Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241591 5 警告 アップル - CFNetwork における CRLF インジェクションの脆弱性 - CVE-2007-2404 2012-06-26 15:46 2007-07-31 Show GitHub Exploit DB Packet Storm
241592 6.8 警告 アップル - CFNetwork における任意の FTP サーバへ FTP コマンドの送信を誘発される脆弱性 - CVE-2007-2403 2012-06-26 15:46 2007-07-31 Show GitHub Exploit DB Packet Storm
241593 4.3 警告 アップル - Apple Mac OS X および iPhone の WebCore における CRLF インジェクションの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-2401 2012-06-26 15:46 2007-06-22 Show GitHub Exploit DB Packet Storm
241594 4.3 警告 アップル
マイクロソフト
- Apple Safari におけるセキュリティモデルを回避される脆弱性 CWE-362
CWE-79
CVE-2007-2400 2012-06-26 15:46 2007-06-25 Show GitHub Exploit DB Packet Storm
241595 9.3 危険 アップル - Apple Mac OS X および iPhone の WebKit における任意のコードを実行される脆弱性 CWE-DesignError
CVE-2007-2399 2012-06-26 15:46 2007-06-22 Show GitHub Exploit DB Packet Storm
241596 4.3 警告 アップル - Apple Safari におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-2391 2012-06-26 15:46 2007-06-14 Show GitHub Exploit DB Packet Storm
241597 10 危険 アップル - Apple Mac OS X の iChat におけるバッファオーバーフローの脆弱性 - CVE-2007-2390 2012-06-26 15:46 2007-05-24 Show GitHub Exploit DB Packet Storm
241598 7.1 危険 アップル - Apple QuickTime for Java における Web ブラウザからメモリを読み取られる脆弱性 - CVE-2007-2389 2012-06-26 15:46 2007-05-29 Show GitHub Exploit DB Packet Storm
241599 9.3 危険 アップル - Apple QuickTime for Java における任意のコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-2388 2012-06-26 15:46 2007-05-29 Show GitHub Exploit DB Packet Storm
241600 10 危険 アップル - Intel ハードウェア上の Apple Xserve Lights-Out Management における管理アクセス権を取得される脆弱性 - CVE-2007-2387 2012-06-26 15:46 2007-05-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 24, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
279331 - phpwcms phpwcms Directory traversal vulnerability in include/inc_ext/spaw/spaw_control.class.php in phpwcms 1.2.5-DEV allows remote attackers to include arbitrary local files via .. (dot dot) sequences in the spaw_r… NVD-CWE-Other
CVE-2006-2519 2018-10-19 01:40 2006-05-23 Show GitHub Exploit DB Packet Storm
279332 - bitberry_software bitzipper Directory traversal vulnerability in BitZipper 4.1.2 SR-1 and earlier allows remote attackers to create files in arbitrary directories via a .. (dot dot) in the filename of a file that is stored in … NVD-CWE-Other
CVE-2006-2520 2018-10-19 01:40 2006-05-23 Show GitHub Exploit DB Packet Storm
279333 - power_place php_easy_galerie PHP remote file inclusion vulnerability in index.php in PHP Easy Galerie 1.1 allows remote attackers to execute arbitrary PHP code via a URL in the includepath parameter. NVD-CWE-Other
CVE-2006-2526 2018-10-19 01:40 2006-05-23 Show GitHub Exploit DB Packet Storm
279334 - smartisoft phpbazar Admin/admin.php in phpBazar 2.1.0 and earlier allows remote attackers to bypass the authentication process and gain unauthorized access to the administrative section by setting the action parameter t… NVD-CWE-Other
CVE-2006-2527 2018-10-19 01:40 2006-05-23 Show GitHub Exploit DB Packet Storm
279335 - snitz_communications avatar_mod avatar_upload.asp in Avatar MOD 1.3 for Snitz Forums 3.4, and possibly other versions, allows remote attackers to bypass file type checks and upload arbitrary files via a null byte in the file name, … CWE-264
Permissions, Privileges, and Access Controls
CVE-2006-2530 2018-10-19 01:40 2006-05-23 Show GitHub Exploit DB Packet Storm
279336 - ipswitch whatsup Ipswitch WhatsUp Professional 2006 only verifies the user's identity via HTTP headers, which allows remote attackers to spoof being a trusted console and bypass authentication by setting HTTP User-Ag… NVD-CWE-Other
CVE-2006-2531 2018-10-19 01:40 2006-05-23 Show GitHub Exploit DB Packet Storm
279337 - greg_donald destiney_rated_images_script stats.php in Destiney Rated Images Script 0.5.0 allows remote attackers to obtain the installation path via an invalid s parameter, which displays the path in an error message. NOTE: this issue was … NVD-CWE-Other
CVE-2006-2532 2018-10-19 01:40 2006-05-23 Show GitHub Exploit DB Packet Storm
279338 - greg_donald destiney_rated_images_script Cross-site scripting (XSS) vulnerability in (1) addWeblog.php and (2) leaveComments.php in Destiney Rated Images Script 0.5.0 does not properly filter all vulnerable HTML tags, which allows remote at… NVD-CWE-Other
CVE-2006-2533 2018-10-19 01:40 2006-05-23 Show GitHub Exploit DB Packet Storm
279339 - greg_donald destiney_links_script Destiney Links Script 2.1.2 does not protect library and other support files, which allows remote attackers to obtain the installation path via a direct URL to files in the (1) include and (2) themes… NVD-CWE-Other
CVE-2006-2534 2018-10-19 01:40 2006-05-23 Show GitHub Exploit DB Packet Storm
279340 - greg_donald destiney_links_script index.php in Destiney Links Script 2.1.2 allows remote attackers to obtain the installation path via an invalid show parameter referencing a non-existent file, which reveals the path in the resulting… CWE-200
Information Exposure
CVE-2006-2535 2018-10-19 01:40 2006-05-23 Show GitHub Exploit DB Packet Storm