Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 23, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
250441 6.5 警告 crea-book - Crea-Book の admin/configurer2.php における任意の PHP コードを実行される脆弱性 - CVE-2007-2001 2012-06-26 15:46 2007-04-12 Show GitHub Exploit DB Packet Storm
250442 6.8 警告 codebreak - CodeBreak の codebreak.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-1996 2012-06-26 15:46 2007-04-12 Show GitHub Exploit DB Packet Storm
250443 4.3 警告 Dotclear - DotClear におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-1989 2012-06-26 15:46 2007-04-12 Show GitHub Exploit DB Packet Storm
250444 7.5 危険 barnraiser - barnraiser AROUNDMe における任意の PHP コードを実行される脆弱性 - CVE-2007-1986 2012-06-26 15:46 2007-04-11 Show GitHub Exploit DB Packet Storm
250445 7.5 危険 cyboards - Cyboards PHP Lite の include/default_header.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-1983 2012-06-26 15:46 2007-04-11 Show GitHub Exploit DB Packet Storm
250446 7.5 危険 gazi okul sitesi - Gazi Okul Sitesi の fotokategori.asp における SQL インジェクションの脆弱性 - CVE-2007-1971 2012-06-26 15:46 2007-04-11 Show GitHub Exploit DB Packet Storm
250447 5 警告 exv2 - eXV2 CMS におけるセッションをハイジャックされる脆弱性 CWE-287
不適切な認証
CVE-2007-1966 2012-06-26 15:46 2007-04-11 Show GitHub Exploit DB Packet Storm
250448 4.3 警告 exv2 - eXV2 CMS におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-1965 2012-06-26 15:46 2007-04-11 Show GitHub Exploit DB Packet Storm
250449 6.8 警告 guernion sylvain portail - Guernion Sylvain Portail Web Php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-1957 2012-06-26 15:46 2007-04-10 Show GitHub Exploit DB Packet Storm
250450 7.5 危険 archivexpert - ArchiveXpert におけるディレクトリトラバーサルの脆弱性 - CVE-2007-1954 2012-06-26 15:46 2007-04-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 24, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
280251 - hp universal_configuration_management_database HP UCMDB 10.00 and 10.01 before 10.01CUP12, 10.10 and 10.11 before 10.11CUP6, and 10.2x before 10.21 allows local users to obtain sensitive information via unspecified vectors. CWE-200
Information Exposure
CVE-2015-5440 2024-11-21 11:33 2015-09-16 Show GitHub Exploit DB Packet Storm
280252 - ibs_mappro_project ibs_mappro Absolute path traversal vulnerability in lib/download.php in the IBS Mappro plugin before 1.0 for WordPress allows remote attackers to read arbitrary files via a full pathname in the file parameter. CWE-22
Path Traversal
CVE-2015-5472 2024-11-21 11:33 2015-09-16 Show GitHub Exploit DB Packet Storm
280253 - ntt-bp japan_connected-free_wi-fi Cross-site scripting (XSS) vulnerability in the NTT Broadband Platform Japan Connected-free Wi-Fi application 1.6.0 and earlier for Android and 1.0.2 and earlier for iOS allows remote attackers to in… CWE-79
Cross-site Scripting
CVE-2015-5630 2024-11-21 11:33 2015-09-12 Show GitHub Exploit DB Packet Storm
280254 - ntt-bp japan_connected-free_wi-fi The NTT Broadband Platform Japan Connected-free Wi-Fi application 1.6.0 and earlier for Android and 1.0.2 and earlier for iOS allows attackers to bypass a URL whitelist protection mechanism and obtai… CWE-264
Permissions, Privileges, and Access Controls
CVE-2015-5629 2024-11-21 11:33 2015-09-12 Show GitHub Exploit DB Packet Storm
280255 - canon pixma_mg7500_series_inkjet_printer Cross-site request forgery (CSRF) vulnerability in the Remote UI on Canon PIXMA MG7500 printers allows remote attackers to hijack the authentication of administrators. CWE-352
 Origin Validation Error
CVE-2015-5631 2024-11-21 11:33 2015-09-12 Show GitHub Exploit DB Packet Storm
280256 - opendocman opendocman Cross-site scripting (XSS) vulnerability in OpenDocMan before 1.3.4 allows remote attackers to inject arbitrary web script or HTML via the redirection parameter. CWE-79
Cross-site Scripting
CVE-2015-5625 2024-11-21 11:33 2015-09-7 Show GitHub Exploit DB Packet Storm
280257 - freebit elphonebtnv6_activex_control Buffer overflow in the ExecCall method in c2lv6.ocx in the FreeBit ELPhoneBtnV6 ActiveX control allows remote attackers to execute arbitrary code via a crafted HTML document, related to the discontin… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2015-5624 2024-11-21 11:33 2015-09-7 Show GitHub Exploit DB Packet Storm
280258 - isc
apple
bind
mac_os_x_server
buffer.c in named in ISC BIND 9.x before 9.9.7-P3 and 9.10.x before 9.10.2-P4 allows remote attackers to cause a denial of service (assertion failure and daemon exit) by creating a zone containing a … CWE-20
 Improper Input Validation 
CVE-2015-5722 2024-11-21 11:33 2015-09-5 Show GitHub Exploit DB Packet Storm
280259 - geddyjs geddy Directory traversal vulnerability in lib/app/index.js in Geddy before 13.0.8 for Node.js allows remote attackers to read arbitrary files via a ..%2f (dot dot encoded slash) in the PATH_INFO to the de… CWE-22
Path Traversal
CVE-2015-5688 2024-11-21 11:33 2015-09-5 Show GitHub Exploit DB Packet Storm
280260 - octobercms october Cross-site scripting (XSS) vulnerability in October CMS build 271 and earlier allows remote attackers to inject arbitrary web script or HTML via the caption tag of a profile image. CWE-79
Cross-site Scripting
CVE-2015-5612 2024-11-21 11:33 2015-09-5 Show GitHub Exploit DB Packet Storm