Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241691 10 危険 fac guestbook - FAC Guestbook におけるデータベースをダウンロードされる脆弱性 - CVE-2007-2101 2012-06-26 15:46 2007-04-18 Show GitHub Exploit DB Packet Storm
241692 10 危険 fac guestbook - FAC Guestbook におけるデータベースをダウンロードされる脆弱性 - CVE-2007-2100 2012-06-26 15:46 2007-04-18 Show GitHub Exploit DB Packet Storm
241693 7.5 危険 anthologia - Anthologia の index.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2094 2012-06-26 15:46 2007-04-18 Show GitHub Exploit DB Packet Storm
241694 6.8 警告 cnstats - CNStats における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2087 2012-06-26 15:46 2007-04-18 Show GitHub Exploit DB Packet Storm
241695 6.8 警告 cnstats - CNStats における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2086 2012-06-26 15:46 2007-04-18 Show GitHub Exploit DB Packet Storm
241696 7.5 危険 actionpoll - Robert Ladstaetter ActionPoll の db/PollDB.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2065 2012-06-26 15:46 2007-04-17 Show GitHub Exploit DB Packet Storm
241697 7.5 危険 actionpoll - Robert Ladstaetter ActionPoll における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2064 2012-06-26 15:46 2007-04-17 Show GitHub Exploit DB Packet Storm
241698 4.3 警告 AfterLogic - AfterLogic MailBee WebMail Pro の check_login.asp におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-2061 2012-06-26 15:46 2007-04-17 Show GitHub Exploit DB Packet Storm
241699 10 危険 eiqnetworks - eIQnetworks ESA の ESA プロトコル実装におけるバッファオーバーフローの脆弱性 - CVE-2007-2059 2012-06-26 15:46 2007-04-17 Show GitHub Exploit DB Packet Storm
241700 10 危険 Aircrack-ng - aircrack-ng airodump-ng におけるスタックベースのバッファオーバーフローの脆弱性 - CVE-2007-2057 2012-06-26 15:46 2007-04-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 15, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
250921 - mambo mambo SQL injection vulnerability in Mambo before 4.5.5 allows remote attackers to execute arbitrary SQL commands via unspecified vectors in cancel edit functions, possibly related to the id parameter. CWE-89
SQL Injection
CVE-2007-0789 2024-02-14 10:17 2007-02-7 Show GitHub Exploit DB Packet Storm
250922 - barron_mccann x-kryptor_driver
xgntr
install
x-kryptor_secure_client
Barron McCann X-Kryptor Driver BMS1446HRR (Xgntr BMS1351 Install BMS1472) in X-Kryptor Secure Client does not drop privileges when launching an Explorer window in response to a help command, which al… CWE-264
Permissions, Privileges, and Access Controls
CVE-2007-0436 2024-02-14 10:17 2007-02-4 Show GitHub Exploit DB Packet Storm
250923 - mgb opensource_guestbook SQL injection vulnerability in email.php in MGB OpenSource Guestbook 0.5.4.5 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter. NVD-CWE-Other
CVE-2007-0354 2024-02-14 10:17 2007-01-19 Show GitHub Exploit DB Packet Storm
250924 - portix-php portix-php Multiple cross-site scripting (XSS) vulnerabilities in Portix-PHP 0.4.2 allow remote attackers to inject arbitrary web script or HTML via the (1) titre or (2) auteur field in a forum post. NVD-CWE-Other
CVE-2006-6934 2024-02-14 10:17 2007-01-17 Show GitHub Exploit DB Packet Storm
250925 - portix-php portix-php SQL injection vulnerability in the login component in Portix-PHP 0.4.2 allows remote attackers to execute arbitrary SQL commands via the username and passwd (password) fields. NVD-CWE-Other
CVE-2006-6935 2024-02-14 10:17 2007-01-17 Show GitHub Exploit DB Packet Storm
250926 - ga_soft rapid_classified Multiple cross-site scripting (XSS) vulnerabilities in Rapid Classified 3.1 allow remote attackers to inject arbitrary web script or HTML via the (1) id parameter to (a) reply.asp or (b) view_print.a… NVD-CWE-Other
CVE-2006-6929 2024-02-14 10:17 2007-01-13 Show GitHub Exploit DB Packet Storm
250927 - ga_soft rapid_classified SQL injection vulnerability in viewad.asp in Rapid Classified 3.1 allows remote attackers to execute arbitrary SQL commands via the id parameter. NVD-CWE-Other
CVE-2006-6930 2024-02-14 10:17 2007-01-13 Show GitHub Exploit DB Packet Storm
250928 - rediff bol_downloader_activex_ocx_control Rediff Bol Downloader ActiveX (OCX) control allows remote attackers to execute arbitrary files, and obtain sensitive information (usernames and pathnames), via a URL in the url vbscript parameter. NVD-CWE-Other
CVE-2006-6838 2024-02-14 10:17 2006-12-31 Show GitHub Exploit DB Packet Storm
250929 - phpprofiles phpprofiles Multiple PHP remote file inclusion vulnerabilities in phpProfiles 3.1.2b and earlier allow remote attackers to execute arbitrary PHP code via a URL in the menu parameter to (1) include/body.inc.php o… CWE-94
Code Injection
CVE-2006-6740 2024-02-14 10:17 2006-12-27 Show GitHub Exploit DB Packet Storm
250930 - sugarcrm sugarcrm Cross-site scripting (XSS) vulnerability in SugarCRM Open Source 4.5.0f and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors in crafted email messages. NVD-CWE-Other
CVE-2006-6712 2024-02-14 10:17 2006-12-23 Show GitHub Exploit DB Packet Storm