Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 5, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240861 6.8 警告 mxbb - mxBB 用の mx_charts における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6650 2012-09-25 15:36 2006-12-19 Show GitHub Exploit DB Packet Storm
240862 6.8 警告 hypervm - HyperVM の display.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-6649 2012-09-25 15:36 2006-12-19 Show GitHub Exploit DB Packet Storm
240863 7.5 危険 mxbb - mxBB 用の mx_links における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6645 2012-09-25 15:36 2006-12-19 Show GitHub Exploit DB Packet Storm
240864 6.8 警告 mxbb - mxBB 用の mx_meeting における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6644 2012-09-25 15:36 2006-12-19 Show GitHub Exploit DB Packet Storm
240865 6.8 警告 omniture - Omniture SiteCatalyst におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-6640 2012-09-25 15:36 2006-12-19 Show GitHub Exploit DB Packet Storm
240866 5 警告 IBM - IBM DB2 におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-6638 2012-09-25 15:36 2006-12-19 Show GitHub Exploit DB Packet Storm
240867 7.5 危険 jumbacms - JumbaCMS の includes/functions.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6635 2012-09-25 15:36 2006-12-18 Show GitHub Exploit DB Packet Storm
240868 7.5 危険 Mambo Foundation - Mambo 用の extcalendar コンポーネントにおける PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6634 2012-09-25 15:36 2006-12-18 Show GitHub Exploit DB Packet Storm
240869 6.8 警告 ibiblio - osprey の lib/xml/oai/GetRecord.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6631 2012-09-25 15:36 2006-12-18 Show GitHub Exploit DB Packet Storm
240870 7.5 危険 ibiblio - osprey の ListRecords.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6630 2012-09-25 15:36 2006-12-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 5, 2026, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
284701 - wordbox mahabharata_audiocast The Mahabharata Audiocast (aka com.wordbox.mahabharataAudiocast) application 1.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof ser… CWE-310
Cryptographic Issues
CVE-2014-6681 2024-11-21 11:15 2014-09-23 Show GitHub Exploit DB Packet Storm
284702 - superheroquiz_project superheroquiz The superheroquiz (aka com.davidhey.superheroquiz) application 1.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtai… CWE-310
Cryptographic Issues
CVE-2014-6680 2024-11-21 11:15 2014-09-23 Show GitHub Exploit DB Packet Storm
284703 - wepisdparentportal_project wepisdparentportal The wEPISDParentPortal (aka com.dreamstep.wEPISDParentPortal) application 1.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof server… CWE-310
Cryptographic Issues
CVE-2014-6679 2024-11-21 11:15 2014-09-23 Show GitHub Exploit DB Packet Storm
284704 - wordbox algeria_radio The Algeria Radio (aka com.wordbox.algeriaRadio) application 2.5 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain … CWE-310
Cryptographic Issues
CVE-2014-6678 2024-11-21 11:15 2014-09-23 Show GitHub Exploit DB Packet Storm
284705 7.5 HIGH
Network
zenoss
debian
zenoss_core
debian_linux
Multiple format string vulnerabilities in the python module in RRDtool, as used in Zenoss Core before 4.2.5 and other products, allow remote attackers to execute arbitrary code or cause a denial of s… CWE-134
Use of Externally-Controlled Format String
CVE-2014-6262 2024-11-21 11:14 2020-02-12 Show GitHub Exploit DB Packet Storm
284706 7.1 HIGH
Network
juniper junos Multiple vulnerabilities exist in Juniper Junos J-Web error handling that may lead to cross site scripting (XSS) issues or crash the J-Web service (DoS). This affects Juniper Junos OS 12.1X44 before … CWE-79
Cross-site Scripting
CVE-2014-6447 2024-11-21 11:14 2020-02-12 Show GitHub Exploit DB Packet Storm
284707 6.1 MEDIUM
Network
watchguard fireware_xtm A Cross-site Scripting (XSS) vulnerability exists in WatchGuard XTM 11.8.3 via the poll_name parameter in the firewall/policy script. CWE-79
Cross-site Scripting
CVE-2014-6413 2024-11-21 11:14 2020-02-8 Show GitHub Exploit DB Packet Storm
284708 7.8 HIGH
Local
juniper junos Juniper Junos OS 13.2 before 13.2R5, 13.2X51, 13.2X52, and 13.3 before 13.3R3 allow local users to bypass intended restrictions and execute arbitrary Python code via vectors involving shell access. CWE-269
 Improper Privilege Management
CVE-2014-6448 2024-11-21 11:14 2020-01-16 Show GitHub Exploit DB Packet Storm
284709 5.9 MEDIUM
Network
fusionforge
debian
fusionforge
debian_linux
FusionForge before 5.3.2 use scripts that run under the shared Apache user, which is also used by project homepages by default. If project webpages are hosted on the same server than FusionForge, it … CWE-200
Information Exposure
CVE-2014-6275 2024-11-21 11:14 2020-01-3 Show GitHub Exploit DB Packet Storm
284710 6.1 MEDIUM
Network
livefyre livecomments Cross-site scripting (XSS) vulnerability in Livefyre LiveComments 3.0 allows remote attackers to inject arbitrary web script or HTML via the name of an uploaded picture. CWE-79
Cross-site Scripting
CVE-2014-6420 2024-11-21 11:14 2019-12-28 Show GitHub Exploit DB Packet Storm