Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 13, 2026, 12:06 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
232031 7.5 危険 MyBB Group - MyBB の admin/modules/user/users.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-5909 2012-11-20 14:53 2012-11-17 Show GitHub Exploit DB Packet Storm
232032 4.3 警告 MyBB Group - MyBB の admin/modules/user/users.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5908 2012-11-20 14:52 2012-11-17 Show GitHub Exploit DB Packet Storm
232033 5 警告 TomatoCart - TomatoCart の json.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-5907 2012-11-20 14:41 2012-11-17 Show GitHub Exploit DB Packet Storm
232034 4.3 警告 More Quick Tools - GreenBrowser におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5906 2012-11-20 14:24 2012-11-17 Show GitHub Exploit DB Packet Storm
232035 4 警告 Elif Keir - KnFTPd におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-5905 2012-11-20 14:08 2012-11-17 Show GitHub Exploit DB Packet Storm
232036 6.8 警告 Irfan Skiljan - IrfanView におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-5904 2012-11-20 13:56 2012-03-28 Show GitHub Exploit DB Packet Storm
232037 4.3 警告 Simple Machines - Simple Machines Forum におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5903 2012-11-20 13:54 2012-11-17 Show GitHub Exploit DB Packet Storm
232038 4.3 警告 DFLabs - DFLabs PTK の ptk/lib/modal_bookmark.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5902 2012-11-20 13:53 2012-11-17 Show GitHub Exploit DB Packet Storm
232039 5 警告 DFLabs - DFLabs PTK におけるログなどを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-5901 2012-11-20 13:52 2012-11-17 Show GitHub Exploit DB Packet Storm
232040 7.5 危険 SAMEDIA O.E. - SAMEDIA LandShop における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-5900 2012-11-20 13:49 2012-11-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 13, 2026, 5:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292511 - wordpress pay-with-tweet SQL injection vulnerability in the Pay With Tweet plugin before 1.2 for WordPress allows remote authenticated users with certain permissions to execute arbitrary SQL commands via the id parameter in … CWE-89
SQL Injection
CVE-2012-5350 2024-11-21 10:44 2012-10-10 Show GitHub Exploit DB Packet Storm
292512 - wordpress pay-with-tweet Multiple cross-site scripting (XSS) vulnerabilities in pay.php in the Pay With Tweet plugin before 1.2 allow remote attackers to inject arbitrary web script or HTML via the (1) link, (2) title, or (3… CWE-79
Cross-site Scripting
CVE-2012-5349 2024-11-21 10:44 2012-10-10 Show GitHub Exploit DB Packet Storm
292513 - wilson_steven mangosweb_enhanced SQL injection vulnerability in MangosWeb Enhanced 3.0.3 allows remote attackers to execute arbitrary SQL commands via the login parameter in a login action to index.php. CWE-89
SQL Injection
CVE-2012-5348 2024-11-21 10:44 2012-10-10 Show GitHub Exploit DB Packet Storm
292514 - tinywebgallery tinywebgallery TinyWebGallery 1.8.3 allows remote attackers to execute arbitrary code via shell metacharacters in the command parameter to (1) inc/filefunctions.inc or (2) info.php. NVD-CWE-noinfo
CVE-2012-5347 2024-11-21 10:44 2012-10-10 Show GitHub Exploit DB Packet Storm
292515 - bencemeszaros wp-livephp Cross-site scripting (XSS) vulnerability in wp-live.php in the WP Live.php module 1.2.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the s parameter. NOTE: some o… CWE-79
Cross-site Scripting
CVE-2012-5346 2024-11-21 10:44 2012-10-10 Show GitHub Exploit DB Packet Storm
292516 - kepler_lam iptools Buffer overflow in the Remote command server (Rcmd.bat) in IpTools (aka Tiny TCP/IP server) 0.1.4 allows remote attackers to cause a denial of service (crash) via a long string to TCP port 23. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-5345 2024-11-21 10:44 2012-10-10 Show GitHub Exploit DB Packet Storm
292517 - kepler_lam iptools Directory traversal vulnerability in the WebServer (Thttpd.bat) in IpTools (aka Tiny TCP/IP server) 0.1.4 allows remote attackers to read arbitrary files via a .. (dot dot) in a HTTP request. CWE-22
Path Traversal
CVE-2012-5344 2024-11-21 10:44 2012-10-10 Show GitHub Exploit DB Packet Storm
292518 - limny limny Cross-site scripting (XSS) vulnerability in admin/login.php in Limny 3.0.1 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO, related to the "PHP_SELF" variable. CWE-79
Cross-site Scripting
CVE-2012-5343 2024-11-21 10:44 2012-10-10 Show GitHub Exploit DB Packet Storm
292519 - michau_enterprises_llc commonsense_cms Multiple SQL injection vulnerabilities in SenseSites CommonSense CMS allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) special.php, (2) article.php, or (3) cat2.php. CWE-89
SQL Injection
CVE-2012-5342 2024-11-21 10:44 2012-10-10 Show GitHub Exploit DB Packet Storm
292520 - otterware statit Multiple cross-site scripting (XSS) vulnerabilities in statistik.php in Otterware StatIt 4 allow remote attackers to inject arbitrary web script or HTML via the (1) action parameter, (2) show paramet… CWE-79
Cross-site Scripting
CVE-2012-5341 2024-11-21 10:44 2012-10-10 Show GitHub Exploit DB Packet Storm