Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
232401 7.5 危険 news manager - News Manager における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2340 2012-09-25 17:17 2008-05-19 Show GitHub Exploit DB Packet Storm
232402 7.5 危険 interspire - Interspire ActiveKB における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-2338 2012-09-25 17:17 2008-05-19 Show GitHub Exploit DB Packet Storm
232403 7.5 危険 imgallery - IMGallery における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2337 2012-09-25 17:17 2008-05-19 Show GitHub Exploit DB Packet Storm
232404 7.5 危険 mreaves - Pet Grooming Management System における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-2294 2012-09-25 17:17 2008-05-18 Show GitHub Exploit DB Packet Storm
232405 9.3 危険 idautomation - IDAutomation における任意のファイルを上書きされる脆弱性 CWE-20
不適切な入力確認
CVE-2008-2283 2012-09-25 17:17 2008-05-18 Show GitHub Exploit DB Packet Storm
232406 9.3 危険 マイクロソフト - Internet Explorer の Links 機能の Print Table におけるクロスゾーンスクリプティングの脆弱性 CWE-Other
その他
CVE-2008-2281 2012-09-25 17:17 2008-05-18 Show GitHub Exploit DB Packet Storm
232407 6.8 警告 matisbt - Mantis の manage_user_create.php におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2008-2276 2012-09-25 17:17 2008-05-16 Show GitHub Exploit DB Packet Storm
232408 7.5 危険 kevin ludlow - AS-GasTracker における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2008-2269 2012-09-25 17:17 2008-05-16 Show GitHub Exploit DB Packet Storm
232409 4.3 警告 mdsjack - Mjguest の interface/redirect.htm.php におけるオープンリダイレクトの脆弱性 CWE-Other
その他
CVE-2008-2268 2012-09-25 17:17 2008-05-16 Show GitHub Exploit DB Packet Storm
232410 4.3 警告 oued - CyrixMED の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2264 2012-09-25 17:17 2008-05-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 26, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
300971 - scriptmate user_manager SQL injection vulnerability in utilities/usermessages.asp in ScriptMate User Manager 2.0 allows remote attackers to execute arbitrary SQL commands via the mesid parameter. NVD-CWE-Other
CVE-2006-6594 2017-07-29 10:29 2006-12-16 Show GitHub Exploit DB Packet Storm
300972 - clarens jclarens Multiple SQL injection vulnerabilities in Clarens jclarens before 0.6.2 allow remote attackers to execute arbitrary SQL commands via unspecified vectors. NVD-CWE-Other
CVE-2006-6606 2017-07-29 10:29 2006-12-18 Show GitHub Exploit DB Packet Storm
300973 - ibm tivoli_identity_manager The Java Key Store (JKS) for WebSphere Application Server (WAS) for IBM Tivoli Identity Manager (ITIM) 4.6 places the JKS password in a -Djavax.net.ssl.trustStorePassword command line argument, which… NVD-CWE-Other
CVE-2006-6607 2017-07-29 10:29 2006-12-18 Show GitHub Exploit DB Packet Storm
300974 - hp proliant_integrated_lights_out
proliant_integrated_lights_out_2
Unspecified vulnerability in SSH key based authentication in HP Integrated Lights Out (iLO) 1.70 through 1.87, and iLO 2 1.00 through 1.11, on Proliant servers, allows remote attackers to "gain unaut… NVD-CWE-Other
CVE-2006-6608 2017-07-29 10:29 2006-12-18 Show GitHub Exploit DB Packet Storm
300975 - alientrap nexuiz Nexuiz before 2.2.1 allows remote attackers to cause a denial of service (resource exhaustion or crash) via unspecified vectors related to "fake players." NOTE: some of these details are obtained fro… NVD-CWE-Other
CVE-2006-6609 2017-07-29 10:29 2006-12-18 Show GitHub Exploit DB Packet Storm
300976 - alientrap nexuiz clientcommands in Nexuiz before 2.2.1 has unknown impact and remote attack vectors related to "remote console command injection." NVD-CWE-Other
CVE-2006-6610 2017-07-29 10:29 2006-12-18 Show GitHub Exploit DB Packet Storm
300977 - thomas_lange
debian
fully_automated_installation
debian_linux
The save_log_local function in Fully Automatic Installation (FAI) 2.10.1, and possibly 3.1.2, when verbose mode is enabled, stores the root password hash in /var/log/fai/current/fai.log, whose file p… NVD-CWE-Other
CVE-2006-6614 2017-07-29 10:29 2006-12-18 Show GitHub Exploit DB Packet Storm
300978 - w00t_gallery w00t_gallery index.php in w00t Gallery 1.4.0 allows remote authenticated users with privileges for one installation to gain access to other installations on the same web server, aka "multi-gallery admin session s… NVD-CWE-Other
CVE-2006-6616 2017-07-29 10:29 2006-12-18 Show GitHub Exploit DB Packet Storm
300979 - mambo extcalthai_module Multiple PHP remote file inclusion vulnerabilities in the ExtCalThai (com_extcalendar) 0.9.1 and earlier component for Mambo allow remote attackers to execute arbitrary PHP code via a URL in (1) the … NVD-CWE-Other
CVE-2006-6634 2017-07-29 10:29 2006-12-18 Show GitHub Exploit DB Packet Storm
300980 - ibm websphere_application_server Unspecified vulnerability in the Utility Classes for IBM WebSphere Application Server (WAS) before 5.1.1.13 and 6.x before 6.0.2.17 has unknown impact and attack vectors. NVD-CWE-Other
CVE-2006-6636 2017-07-29 10:29 2006-12-20 Show GitHub Exploit DB Packet Storm