Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
231851 7.5 危険 flushcms - FlushCMS の Include/editor/class.rich.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-3755 2012-12-20 18:02 2006-07-21 Show GitHub Exploit DB Packet Storm
231852 7.5 危険 flushcms - FlushCMS の Include/editor/rich_files/class.rich.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-3754 2012-12-20 18:02 2006-07-21 Show GitHub Exploit DB Packet Storm
231853 6.4 警告 professional home page tools - Professional Home Page Tools Guestbook の管理ログインにおけるパスワードを推測する総当り攻撃を実行される脆弱性 - CVE-2006-3753 2012-12-20 18:02 2006-07-21 Show GitHub Exploit DB Packet Storm
231854 7.5 危険 professional home page tools - Professional Home Page Tools Guestbook の class.php における SQL インジェクションの脆弱性 - CVE-2006-3752 2012-12-20 18:02 2006-07-21 Show GitHub Exploit DB Packet Storm
231855 6.8 警告 htmlarea3 - ImageManager 用の HTMLArea3 Addon Component における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2006-3751 2012-12-20 18:02 2006-07-21 Show GitHub Exploit DB Packet Storm
231856 6.8 警告 hashcash - Joomla! 用の com_hashcash の server.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2006-3750 2012-12-20 18:02 2006-07-21 Show GitHub Exploit DB Packet Storm
231857 6.8 警告 Mambo Foundation - Mambo 用の Sitemap コンポーネントにおける PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2006-3749 2012-12-20 18:02 2006-07-10 Show GitHub Exploit DB Packet Storm
231858 6.8 警告 mamboxchange - Mambo 用の LoudMouth コンポーネントにおける PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2006-3748 2012-12-20 18:02 2006-07-21 Show GitHub Exploit DB Packet Storm
231859 4.3 警告 swsoft - SWsoft Plesk のコントロールパネルにおけるクロスサイトスクリプティングの脆弱性 - CVE-2006-3737 2012-12-20 18:02 2006-07-21 Show GitHub Exploit DB Packet Storm
231860 7.5 危険 Mambo Foundation - Mambo 用の VideoDB コンポーネントにおける PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-3736 2012-12-20 18:02 2006-07-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292061 3.3 LOW
Local
accountsservice_project
opensuse
debian
redhat
accountsservice
opensuse
debian_linux
enterprise_linux
An issue exists AccountService 0.6.37 in the user_change_password_authorized_cb() function in user.c which could let a local users obtain encrypted passwords. CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2012-6655 2024-11-21 10:46 2019-11-28 Show GitHub Exploit DB Packet Storm
292062 8.8 HIGH
Network
canonical
debian
suse
cloud-init
debian_linux
linux_enterprise_server
An privilege elevation vulnerability exists in Cloud-init before 0.7.0 when requests to an untrusted system are submitted for EC2 instance data. CWE-269
 Improper Privilege Management
CVE-2012-6639 2024-11-21 10:46 2019-11-26 Show GitHub Exploit DB Packet Storm
292063 7.3 HIGH
Network
redhat openshift cartridges/openshift-origin-cartridge-mongodb-2.2/info/bin/dump.sh in OpenShift does not properly create files in /tmp. CWE-20
 Improper Input Validation 
CVE-2013-0165 2024-11-21 10:46 2019-11-2 Show GitHub Exploit DB Packet Storm
292064 9.8 CRITICAL
Network
sharebar_project sharebar The sharebar plugin before 1.2.2 for WordPress has SQL injection. CWE-89
SQL Injection
CVE-2012-6719 2024-11-21 10:46 2019-08-28 Show GitHub Exploit DB Packet Storm
292065 6.1 MEDIUM
Network
sharebar_project sharebar The sharebar plugin before 1.2.2 for WordPress has XSS, a different issue than CVE-2013-3491. CWE-79
Cross-site Scripting
CVE-2012-6718 2024-11-21 10:46 2019-08-28 Show GitHub Exploit DB Packet Storm
292066 6.1 MEDIUM
Network
redirection redirection The redirection plugin before 2.2.12 for WordPress has XSS, a different issue than CVE-2011-4562. CWE-79
Cross-site Scripting
CVE-2012-6717 2024-11-21 10:46 2019-08-28 Show GitHub Exploit DB Packet Storm
292067 6.1 MEDIUM
Network
pixelite events_manager The events-manager plugin before 5.1.7 for WordPress has XSS via JSON call links. CWE-79
Cross-site Scripting
CVE-2012-6716 2024-11-21 10:46 2019-08-22 Show GitHub Exploit DB Packet Storm
292068 6.1 MEDIUM
Network
count_per_day_project count_per_day The count-per-day plugin before 3.2.3 for WordPress has XSS via search words. CWE-79
Cross-site Scripting
CVE-2012-6714 2024-11-21 10:46 2019-08-22 Show GitHub Exploit DB Packet Storm
292069 6.1 MEDIUM
Network
formbuilder_project formbuilder The formbuilder plugin before 0.9.1 for WordPress has XSS via a Referer header. CWE-79
Cross-site Scripting
CVE-2012-6715 2024-11-21 10:46 2019-08-22 Show GitHub Exploit DB Packet Storm
292070 6.1 MEDIUM
Network
wp-jobmanager job_manager The job-manager plugin before 0.7.19 for WordPress has multiple XSS issues. CWE-79
Cross-site Scripting
CVE-2012-6713 2024-11-21 10:46 2019-08-14 Show GitHub Exploit DB Packet Storm