Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229481 4.4 警告 freedesktop.org - PolicyKit における認証なしで root 権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-4945 2012-10-3 17:20 2012-10-1 Show GitHub Exploit DB Packet Storm
229482 4.3 警告 Matthew Fries - WordPress 用 MF Gig Calendar プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4242 2012-10-3 17:17 2012-10-1 Show GitHub Exploit DB Packet Storm
229483 3.5 注意 Eucalyptus Systems - Eucalyptus における不特定の認証チェックを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4065 2012-10-3 17:16 2012-08-28 Show GitHub Exploit DB Packet Storm
229484 6.5 警告 Eucalyptus Systems - Eucalyptus における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4064 2012-10-3 17:14 2012-08-28 Show GitHub Exploit DB Packet Storm
229485 5 警告 Eucalyptus Systems - Eucalyptus におけるサービス運用妨害 (DoS) の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4063 2012-10-3 17:10 2012-08-28 Show GitHub Exploit DB Packet Storm
229486 4.3 警告 NextBBS - NextBBS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-1604 2012-10-3 17:06 2012-10-1 Show GitHub Exploit DB Packet Storm
229487 7.5 危険 NextBBS - NextBBS の ajaxserver.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-1603 2012-10-3 17:05 2012-10-1 Show GitHub Exploit DB Packet Storm
229488 7.5 危険 NextBBS - NextBBS の user.php における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2012-1602 2012-10-3 17:03 2012-10-1 Show GitHub Exploit DB Packet Storm
229489 5.8 警告 ocPortal - ocPortal の index.php におけるオープンリダイレクトの脆弱性 CWE-20
不適切な入力確認
CVE-2012-5234 2012-10-3 17:02 2012-03-21 Show GitHub Exploit DB Packet Storm
229490 5 警告 ocPortal - ocPortal の catalogue_file.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-1471 2012-10-3 17:02 2012-03-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
298641 - updir updir.net Cross-site scripting (XSS) vulnerability in updir.php in UPDIR.NET before 2.04 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2007-5955 2017-07-29 10:33 2007-11-14 Show GitHub Exploit DB Packet Storm
298642 - ibm informix_dynamic_server Directory traversal vulnerability in IBM Informix Dynamic Server (IDS) before 10.00.xC7W1 allows local users to gain privileges by referencing modified NLS message files through directory traversal s… CWE-22
Path Traversal
CVE-2007-5956 2017-07-29 10:33 2007-11-14 Show GitHub Exploit DB Packet Storm
298643 - ibm informix_dynamic_server Unspecified vulnerability in IBM Informix Dynamic Server (IDS) 10.00.TC3TL and 11.10.TB4TL on Windows allows attackers to cause a denial of service (application crash) via unspecified SQ_ONASSIST req… NVD-CWE-noinfo
CVE-2007-5957 2017-07-29 10:33 2007-11-14 Show GitHub Exploit DB Packet Storm
298644 - kde kde Unspecified vulnerability in kdebase allows local users to cause a denial of service (KDM login inaccessible, or resource consumption) via unknown vectors. NVD-CWE-noinfo
CVE-2007-5963 2017-07-29 10:33 2007-12-20 Show GitHub Exploit DB Packet Storm
298645 - phpmyadmin phpmyadmin SQL injection vulnerability in db_create.php in phpMyAdmin before 2.11.2.1 allows remote authenticated users with CREATE DATABASE privileges to execute arbitrary SQL commands via the db parameter. CWE-89
SQL Injection
CVE-2007-5976 2017-07-29 10:33 2007-11-15 Show GitHub Exploit DB Packet Storm
298646 - phpmyadmin phpmyadmin Cross-site scripting (XSS) vulnerability in db_create.php in phpMyAdmin before 2.11.2.1 allows remote authenticated users with CREATE DATABASE privileges to inject arbitrary web script or HTML via a … CWE-79
Cross-site Scripting
CVE-2007-5977 2017-07-29 10:33 2007-11-15 Show GitHub Exploit DB Packet Storm
298647 - lantronix scs3200 Lantronix SCS3200 does not properly handle public-key requests, which allows remote attackers to cause a denial of service (unresponsive device) via unspecified keyscan requests. NOTE: the provenanc… NVD-CWE-Other
CVE-2007-5981 2017-07-29 10:33 2007-11-15 Show GitHub Exploit DB Packet Storm
298648 - bti-tracker bti-tracker Multiple cross-site scripting (XSS) vulnerabilities in BtiTracker before 1.4.5 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors to (1) account.php, (2) moresmiles… CWE-79
Cross-site Scripting
CVE-2007-5985 2017-07-29 10:33 2007-11-15 Show GitHub Exploit DB Packet Storm
298649 - btiteam btitracker SQL injection vulnerability in include/functions.php in BtiTracker before 1.4.5 allows remote attackers to execute arbitrary SQL commands via unspecified vectors. CWE-89
SQL Injection
CVE-2007-5986 2017-07-29 10:33 2007-11-15 Show GitHub Exploit DB Packet Storm
298650 - bti-tracker bti-tracker details.php in BtiTracker before 1.4.5, when torrent viewing is disabled for guests, allows remote attackers to bypass protection mechanisms via a direct request, as demonstrated by (1) reading the d… CWE-287
CWE-264
Improper Authentication
Permissions, Privileges, and Access Controls
CVE-2007-5987 2017-07-29 10:33 2007-11-15 Show GitHub Exploit DB Packet Storm