Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 7, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
245921 4.6 警告 afuse - afuse の expand_template 関数における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-2232 2012-06-26 16:02 2008-07-17 Show GitHub Exploit DB Packet Storm
245922 9.3 危険 cyberfolio - Cyberfolio における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-2228 2012-06-26 16:02 2008-05-14 Show GitHub Exploit DB Packet Storm
245923 7.5 危険 gamecms - gameCMS Lite の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2225 2012-06-26 16:02 2008-05-14 Show GitHub Exploit DB Packet Storm
245924 7.5 危険 buyscripts - vShare YouTube Clone の group_posts.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2223 2012-06-26 16:02 2008-05-14 Show GitHub Exploit DB Packet Storm
245925 7.5 危険 eqdkp - EQdkp の login.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2222 2012-06-26 16:02 2008-05-14 Show GitHub Exploit DB Packet Storm
245926 4.3 警告 c-news.fr - C-News.fr C-News の install.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2219 2012-06-26 16:02 2008-05-14 Show GitHub Exploit DB Packet Storm
245927 10 危険 castle rock - Castle Rock Computing SNMPc の Network Manager におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-2214 2012-06-26 16:02 2008-05-14 Show GitHub Exploit DB Packet Storm
245928 6.5 警告 deluxebb - DeluxeBB の admincp.php における任意の PHP コードを logs/cp.php に挿入される脆弱性 CWE-94
コード・インジェクション
CVE-2008-2195 2012-06-26 16:02 2008-05-14 Show GitHub Exploit DB Packet Storm
245929 7.5 危険 deluxebb - DeluxeBB の forums.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2194 2012-06-26 16:02 2008-05-14 Show GitHub Exploit DB Packet Storm
245930 6.8 警告 anserv - AnServ Auction XL の viewfaqs.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2189 2012-06-26 16:02 2008-05-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 7, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
351301 - salims_softhouse jaf_cms Just another flat file (JAF) CMS before 3.0 Final allows remote attackers to obtain sensitive information via (1) an * (asterisk) in the id parameter, (2) a blank id parameter, or (3) an * (asterisk)… NVD-CWE-Other
CVE-2005-2053 2016-10-18 12:24 2005-06-28 Show GitHub Exploit DB Packet Storm
351302 - ubbcentral ubb.threads Multiple cross-site scripting (XSS) vulnerabilities in Infopop UBB.Threads before 6.5.2 Beta allow remote attackers to inject arbitrary web script or HTML via the (1) Searchpage parameter to dosearch… NVD-CWE-Other
CVE-2005-2057 2016-10-18 12:24 2005-06-29 Show GitHub Exploit DB Packet Storm
351303 - ubbcentral ubb.threads Multiple SQL injection vulnerabilities in Infopop UBB.Threads before 6.5.2 Beta allow remote attackers to execute arbitrary SQL commands via the Number parameter to (1) download.php, (2) modifypost.p… NVD-CWE-Other
CVE-2005-2058 2016-10-18 12:24 2005-06-29 Show GitHub Exploit DB Packet Storm
351304 - ubbcentral ubb.threads Multiple HTTP Response Splitting vulnerabilities in (1) toggleshow.php, (2) togglecats.php, and (3) showprofile.php in Infopop UBB.Threads before 6.5.2 Beta allow remote attackers to spoof web conten… NVD-CWE-Other
CVE-2005-2060 2016-10-18 12:24 2005-06-29 Show GitHub Exploit DB Packet Storm
351305 - ubbcentral ubb.threads Infopop UBB.Threads before 6.5.2 Beta allows remote attackers to include arbitrary files via the language parameter in a cookie followed by a null (%00) byte. NVD-CWE-Other
CVE-2005-2061 2016-10-18 12:24 2005-06-29 Show GitHub Exploit DB Packet Storm
351306 - active_web_softwares activebuyandsell Multiple cross-site scripting (XSS) vulnerabilities in ActiveBuyAndSell 6.2 allow remote attackers to inject arbitrary web script or HTML via the (1) Title parameter to sendpassword.asp or (2) Keywor… NVD-CWE-Other
CVE-2005-2063 2016-10-18 12:24 2005-06-29 Show GitHub Exploit DB Packet Storm
351307 - asp-nuke asp-nuke Multiple cross-site scripting vulnerabilities in ASP Nuke 0.80 allow remote attackers to inject arbitrary web script or HTML via the (1) email parameter to forgot_password.asp, or the (2) FirstName, … NVD-CWE-Other
CVE-2005-2064 2016-10-18 12:24 2005-06-29 Show GitHub Exploit DB Packet Storm
351308 - asp-nuke asp-nuke HTTP response splitting vulnerability in language_select.asp in ASP Nuke 0.80 allows remote attackers to spoof web content and poison web caches via CRLF ("%0d%0a") sequences in the LangCode paramete… NVD-CWE-Other
CVE-2005-2065 2016-10-18 12:24 2005-06-29 Show GitHub Exploit DB Packet Storm
351309 - asp-nuke asp-nuke SQL injection vulnerability in comment_post.asp in ASP Nuke 0.80 allows remote attackers to execute arbitrary SQL statements via the TaskID parameter. NVD-CWE-Other
CVE-2005-2066 2016-10-18 12:24 2005-06-29 Show GitHub Exploit DB Packet Storm
351310 - asp-nuke asp-nuke SQL injection vulnerability in article.asp in unknown versions of aspnuke allows remote attackers to execute arbitrary SQL commands via the articleid parameter. NVD-CWE-Other
CVE-2005-2067 2016-10-18 12:24 2005-06-29 Show GitHub Exploit DB Packet Storm