Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
239871 5 警告 nx5 - NX5Linx の link.php におけるディレクトリトラバーサルの脆弱性 - CVE-2006-4503 2012-09-25 15:35 2006-08-31 Show GitHub Exploit DB Packet Storm
239872 5 警告 moderngigabyte - ModernBill におけるネットワークトラフィックを読み取られる脆弱性 - CVE-2006-4499 2012-09-25 15:35 2006-08-31 Show GitHub Exploit DB Packet Storm
239873 7.5 危険 iwebnegar - IwebNegar の comments.php における SQL インジェクションの脆弱性 - CVE-2006-4497 2012-09-25 15:35 2006-08-31 Show GitHub Exploit DB Packet Storm
239874 4.3 警告 iwebnegar - IwebNegar の comments.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-4496 2012-09-25 15:35 2006-08-31 Show GitHub Exploit DB Packet Storm
239875 7.5 危険 マイクロソフト - Microsoft Internet Explorer 6 における任意のコードを実行される脆弱性 - CVE-2006-4495 2012-09-25 15:35 2006-08-31 Show GitHub Exploit DB Packet Storm
239876 7.5 危険 マイクロソフト - Microsoft Visual Studio 6.0 におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-4494 2012-09-25 15:35 2006-08-31 Show GitHub Exploit DB Packet Storm
239877 9.3 危険 The PHP Group - PHP の cURL 拡張ファイルにおける不正なアクションを実行される脆弱性 CWE-Other
その他
CVE-2006-4483 2012-09-25 15:35 2006-08-31 Show GitHub Exploit DB Packet Storm
239878 4.3 警告 Nuked-Klan - Nuked-Klan の nuked.php における任意の Web スクリプトなどを挿入される脆弱性 - CVE-2006-4480 2012-09-25 15:35 2006-08-31 Show GitHub Exploit DB Packet Storm
239879 7.5 危険 Joomla! - Joomla! における脆弱性 CWE-264
CWE-94
CVE-2006-4476 2012-09-25 15:35 2006-08-31 Show GitHub Exploit DB Packet Storm
239880 7.5 危険 Joomla! - Joomla! における脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2006-4475 2012-09-25 15:35 2006-08-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 19, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
346581 - cj_desing cjweb2mail Multiple Cross-site scripting (XSS) vulnerabilities in CjWeb2Mail 3.0 allow remote attackers to inject arbitrary web script or HTML via the (1) name, (2) message, or (3) ip parameter to thankyou.php … NVD-CWE-Other
CVE-2005-2901 2016-10-18 12:31 2005-09-15 Show GitHub Exploit DB Packet Storm
346582 - zebedee zebedee Zebedee 2.4.1, when "allowed redirection port" is not set, allows remote attackers to cause a denial of service (application crash) via a zero in the port number of the protocol option header, which … NVD-CWE-Other
CVE-2005-2904 2016-10-18 12:31 2005-09-15 Show GitHub Exploit DB Packet Storm
346583 - gtkdiskfree gtkdiskfree The open_cmd_tube function in mount.c for gtkdiskfree 1.9.3 and earlier allows local users to overwrite arbitrary files via a symlink attack on the gtkdiskfree temporary file. NVD-CWE-Other
CVE-2005-2918 2016-10-18 12:31 2005-09-16 Show GitHub Exploit DB Packet Storm
346584 - arc arc arc 5.21j and earlier create temporary files with world-readable permissions, which allows local users to read sensitive information from files created by (1) arc (arc.c) or (2) marc (marc.c). NVD-CWE-Other
CVE-2005-2945 2016-10-18 12:31 2005-09-17 Show GitHub Exploit DB Packet Storm
346585 - - - KillProcess 2.20 and earlier allows local users to bypass kill list restrictions by launching multiple processes at the same time, which are not all killed by KillProcess. NVD-CWE-Other
CVE-2005-2948 2016-10-18 12:31 2005-09-17 Show GitHub Exploit DB Packet Storm
346586 - mark_d._roth pam_per_user pam_per_user before 0.4 does not verify if the user name changes between authentication attempts and uses the same subrequest handle, which allows remote attackers or local users to login as other us… NVD-CWE-Other
CVE-2005-2949 2016-10-18 12:31 2005-09-17 Show GitHub Exploit DB Packet Storm
346587 - miva miva_merchant Cross-site scripting (XSS) vulnerability in merchant.mvc in MIVA Merchant 5 allows remote attackers to inject arbitrary web script or HTML via the Customer_Login parameter. NVD-CWE-Other
CVE-2005-2953 2016-10-18 12:31 2005-09-17 Show GitHub Exploit DB Packet Storm
346588 - adaptive_technology_resource_centre atutor config.inc.php in ATutor 1.5.1, and possibly earlier versions, uses an incomplete blacklist to check for dangerous file extensions, which allows authenticated administrators or educators to execute a… NVD-CWE-Other
CVE-2005-2955 2016-10-18 12:31 2005-09-17 Show GitHub Exploit DB Packet Storm
346589 - adaptive_technology_resource_centre atutor ATutor 1.5.1, and possibly earlier versions, stores temporary chat logs under the web document root with insufficient access control and predictable filenames, which allows remote attackers to obtain… NVD-CWE-Other
CVE-2005-2956 2016-10-18 12:31 2005-09-17 Show GitHub Exploit DB Packet Storm
346590 - avira desktop Stack-based buffer overflow in AVIRA Desktop for Windows 1.00.00.68 with AVPACK32.DLL 6.31.0.3, when archive scanning is enabled, allows remote attackers to execute arbitrary code via a long filename… NVD-CWE-Other
CVE-2005-2957 2016-10-18 12:31 2005-09-17 Show GitHub Exploit DB Packet Storm