Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 30, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
232051 7.5 危険 XOOPS - XOOPS 用の Tutoriais モジュールにおける SQL インジェクションの脆弱性 - CVE-2007-1816 2012-12-20 18:19 2007-04-2 Show GitHub Exploit DB Packet Storm
232052 7.5 危険 XOOPS - Xoops 用の Library モジュールの viewcat.php における SQL インジェクションの脆弱性 - CVE-2007-1815 2012-12-20 18:19 2007-04-2 Show GitHub Exploit DB Packet Storm
232053 7.5 危険 XOOPS - Xoops 用の Core モジュールの viewcat.php における SQL インジェクションの脆弱性 - CVE-2007-1814 2012-12-20 18:19 2007-04-2 Show GitHub Exploit DB Packet Storm
232054 7.5 危険 red mexico - Xoops 用の rmgallery モジュールにおける SQL インジェクションの脆弱性 - CVE-2007-1806 2012-12-20 18:19 2007-04-2 Show GitHub Exploit DB Packet Storm
232055 7.8 危険 PulseAudio - PulseAudio におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-1804 2012-12-20 18:19 2007-04-2 Show GitHub Exploit DB Packet Storm
232056 7.5 危険 sblog - sBLOG の inc/lang.php におけるディレクトリトラバーサルの脆弱性 - CVE-2007-1801 2012-12-20 18:19 2007-04-2 Show GitHub Exploit DB Packet Storm
232057 4.9 警告 シマンテック - Symantec Norton Personal Firewall の SPBBCDrv.sys におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2007-1793 2012-12-20 18:19 2007-04-2 Show GitHub Exploit DB Packet Storm
232058 7.8 危険 シマンテック - SMTP 用の Symantec Mail Security および Mail Security Appliance におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-1792 2012-12-20 18:19 2007-06-26 Show GitHub Exploit DB Packet Storm
232059 9.3 危険 softerra - Softerra Time-Assistant の lib/timesheet.class.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-1787 2012-12-20 18:19 2007-03-31 Show GitHub Exploit DB Packet Storm
232060 4.3 警告 unverse.net - aBitWhizzy におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-1774 2012-12-20 18:19 2007-03-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 30, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291341 - machform machform Cross-site scripting (XSS) vulnerability in view.php in Machform 2 allows remote attackers to inject arbitrary web script or HTML via the element_2 parameter. CWE-79
Cross-site Scripting
CVE-2013-4950 2024-11-21 10:56 2013-07-30 Show GitHub Exploit DB Packet Storm
291342 - machform machform Unrestricted file upload vulnerability in view.php in Machform 2 allows remote attackers to execute arbitrary PHP code by uploading a PHP file, then accessing it via a direct request to the file in t… NVD-CWE-Other
CVE-2013-4949 2024-11-21 10:56 2013-07-30 Show GitHub Exploit DB Packet Storm
291343 - machform machform SQL injection vulnerability in view.php in Machform 2 allows remote attackers to execute arbitrary SQL commands via the element_2 parameter. CWE-89
SQL Injection
CVE-2013-4948 2024-11-21 10:56 2013-07-30 Show GitHub Exploit DB Packet Storm
291344 - sawmill sawmill Unspecified vulnerability in the update and build database page in Sawmill before 8.6.3 allows remote attackers to have unknown impact and attack vectors. NVD-CWE-noinfo
CVE-2013-4947 2024-11-21 10:56 2013-07-30 Show GitHub Exploit DB Packet Storm
291345 - bmc service_desk_express Multiple cross-site scripting (XSS) vulnerabilities in BMC Service Desk Express (SDE) 10.2.1.95 allow remote attackers to inject arbitrary web script or HTML via the (1) SelTab parameter to QV_admin.… CWE-79
Cross-site Scripting
CVE-2013-4946 2024-11-21 10:56 2013-07-30 Show GitHub Exploit DB Packet Storm
291346 - bmc service_desk_express Multiple SQL injection vulnerabilities in BMC Service Desk Express (SDE) 10.2.1.95 allow remote attackers to execute arbitrary SQL commands via the (1) ASPSESSIONIDASSRATTQ, (2) TABLE_WIDGET_1, (3) T… CWE-89
SQL Injection
CVE-2013-4945 2024-11-21 10:56 2013-07-30 Show GitHub Exploit DB Packet Storm
291347 - fusedpress buddypress-extended-frienship-request Cross-site scripting (XSS) vulnerability in the BuddyPress Extended Friendship Request plugin before 1.0.2 for WordPress, when the "Friend Connections" component is enabled, allows remote attackers t… CWE-79
Cross-site Scripting
CVE-2013-4944 2024-11-21 10:56 2013-07-30 Show GitHub Exploit DB Packet Storm
291348 - freebsd freebsd The vfs_hang_addrlist function in sys/kern/vfs_export.c in the NFS server implementation in the kernel in FreeBSD 8.3 and 9.x through 9.1-RELEASE-p5 controls authorization for host/subnet export entr… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-4851 2024-11-21 10:56 2013-07-29 Show GitHub Exploit DB Packet Storm
291349 - isc
suse
novell
opensuse
freebsd
mandriva
redhat
fedoraproject
hp
slackware
bind
suse_linux_enterprise_software_development_kit
suse_linux
dnsco_bind
opensuse
freebsd
business_server
enterprise_server
enterprise_linux
fedora
hp-ux
slackware_l…
The RFC 5011 implementation in rdata.c in ISC BIND 9.7.x and 9.8.x before 9.8.5-P2, 9.8.6b1, 9.9.x before 9.9.3-P2, and 9.9.4b1, and DNSco BIND 9.9.3-S1 before 9.9.3-S1-P1 and 9.9.4-S1b1, allows remo… NVD-CWE-noinfo
CVE-2013-4854 2024-11-21 10:56 2013-07-29 Show GitHub Exploit DB Packet Storm
291350 - yahoo
moodle
yui
moodle
Cross-site scripting (XSS) vulnerability in flashuploader.swf in the Uploader component in Yahoo! YUI 3.5.0 through 3.9.1, as used in Moodle through 2.1.10, 2.2.x before 2.2.11, 2.3.x before 2.3.8, 2… CWE-79
Cross-site Scripting
CVE-2013-4942 2024-11-21 10:56 2013-07-29 Show GitHub Exploit DB Packet Storm