Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 24, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
232751 3.6 注意 simpliciti - Simpliciti Locked Browser における許可されていない操作を実行される脆弱性 - CVE-2006-4092 2012-12-20 18:02 2006-08-11 Show GitHub Exploit DB Packet Storm
232752 4.3 警告 webligo - Webligo BlogHoster におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-4090 2012-12-20 18:02 2006-08-11 Show GitHub Exploit DB Packet Storm
232753 5.1 警告 wim fleischhauer - Wim Fleischhauer docpile:we における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4076 2012-12-20 18:02 2006-08-10 Show GitHub Exploit DB Packet Storm
232754 5.1 警告 wim fleischhauer - Wim Fleischhauer docpile:we における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4075 2012-12-20 18:02 2006-08-10 Show GitHub Exploit DB Packet Storm
232755 7.5 危険 phpcc - Fabian Hainz phpCC における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4073 2012-12-20 18:02 2006-08-10 Show GitHub Exploit DB Packet Storm
232756 5 警告 pswd.js - pswd.js スクリプトにおけるオフラインの総当り攻撃を実行される脆弱性 CWE-255
証明書・パスワード管理
CVE-2006-4068 2012-12-20 18:02 2006-08-9 Show GitHub Exploit DB Packet Storm
232757 7.5 危険 yenerturk - YenerTurk Haber Script の default.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2006-4064 2012-12-20 18:02 2006-08-9 Show GitHub Exploit DB Packet Storm
232758 7.5 危険 web-scripts - Visual Events Calendar の calendar.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4060 2012-12-20 18:02 2006-08-9 Show GitHub Exploit DB Packet Storm
232759 7.5 危険 usolved - USOLVED NEWSolved Lite における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4059 2012-12-20 18:02 2006-08-9 Show GitHub Exploit DB Packet Storm
232760 6.8 警告 simplog - Simpliciti Locked Browser におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-4058 2012-12-20 18:02 2006-08-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 24, 2026, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292841 - varnish_cache_project varnish_cache varnish 3.0.3 uses world-readable permissions for the /var/log/varnish/ directory and the log files in the directory, which allows local users to obtain sensitive information by reading the files. N… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-0345 2024-11-21 10:47 2014-05-8 Show GitHub Exploit DB Packet Storm
292842 - theforeman foreman The smart proxy Puppet run API in Foreman before 1.2.0 allows remote attackers to execute arbitrary commands via vectors related to escaping and Puppet commands. CWE-94
Code Injection
CVE-2013-0210 2024-11-21 10:47 2014-05-8 Show GitHub Exploit DB Packet Storm
292843 - theforeman foreman Foreman before 1.1 allows remote authenticated users to gain privileges via a (1) XMLHttpRequest or (2) AJAX request. CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-0187 2024-11-21 10:47 2014-05-8 Show GitHub Exploit DB Packet Storm
292844 - david_leonard pkstat tmp_smtp.c in pktstat 1.8.5 allows local users to overwrite arbitrary files via a symlink attack on /tmp/smtp.log. CWE-59
Link Following
CVE-2013-0350 2024-11-21 10:47 2014-05-6 Show GitHub Exploit DB Packet Storm
292845 - zlib pigz Race condition in pigz before 2.2.5 uses permissions derived from the umask when compressing a file before setting that file's permissions to match those of the original file, which might allow local… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-0296 2024-11-21 10:47 2014-04-28 Show GitHub Exploit DB Packet Storm
292846 - schneider-electric
schneider_electric
somachine
concept
modbus_serial_driver
sft2841
somove
opc_factory_server
powersuite
pl7
modbuscommdtm_sl
unity_pro
twidosuite
unityloader
Multiple stack-based buffer overflows in ModbusDrv.exe in Schneider Electric Modbus Serial Driver 1.10 through 3.2 allow remote attackers to execute arbitrary code via a large buffer-size value in a … CWE-787
 Out-of-bounds Write
CVE-2013-0662 2024-11-21 10:47 2014-04-1 Show GitHub Exploit DB Packet Storm
292847 - owncloud owncloud Unspecified vulnerability in core/ajax/translations.php in ownCloud before 4.0.12 and 4.5.x before 4.5.6 allows remote authenticated users to execute arbitrary PHP code via unknown vectors. NOTE: th… NVD-CWE-noinfo
CVE-2013-0303 2024-11-21 10:47 2014-03-25 Show GitHub Exploit DB Packet Storm
292848 - owncloud owncloud Multiple cross-site scripting (XSS) vulnerabilities in ownCloud 4.5.5, 4.0.10, and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) QUERY_STRING to core/lostpassword/… CWE-79
Cross-site Scripting
CVE-2013-0201 2024-11-21 10:47 2014-03-19 Show GitHub Exploit DB Packet Storm
292849 - owncloud owncloud Cross-site request forgery (CSRF) vulnerability in apps/calendar/ajax/settings/settimezone in ownCloud before 4.0.12 allows remote attackers to hijack the authentication of users for requests that ch… CWE-352
 Origin Validation Error
CVE-2013-0301 2024-11-21 10:47 2014-03-15 Show GitHub Exploit DB Packet Storm
292850 - owncloud owncloud Multiple cross-site request forgery (CSRF) vulnerabilities in ownCloud 4.5.x before 4.5.7 allow remote attackers to hijack the authentication of users for requests that (1) change the default view vi… CWE-352
 Origin Validation Error
CVE-2013-0300 2024-11-21 10:47 2014-03-15 Show GitHub Exploit DB Packet Storm