - IBM Cognos Business Intelligence のサーバにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0861 2014-03-11 17:33 2014-02-14 Show GitHub Exploit DB Packet Storm
225422 6.5 警告 ownCloud - ownCloud Server の lib/bookmarks.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-2046 2014-03-11 17:30 2013-05-14 Show GitHub Exploit DB Packet Storm
225423 6.5 警告 ownCloud - ownCloud Server の lib/db.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-2045 2014-03-11 17:30 2013-05-14 Show GitHub Exploit DB Packet Storm
225424 6.5 警告 ownCloud - ownCloud Server の addressbookprovider.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-1893 2014-03-11 17:29 2013-03-25 Show GitHub Exploit DB Packet Storm
225425 4.3 警告 ownCloud - ownCloud Server におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1890 2014-03-11 17:29 2013-03-24 Show GitHub Exploit DB Packet Storm
225426 7.5 危険 Zemanta - WordPress 用 Search Everything プラグインの se_search_default における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-2316 2014-03-11 17:24 2014-02-11 Show GitHub Exploit DB Packet Storm
225427 4.3 警告 ShinePHP - WordPress 用 Thank You Counter Button プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2315 2014-03-11 17:24 2014-02-25 Show GitHub Exploit DB Packet Storm
225428 4.3 警告 SFR - SFR Box ルータのファームウェアにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-1599 2014-03-11 15:46 2014-02-25 Show GitHub Exploit DB Packet Storm
225429 4.3 警告 Atlassian - Atlassian JIRA の Issue Collector プラグインにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-2314 2014-03-11 15:26 2014-02-26 Show GitHub Exploit DB Packet Storm
225430 4.3 警告 Atlassian - Atlassian JIRA の Importers プラグインにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-2313 2014-03-11 15:26 2014-02-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:July 1, 2026, 4:27 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
346221 - gnu mailman CRLF injection vulnerability in Utils.py in Mailman before 2.1.9rc1 allows remote attackers to spoof messages in the error log and possibly trick the administrator into visiting malicious URLs via CR… CWE-94
Code Injection
CVE-2006-4624 2018-10-18 06:38 2006-09-8 Show GitHub Exploit DB Packet Storm
346222 - softbb softbb Direct static code injection vulnerability in admin/save_opt.php in SoftBB 0.1, and possibly earlier, allows remote authenticated users to upload and execute arbitrary PHP code via the cache_forum pa… NVD-CWE-Other
CVE-2006-4631 2018-10-18 06:38 2006-09-9 Show GitHub Exploit DB Packet Storm
346223 - softbb softbb Multiple SQL injection vulnerabilities in SoftBB 0.1, and possibly earlier, allow remote attackers to execute arbitrary SQL commands via the (1) groupe parameter in addmembre.php and the (2) select p… NVD-CWE-Other
CVE-2006-4632 2018-10-18 06:38 2006-09-9 Show GitHub Exploit DB Packet Storm
346224 - softbb softbb index.php in SoftBB 0.1, and possibly earlier, allows remote attackers to obtain the installation path via a null or invalid page[] parameter. NVD-CWE-Other
CVE-2006-4633 2018-10-18 06:38 2006-09-9 Show GitHub Exploit DB Packet Storm
346225 - vbzoom vbzoom Cross-site scripting (XSS) vulnerability in index.php in VBZooM allows remote attackers to inject arbitrary web script or HTML via the UserID parameter, a different vector than CVE-2006-1133 and CVE-… NVD-CWE-Other
CVE-2006-4634 2018-10-18 06:38 2006-09-9 Show GitHub Exploit DB Packet Storm
346226 - acgv_news acgv_news Multiple PHP remote file inclusion vulnerabilities in ACGV News 0.9.1 allow remote attackers to execute arbitrary PHP code via a URL in the PathNews parameter in (1) header.php or (2) news.php. NOTE… CWE-94
Code Injection
CVE-2006-4637 2018-10-18 06:38 2006-09-9 Show GitHub Exploit DB Packet Storm
346227 - acgv_news acgv_news Successful exploitation requires that "register_globals" is enabled. CWE-94
Code Injection
CVE-2006-4637 2018-10-18 06:38 2006-09-9 Show GitHub Exploit DB Packet Storm
346228 - c-news.fr c-news Multiple PHP remote file inclusion vulnerabilities in C-News.fr C-News 1.0.1 and earlier, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the path … CWE-94
Code Injection
CVE-2006-4639 2018-10-18 06:38 2006-09-9 Show GitHub Exploit DB Packet Storm
346229 - auditwizard auditwizard AuditWizard 6.3.2, when using "Remote Audit," logs the administrator password in plaintext to LaytonCmdSvc.log, which allows local users to obtain sensitive information by reading the file. NVD-CWE-Other
CVE-2006-4642 2018-10-18 06:38 2006-09-9 Show GitHub Exploit DB Packet Storm
346230 - akarru social_bookmarking_engine PHP remote file inclusion vulnerability in akarru.gui/main_content.php in Akarru Social BookMarking Engine 0.4.3.34 and earlier, and possibly 0.4.4.120, allows remote attackers to execute arbitrary P… NVD-CWE-Other
CVE-2006-4645 2018-10-18 06:38 2006-09-9 Show GitHub Exploit DB Packet Storm