Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 30, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240521 7.5 危険 nivisec - Nivisec Hacks List の admin_hacks_list.php における SQL インジェクションの脆弱性 - CVE-2006-6216 2012-09-25 15:36 2006-11-30 Show GitHub Exploit DB Packet Storm
240522 7.5 危険 pegames - PEGames の index.php における PHP リモートファイルインクルージョン攻撃を実行される脆弱性 - CVE-2006-6213 2012-09-25 15:36 2006-11-30 Show GitHub Exploit DB Packet Storm
240523 7.5 危険 iisworks - ASP ListPics の listpics.asp における SQL インジェクションの脆弱性 - CVE-2006-6210 2012-09-25 15:36 2006-11-30 Show GitHub Exploit DB Packet Storm
240524 7.5 危険 midicart software - MidiCart ASP Shopping Cart などにおける SQL インジェクションの脆弱性 - CVE-2006-6209 2012-09-25 15:36 2006-11-30 Show GitHub Exploit DB Packet Storm
240525 5 警告 krishan - Mambo の flyspray コンポーネントにおけるディレクトリトラバーサルの脆弱性 - CVE-2006-6203 2012-09-25 15:36 2006-11-30 Show GitHub Exploit DB Packet Storm
240526 7.5 危険 nukeai - NukeAI モジュールの modules/NukeAI/util.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6202 2012-09-25 15:36 2006-11-30 Show GitHub Exploit DB Packet Storm
240527 7.5 危険 Neocrome - Neocrome Seditio の system/core/users/users.profile.inc.php における SQL インジェクションの脆弱性 - CVE-2006-6177 2012-09-25 15:36 2006-11-30 Show GitHub Exploit DB Packet Storm
240528 7.5 危険 Horde - Horde Kronolith の lib/FBView.php におけるディレクトリトラバーサルの脆弱性 - CVE-2006-6175 2012-09-25 15:36 2006-11-30 Show GitHub Exploit DB Packet Storm
240529 7.5 危険 MPlayer project
Xine
- xine/xine-lib などの Real Media 入力プラグインにおけるバッファオーバーフローの脆弱性 - CVE-2006-6172 2012-09-25 15:36 2006-11-30 Show GitHub Exploit DB Packet Storm
240530 7.2 危険 OpenBSD - OpenBSD の ELF ld.so における LD_PRELOAD などの危険な変数を受け渡される脆弱性 - CVE-2006-6164 2012-09-25 15:36 2006-11-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 31, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
285011 - status2k status2k Status2k allows remote attackers to obtain configuration information via a phpinfo action in a request to status/index.php, which calls the phpinfo function. CWE-200
Information Exposure
CVE-2014-5094 2024-11-21 11:11 2014-10-21 Show GitHub Exploit DB Packet Storm
285012 - aptana aflax Cross-site scripting (XSS) vulnerability in Aflax allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2014-5331 2024-11-21 11:11 2014-10-19 Show GitHub Exploit DB Packet Storm
285013 - birdblog birdblog Cross-site scripting (XSS) vulnerability in BirdBlog allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2014-5330 2024-11-21 11:11 2014-10-19 Show GitHub Exploit DB Packet Storm
285014 - partytrack_library_project partytrack_library The PartyTrack library for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certif… CWE-310
Cryptographic Issues
CVE-2014-4881 2024-11-21 11:11 2014-10-17 Show GitHub Exploit DB Packet Storm
285015 - huawei e5332_firmware
e5332
Buffer overflow in the Webserver component on the Huawei E5332 router before 21.344.27.00.1080 allows remote authenticated users to cause a denial of service (reboot) via a long parameter in an API s… CWE-399
 Resource Management Errors
CVE-2014-5328 2024-11-21 11:11 2014-10-12 Show GitHub Exploit DB Packet Storm
285016 - huawei e5332_firmware
e5332
Buffer overflow in the Webserver component on the Huawei E5332 router before 21.344.27.00.1080 allows remote authenticated users to cause a denial of service (reboot) via a long URI. CWE-399
 Resource Management Errors
CVE-2014-5327 2024-11-21 11:11 2014-10-12 Show GitHub Exploit DB Packet Storm
285017 - bmc track-it\! BMC Track-It! 11.3.0.355 allows remote authenticated users to read arbitrary files by visiting the TrackItWeb/Attachment page. CWE-200
Information Exposure
CVE-2014-4874 2024-11-21 11:11 2014-10-10 Show GitHub Exploit DB Packet Storm
285018 - bmc track-it\! SQL injection vulnerability in TrackItWeb/Grid/GetData in BMC Track-It! 11.3.0.355 allows remote authenticated users to execute arbitrary SQL commands via crafted POST data. CWE-89
SQL Injection
CVE-2014-4873 2024-11-21 11:11 2014-10-10 Show GitHub Exploit DB Packet Storm
285019 - bmc track-it\! BMC Track-It! 11.3.0.355 does not require authentication on TCP port 9010, which allows remote attackers to upload arbitrary files, execute arbitrary code, or obtain sensitive credential and configur… CWE-306
Missing Authentication for Critical Function
CVE-2014-4872 2024-11-21 11:11 2014-10-10 Show GitHub Exploit DB Packet Storm
285020 - cryoserver cryoserver_security_appliance Cryoserver Security Appliance 7.3.x uses weak permissions for /etc/init.d/cryoserver, which allows local users to gain privileges by leveraging access to the support account and running the /bin/cryo… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-4867 2024-11-21 11:11 2014-10-10 Show GitHub Exploit DB Packet Storm