Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241261 6.4 警告 frank-karau - GL-SH Deaf Forum におけるディレクトリトラバーサルの脆弱性 - CVE-2007-3535 2012-06-26 15:46 2007-07-3 Show GitHub Exploit DB Packet Storm
241262 7.5 危険 daniel toma - WebChat の login.php における SQL インジェクションの脆弱性 - CVE-2007-3534 2012-06-26 15:46 2007-07-3 Show GitHub Exploit DB Packet Storm
241263 5 警告 3com - 3Com IntelliJack Switch NJ220 におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-3533 2012-06-26 15:46 2007-07-3 Show GitHub Exploit DB Packet Storm
241264 6.6 警告 Gentoo Linux - NVidia NVClock の backend/backend.c における任意のファイルを上書きされる脆弱性 - CVE-2007-3531 2012-06-26 15:46 2007-07-24 Show GitHub Exploit DB Packet Storm
241265 5 警告 dar - DAR の blowfish モードにおけるファイルを復号される脆弱性 - CVE-2007-3528 2012-06-26 15:46 2007-07-3 Show GitHub Exploit DB Packet Storm
241266 6.8 警告 Firebird Project - Firebird における整数オーバーフローの脆弱性 - CVE-2007-3527 2012-06-26 15:46 2007-07-3 Show GitHub Exploit DB Packet Storm
241267 6.4 警告 groupeclan.free.fr - XCMS の Module/Galerie.php におけるディレクトリトラバーサルの脆弱性 - CVE-2007-3523 2012-06-26 15:46 2007-07-3 Show GitHub Exploit DB Packet Storm
241268 7.5 危険 arcadebuilder - ArcadeBuilder Game Portal Manager における SQL インジェクションの脆弱性 - CVE-2007-3521 2012-06-26 15:46 2007-07-3 Show GitHub Exploit DB Packet Storm
241269 7.5 危険 easybe - Easybe 1-2-3 Music Store の process.php における SQL インジェクションの脆弱性 - CVE-2007-3520 2012-06-26 15:46 2007-07-3 Show GitHub Exploit DB Packet Storm
241270 4.3 警告 Claroline Consortium - Claroline におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3517 2012-06-26 15:46 2007-07-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 25, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
280231 - review-script.com five_star_review_script Multiple cross-site scripting (XSS) vulnerabilities in 5 Star Review allow remote attackers to inject arbitrary web script or HTML via the (1) sort parameter in index2.php, (2) item_id parameter in r… CWE-79
Cross-site Scripting
CVE-2006-3061 2018-10-19 01:45 2006-06-19 Show GitHub Exploit DB Packet Storm
280232 - myphp_guestbook myphp_guestbook Cross-site scripting (XSS) vulnerability in index.php in myPHP Guestbook 2.0.4 and earlier allows remote attackers to inject arbitrary web script or HTML via the lang parameter. NVD-CWE-Other
CVE-2006-3062 2018-10-19 01:45 2006-06-19 Show GitHub Exploit DB Packet Storm
280233 - coppermine coppermine_photo_gallery SQL injection vulnerability in the add_hit function in include/function.inc.php in Coppermine Photo Gallery (CPG) 1.4.8, when "Keep detailed hit statistics" is enabled, allows remote attackers to exe… CWE-89
SQL Injection
CVE-2006-3064 2018-10-19 01:45 2006-06-19 Show GitHub Exploit DB Packet Storm
280234 - blursoft blur6ex SQL injection vulnerability in engine/shards/blog.php in blur6ex 0.3.462 allows remote attackers to execute arbitrary SQL commands via the ID parameter in a proc_reply action in the blog shard. NOTE… NVD-CWE-Other
CVE-2006-3065 2018-10-19 01:45 2006-06-19 Show GitHub Exploit DB Packet Storm
280235 - ibm db2_universal_database Buffer overflow in the TCP/IP listener in IBM DB2 Universal Database (UDB) before 8.1 FixPak 12 allows remote attackers to cause a denial of service (application crash) via a long MGRLVLLS message in… NVD-CWE-Other
CVE-2006-3066 2018-10-19 01:45 2006-06-19 Show GitHub Exploit DB Packet Storm
280236 - ibm db2_universal_database This vulnerability is addressed in the following product release: IBM, DB2 Universal Database, 8.12 NVD-CWE-Other
CVE-2006-3066 2018-10-19 01:45 2006-06-19 Show GitHub Exploit DB Packet Storm
280237 - zeroboard zeroboard write_ok.php in Zeroboard 4.1 pl8, when installed on Apache with mod_mime, allows remote attackers to bypass restrictions for uploading files with executable extensions by uploading a .htaccess file … NVD-CWE-Other
CVE-2006-3070 2018-10-19 01:45 2006-06-19 Show GitHub Exploit DB Packet Storm
280238 - anton_belev mp3_search_archive Cross-site scripting (XSS) vulnerability in index.php in MP3 Search/Archive 1.2 allows remote attackers to inject arbitrary web script or HTML via the (1) keywords parameter, as used by the "search b… NVD-CWE-Other
CVE-2006-3071 2018-10-19 01:45 2006-06-19 Show GitHub Exploit DB Packet Storm
280239 - kaspersky kaspersky_anti-virus
kaspersky_internet_security
klif.sys in Kaspersky Internet Security 6.0 and 7.0, Kaspersky Anti-Virus (KAV) 6.0 and 7.0, KAV 6.0 for Windows Workstations, and KAV 6.0 for Windows Servers does not validate certain parameters to … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2006-3074 2018-10-19 01:45 2006-06-19 Show GitHub Exploit DB Packet Storm
280240 - picturedis picturedis_photoalbum
picturedis_professional
Multiple PHP remote file inclusion vulnerabilities in PictureDis Professional 1.33 Build 234 and earlier and PictureDis Photoalbum 4.82 and earlier allow remote attackers to execute arbitrary PHP cod… NVD-CWE-Other
CVE-2006-3075 2018-10-19 01:45 2006-06-19 Show GitHub Exploit DB Packet Storm