Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
231801 7.5 危険 thepeak - Thepeak File Upload Manager の index.php におけるディレクトリトラバーサルの脆弱性 - CVE-2006-5617 2012-12-20 18:02 2006-10-30 Show GitHub Exploit DB Packet Storm
231802 7.5 危険 Textpattern - Textpattern の publish.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5615 2012-12-20 18:02 2006-10-30 Show GitHub Exploit DB Packet Storm
231803 10 危険 東芝 - Toshiba Bluetooth スタックにおける脆弱性 CWE-noinfo
情報不足
CVE-2006-5611 2012-12-20 18:02 2006-10-30 Show GitHub Exploit DB Packet Storm
231804 5 警告 TorrentFlux - TorrentFlux の dir.php におけるディレクトリトラバーサルの脆弱性 - CVE-2006-5609 2012-12-20 18:02 2006-10-30 Show GitHub Exploit DB Packet Storm
231805 6.8 警告 phpcards - phpCards の phpcards.footer.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5605 2012-12-20 18:02 2006-10-30 Show GitHub Exploit DB Packet Storm
231806 7.5 危険 phpcards - phpCards の phpcards.header.php におけるディレクトリトラバーサルの脆弱性 - CVE-2006-5604 2012-12-20 18:02 2006-10-30 Show GitHub Exploit DB Packet Storm
231807 7.5 危険 Snitz - Snitz Forums 2000 の pop_mail.asp における SQL インジェクションの脆弱性 - CVE-2006-5603 2012-12-20 18:02 2006-10-30 Show GitHub Exploit DB Packet Storm
231808 4 警告 xsupplicant - xsupplicant におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-5602 2012-12-20 18:02 2006-10-27 Show GitHub Exploit DB Packet Storm
231809 9 危険 xsupplicant - xsupplicant の eap.c におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2006-5601 2012-12-20 18:02 2006-10-27 Show GitHub Exploit DB Packet Storm
231810 4.3 警告 webgeneius - GOOP Gallery の index.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5598 2012-12-20 18:02 2006-10-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 19, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293831 - ubbcentral ubb.threads Cross-site scripting (XSS) vulnerability in forums/ubbthreads.php in UBB.threads 7.5.6 and earlier allows remote attackers to inject arbitrary web script or HTML via the Loginname parameter. CWE-79
Cross-site Scripting
CVE-2012-5104 2024-11-21 10:44 2012-09-24 Show GitHub Exploit DB Packet Storm
293832 - dnelubin gelinsguestbook Multiple cross-site scripting (XSS) vulnerabilities in action/add-submit.php in Ggb Guestbook 0.3.1 allow remote attackers to inject arbitrary web script or HTML via the (1) url or (2) message parame… CWE-79
Cross-site Scripting
CVE-2012-5103 2024-11-21 10:44 2012-09-24 Show GitHub Exploit DB Packet Storm
293833 - dariusz_handzlik vertrigoserv Cross-site scripting (XSS) vulnerability in inc/extensions.php in VertrigoServ 2.25 allows remote attackers to inject arbitrary web script or HTML via the ext parameter. CWE-79
Cross-site Scripting
CVE-2012-5102 2024-11-21 10:44 2012-09-24 Show GitHub Exploit DB Packet Storm
293834 - jextensions je_poll_component SQL injection vulnerability in the JExtensions JE Poll component before 1.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via unspecified vectors. CWE-89
SQL Injection
CVE-2012-5101 2024-11-21 10:44 2012-09-24 Show GitHub Exploit DB Packet Storm
293835 - luizpicanco hserver Directory traversal vulnerability in HServer 0.1.1 allows remote attackers to read arbitrary files via a (1) ..%5c (dot dot encoded backslash) or (2) %2e%2e%5c (encoded dot dot backslash) in the PATH… CWE-22
Path Traversal
CVE-2012-5100 2024-11-21 10:44 2012-09-24 Show GitHub Exploit DB Packet Storm
293836 - phpb2b phpb2b Cross-site scripting (XSS) vulnerability in list.php in PHPB2B 4.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the q parameter in a search action. CWE-79
Cross-site Scripting
CVE-2012-5099 2024-11-21 10:44 2012-09-24 Show GitHub Exploit DB Packet Storm
293837 - j_waite php-x-links Multiple SQL injection vulnerabilities in Php-X-Links, possibly 1.0, allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to rate.php, (2) cid parameter to view.php, or (… CWE-89
SQL Injection
CVE-2012-5098 2024-11-21 10:44 2012-09-24 Show GitHub Exploit DB Packet Storm
293838 6.5 MEDIUM
Network
ibm infosphere_information_server IBM InfoSphere Information Server 8.1, 8.5, and 8,7 could allow a remote authenticated attacker to obtain sensitive information, caused by improper restrictions on directories. An attacker could expl… NVD-CWE-noinfo
CVE-2012-4818 2024-11-21 10:43 2022-09-29 Show GitHub Exploit DB Packet Storm
293839 6.1 MEDIUM
Network
zenphoto zenphoto Zenphoto before 1.4.3.4 admin-news-articles.php date parameter XSS. CWE-79
Cross-site Scripting
CVE-2012-4519 2024-11-21 10:43 2020-02-12 Show GitHub Exploit DB Packet Storm
293840 8.8 HIGH
Network
kde
redhat
kde
enterprise_linux
enterprise_linux_desktop
enterprise_linux_workstation
enterprise_linux_server_eus
The CSS parser (khtml/css/cssparser.cpp) in Konqueror in KDE 4.7.3 allows remote attackers to cause a denial of service (crash) and possibly read memory via a crafted font face source, related to "ty… CWE-843
Type Confusion
CVE-2012-4512 2024-11-21 10:43 2020-02-9 Show GitHub Exploit DB Packet Storm