Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
233111 6.8 警告 picozip - Acubix PicoZip におけるディレクトリトラバーサルの脆弱性 - CVE-2007-2058 2012-12-20 18:19 2007-04-17 Show GitHub Exploit DB Packet Storm
233112 5 警告 ricargbook - RicarGBooK の header.php におけるディレクトリトラバーサルの脆弱性 - CVE-2007-2050 2012-12-20 18:19 2007-04-16 Show GitHub Exploit DB Packet Storm
233113 5 警告 webmethods - webMethods Glue の Management Console におけるディレクトリトラバーサルの脆弱性 - CVE-2007-2048 2012-12-20 18:19 2007-04-16 Show GitHub Exploit DB Packet Storm
233114 4.9 警告 レッドハット - lha の lharc.c におけるファイルを読み書きされる脆弱性 - CVE-2007-2030 2012-12-20 18:19 2007-04-16 Show GitHub Exploit DB Packet Storm
233115 7.5 危険 PhpWiki - PhpWiki の lib/plugin/UpLoad.php における二重拡張子を伴う任意の PHP ファイルを実行される脆弱性 - CVE-2007-2025 2012-12-20 18:19 2007-04-13 Show GitHub Exploit DB Packet Storm
233116 6.8 警告 PhpWiki - PhpWiki の lib/plugin/UpLoad.php における任意の PHP ファイルアップロードされる脆弱性 - CVE-2007-2024 2012-12-20 18:19 2007-04-13 Show GitHub Exploit DB Packet Storm
233117 7.2 危険 secustick - Secustick USB フラッシュドライブの USB20.dll における認証要件を回避される脆弱性 - CVE-2007-2023 2012-12-20 18:19 2007-04-13 Show GitHub Exploit DB Packet Storm
233118 7.5 危険 pineapple technologies - Pineapple Technologies Lore における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2021 2012-12-20 18:19 2007-04-12 Show GitHub Exploit DB Packet Storm
233119 7.5 危険 tomex - phpGalleryScript の init.gallery.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2019 2012-12-20 18:19 2007-04-12 Show GitHub Exploit DB Packet Storm
233120 4.3 警告 The phpMyAdmin Project - phpMyAdmin の mysql/phpinfo.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-2016 2012-12-20 18:19 2007-04-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 10, 2026, 5 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292081 - c-icap_project c-icap The parse_request function in request.c in c-icap 0.2.x allows remote attackers to cause a denial of service (crash) via a URI without a " " or "?" character in an ICAP request, as demonstrated by us… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-7401 2024-11-21 11:00 2014-12-20 Show GitHub Exploit DB Packet Storm
292082 - c-icap_project c-icap Multiple unspecified vulnerabilities in request.c in c-icap 0.2.x allow remote attackers to cause a denial of service (crash) via a crafted ICAP request. NVD-CWE-noinfo
CVE-2013-7402 2024-11-21 11:00 2014-12-18 Show GitHub Exploit DB Packet Storm
292083 - canto canto_curses canto_curses/guibase.py in Canto Curses before 0.9.0 allows remote feed servers to execute arbitrary commands via shell metacharacters in a URL in a feed. CWE-77
Command Injection
CVE-2013-7416 2024-11-21 11:00 2014-12-4 Show GitHub Exploit DB Packet Storm
292084 - axway securetransport Cross-site request forgery (CSRF) vulnerability in Axway SecureTransport 5.1 SP2 and earlier allows remote attackers to hijack the authentication of unspecified users for requests that upload arbitra… CWE-352
 Origin Validation Error
CVE-2013-7057 2024-11-21 11:00 2014-11-5 Show GitHub Exploit DB Packet Storm
292085 - allplayer allplayer Buffer overflow in ALLPlayer 5.6.2 through 5.8.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long string in a .m3u (playlist) file. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-7409 2024-11-21 11:00 2014-10-31 Show GitHub Exploit DB Packet Storm
292086 - f5 big-ip_analytics F5 BIG-IP Analytics 11.x before 11.4.0 uses a predictable session cookie, which makes it easier for remote attackers to have unspecified impact by guessing the value. CWE-310
Cryptographic Issues
CVE-2013-7408 2024-11-21 11:00 2014-10-27 Show GitHub Exploit DB Packet Storm
292087 - drupal mrbs_module Cross-site request forgery (CSRF) vulnerability in the MRBS module for Drupal allows remote attackers to hijack the authentication of unspecified victims via unknown vectors. CWE-352
 Origin Validation Error
CVE-2013-7407 2024-11-21 11:00 2014-10-22 Show GitHub Exploit DB Packet Storm
292088 - mrbs_project mrbs SQL injection vulnerability in the MRBS module for Drupal allows remote attackers to execute arbitrary SQL commands via unspecified vectors. CWE-89
SQL Injection
CVE-2013-7406 2024-11-21 11:00 2014-10-21 Show GitHub Exploit DB Packet Storm
292089 - jenkins jenkins Jenkins before 1.502 allows remote authenticated users to configure an otherwise restricted project via vectors related to post-build actions. CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-7330 2024-11-21 11:00 2014-10-18 Show GitHub Exploit DB Packet Storm
292090 - perl cgi_application_module The CGI::Application module before 4.50_50 and 4.50_51 for Perl, when run modes are not specified, allows remote attackers to obtain sensitive information (web queries and environment details) via ve… CWE-200
Information Exposure
CVE-2013-7329 2024-11-21 11:00 2014-10-7 Show GitHub Exploit DB Packet Storm