Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 30, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
232361 7.5 危険 x-dev - xNews の xNews.php における SQL インジェクションの脆弱性 - CVE-2007-0569 2012-12-20 18:19 2007-01-30 Show GitHub Exploit DB Packet Storm
232362 4 警告 シマンテック - SWS のライセンス登録インターフェースにおけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-0564 2012-12-20 18:19 2007-01-24 Show GitHub Exploit DB Packet Storm
232363 4.3 警告 シマンテック - SWS におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-0563 2012-12-20 18:19 2007-01-24 Show GitHub Exploit DB Packet Storm
232364 7.5 危険 xero portal - Xero Portal における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-0561 2012-12-20 18:19 2007-01-30 Show GitHub Exploit DB Packet Storm
232365 7.5 危険 rp world - RPW の config.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-0559 2012-12-20 18:19 2007-01-30 Show GitHub Exploit DB Packet Storm
232366 7.2 危険 rmake - rMake における権限を取得される脆弱性 - CVE-2007-0557 2012-12-20 18:19 2007-01-29 Show GitHub Exploit DB Packet Storm
232367 6.8 警告 phproxy - PHProxy の index.inc.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-0553 2012-12-20 18:19 2007-01-29 Show GitHub Exploit DB Packet Storm
232368 7.8 危険 toxiclab - Toxiclab Shoutbox におけるパスワードを含むデータベースをダウンロードされる脆弱性 - CVE-2007-0546 2012-12-20 18:19 2007-01-29 Show GitHub Exploit DB Packet Storm
232369 9.4 危険 zixforum - ZixForum におけるデータベースをダウンロードされる脆弱性 - CVE-2007-0543 2012-12-20 18:19 2007-01-29 Show GitHub Exploit DB Packet Storm
232370 5 警告 WordPress.org - WordPress における任意のファイルの存在を特定される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-0541 2012-12-20 18:19 2007-01-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 30, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291601 - samba samba Heap-based buffer overflow in the dcerpc_read_ncacn_packet_done function in librpc/rpc/dcerpc_util.c in winbindd in Samba 3.x before 3.6.22, 4.0.x before 4.0.13, and 4.1.x before 4.1.3 allows remote … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-4408 2024-11-21 10:55 2013-12-10 Show GitHub Exploit DB Packet Storm
291602 - linux linux_kernel The net_ctl_permissions function in net/sysctl_net.c in the Linux kernel before 3.11.5 does not properly determine uid and gid values, which allows local users to bypass intended /proc/sys/net restri… CWE-20
 Improper Input Validation 
CVE-2013-4270 2024-11-21 10:55 2013-12-10 Show GitHub Exploit DB Packet Storm
291603 - redhat libvirt virt-login-shell in libvirt 1.1.2 through 1.1.3 allows local users to overwrite arbitrary files and possibly gain privileges via unspecified environment variables or command-line arguments. CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-4400 2024-11-21 10:55 2013-12-10 Show GitHub Exploit DB Packet Storm
291604 - x2go x2go_server The setgid wrapper libx2go-server-db-sqlite3-wrapper.c in X2Go Server before 4.0.0.2 allows remote attackers to execute arbitrary code via unspecified vectors, related to the path to libx2go-server-d… CWE-94
Code Injection
CVE-2013-4376 2024-11-21 10:55 2013-12-10 Show GitHub Exploit DB Packet Storm
291605 - apache subversion
mod_dav_svn
The get_parent_resource function in repos.c in mod_dav_svn Apache HTTPD server module in Subversion 1.7.11 through 1.7.13 and 1.8.1 through 1.8.4, when built with assertions enabled and SVNAutoversio… CWE-20
 Improper Input Validation 
CVE-2013-4558 2024-11-21 10:55 2013-12-8 Show GitHub Exploit DB Packet Storm
291606 - apache mod_dontdothat
subversion
The is_this_legal function in mod_dontdothat for Apache Subversion 1.4.0 through 1.7.13 and 1.8.0 through 1.8.4 allows remote attackers to bypass intended access restrictions and possibly cause a den… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-4505 2024-11-21 10:55 2013-12-8 Show GitHub Exploit DB Packet Storm
291607 - supmua sup lib/sup/message_chunks.rb in Sup before 0.13.2.1 and 0.14.x before 0.14.1.1 allows remote attackers to execute arbitrary commands via shell metacharacters in the content_type of an email attachment. CWE-94
Code Injection
CVE-2013-4479 2024-11-21 10:55 2013-12-8 Show GitHub Exploit DB Packet Storm
291608 - supmua sup Sup before 0.13.2.1 and 0.14.x before 0.14.1.1 allows remote attackers to execute arbitrary commands via shell metacharacters in the filename of an email attachment. CWE-94
Code Injection
CVE-2013-4478 2024-11-21 10:55 2013-12-8 Show GitHub Exploit DB Packet Storm
291609 - steven_jones context The _json_decode function in plugins/context_reaction_block.inc in the Context module 6.x-2.x before 6.x-3.2 and 7.x-3.x before 7.x-3.0 for Drupal, when using a version of PHP that does not support t… CWE-94
Code Injection
CVE-2013-4446 2024-11-21 10:55 2013-12-8 Show GitHub Exploit DB Packet Storm
291610 - steven_jones context The json rendering functionality in the Context module 6.x-2.x before 6.x-3.2 and 7.x-3.x before 7.x-3.0 for Drupal uses Drupal's token scheme to restrict access to blocks, which makes it easier for … CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-4445 2024-11-21 10:55 2013-12-8 Show GitHub Exploit DB Packet Storm