Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 28, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230891 7.5 危険 vu - VU Case Manager の default.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-6168 2012-12-20 18:34 2007-11-28 Show GitHub Exploit DB Packet Storm
230892 7.2 危険 SUSE - SUSE Linux の yast2-core における任意のコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-6167 2012-12-20 18:34 2007-11-22 Show GitHub Exploit DB Packet Storm
230893 4.3 警告 wsdeluxe - FMDeluxe の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-6162 2012-12-20 18:34 2007-11-28 Show GitHub Exploit DB Packet Storm
230894 5 警告 tilde.dk - Tilde CMS の index.php における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2007-6161 2012-12-20 18:34 2007-11-28 Show GitHub Exploit DB Packet Storm
230895 4.3 警告 tilde.dk - Tilde CMS の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-6160 2012-12-20 18:34 2007-11-28 Show GitHub Exploit DB Packet Storm
230896 7.5 危険 tilde.dk - Tilde CMS の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-6159 2012-12-20 18:34 2007-11-28 Show GitHub Exploit DB Packet Storm
230897 7.5 危険 proverbs - Proverbs Web Calendar の caladmin.inc.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-6158 2012-12-20 18:34 2007-11-28 Show GitHub Exploit DB Packet Storm
230898 4.3 警告 simplegallery - SimpleGallery の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-6157 2012-12-20 18:34 2007-11-28 Show GitHub Exploit DB Packet Storm
230899 6 警告 迅雷 - Xunlei Thunder の pplayer.dll_1_work におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-6144 2012-12-20 18:34 2007-11-27 Show GitHub Exploit DB Packet Storm
230900 7.5 危険 vu - VU Case Manager の default.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-6143 2012-12-20 18:34 2007-11-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 29, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291541 - novell open_enterprise_server The HTTPSTK service in the novell-nrm package before 2.0.2-297.305.302.3 in Novell Open Enterprise Server 2 (OES 2) Linux, and OES 11 Linux Gold and SP1, does not make the intended SSL_free and SSL_s… CWE-20
 Improper Input Validation 
CVE-2013-3707 2024-11-21 10:54 2013-12-2 Show GitHub Exploit DB Packet Storm
291542 - novell iprint The id1.GetPrinterURLList function in Novell iPrint Client before 5.93 allows remote attackers to cause a denial of service via unspecified vectors. NVD-CWE-noinfo
CVE-2013-3708 2024-11-21 10:54 2013-12-1 Show GitHub Exploit DB Packet Storm
291543 - jahia jahia_xcm Cross-site scripting (XSS) vulnerability in Jahia xCM before 6.6.2 allows remote authenticated users to inject arbitrary web script or HTML via the "about me" field. CWE-79
Cross-site Scripting
CVE-2013-3920 2024-11-21 10:54 2013-11-28 Show GitHub Exploit DB Packet Storm
291544 - ibm infosphere_master_data_management_server_for_product_information_management
infosphere_master_data_management_collaboration_server
Cross-site scripting (XSS) vulnerability in IBM InfoSphere Master Data Management Server for Product Information Management 9.x before 9.1 FP13, and IBM InfoSphere Master Data Management - Collaborat… CWE-79
Cross-site Scripting
CVE-2013-4036 2024-11-21 10:54 2013-11-27 Show GitHub Exploit DB Packet Storm
291545 - savysoda wifi_free_hd Directory traversal vulnerability in SavySoda WiFi HD Free before 7.0 allows remote attackers to read arbitrary files via a ..%2f (encoded dot dot slash) in a GET request. CWE-22
Path Traversal
CVE-2013-3923 2024-11-21 10:54 2013-11-27 Show GitHub Exploit DB Packet Storm
291546 - gummybearstudios ftp_drive_\+_http_server Directory traversal vulnerability in Gummy Bear Studios FTP Drive + HTTP Server 1.0.4 and earlier allows remote attackers to read arbitrary files via a ..%2f (encoded dot dot slash) in a GET request. CWE-22
Path Traversal
CVE-2013-3922 2024-11-21 10:54 2013-11-26 Show GitHub Exploit DB Packet Storm
291547 - ibm java Unspecified vulnerability in IBM Java SDK 5.0.0 before SR16 FP4, 7.0.0 before SR6, 6.0.1 before SR7, and 6.0.0 before SR15 allows remote attackers to access restricted classes via unspecified vectors. NVD-CWE-noinfo
CVE-2013-4041 2024-11-21 10:54 2013-11-25 Show GitHub Exploit DB Packet Storm
291548 - ibm websphere_application_server IBM WebSphere Application Server (WAS) Liberty Profile 8.5 before 8.5.5.1 uses weak permissions for unspecified files, which allows local users to obtain sensitive information via standard filesystem… CWE-310
Cryptographic Issues
CVE-2013-4006 2024-11-21 10:54 2013-11-18 Show GitHub Exploit DB Packet Storm
291549 - ibm cognos_business_intelligence IBM Cognos Business Intelligence 8.4.1 before IF3, 10.1.0 before IF4, 10.1.1 before IF4, 10.2.0 before IF4, 10.2.1 before IF2, and 10.2.1.1 before IF1 allows remote authenticated users to read arbitr… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-4034 2024-11-21 10:54 2013-11-18 Show GitHub Exploit DB Packet Storm
291550 - microsoft windows_xp
windows_server_2008
windows_server_2012
windows_rt
windows_8.1
windows_vista
windows_7
windows_rt_8.1
windows_8
windows_server_2003
DirectAccess in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Go… CWE-20
 Improper Input Validation 
CVE-2013-3876 2024-11-21 10:54 2013-11-18 Show GitHub Exploit DB Packet Storm