Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":July 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
245121 4.3 警告 Moodle - Moodle におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-4784 2012-09-25 15:35 2006-09-12 Show GitHub Exploit DB Packet Storm
245122 5 警告 hotplug cms - HotPlug CMS における管理者用パスワードを読まれる脆弱性 - CVE-2006-4772 2012-09-25 15:35 2006-09-13 Show GitHub Exploit DB Packet Storm
245123 4.3 警告 jbc - ForumJBC の haut.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-4771 2012-09-25 15:35 2006-09-13 Show GitHub Exploit DB Packet Storm
245124 7.5 危険 miniportal - MiniPort@l の menu.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4770 2012-09-25 15:35 2006-09-13 Show GitHub Exploit DB Packet Storm
245125 5 警告 ネットギア - NETGEAR DG834GT Wireless ADSL ルータにおけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-4765 2012-09-25 15:35 2006-09-13 Show GitHub Exploit DB Packet Storm
245126 7.5 危険 openbb - Open Bulletin Board (OpenBB) における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4722 2012-09-25 15:35 2006-09-12 Show GitHub Exploit DB Packet Storm
245127 7.5 危険 mcgallery - mcGalleryPRO の random2.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4720 2012-09-25 15:35 2006-09-12 Show GitHub Exploit DB Packet Storm
245128 5.1 警告 myabracadaweb - MyABraCaDaWeb における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4719 2012-09-25 15:35 2006-09-12 Show GitHub Exploit DB Packet Storm
245129 6.8 警告 korviblog - KorviBlog の livre_or.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-4718 2012-09-25 15:35 2006-09-12 Show GitHub Exploit DB Packet Storm
245130 4.3 警告 NewsGator Technologies, Inc. - NewsGator FeedDemon におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-4710 2012-09-25 15:35 2006-09-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:July 1, 2026, 4:27 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
252731 4.2 MEDIUM
Physics
ecos secure_boot_stick_firmware Incomplete Cleanup vulnerability in ECOS Secure Boot Stick (aka SBS) 5.6.5 allows an attacker to compromise authentication and encryption keys via a compromised host PC after a reset. CWE-459
 Incomplete Cleanup
CVE-2018-12332 2024-11-21 12:45 2018-06-18 Show GitHub Exploit DB Packet Storm
252732 7.4 HIGH
Network
ecos system_management_appliance Authentication Bypass by Spoofing vulnerability in ECOS System Management Appliance (aka SMA) 5.2.68 allows a man-in-the-middle attacker to compromise authentication keys and configurations via IP sp… CWE-290
 Authentication Bypass by Spoofing
CVE-2018-12331 2024-11-21 12:45 2018-06-18 Show GitHub Exploit DB Packet Storm
252733 8.1 HIGH
Network
ecos secure_boot_stick_firmware Protection Mechanism Failure in ECOS Secure Boot Stick (aka SBS) 5.6.5 allows an attacker to compromise authentication and encryption keys via compromised firmware. NVD-CWE-noinfo
CVE-2018-12330 2024-11-21 12:45 2018-06-18 Show GitHub Exploit DB Packet Storm
252734 5.9 MEDIUM
Network
ecos secure_boot_stick_firmware Protection Mechanism Failure in ECOS Secure Boot Stick (aka SBS) 5.6.5 allows a local attacker to duplicate an authentication factor via cloning. CWE-200
Information Exposure
CVE-2018-12329 2024-11-21 12:45 2018-06-18 Show GitHub Exploit DB Packet Storm
252735 7.5 HIGH
Network
1000guess 1000_guess The _addguess function of a simplelottery smart contract implementation for 1000 Guess, an Ethereum gambling game, generates a random value with publicly readable variables such as the current block … CWE-338
 Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)
CVE-2018-12454 2024-11-21 12:45 2018-06-17 Show GitHub Exploit DB Packet Storm
252736 7.5 HIGH
Network
redislabs redis Type confusion in the xgroupCommand function in t_stream.c in redis-server in Redis before 5.0 allows remote attackers to cause denial-of-service via an XGROUP command in which the key is not a strea… CWE-704
 Incorrect Type Conversion or Cast
CVE-2018-12453 2024-11-21 12:45 2018-06-17 Show GitHub Exploit DB Packet Storm
252737 7.5 HIGH
Network
tinyexr_project tinyexr tinyexr 0.9.5 has an assertion failure in ComputeChannelLayout in tinyexr.h. CWE-617
 Reachable Assertion
CVE-2018-12504 2024-11-21 12:45 2018-06-17 Show GitHub Exploit DB Packet Storm
252738 9.8 CRITICAL
Network
tinyexr_project tinyexr tinyexr 0.9.5 has a heap-based buffer over-read in LoadEXRImageFromMemory in tinyexr.h. CWE-125
Out-of-bounds Read
CVE-2018-12503 2024-11-21 12:45 2018-06-17 Show GitHub Exploit DB Packet Storm
252739 6.1 MEDIUM
Network
nagios fusion Nagios Fusion before 4.1.4 has XSS, aka TPS#13332-13335. CWE-79
Cross-site Scripting
CVE-2018-12501 2024-11-21 12:45 2018-06-16 Show GitHub Exploit DB Packet Storm
252740 9.8 CRITICAL
Network
icmsdev icms spider.admincp.php in iCMS v7.0.8 has SQL Injection via the id parameter in an app=spider&do=batch request to admincp.php. CWE-89
SQL Injection
CVE-2018-12498 2024-11-21 12:45 2018-06-16 Show GitHub Exploit DB Packet Storm