Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 21, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230421 4.9 警告 rPath, Inc - rPath Linux の initscripts における認証試行の重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-5686 2012-12-20 18:33 2007-10-11 Show GitHub Exploit DB Packet Storm
230422 5 警告 serverkit - shttp の safe_path 関数におけるディレクトリトラバーサル攻撃を実行される脆弱性 CWE-22
パス・トラバーサル
CVE-2007-5685 2012-12-20 18:33 2007-10-28 Show GitHub Exploit DB Packet Storm
230423 7.5 危険 Tiki Software Community Association - TikiWiki におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-5684 2012-12-20 18:33 2007-10-23 Show GitHub Exploit DB Packet Storm
230424 4.3 警告 Tiki Software Community Association - TikiWiki におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-5683 2012-12-20 18:33 2007-10-23 Show GitHub Exploit DB Packet Storm
230425 7.5 危険 Tiki Software Community Association - TikiWiki の tiki-graph_formula.php における任意のコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-5682 2012-12-20 18:33 2007-10-26 Show GitHub Exploit DB Packet Storm
230426 7.5 危険 phpbasic - phpBasic の Music モジュールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-5678 2012-12-20 18:33 2007-10-24 Show GitHub Exploit DB Packet Storm
230427 7.5 危険 reloadcms - ReloadCMS の system.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-5650 2012-12-20 18:33 2007-10-23 Show GitHub Exploit DB Packet Storm
230428 4.3 警告 rnote - rNote の rnote.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-5648 2012-12-20 18:33 2007-10-23 Show GitHub Exploit DB Packet Storm
230429 4.3 警告 socketkb - SocketKB の social_game_play.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-5647 2012-12-20 18:33 2007-10-23 Show GitHub Exploit DB Packet Storm
230430 6.8 警告 phppm - PHP Project Management におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-5642 2012-12-20 18:33 2007-10-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293171 - c2enterprise c2_webresource Cross-site scripting (XSS) vulnerability in fileview.asp in C2 WebResource allows remote attackers to inject arbitrary web script or HTML via the File parameter. CWE-79
Cross-site Scripting
CVE-2013-0125 2024-11-21 10:46 2013-04-5 Show GitHub Exploit DB Packet Storm
293172 - zeroclipboard_project zeroclipboard Cross-site scripting (XSS) vulnerability in ZeroClipboard before 1.1.4 allows remote attackers to inject arbitrary web script or HTML via "the clipText returned from the flash object," a different vu… CWE-79
Cross-site Scripting
CVE-2012-6550 2024-11-21 10:46 2013-04-2 Show GitHub Exploit DB Packet Storm
293173 - coreftp coreftp Multiple buffer overflows in Core FTP before 2.2 build 1769 allow remote FTP servers to execute arbitrary code or cause a denial of service (application crash) via a long directory name in a (1) DELE… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-0130 2024-11-21 10:46 2013-03-30 Show GitHub Exploit DB Packet Storm
293174 - novell sentinel_log_manager Novell Sentinel Log Manager before 1.2.0.3 allows remote attackers to create data retention policies via a crafted text/x-gwt-rpc request to novelllogmanager/datastorageservice.rpc, and allows remote… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-6534 2024-11-21 10:46 2013-03-30 Show GitHub Exploit DB Packet Storm
293175 - askia askiaweb Multiple cross-site scripting (XSS) vulnerabilities in the administration interface in ASKIA askiaweb allow remote attackers to inject arbitrary web script or HTML via the (1) Number or (2) UpdatePag… CWE-79
Cross-site Scripting
CVE-2013-0124 2024-11-21 10:46 2013-03-22 Show GitHub Exploit DB Packet Storm
293176 - askia askiaweb Multiple SQL injection vulnerabilities in the administration interface in ASKIA askiaweb allow remote attackers to execute arbitrary SQL commands via (1) the nHistoryId parameter to WebProd/pages/pgH… CWE-89
SQL Injection
CVE-2013-0123 2024-11-21 10:46 2013-03-22 Show GitHub Exploit DB Packet Storm
293177 - verizon fios_actiontec_mi424wr-gen31_router_firmware
fios_actiontec_mi424wr-gen31_router
Multiple cross-site request forgery (CSRF) vulnerabilities in index.cgi on the Verizon FIOS Actiontec MI424WR-GEN3I router with firmware 40.19.36 allow remote attackers to hijack the authentication o… CWE-352
 Origin Validation Error
CVE-2013-0126 2024-11-21 10:46 2013-03-22 Show GitHub Exploit DB Packet Storm
293178 - linux linux_kernel The isofs_export_encode_fh function in fs/isofs/export.c in the Linux kernel before 3.6 does not initialize a certain structure member, which allows local users to obtain sensitive information from k… CWE-200
Information Exposure
CVE-2012-6549 2024-11-21 10:46 2013-03-16 Show GitHub Exploit DB Packet Storm
293179 - linux
redhat
linux_kernel
enterprise_linux
The udf_encode_fh function in fs/udf/namei.c in the Linux kernel before 3.6 does not initialize a certain structure member, which allows local users to obtain sensitive information from kernel heap m… CWE-200
Information Exposure
CVE-2012-6548 2024-11-21 10:46 2013-03-16 Show GitHub Exploit DB Packet Storm
293180 - linux linux_kernel The __tun_chr_ioctl function in drivers/net/tun.c in the Linux kernel before 3.6 does not initialize a certain structure, which allows local users to obtain sensitive information from kernel stack me… CWE-200
Information Exposure
CVE-2012-6547 2024-11-21 10:46 2013-03-16 Show GitHub Exploit DB Packet Storm