Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
232371 7.5 危険 pancake - Zina の index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-2495 2012-09-25 17:17 2008-05-28 Show GitHub Exploit DB Packet Storm
232372 4.3 警告 pancake - Zina の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2494 2012-09-25 17:17 2008-05-28 Show GitHub Exploit DB Packet Storm
232373 7.5 危険 hotscripts - AbleSpace の adv_cat.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2491 2012-09-25 17:17 2008-05-28 Show GitHub Exploit DB Packet Storm
232374 7.5 危険 maxsite - MAXSITE の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2487 2012-09-25 17:17 2008-05-28 Show GitHub Exploit DB Packet Storm
232375 4.3 警告 pcpin - PCPIN Chat の URL リダイレクトスクリプトにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2485 2012-09-25 17:17 2008-05-28 Show GitHub Exploit DB Packet Storm
232376 7.5 危険 InsaneVisions - insanevisions OneCMS の install_mod.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-2482 2012-09-25 17:17 2008-05-28 Show GitHub Exploit DB Packet Storm
232377 7.5 危険 mx-system - MxBB Portal の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2477 2012-09-25 17:17 2008-05-28 Show GitHub Exploit DB Packet Storm
232378 10 危険 LANDesk - LANDesk Management Suite などの QIP Server Service におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-2468 2012-09-25 17:17 2008-09-18 Show GitHub Exploit DB Packet Storm
232379 7.5 危険 netious - Netious CMS の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2461 2012-09-25 17:17 2008-05-27 Show GitHub Exploit DB Packet Storm
232380 7.5 危険 Joomla! - Joomla! 用の com_xsstream-dm コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2454 2012-09-25 17:17 2008-05-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 17, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
300001 - xchangeboard xchangeboard SQL injection vulnerability in XchangeBoard 1.70, and possibly earlier, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the loginNick parameter during… NVD-CWE-Other
CVE-2006-5488 2017-07-20 10:33 2006-10-25 Show GitHub Exploit DB Packet Storm
300002 - rim blackberry_enterprise_server Research in Motion (RIM) BlackBerry Enterprise Server 4.1 SP2 before Hotfix 1 for IBM Lotus Domino might allow attackers with meeting organizer privileges to cause a denial of service (application ha… NVD-CWE-Other
CVE-2006-5489 2017-07-20 10:33 2006-10-25 Show GitHub Exploit DB Packet Storm
300003 - middlebury_college segue_cms Multiple SQL injection vulnerabilities in Segue Content Management System (CMS) before 1.5.8 allow remote attackers to execute arbitrary SQL commands via unspecified vectors. NVD-CWE-Other
CVE-2006-5490 2017-07-20 10:33 2006-10-25 Show GitHub Exploit DB Packet Storm
300004 - maarch maarch Unspecified vulnerability in Maerys Archive (Maarch) before 2.0.1 allows remote authenticated users to obtain sensitive information (document contents) via unspecified attack vectors related to "gran… NVD-CWE-Other
CVE-2006-5492 2017-07-20 10:33 2006-10-25 Show GitHub Exploit DB Packet Storm
300005 - middlebury_college segue_cms Directory traversal vulnerability in themes/program/themesettings.inc.php in Segue CMS 1.5.8 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the… NVD-CWE-Other
CVE-2006-5498 2017-07-20 10:33 2006-10-25 Show GitHub Exploit DB Packet Storm
300006 - aol aol Buffer overflow in the AOL.PicDownloadCtrl.1 ActiveX control (YGPPicDownload.dll) 9.2.3.0 in America Online (AOL) 9.0 Security Edition allows remote attackers to execute arbitrary code via the downlo… NVD-CWE-Other
CVE-2006-5501 2017-07-20 10:33 2006-10-26 Show GitHub Exploit DB Packet Storm
300007 - aol aol Users of the affected products are recommended to log in to the AOL service and a fix will be seamlessly applied to their system. NVD-CWE-Other
CVE-2006-5501 2017-07-20 10:33 2006-10-26 Show GitHub Exploit DB Packet Storm
300008 - aol aol Heap-based buffer overflow in the AOL.PicDownloadCtrl.1 ActiveX control (YGPPicDownload.dll) 9.2.3.0 in America Online (AOL) 9.0 Security Edition allows remote attackers to execute arbitrary code via… NVD-CWE-Other
CVE-2006-5502 2017-07-20 10:33 2006-10-26 Show GitHub Exploit DB Packet Storm
300009 - aol aol Users of the affected product are recommended to log in to the AOL service and a fix will be seamlessly applied to their system. NVD-CWE-Other
CVE-2006-5502 2017-07-20 10:33 2006-10-26 Show GitHub Exploit DB Packet Storm
300010 - ben3w 2bgal Multiple PHP file inclusion vulnerabilities in 2BGal 3.0 allow remote attackers to execute arbitrary PHP code via the lang parameter to (1) admin/configuration.inc.php, (2) admin/creer_album.inc.php,… NVD-CWE-Other
CVE-2006-5505 2017-07-20 10:33 2006-10-26 Show GitHub Exploit DB Packet Storm