Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 21, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
232301 5.1 警告 phpmyteam - phpMyTeam の images/smileys/smileys_packs.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5207 2012-12-20 18:02 2006-10-10 Show GitHub Exploit DB Packet Storm
232302 10 危険 トレンドマイクロ - Trend Micro ServerProtect の不特定のプロシージャにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2006-5269 2012-12-20 18:02 2008-11-17 Show GitHub Exploit DB Packet Storm
232303 10 危険 トレンドマイクロ - Trend Micro ServerProtect における任意のコードを実行される脆弱性 CWE-287
不適切な認証
CVE-2006-5268 2012-12-20 18:02 2008-11-17 Show GitHub Exploit DB Packet Storm
232304 7.5 危険 phplibre - registroTL の main.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5315 2012-12-20 18:02 2006-10-17 Show GitHub Exploit DB Packet Storm
232305 7.5 危険 phplibre - TribunaLibre の ftag.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5314 2012-12-20 18:02 2006-10-17 Show GitHub Exploit DB Packet Storm
232306 7.5 危険 phpBB - phpBB 用の Ajax Shoutbox モジュールにおける PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5312 2012-12-20 18:02 2006-10-17 Show GitHub Exploit DB Packet Storm
232307 7.5 危険 phpBB - phpBB 用の Prillian French モジュールにおける PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5309 2012-12-20 18:02 2006-10-17 Show GitHub Exploit DB Packet Storm
232308 4 警告 winzip - WinZip 用の WZFILEVIEW.FileViewCtrl.61 ActiveX コントロールにおける任意のコードを実行される脆弱性 - CVE-2006-5198 2012-12-20 18:02 2006-11-14 Show GitHub Exploit DB Packet Storm
232309 6.8 警告 wheatblog - Wheatblog におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5195 2012-12-20 18:02 2006-10-10 Show GitHub Exploit DB Packet Storm
232310 7.5 危険 wikyblog - Josh Schmidt WikyBlog の index.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5193 2012-12-20 18:02 2006-10-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293691 - stanislas_rolland sr_feuser_register The Front End User Registration (sr_feuser_register) extension before 2.6.2 for TYPO3 allows remote attackers to obtain user names and passwords via the (1) edit perspective or (2) autologin feature. CWE-200
Information Exposure
CVE-2012-5890 2024-11-21 10:45 2012-11-18 Show GitHub Exploit DB Packet Storm
293692 - alex_kellner powermail Cross-site scripting (XSS) vulnerability in the powermail extension before 1.6.5 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2012-5889 2024-11-21 10:45 2012-11-18 Show GitHub Exploit DB Packet Storm
293693 - benjamin_mack seo_basics Cross-site scripting (XSS) vulnerability in Basic SEO Features (seo_basics) extension before 0.8.2 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2012-5888 2024-11-21 10:45 2012-11-18 Show GitHub Exploit DB Packet Storm
293694 - apache tomcat The HTTP Digest Access Authentication implementation in Apache Tomcat 5.5.x before 5.5.36, 6.x before 6.0.36, and 7.x before 7.0.30 does not properly check for stale nonce values in conjunction with … CWE-287
Improper Authentication
CVE-2012-5887 2024-11-21 10:45 2012-11-18 Show GitHub Exploit DB Packet Storm
293695 - apache tomcat The HTTP Digest Access Authentication implementation in Apache Tomcat 5.5.x before 5.5.36, 6.x before 6.0.36, and 7.x before 7.0.30 caches information about the authenticated user within the session … CWE-287
Improper Authentication
CVE-2012-5886 2024-11-21 10:45 2012-11-18 Show GitHub Exploit DB Packet Storm
293696 - apache tomcat The replay-countermeasure functionality in the HTTP Digest Access Authentication implementation in Apache Tomcat 5.5.x before 5.5.36, 6.x before 6.0.36, and 7.x before 7.0.30 tracks cnonce (aka clien… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-5885 2024-11-21 10:45 2012-11-18 Show GitHub Exploit DB Packet Storm
293697 - uk-cookie_project uk-cookie Cross-site scripting (XSS) vulnerability in the Uk Cookie (aka uk-cookie) plugin for WordPress allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2012-5856 2024-11-21 10:45 2012-11-18 Show GitHub Exploit DB Packet Storm
293698 - mozilla bugzilla The User.get method in Bugzilla/WebService/User.pm in Bugzilla 4.3.2 allows remote attackers to obtain sensitive information about the saved searches of arbitrary users via an XMLRPC request or a JSO… CWE-200
Information Exposure
CVE-2012-5884 2024-11-21 10:45 2012-11-16 Show GitHub Exploit DB Packet Storm
293699 - mozilla
yahoo
bugzilla
yui
Cross-site scripting (XSS) vulnerability in the Flash component infrastructure in YUI 2.8.0 through 2.9.0, as used in Bugzilla 3.7.x and 4.0.x before 4.0.9, 4.1.x and 4.2.x before 4.2.4, and 4.3.x an… CWE-79
Cross-site Scripting
CVE-2012-5883 2024-11-21 10:45 2012-11-16 Show GitHub Exploit DB Packet Storm
293700 - yahoo yui Cross-site scripting (XSS) vulnerability in the Flash component infrastructure in YUI 2.5.0 through 2.9.0 allows remote attackers to inject arbitrary web script or HTML via vectors related to uploade… CWE-79
Cross-site Scripting
CVE-2012-5882 2024-11-21 10:45 2012-11-16 Show GitHub Exploit DB Packet Storm