Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 24, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
232431 7.5 危険 p-news - P-News の p-news.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5434 2012-12-20 18:02 2006-10-20 Show GitHub Exploit DB Packet Storm
232432 7.5 危険 timm maass - ALiCE-CMS の modules/guestbook/index.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5433 2012-12-20 18:02 2006-10-20 Show GitHub Exploit DB Packet Storm
232433 7.5 危険 phpoutsourcing - PHPOutsourcing Zorum の gorum/dbproperty.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5431 2012-12-20 18:02 2006-10-20 Show GitHub Exploit DB Packet Storm
232434 5 警告 xorp - XORP におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-5425 2012-12-20 18:02 2006-10-17 Show GitHub Exploit DB Packet Storm
232435 7.5 危険 wsnlinks - WSN Forum における任意の PHP コードを実行される脆弱性 - CVE-2006-5421 2012-12-20 18:02 2006-10-20 Show GitHub Exploit DB Packet Storm
232436 7.5 危険 university of glasgow - University of Glasgow SID の client.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5419 2012-12-20 18:02 2006-10-20 Show GitHub Exploit DB Packet Storm
232437 6.8 警告 phpBB - phpBB 用の SearchIndexer の pbpbb アーカイブにおける PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2006-5418 2012-12-20 18:02 2006-10-20 Show GitHub Exploit DB Packet Storm
232438 7.5 危険 supermod - YaBBSM 用の SuperMod における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5413 2012-12-20 18:02 2006-10-20 Show GitHub Exploit DB Packet Storm
232439 6.2 警告 東芝 - 複数製品に使用される Toshiba Bluetooth ワイアレスデバイスドライバにおけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-5405 2012-12-20 18:02 2006-10-18 Show GitHub Exploit DB Packet Storm
232440 2.6 注意 シマンテック - Norton AntiVirus などの Symantec Automated Support Assistant で使用される ActiveX コントロールにおける重要な情報を取得される脆弱性 - CVE-2006-5404 2012-12-20 18:02 2006-10-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 25, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293741 - typo3 typo3 Cross-site scripting (XSS) vulnerability in the function menu API in TYPO3 4.5.x before 4.5.21, 4.6.x before 4.6.14, and 4.7.x before 4.7.6 allows remote authenticated backend users to inject arbitra… CWE-79
Cross-site Scripting
CVE-2012-6148 2024-11-21 10:45 2013-07-2 Show GitHub Exploit DB Packet Storm
293742 - typo3 typo3 Cross-site scripting (XSS) vulnerability in the tree render API (TCA-Tree) in the Backend API in TYPO3 4.5.x before 4.5.21, 4.6.x before 4.6.14, and 4.7.x before 4.7.6 allows remote authenticated bac… CWE-79
Cross-site Scripting
CVE-2012-6147 2024-11-21 10:45 2013-07-2 Show GitHub Exploit DB Packet Storm
293743 - typo3 typo3 Cross-site scripting (XSS) vulnerability in the Backend History module in TYPO3 4.5.x before 4.5.21, 4.6.x before 4.6.14, and 4.7.x before 4.7.6 allows remote authenticated backend users to inject ar… CWE-79
Cross-site Scripting
CVE-2012-6145 2024-11-21 10:45 2013-07-2 Show GitHub Exploit DB Packet Storm
293744 - typo3 typo3 SQL injection vulnerability in the Backend History module in TYPO3 4.5.x before 4.5.21, 4.6.x before 4.6.14, and 4.7.x before 4.7.6 allows remote authenticated backend users to execute arbitrary SQL … CWE-89
SQL Injection
CVE-2012-6144 2024-11-21 10:45 2013-07-2 Show GitHub Exploit DB Packet Storm
293745 - redhat enterprise_linux_long_life
enterprise_linux
enterprise_linux_server_eus
enterprise_linux_eus
enterprise_linux_server_aus
enterprise_linux_desktop
enterprise_linux_server
enterpri…
rhn-migrate-classic-to-rhsm tool in Red Hat subscription-manager does not verify the Red Hat Network Classic server's X.509 certificate when migrating to a Certificate-based Red Hat Network, which al… CWE-255
Credentials Management
CVE-2012-6137 2024-11-21 10:45 2013-05-22 Show GitHub Exploit DB Packet Storm
293746 - zend zend_framework The (1) Zend_Feed_Rss and (2) Zend_Feed_Atom classes in Zend_Feed in Zend Framework 1.11.x before 1.11.15 and 1.12.x before 1.12.1 allow remote attackers to read arbitrary files, send HTTP requests t… CWE-200
Information Exposure
CVE-2012-5657 2024-11-21 10:45 2013-05-2 Show GitHub Exploit DB Packet Storm
293747 - ibm spss_samplepower Buffer overflow in the vsflex7l ActiveX control in IBM SPSS SamplePower 3.0 before FP1 allows remote attackers to execute arbitrary code via unspecified vectors. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-5947 2024-11-21 10:45 2013-04-30 Show GitHub Exploit DB Packet Storm
293748 - ibm spss_samplepower Buffer overflow in the c1sizer ActiveX control in C1sizer.ocx in IBM SPSS SamplePower 3.0 before FP1 allows remote attackers to execute arbitrary code via a long TabCaption string. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-5946 2024-11-21 10:45 2013-04-30 Show GitHub Exploit DB Packet Storm
293749 - ibm spss_samplepower Multiple buffer overflows in the Vsflex8l ActiveX control in IBM SPSS SamplePower 3.0 before FP1 allow remote attackers to execute arbitrary code via a long (1) ComboList or (2) ColComboList property… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-5945 2024-11-21 10:45 2013-04-30 Show GitHub Exploit DB Packet Storm
293750 - google authenticator pam_google_authenticator.c in the PAM module in Google Authenticator before 1.0 requires user-readable permissions for the secret file, which allows local users to bypass intended access restrictions… CWE-200
Information Exposure
CVE-2012-6140 2024-11-21 10:45 2013-04-24 Show GitHub Exploit DB Packet Storm