Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230961 6.8 警告 super link exchange script - Super Link Exchange Script におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-7033 2012-12-20 18:18 2007-02-22 Show GitHub Exploit DB Packet Storm
230962 10 危険 tufat - FlashBB の phpbb/getmsg.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-7032 2012-12-20 18:18 2007-02-22 Show GitHub Exploit DB Packet Storm
230963 7.8 危険 サン・マイクロシステムズ - Netra など Solaris が稼動しているシングル CPU Sun システムにおけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-7028 2012-12-20 18:18 2007-02-22 Show GitHub Exploit DB Packet Storm
230964 7.5 危険 sangwan kim - Bookmark4U の admin/config.php における SQL インジェクションの脆弱性 - CVE-2006-7025 2012-12-20 18:18 2007-02-22 Show GitHub Exploit DB Packet Storm
230965 7.5 危険 Plume CMS - Plume CMS の manager/tools/link/dbinstall.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2006-7021 2012-12-20 18:18 2007-02-14 Show GitHub Exploit DB Packet Storm
230966 7.5 危険 phpwcms - phpwcms における任意のコードを実行される脆弱性 - CVE-2006-7019 2012-12-20 18:18 2007-02-14 Show GitHub Exploit DB Packet Storm
230967 7.5 危険 phpjobboard - phpjobboard における認証を回避される脆弱性 - CVE-2006-7016 2012-12-20 18:18 2007-02-14 Show GitHub Exploit DB Packet Storm
230968 10 危険 scart - SCart の scart.cgi における任意のコマンドを実行される脆弱性 - CVE-2006-7012 2012-12-20 18:18 2007-02-14 Show GitHub Exploit DB Packet Storm
230969 4.3 警告 wheatblog - wB の add_comment.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-7002 2012-12-20 18:18 2007-02-12 Show GitHub Exploit DB Packet Storm
230970 7.1 危険 phpmychat plus - PhpMyChat Plus の avatar.php におけるディレクトリトラバーサルの脆弱性 - CVE-2006-7001 2012-12-20 18:18 2007-02-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 18, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293701 - ibm lotus_notes_traveler servlet/traveler in IBM Lotus Notes Traveler through 8.5.3.3 Interim Fix 1 does not properly restrict invalid authentication attempts, which makes it easier for remote attackers to obtain access via … CWE-287
Improper Authentication
CVE-2012-5309 2024-11-21 10:44 2012-10-8 Show GitHub Exploit DB Packet Storm
293702 - ibm lotus_notes_traveler Cross-site request forgery (CSRF) vulnerability in servlet/traveler in IBM Lotus Notes Traveler through 8.5.3.3 Interim Fix 1 allows remote attackers to hijack the authentication of arbitrary users f… CWE-352
 Origin Validation Error
CVE-2012-5308 2024-11-21 10:44 2012-10-8 Show GitHub Exploit DB Packet Storm
293703 - ibm lotus_notes_traveler Cross-site scripting (XSS) vulnerability in servlet/traveler in IBM Lotus Notes Traveler before 8.5.3.3 Interim Fix 1, when Firefox is used, allows remote attackers to inject arbitrary web script or … CWE-79
Cross-site Scripting
CVE-2012-5307 2024-11-21 10:44 2012-10-8 Show GitHub Exploit DB Packet Storm
293704 - dlink dcs-5605_ptz_ip_network_camera
camera_stream_client_activex_control
Stack-based buffer overflow in the SelectDirectory method in DcsCliCtrl.dll in Camera Stream Client ActiveX Control, as used in D-Link DCS-5605 PTZ IP Network Camera, allows remote attackers to cause… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-5306 2024-11-21 10:44 2012-10-7 Show GitHub Exploit DB Packet Storm
293705 - directadmin directadmin Cross-site scripting (XSS) vulnerability in CMD_DOMAIN in JBMC Software DirectAdmin 1.403 allows remote attackers to inject arbitrary web script or HTML via the domain parameter. CWE-79
Cross-site Scripting
CVE-2012-5305 2024-11-21 10:44 2012-10-7 Show GitHub Exploit DB Packet Storm
293706 - yuriy_v_semenikhin yvs_image_gallery Static code injection vulnerability in administration/install.php in YVS Image Gallery allows remote attackers to inject arbitrary PHP code into functions/db_connect.php via unspecified vectors. NOT… CWE-94
Code Injection
CVE-2012-5304 2024-11-21 10:44 2012-10-7 Show GitHub Exploit DB Packet Storm
293707 - monkey-project monkey Monkey HTTP Daemon 0.9.3 might allow local users to overwrite arbitrary files via a symlink attack on a PID file, as demonstrated by a pathname different from the default /var/run/monkey.pid pathname. CWE-59
Link Following
CVE-2012-5303 2024-11-21 10:44 2012-10-6 Show GitHub Exploit DB Packet Storm
293708 - cerberusftp ftp_server The default configuration of Cerberus FTP Server before 5.0.4.0 supports the DES cipher for SSH sessions, which makes it easier for remote attackers to obtain sensitive information by sniffing the ne… CWE-310
Cryptographic Issues
CVE-2012-5301 2024-11-21 10:44 2012-10-5 Show GitHub Exploit DB Packet Storm
293709 - wireshark wireshark Buffer overflow in the dissect_tlv function in epan/dissectors/packet-ldp.c in the LDP dissector in Wireshark 1.8.x before 1.8.3 allows remote attackers to cause a denial of service (application cras… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-5240 2024-11-21 10:44 2012-10-5 Show GitHub Exploit DB Packet Storm
293710 - wireshark wireshark epan/dissectors/packet-ppp.c in the PPP dissector in Wireshark 1.8.x before 1.8.3 uses incorrect OUI data structures during the decoding of (1) PPP and (2) LCP data, which allows remote attackers to … NVD-CWE-noinfo
CVE-2012-5238 2024-11-21 10:44 2012-10-5 Show GitHub Exploit DB Packet Storm