Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
232361 10 危険 オラクル - Oracle E-Business Suite などにおける脆弱性 - CVE-2006-3716 2012-12-20 18:02 2006-07-18 Show GitHub Exploit DB Packet Storm
232362 10 危険 オラクル - Oracle Collaboration Suite の Calendar における脆弱性 - CVE-2006-3715 2012-12-20 18:02 2006-07-18 Show GitHub Exploit DB Packet Storm
232363 7.2 危険 lavasoft
Agnitum
Novell
- Lavasoft Personal Firewall などの製品で使用される Agnitum Outpost Firewall における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2006-3697 2012-12-20 18:02 2006-07-21 Show GitHub Exploit DB Packet Storm
232364 2.1 注意 Agnitum - Outpost Firewall の filtnt.sys におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-3696 2012-12-20 18:02 2006-07-21 Show GitHub Exploit DB Packet Storm
232365 6.8 警告 Edgewall Software - Trac における任意のファイルを読まれるなどの脆弱性 CWE-Other
その他
CVE-2006-3695 2012-12-20 18:02 2006-07-21 Show GitHub Exploit DB Packet Storm
232366 4.6 警告 rocks clusters - Rocks Clusters における権限を取得される脆弱性 - CVE-2006-3693 2012-12-20 18:02 2006-07-21 Show GitHub Exploit DB Packet Storm
232367 7.5 危険 vbzoom - VBZooM における SQL インジェクションの脆弱性 - CVE-2006-3691 2012-12-20 18:02 2006-07-21 Show GitHub Exploit DB Packet Storm
232368 7.5 危険 miniBB - MiniBB Forum における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-3690 2012-12-20 18:02 2006-07-21 Show GitHub Exploit DB Packet Storm
232369 7.5 危険 francisco charrua - Fransisco Charrua Photo-Gallery の Room.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2006-3688 2012-12-20 18:02 2006-07-21 Show GitHub Exploit DB Packet Storm
232370 7.5 危険 D-Link Systems, Inc. - D-Link DI-524 の UPnP サービス内におけるスタックベースのバッファオーバーフローの脆弱性 - CVE-2006-3687 2012-12-20 18:02 2006-07-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 18, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293281 - paypal payments_standard PayPal Payments Standard PHP Library 20120427 does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which … CWE-20
 Improper Input Validation 
CVE-2012-5790 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm
293282 - paypal payments_standard PayPal Payments Standard PHP Library before 20120427 does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate,… CWE-20
 Improper Input Validation 
CVE-2012-5789 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm
293283 - paypal ipn The PayPal IPN utility does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middl… CWE-20
 Improper Input Validation 
CVE-2012-5788 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm
293284 - paypal merchant_sdk The PayPal merchant SDK does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-midd… CWE-20
 Improper Input Validation 
CVE-2012-5787 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm
293285 - apache cxf The wsdl_first_https sample code in distribution/src/main/release/samples/wsdl_first_https/src/main/ in Apache CXF before 2.7.0 does not verify that the server hostname matches a domain name in the s… CWE-20
 Improper Input Validation 
CVE-2012-5786 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm
293286 - apache axis2 Apache Axis2/Java 1.6.2 and earlier does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man… CWE-20
 Improper Input Validation 
CVE-2012-5785 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm
293287 - apache
paypal
axis
mass_pay
transactional_information_soap
payments_pro
activemq
Apache Axis 1.4 and earlier, as used in PayPal Payments Pro, PayPal Mass Pay, PayPal Transactional Information SOAP, the Java Message Service implementation in Apache ActiveMQ, and other products, do… CWE-20
 Improper Input Validation 
CVE-2012-5784 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm
293288 - apache
canonical
httpclient
ubuntu_linux
Apache Commons HttpClient 3.x, as used in Amazon Flexible Payments Service (FPS) merchant Java SDK and other products, does not verify that the server hostname matches a domain name in the subject's … CWE-295
Improper Certificate Validation 
CVE-2012-5783 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm
293289 - amazon flexible_payments_service Amazon Flexible Payments Service (FPS) PHP Library does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, w… CWE-20
 Improper Input Validation 
CVE-2012-5782 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm
293290 - amazon elastic_load_balancing Amazon Elastic Load Balancing API Tools does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows… CWE-20
 Improper Input Validation 
CVE-2012-5781 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm