Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
232121 7.5 危険 solmetra - SOLMETRA SPAW Editor における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4283 2012-12-20 18:02 2006-08-22 Show GitHub Exploit DB Packet Storm
232122 7.5 危険 xennobb - XennoBB の topic_post.php における SQL インジェクションの脆弱性 - CVE-2006-4279 2012-12-20 18:02 2006-08-21 Show GitHub Exploit DB Packet Storm
232123 7.5 危険 sportsphool - SportsPHool の includes/layout/plain.footer.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4278 2012-12-20 18:02 2006-08-21 Show GitHub Exploit DB Packet Storm
232124 9 危険 symantec veritas - Symantec Veritas NetBackup PureDisk Remote Office Edition における認証を回避される脆弱性 - CVE-2006-4228 2012-12-20 18:02 2006-08-16 Show GitHub Exploit DB Packet Storm
232125 4.3 警告 VWar - VWar の calendar.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-4224 2012-12-20 18:02 2006-08-18 Show GitHub Exploit DB Packet Storm
232126 7.5 危険 Zen Cart - Zen Cart におけるディレクトリトラバーサルの脆弱性 - CVE-2006-4218 2012-12-20 18:02 2006-08-17 Show GitHub Exploit DB Packet Storm
232127 7.5 危険 webinsta - WEBInsta CMS の modules/usersonline/users.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4217 2012-12-20 18:02 2006-08-17 Show GitHub Exploit DB Packet Storm
232128 5.1 警告 Zen Cart - Zen Cart の index.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2006-4215 2012-12-20 18:02 2006-08-17 Show GitHub Exploit DB Packet Storm
232129 7.5 危険 Zen Cart - Zen Cart における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2006-4214 2012-12-20 18:02 2006-08-17 Show GitHub Exploit DB Packet Storm
232130 7.5 危険 webinsta - WEBInsta Mailing List Manager の install3.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4209 2012-12-20 18:02 2006-08-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 18, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293681 - nasir_khan asaancart Multiple cross-site scripting (XSS) vulnerabilities in asaanCart 0.9 allow remote attackers to inject arbitrary web script or HTML via the (1) PATH_INFO to calc.php, (2) chat.php, (3) register.php, o… CWE-79
Cross-site Scripting
CVE-2012-5330 2024-11-21 10:44 2012-10-9 Show GitHub Exploit DB Packet Storm
293682 - typsoft typsoft_ftp_server Buffer overflow in TYPSoft FTP Server 1.1 allows remote authenticated users to cause a denial of service (application crash) via a long string in an APPE command. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-5329 2024-11-21 10:44 2012-10-9 Show GitHub Exploit DB Packet Storm
293683 - cartpauj mingle-forum Multiple SQL injection vulnerabilities in the Mingle Forum plugin 1.0.32.1 and other versions before 1.0.33 for WordPress might allow remote authenticated users to execute arbitrary SQL commands via … CWE-89
SQL Injection
CVE-2012-5328 2024-11-21 10:44 2012-10-9 Show GitHub Exploit DB Packet Storm
293684 - cartpauj mingle-forum Multiple SQL injection vulnerabilities in fs-admin/fs-admin.php in the Mingle Forum plugin 1.0.32.1 and other versions before 1.0.33 for WordPress allow remote authenticated users to execute arbitrar… CWE-89
SQL Injection
CVE-2012-5327 2024-11-21 10:44 2012-10-9 Show GitHub Exploit DB Packet Storm
293685 - idevspot isupport Cross-site request forgery (CSRF) vulnerability in admin/function.php in IDevSpot iSupport 1.x allows remote attackers to hijack the authentication of administrators for requests that add administrat… CWE-352
 Origin Validation Error
CVE-2012-5326 2024-11-21 10:44 2012-10-9 Show GitHub Exploit DB Packet Storm
293686 - cartpauj shortcode-redirect Multiple cross-site scripting (XSS) vulnerabilities in the scr_do_redirect function in scr.php in the Shortcode Redirect plugin 1.0.01 and earlier for WordPress allow remote authenticated users with … CWE-79
Cross-site Scripting
CVE-2012-5325 2024-11-21 10:44 2012-10-9 Show GitHub Exploit DB Packet Storm
293687 - tracker-software pdf-xchange Multiple buffer overflows in the Pdf Printer Preferences ActiveX Control in pdfxctrl.dll in Tracker Software PDF-XChange 3.60.0128 allow remote attackers to execute arbitrary code via a long string i… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-5324 2024-11-21 10:44 2012-10-9 Show GitHub Exploit DB Packet Storm
293688 - xavi x7968 Cross-site request forgery (CSRF) vulnerability in webconfig/admin_passwd/passwd.html/admin_passwd in Xavi X7968 allows remote attackers to hijack the authentication of administrators for requests th… CWE-352
 Origin Validation Error
CVE-2012-5323 2024-11-21 10:44 2012-10-9 Show GitHub Exploit DB Packet Storm
293689 - xavi x7968 Multiple cross-site scripting (XSS) vulnerabilities in Xavi X7968 allow remote attackers to inject arbitrary web script or HTML via the (1) pvcName parameter to webconfig/wan/confirm.html/confirm or … CWE-79
Cross-site Scripting
CVE-2012-5322 2024-11-21 10:44 2012-10-9 Show GitHub Exploit DB Packet Storm
293690 - tiki tikiwiki_cms\/groupware tiki-featured_link.php in TikiWiki CMS/Groupware 8.3 allows remote attackers to load arbitrary web site pages into frames and conduct phishing attacks via the url parameter, aka "frame injection." CWE-20
 Improper Input Validation 
CVE-2012-5321 2024-11-21 10:44 2012-10-9 Show GitHub Exploit DB Packet Storm