Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
233111 4.3 警告 jfree - JFreeChart のイメージマップ機能におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-6306 2012-09-25 16:59 2007-12-11 Show GitHub Exploit DB Packet Storm
233112 4.6 警告 IBM - IBM HMC における権限を取得される脆弱性 CWE-119
CWE-264
CVE-2007-6305 2012-09-25 16:59 2007-12-7 Show GitHub Exploit DB Packet Storm
233113 6.8 警告 Novell - Novell NetMail の avirus.exe におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-6302 2012-09-25 16:59 2007-12-10 Show GitHub Exploit DB Packet Storm
233114 4.3 警告 open newsletter - OpenNewsletter の compose.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-6301 2012-09-25 16:59 2007-12-10 Show GitHub Exploit DB Packet Storm
233115 6.8 警告 learn2 - Learn2 Corporation STRunner ActiveX コントロールにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-6252 2012-09-25 16:59 2008-03-3 Show GitHub Exploit DB Packet Storm
233116 7.5 危険 Joomla! - Joomla! の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-6272 2012-09-25 16:59 2007-12-7 Show GitHub Exploit DB Packet Storm
233117 9.3 危険 netkit-ftp - netkit ftpd の dataconn 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2007-6263 2012-09-25 16:59 2007-11-15 Show GitHub Exploit DB Packet Storm
233118 6.8 警告 オラクル - Oracle 10g および 11g 用のインストールプロセスにおけるログインのアクセス権を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2007-6260 2012-09-25 16:59 2007-12-5 Show GitHub Exploit DB Packet Storm
233119 9.3 危険 マイクロソフト - HRTBEAT.OCX の Microsoft HeartbeatCtl ActiveX コントロールにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-6255 2012-09-25 16:59 2007-12-11 Show GitHub Exploit DB Packet Storm
233120 5 警告 マイクロソフト - Microsoft WMP におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2007-6236 2012-09-25 16:59 2007-12-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 25, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
300351 - agner_fog aforum Successful exploitation requires that "register_globals" is enabled. NVD-CWE-Other
CVE-2007-2634 2017-07-29 10:31 2007-05-14 Show GitHub Exploit DB Packet Storm
300352 - jason_frisvold phptodo Unspecified vulnerability in phpTodo before 0.8.1 allows remote attackers to have an unknown impact via newlines in regular expressions to (1) index.php, (2) feed.php, (3) prefs.php, and (4) todolist… NVD-CWE-Other
CVE-2007-2636 2017-07-29 10:31 2007-05-14 Show GitHub Exploit DB Packet Storm
300353 - moinmoin moinmoin MoinMoin before 20070507 does not properly enforce ACLs for calendars and includes, which allows remote attackers to read certain pages via unspecified vectors. NVD-CWE-Other
CVE-2007-2637 2017-07-29 10:31 2007-05-14 Show GitHub Exploit DB Packet Storm
300354 - heiko_stamer libtmcg LibTMCG before 1.1.1 does not perform a range check to avoid "trivial group generators," which allows attackers to obtain sensitive information about private cards. NVD-CWE-Other
CVE-2007-2640 2017-07-29 10:31 2007-05-14 Show GitHub Exploit DB Packet Storm
300355 - clever_components clever_database_comparer Stack-based buffer overflow in the Clever Database Comparer 2.2 ActiveX control (comparerax.ocx) allows remote attackers to execute arbitrary code via a long argument to the ConnectToDatabase functio… NVD-CWE-Other
CVE-2007-2648 2017-07-29 10:31 2007-05-15 Show GitHub Exploit DB Packet Storm
300356 - voodoo_circle voodoo_circle Multiple off-by-one errors in VooDoo cIRCle before 1.1.beta27 allow remote attackers to cause a denial of service (connection loss) or possibly execute arbitrary code via a (1) DNS name response of t… NVD-CWE-Other
CVE-2007-2651 2017-07-29 10:31 2007-05-15 Show GitHub Exploit DB Packet Storm
300357 - free-sa free-sa Multiple unspecified vulnerabilities in Free-SA before 1.2.2 allow remote attackers to execute arbitrary code via unspecified vectors involving certain (1) sprintf and (2) vsprintf calls in (a) r_ind… NVD-CWE-Other
CVE-2007-2652 2017-07-29 10:31 2007-05-15 Show GitHub Exploit DB Packet Storm
300358 - netwin surgemail
webmail
Unspecified vulnerability in NetWin Webmail 3.1s-1 in SurgeMail before 3.8i2 has unknown impact and remote attack vectors, possibly a format string vulnerability that allows remote code execution. NVD-CWE-noinfo
CWE-134
Use of Externally-Controlled Format String
CVE-2007-2655 2017-07-29 10:31 2007-05-15 Show GitHub Exploit DB Packet Storm
300359 - netwin surgemail
webmail
The vendor has addressed this issue through a product update: http://netwinsite.com/cgi-bin/keycgi.exe?cmd=download&product=surgemail NVD-CWE-noinfo
CWE-134
Use of Externally-Controlled Format String
CVE-2007-2655 2017-07-29 10:31 2007-05-15 Show GitHub Exploit DB Packet Storm
300360 - globalmegacorp phpchain Multiple cross-site scripting (XSS) vulnerabilities in PHPChain 1.0 and earlier allow remote attackers to inject arbitrary web script or HTML via the catid parameter to (1) settings.php or (2) cat.ph… NVD-CWE-Other
CVE-2007-2669 2017-07-29 10:31 2007-05-15 Show GitHub Exploit DB Packet Storm