Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 3, 2026, 6:08 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
239431 7.8 危険 minb - minb におけるユーザ名などを含むデータベースをダウンロードされる脆弱性 - CVE-2007-4093 2012-09-25 16:47 2007-07-30 Show GitHub Exploit DB Packet Storm
239432 5 警告 ifoto - iFoto の index.php におけるディレクトリトラバーサルの脆弱性 - CVE-2007-4092 2012-09-25 16:47 2007-07-30 Show GitHub Exploit DB Packet Storm
239433 7.5 危険 index script - IndexScript の show_cat.php における SQL インジェクションの脆弱性 - CVE-2007-4069 2012-09-25 16:47 2007-07-26 Show GitHub Exploit DB Packet Storm
239434 7.8 危険 Tenable, Inc. - Nessus Vulnerability Scanner の SCANCTRL.ScanCtrlCtrl.1 ActiveX コントロールにおける任意のファイルを削除される脆弱性 CWE-22
パス・トラバーサル
CVE-2007-4062 2012-09-25 16:47 2007-07-30 Show GitHub Exploit DB Packet Storm
239435 9.3 危険 Tenable, Inc. - Nessus Vulnerability Scanner の特定の ActiveX コントロールにおけるディレクトリトラバーサルの脆弱性 - CVE-2007-4061 2012-09-25 16:47 2007-07-30 Show GitHub Exploit DB Packet Storm
239436 6.5 警告 Neocrome - Neocrome Seditio の pfs.php における任意の PHP コードをアップロードされる脆弱性 - CVE-2007-4057 2012-09-25 16:47 2007-07-30 Show GitHub Exploit DB Packet Storm
239437 7.5 危険 php123 - PHP123 Top Sites の category.php における SQL インジェクションの脆弱性 - CVE-2007-4054 2012-09-25 16:47 2007-07-30 Show GitHub Exploit DB Packet Storm
239438 7.5 危険 LinPHA - LinPHA の include/img_view.class.php における SQL インジェクションの脆弱性 - CVE-2007-4053 2012-09-25 16:47 2007-07-30 Show GitHub Exploit DB Packet Storm
239439 4.3 警告 nukedit - nukedit の utilities/login.asp におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-4052 2012-09-25 16:47 2007-07-30 Show GitHub Exploit DB Packet Storm
239440 7.5 危険 Joomla! - Joomla! 用の Pony Gallery における SQL インジェクションの脆弱性 - CVE-2007-4046 2012-09-25 16:47 2007-07-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 3, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
286671 - debian dpkg-dev Multiple directory traversal vulnerabilities in dpkg-source in dpkg-dev 1.3.0 allow remote attackers to modify files outside of the intended directories via a source package with a crafted Index: pse… CWE-22
Path Traversal
CVE-2014-3865 2024-11-21 11:09 2014-05-31 Show GitHub Exploit DB Packet Storm
286672 - debian dpkg-dev Directory traversal vulnerability in dpkg-source in dpkg-dev 1.3.0 allows remote attackers to modify files outside of the intended directories via a crafted source package that lacks a --- header lin… CWE-22
Path Traversal
CVE-2014-3864 2024-11-21 11:09 2014-05-31 Show GitHub Exploit DB Packet Storm
286673 - webmin webmin
userwin
Multiple cross-site scripting (XSS) vulnerabilities in Webmin before 1.690 and Usermin before 1.600 allow remote attackers to inject arbitrary web script or HTML via vectors related to popup windows. CWE-79
Cross-site Scripting
CVE-2014-3924 2024-11-21 11:09 2014-05-30 Show GitHub Exploit DB Packet Storm
286674 - digitalzoomstudio video_gallery Multiple cross-site scripting (XSS) vulnerabilities in the Digital Zoom Studio (DZS) Video Gallery plugin for WordPress allow remote attackers to inject arbitrary web script or HTML via the logoLink … CWE-79
Cross-site Scripting
CVE-2014-3923 2024-11-21 11:09 2014-05-30 Show GitHub Exploit DB Packet Storm
286675 - trendmicro interscan_messaging_security_virtual_appliance Cross-site scripting (XSS) vulnerability in Trend Micro InterScan Messaging Security Virtual Appliance 8.5.1.1516 allows remote authenticated users to inject arbitrary web script or HTML via the addW… CWE-79
Cross-site Scripting
CVE-2014-3922 2024-11-21 11:09 2014-05-30 Show GitHub Exploit DB Packet Storm
286676 - simple_popup_project simple_popup Cross-site scripting (XSS) vulnerability in popup.php in the Simple Popup Images plugin for WordPress allows remote attackers to inject arbitrary web script or HTML via the z parameter. CWE-79
Cross-site Scripting
CVE-2014-3921 2024-11-21 11:09 2014-05-30 Show GitHub Exploit DB Packet Storm
286677 - dlink dap-1350_firmware
dap-1350
Multiple SQL injection vulnerabilities in the administration login page in D-Link DAP-1350 (Rev. A1) with firmware 1.14 and earlier allow remote attackers to execute arbitrary SQL commands via the (1… CWE-89
SQL Injection
CVE-2014-3872 2024-11-21 11:09 2014-05-27 Show GitHub Exploit DB Packet Storm
286678 - geodesicsolutions geocore_max Multiple SQL injection vulnerabilities in register.php in Geodesic Solutions GeoCore MAX 7.3.3 (formerly GeoClassifieds and GeoAuctions) allow remote attackers to execute arbitrary SQL commands via t… CWE-89
SQL Injection
CVE-2014-3871 2024-11-21 11:09 2014-05-27 Show GitHub Exploit DB Packet Storm
286679 - bib2html_project bib2html Cross-site scripting (XSS) vulnerability in the bib2html plugin 0.9.3 for WordPress allows remote attackers to inject arbitrary web script or HTML via the styleShortName parameter in an adminStyleAdd… CWE-79
Cross-site Scripting
CVE-2014-3870 2024-11-21 11:09 2014-05-27 Show GitHub Exploit DB Packet Storm
286680 - usercake usercake Multiple cross-site request forgery (CSRF) vulnerabilities in user_settings.php in Usercake 2.0.2 and earlier allow remote attackers to hijack the authentication of administrators for requests that c… CWE-352
 Origin Validation Error
CVE-2014-3866 2024-11-21 11:09 2014-05-27 Show GitHub Exploit DB Packet Storm