Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227721 7.5 危険 Zen Cart - Zen Cart におけるディレクトリトラバーサルの脆弱性 - CVE-2006-4218 2012-12-20 18:02 2006-08-17 Show GitHub Exploit DB Packet Storm
227722 7.5 危険 webinsta - WEBInsta CMS の modules/usersonline/users.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4217 2012-12-20 18:02 2006-08-17 Show GitHub Exploit DB Packet Storm
227723 5.1 警告 Zen Cart - Zen Cart の index.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2006-4215 2012-12-20 18:02 2006-08-17 Show GitHub Exploit DB Packet Storm
227724 7.5 危険 Zen Cart - Zen Cart における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2006-4214 2012-12-20 18:02 2006-08-17 Show GitHub Exploit DB Packet Storm
227725 7.5 危険 webinsta - WEBInsta Mailing List Manager の install3.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4209 2012-12-20 18:02 2006-08-17 Show GitHub Exploit DB Packet Storm
227726 5 警告 skippy.net - WordPress 用の Skippy WP-DB-Backup プラグインにおけるディレクトリトラバーサルの脆弱性 - CVE-2006-4208 2012-12-20 18:02 2006-08-17 Show GitHub Exploit DB Packet Storm
227727 7.5 危険 webdynamite - WebDynamite ProjectButler における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4205 2012-12-20 18:02 2006-08-17 Show GitHub Exploit DB Packet Storm
227728 7.5 危険 phprojekt - PHProjekt における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2006-4204 2012-12-20 18:02 2006-08-17 Show GitHub Exploit DB Packet Storm
227729 7.5 危険 spidey blog - Spidey Blog Script の proje_goster.php における SQL インジェクションの脆弱性 - CVE-2006-4202 2012-12-20 18:02 2006-08-17 Show GitHub Exploit DB Packet Storm
227730 5.1 警告 wheatblog - wB の includes/session.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4198 2012-12-20 18:02 2006-08-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 25, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
308081 - auto_ftp auto_ftp Auto_FTP.pl script in Auto_FTP 0.2 stores usernames and passwords in plaintext in the auto_ftp.conf configuration file. NVD-CWE-Other
CVE-1999-1344 2016-10-18 11:03 1999-10-5 Show GitHub Exploit DB Packet Storm
308082 - auto_ftp auto_ftp Auto_FTP.pl script in Auto_FTP 0.2 uses the /tmp/ftp_tmp as a shared directory with insecure permissions, which allows local users to (1) send arbitrary files to the remote server by placing them in … NVD-CWE-Other
CVE-1999-1345 2016-10-18 11:03 1999-10-5 Show GitHub Exploit DB Packet Storm
308083 - redhat linux PAM configuration file for rlogin in Red Hat Linux 6.1 and earlier includes a less restrictive rule before a more restrictive one, which allows users to access the host via rlogin even if rlogin has … NVD-CWE-Other
CVE-1999-1346 2016-10-18 11:03 1999-10-7 Show GitHub Exploit DB Packet Storm
308084 - redhat linux Xsession in Red Hat Linux 6.1 and earlier can allow local users with restricted accounts to bypass execution of the .xsession file by starting kde, gnome or anotherlevel from kdm. NVD-CWE-Other
CVE-1999-1347 2016-10-18 11:03 1999-10-7 Show GitHub Exploit DB Packet Storm
308085 - redhat linux Linuxconf on Red Hat Linux 6.0 and earlier does not properly disable PAM-based access to the shutdown command, which could allow local users to cause a denial of service. NVD-CWE-Other
CVE-1999-1348 2016-10-18 11:03 1999-06-30 Show GitHub Exploit DB Packet Storm
308086 - xlink_technology omni-nfs_x_enterprise NFS daemon (nfsd.exe) for Omni-NFS/X 6.1 allows remote attackers to cause a denial of service (resource exhaustion) via certain packets, possibly with the Urgent (URG) flag set, to port 111. NVD-CWE-Other
CVE-1999-1349 2016-10-18 11:03 1999-10-6 Show GitHub Exploit DB Packet Storm
308087 - arcad_systemhaus arcad ARCAD Systemhaus 0.078-5 installs critical programs and files with world-writeable permissions, which could allow local users to gain privileges by replacing a program with a Trojan horse. NVD-CWE-Other
CVE-1999-1350 2016-10-18 11:03 1999-09-29 Show GitHub Exploit DB Packet Storm
308088 - kvirc irc_client Directory traversal vulnerability in KVIrc IRC client 0.9.0 with the "Listen to !nick <soundname> requests" option enabled allows remote attackers to read arbitrary files via a .. (dot dot) in a DCC … NVD-CWE-Other
CVE-1999-1351 2016-10-18 11:03 1999-09-24 Show GitHub Exploit DB Packet Storm
308089 - linux linux_kernel mknod in Linux 2.2 follows symbolic links, which could allow local users to overwrite files or gain privileges. NVD-CWE-Other
CVE-1999-1352 2016-10-18 11:03 1999-09-28 Show GitHub Exploit DB Packet Storm
308090 - softarc firstclass_internet_server E-mail client in Softarc FirstClass Internet Server 5.506 and earlier stores usernames and passwords in cleartext in the files (1) home.fc for version 5.506, (2) network.fc for version 3.5, or (3) FC… NVD-CWE-Other
CVE-1999-1354 2016-10-18 11:03 1999-08-30 Show GitHub Exploit DB Packet Storm