Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241411 4.3 警告 evenzia - Evenzia CMS の includes/send.inc.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-2991 2012-06-26 15:46 2007-06-4 Show GitHub Exploit DB Packet Storm
241412 9.3 危険 btglobalservices - British Telecommunications Business Connect webhelper の ActiveX コントロールにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-2983 2012-06-26 15:46 2007-10-25 Show GitHub Exploit DB Packet Storm
241413 9.3 危険 bt - British Telecommunications Business Connect webhelper の ActiveX コントロールにおけるバッファオーバーフローの脆弱性 - CVE-2007-2982 2012-06-26 15:46 2007-05-31 Show GitHub Exploit DB Packet Storm
241414 6.8 警告 eggblog - eggblog におけるセッションをハイジャックされる脆弱性 CWE-59
リンク解釈の問題
CVE-2007-2978 2012-06-26 15:46 2007-05-31 Show GitHub Exploit DB Packet Storm
241415 7.8 危険 domjudge - DOMjudge の submit/submitcommon.c におけるバッファオーバーフローの脆弱性 - CVE-2007-2977 2012-06-26 15:46 2007-05-31 Show GitHub Exploit DB Packet Storm
241416 4.3 警告 cetrinity - Centrinity FirstClass および他の製品におけるクロスサイトスクリプティングの攻撃を実行される脆弱性 - CVE-2007-2976 2012-06-26 15:46 2007-05-31 Show GitHub Exploit DB Packet Storm
241417 10 危険 Avira - Avira Antivir Antivirus のファイル解析処理エンジンにおけるバッファオーバーフローの脆弱性 - CVE-2007-2974 2012-06-26 15:46 2007-05-31 Show GitHub Exploit DB Packet Storm
241418 7.8 危険 Avira - Avira Antivir Antivirus におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-2973 2012-06-26 15:46 2007-05-31 Show GitHub Exploit DB Packet Storm
241419 7.8 危険 Avira - Avira Antivir Antivirus の ファイル解析処理エンジンにおけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-2972 2012-06-26 15:46 2007-05-31 Show GitHub Exploit DB Packet Storm
241420 7.5 危険 greg neustaetter - gCards の getnewsitem.php における SQL インジェクションの脆弱性 - CVE-2007-2971 2012-06-26 15:46 2007-05-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
279851 - aweb_labs awebnews Successful exploitation requires that "magic_quotes_gpc" is disabled. NVD-CWE-Other
CVE-2006-1612 2018-10-19 01:33 2006-04-4 Show GitHub Exploit DB Packet Storm
279852 - aweb_labs awebnews Multiple SQL injection vulnerabilities in aWebNews 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) user123 variable in (a) login.php or (b) fpass.php; or (2) cid parameter to… NVD-CWE-Other
CVE-2006-1613 2018-10-19 01:33 2006-04-4 Show GitHub Exploit DB Packet Storm
279853 - aweb_labs awebnews Condition: magic_quotes_gpc = off NVD-CWE-Other
CVE-2006-1613 2018-10-19 01:33 2006-04-4 Show GitHub Exploit DB Packet Storm
279854 - clam_anti-virus clamav Integer overflow in the cli_scanpe function in the PE header parser (libclamav/pe.c) in Clam AntiVirus (ClamAV) before 0.88.1, when ArchiveMaxFileSize is disabled, allows remote attackers to cause a … NVD-CWE-Other
CVE-2006-1614 2018-10-19 01:33 2006-04-7 Show GitHub Exploit DB Packet Storm
279855 - doomsday doomsday Format string vulnerability in the (1) Con_message and (2) conPrintf functions in con_main.c in Doomsday engine 1.8.6 allows remote attackers to execute arbitrary code via format string specifiers in… NVD-CWE-Other
CVE-2006-1618 2018-10-19 01:33 2006-04-5 Show GitHub Exploit DB Packet Storm
279856 - hosting_controller hosting_controller admin/accounts/AccountActions.asp in Hosting Controller 2002 RC 1 allows remote attackers to modify passwords of other users, probably via an "Update User" ActionType with a modified UserName paramet… NVD-CWE-Other
CVE-2006-1620 2018-10-19 01:33 2006-04-5 Show GitHub Exploit DB Packet Storm
279857 - hosting_controller hosting_controller Directory traversal vulnerability in admin/folders/saveuploadfiles.asp in Hosting Controller 2002 RC 1 allows remote authenticated users to overwrite arbitrary files via an absolute path in the OpenP… NVD-CWE-Other
CVE-2006-1621 2018-10-19 01:33 2006-04-5 Show GitHub Exploit DB Packet Storm
279858 - phpselect phpselect Cross-site scripting (XSS) vulnerability in PHPSelect linksubmit allows remote attackers to inject arbitrary web script or HTML via (1) the description parameter to linklist.php and possibly other ve… NVD-CWE-Other
CVE-2006-1622 2018-10-19 01:33 2006-04-5 Show GitHub Exploit DB Packet Storm
279859 - andries_bruinsma flexible_development Unspecified vulnerability in main.php in an unspecified "file created by Andries Bruinsma," possibly a FleXiBle Development (FXB) application, allows remote attackers to include and execute arbitrary… NVD-CWE-Other
CVE-2006-1623 2018-10-19 01:33 2006-04-5 Show GitHub Exploit DB Packet Storm
279860 - linux linux_kernel The default configuration of syslogd in the Linux sysklogd package does not enable the -x (disable name lookups) option, which allows remote attackers to cause a denial of service (traffic amplificat… NVD-CWE-Other
CVE-2006-1624 2018-10-19 01:33 2006-04-5 Show GitHub Exploit DB Packet Storm