Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 8, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
236911 4.6 警告 IBM
オラクル
- IBM WAS などで使用される IBM FileNet Content Manager におけるアクセス権を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-1953 2012-09-25 17:27 2009-06-4 Show GitHub Exploit DB Packet Storm
236912 7.5 危険 newsboard - UNB の unb_lib/database.lib.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-1947 2012-09-25 17:27 2009-06-5 Show GitHub Exploit DB Packet Storm
236913 4.3 警告 Joomla! - Joomla! 用の com_users コアコンポーネントにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-1940 2012-09-25 17:27 2009-04-30 Show GitHub Exploit DB Packet Storm
236914 4.3 警告 Joomla! - Joomla! 用の JA_Purity テンプレートにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-1939 2012-09-25 17:27 2009-06-3 Show GitHub Exploit DB Packet Storm
236915 4.3 警告 Joomla! - Joomla! におけるクロスサイトリクエストフォージェリの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-1938 2012-09-25 17:27 2009-06-3 Show GitHub Exploit DB Packet Storm
236916 4.3 警告 LightNEasy - LightNEasy のコメント投稿機能におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-1937 2012-09-25 17:27 2009-06-5 Show GitHub Exploit DB Packet Storm
236917 4.3 警告 ICQ - ICQ の URL Search Hook におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-1915 2012-09-25 17:27 2009-06-4 Show GitHub Exploit DB Packet Storm
236918 4.9 警告 Linux - sparc64 プラットフォーム上の Linux kernel におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2009-1914 2012-09-25 17:27 2009-03-19 Show GitHub Exploit DB Packet Storm
236919 5.1 警告 luxbum - LuxBum の manager.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-1913 2012-09-25 17:27 2009-06-4 Show GitHub Exploit DB Packet Storm
236920 6.9 警告 Linux - Linux kernel の tun サブシステムにおける権限を取得される脆弱性 CWE-119
バッファエラー
CVE-2009-1897 2012-09-25 17:27 2009-07-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 8, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
346461 - usermin usermin This vulnerability is addressed in the following product release: Webmin, Usermin, 1.220 NVD-CWE-Other
CVE-2006-4246 2017-07-20 10:32 2006-09-20 Show GitHub Exploit DB Packet Storm
346462 - ibm aix Unspecified vulnerability in setlocale in IBM AIX 5.1.0 through 5.3.0 allows local users to gain privileges via unspecified vectors. NVD-CWE-Other
CVE-2006-4254 2017-07-20 10:32 2006-08-22 Show GitHub Exploit DB Packet Storm
346463 - ibm aix IBM has released an advisory and interim fixes to address this issue. NVD-CWE-Other
CVE-2006-4254 2017-07-20 10:32 2006-08-22 Show GitHub Exploit DB Packet Storm
346464 - john_hanna anti-spam_smtp_proxy_server Absolute path traversal vulnerability in the get functionality in Anti-Spam SMTP Proxy (ASSP) allows remote authenticated users to read arbitrary files via (1) C:\ (Windows drive letter), (2) UNC, an… NVD-CWE-Other
CVE-2006-4258 2017-07-20 10:32 2006-08-22 Show GitHub Exploit DB Packet Storm
346465 - jake_olefsky fotopholder Cross-site scripting (XSS) vulnerability in index.php in Fotopholder 1.8 allows remote attackers to inject arbitrary web script or HTML via the path parameter. NOTE: this might be resultant from a d… NVD-CWE-Other
CVE-2006-4259 2017-07-20 10:32 2006-08-22 Show GitHub Exploit DB Packet Storm
346466 - jake_olefsky fotopholder Directory traversal vulnerability in index.php in Fotopholder 1.8 allows remote attackers to read arbitrary directories or files via a .. (dot dot) in the path parameter. NVD-CWE-Other
CVE-2006-4260 2017-07-20 10:32 2006-08-22 Show GitHub Exploit DB Packet Storm
346467 - tutti_nova tutti_nova Multiple PHP remote file inclusion vulnerabilities in Tutti Nova 1.6 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the TNLIB_DIR parameter to (1) include/novalib/class… NVD-CWE-Other
CVE-2006-4277 2017-07-20 10:32 2006-08-22 Show GitHub Exploit DB Packet Storm
346468 - arthur_konze_webdesign akocomment PHP remote file inclusion vulnerability in akocomments.php in AkoComment 1.1 module (com_akocomment) for Mambo 4.5 allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_abs… NVD-CWE-Other
CVE-2006-4281 2017-07-20 10:32 2006-08-22 Show GitHub Exploit DB Packet Storm
346469 - sony vaio_media_server Buffer overflow in Sony VAIO Media Server 2.x, 3.x, 4.x, and 5.x before 20060626 allows remote attackers to execute arbitrary code via unspecified vectors. NVD-CWE-Other
CVE-2006-4289 2017-07-20 10:32 2006-08-23 Show GitHub Exploit DB Packet Storm
346470 - sony vaio_media_server Directory traversal vulnerability in Sony VAIO Media Server 2.x, 3.x, 4.x, and 5.x before 20060626 allows remote attackers to gain sensitive information via unspecified vectors. NVD-CWE-Other
CVE-2006-4290 2017-07-20 10:32 2006-08-23 Show GitHub Exploit DB Packet Storm