Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 18, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
250971 7.5 危険 fusionphp - Fusion News における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4240 2012-06-26 15:37 2006-08-21 Show GitHub Exploit DB Packet Storm
250972 7.5 危険 dotProject - dotProject の classes/query.class.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4234 2012-06-26 15:37 2006-08-18 Show GitHub Exploit DB Packet Storm
250973 7.5 危険 david kent norman - David Kent Norman Thatware の config.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4213 2012-06-26 15:37 2006-08-17 Show GitHub Exploit DB Packet Storm
250974 2.6 注意 andreas kansok - Andreas Kansok phPay の nu_mail.inc.php におけるサーバをオープンメール中継に使用される脆弱性 - CVE-2006-4210 2012-06-26 15:37 2006-08-17 Show GitHub Exploit DB Packet Storm
250975 7.5 危険 bob jewell - Bob Jewell Discloser における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4207 2012-06-26 15:37 2006-08-17 Show GitHub Exploit DB Packet Storm
250976 4.3 警告 aspplayground.net - ASPPlayground.NET Forum Advanced Edition Unicode の calendar.asp におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-4206 2012-06-26 15:37 2006-08-17 Show GitHub Exploit DB Packet Storm
250977 5.1 警告 BoonEx - Dolphin における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4189 2012-06-26 15:37 2006-08-16 Show GitHub Exploit DB Packet Storm
250978 7.5 危険 ClamAV - ClamAV における整数オーバーフローの脆弱性 - CVE-2006-4182 2012-06-26 15:37 2006-10-16 Show GitHub Exploit DB Packet Storm
250979 10 危険 GNU Project - GNU Radius の radiusd におけるフォーマットストリングの脆弱性 - CVE-2006-4181 2012-06-26 15:37 2006-11-27 Show GitHub Exploit DB Packet Storm
250980 4.9 警告 FreeBSD - FreeBSD の i386_set_ldt 呼び出しにおける整数符号化エラーの脆弱性 - CVE-2006-4178 2012-06-26 15:37 2006-09-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 18, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
247251 8.1 HIGH
Network
amazon amazon_web_services_freertos
freertos
Amazon Web Services (AWS) FreeRTOS through 1.3.1, FreeRTOS up to V10.0.1 (with FreeRTOS+TCP), and WITTENSTEIN WHIS Connect middleware TCP/IP component allow remote attackers to leak information or ex… NVD-CWE-noinfo
CVE-2018-16526 2024-11-21 12:52 2018-12-7 Show GitHub Exploit DB Packet Storm
247252 8.1 HIGH
Network
amazon amazon_web_services_freertos
freertos
Amazon Web Services (AWS) FreeRTOS through 1.3.1, FreeRTOS up to V10.0.1 (with FreeRTOS+TCP), and WITTENSTEIN WHIS Connect middleware TCP/IP component allow remote attackers to execute arbitrary code… NVD-CWE-noinfo
CVE-2018-16525 2024-11-21 12:52 2018-12-7 Show GitHub Exploit DB Packet Storm
247253 5.9 MEDIUM
Network
amazon amazon_web_services_freertos
freertos
Amazon Web Services (AWS) FreeRTOS through 1.3.1, FreeRTOS up to V10.0.1 (with FreeRTOS+TCP), and WITTENSTEIN WHIS Connect middleware TCP/IP component allow information disclosure during parsing of T… CWE-200
Information Exposure
CVE-2018-16524 2024-11-21 12:52 2018-12-7 Show GitHub Exploit DB Packet Storm
247254 7.4 HIGH
Network
amazon amazon_web_services_freertos
freertos
Amazon Web Services (AWS) FreeRTOS through 1.3.1, FreeRTOS up to V10.0.1 (with FreeRTOS+TCP), and WITTENSTEIN WHIS Connect middleware TCP/IP component allow division by zero in prvCheckOptions. CWE-369
 Divide By Zero
CVE-2018-16523 2024-11-21 12:52 2018-12-7 Show GitHub Exploit DB Packet Storm
247255 8.1 HIGH
Network
amazon amazon_web_services_freertos Amazon Web Services (AWS) FreeRTOS through 1.3.1 has an uninitialized pointer free in SOCKETS_SetSockOpt. CWE-824
 Access of Uninitialized Pointer
CVE-2018-16522 2024-11-21 12:52 2018-12-7 Show GitHub Exploit DB Packet Storm
247256 5.3 MEDIUM
Network
simplehttpserver_project simplehttpserver A Path Traversal in simplehttpserver versions <=0.2.1 allows to list any file in another folder of web root. CWE-22
Path Traversal
CVE-2018-16478 2024-11-21 12:52 2018-12-4 Show GitHub Exploit DB Packet Storm
247257 6.5 MEDIUM
Network
rubyonrails rails A bypass vulnerability in Active Storage >= 5.2.0 for Google Cloud Storage and Disk services allow an attacker to modify the `content-disposition` and `content-type` parameters which can be used in w… NVD-CWE-noinfo
CVE-2018-16477 2024-11-21 12:52 2018-12-1 Show GitHub Exploit DB Packet Storm
247258 7.5 HIGH
Network
rubyonrails
redhat
rails
cloudforms
A Broken Access Control vulnerability in Active Job versions >= 4.2.0 allows an attacker to craft user input which can cause Active Job to deserialize it using GlobalId and give them access to inform… CWE-502
 Deserialization of Untrusted Data
CVE-2018-16476 2024-11-21 12:52 2018-12-1 Show GitHub Exploit DB Packet Storm
247259 6.5 MEDIUM
Network
lenovo xclarity_integrator LXCI for VMware versions prior to 5.5 and LXCI for Microsoft System Center versions prior to 3.5, allow an authenticated user to write to any system file due to insufficient sanitization during the u… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2018-16097 2024-11-21 12:52 2018-11-30 Show GitHub Exploit DB Packet Storm
247260 6.5 MEDIUM
Network
lenovo xclarity_integrator In versions prior to 5.5, LXCI for VMware allows an authenticated user to write to any system file due to insufficient sanitization during the upload of a backup file. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2018-16093 2024-11-21 12:52 2018-11-30 Show GitHub Exploit DB Packet Storm