Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 17, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230251 5 警告 EFS Software - EFS Web Server の thumbnail.ghp におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-4809 2012-12-20 19:28 2010-04-23 Show GitHub Exploit DB Packet Storm
230252 6.8 警告 will kraft - EZ-Blog における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4805 2012-12-20 19:28 2010-04-23 Show GitHub Exploit DB Packet Storm
230253 7.5 危険 will kraft - EZ-Blog における任意の投稿を作成される脆弱性 CWE-287
不適切な認証
CVE-2009-4801 2012-12-20 19:28 2010-04-23 Show GitHub Exploit DB Packet Storm
230254 4 警告 Codeorigin - Sysax Multi Server におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-4800 2012-12-20 19:28 2010-04-22 Show GitHub Exploit DB Packet Storm
230255 6.8 警告 xlightftpd - Xlight FTP Server における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4795 2012-12-20 19:28 2010-04-22 Show GitHub Exploit DB Packet Storm
230256 7.5 危険 ryan haudenschilt - Family Connections における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4791 2012-12-20 19:28 2010-04-22 Show GitHub Exploit DB Packet Storm
230257 5 警告 XOOPS - XOOPS の Profiles モジュールにおける管理者による承認を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-4851 2012-12-20 19:28 2009-11-11 Show GitHub Exploit DB Packet Storm
230258 7.5 危険 phplivesupport - PHP Live! における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4749 2012-12-20 19:28 2010-03-26 Show GitHub Exploit DB Packet Storm
230259 7.5 危険 Tecnick.com - AIOCP の public/code/cp_html2xhtmlbasic.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2009-4747 2012-12-20 19:28 2010-03-26 Show GitHub Exploit DB Packet Storm
230260 10 危険 Skype Technologies S.A. - Windows 上で稼動する Skype の Extras Manager における脆弱性 CWE-noinfo
情報不足
CVE-2009-4741 2012-12-20 19:28 2010-03-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 17, 2026, 4:19 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
294311 9.8 CRITICAL
Network
izoncam izon_ip_firmware IZON IP 2.0.2: hard-coded password vulnerability CWE-798
 Use of Hard-coded Credentials
CVE-2013-6236 2024-11-21 10:58 2020-02-13 Show GitHub Exploit DB Packet Storm
294312 6.1 MEDIUM
Network
semperplugins all_in_one_seo_pack A Cross-site Scripting (XSS) vulnerability exists in the All in One SEO Pack plugin before 2.0.3.1 for WordPress via the Search parameter. CWE-79
Cross-site Scripting
CVE-2013-5988 2024-11-21 10:58 2020-02-12 Show GitHub Exploit DB Packet Storm
294313 9.8 CRITICAL
Network
dlink dsr-150_firmware
dsr-150n_firmware
dsr-250_firmware
dsr-250n_firmware
dsr-500_firmware
dsr-500n_firmware
dsr-1000_firmware
dsr-1000n_firmware
Multiple SQL injection vulnerabilities in D-Link DSR-150 with firmware before 1.08B44; DSR-150N with firmware before 1.05B64; DSR-250 and DSR-250N with firmware before 1.08B44; and DSR-500, DSR-500N,… CWE-89
SQL Injection
CVE-2013-5945 2024-11-21 10:58 2020-02-11 Show GitHub Exploit DB Packet Storm
294314 7.5 HIGH
Network
alienvault open_source_security_information_management OSSIM before 4.3.3.1 has tele_compress.php path traversal vulnerability CWE-22
Path Traversal
CVE-2013-6056 2024-11-21 10:58 2020-01-28 Show GitHub Exploit DB Packet Storm
294315 9.8 CRITICAL
Network
livezilla livezilla LiveZilla 5.0.1.4 has a Remote Code Execution vulnerability CWE-22
Path Traversal
CVE-2013-6225 2024-11-21 10:58 2020-01-13 Show GitHub Exploit DB Packet Storm
294316 8.8 HIGH
Network
eng spagobi SpagoBI before 4.1 has Privilege Escalation via an error in the AdapterHTTP script CWE-269
 Improper Privilege Management
CVE-2013-6231 2024-11-21 10:58 2020-01-10 Show GitHub Exploit DB Packet Storm
294317 6.1 MEDIUM
Network
open-xchange open-xchange_appsuite Cross-site scripting (XSS) vulnerability in the frontend in Open-Xchange (OX) AppSuite 6.22.3 before 6.22.3-rev5 and 6.22.4 before 6.22.4-rev12 allows remote attackers to inject arbitrary web script … CWE-79
Cross-site Scripting
CVE-2013-6242 2024-11-21 10:58 2020-01-3 Show GitHub Exploit DB Packet Storm
294318 6.1 MEDIUM
Network
cart66 cart66_lite_plugin Multiple cross-site scripting (XSS) vulnerabilities in products.php in the Cart66 Lite plugin before 1.5.1.15 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) P… CWE-79
Cross-site Scripting
CVE-2013-5978 2024-11-21 10:58 2019-12-12 Show GitHub Exploit DB Packet Storm
294319 9.8 CRITICAL
Network
zabbix zabbix Multiple SQL injection vulnerabilities in Zabbix 1.8.x before 1.8.18rc1, 2.0.x before 2.0.9rc1, and 2.1.x before 2.1.7. CWE-89
SQL Injection
CVE-2013-5743 2024-11-21 10:58 2019-12-12 Show GitHub Exploit DB Packet Storm
294320 6.1 MEDIUM
Network
exis-ti exis_contexis Cross-site scripting (XSS) vulnerability in the photo gallery model in Exis Contexis before 2.0 allows remote attackers to inject arbitrary web script or HTML via the image parameter in a detail acti… CWE-79
Cross-site Scripting
CVE-2013-6239 2024-11-21 10:58 2019-11-23 Show GitHub Exploit DB Packet Storm