Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 12, 2025, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
189561 4.3 警告 ifnet - ifnet の WebIf の cgi-bin/webif.exe におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-5673 2012-09-25 16:59 2007-10-24 Show GitHub Exploit DB Packet Storm
189562 7.2 危険 Novell - Novell ZENworks ESM の STEngine.exe における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-5665 2012-09-25 16:59 2008-01-8 Show GitHub Exploit DB Packet Storm
189563 6.9 警告 IBM - IBM DB2 Universal Database の db2dasrrm における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2007-5664 2012-09-25 16:59 2008-04-16 Show GitHub Exploit DB Packet Storm
189564 9.3 危険 macrovision - Macrovision InstallShield InstallScript OCI におけるライブラリコードをダウンロードされる脆弱性 CWE-94
コード・インジェクション
CVE-2007-5661 2012-09-25 16:59 2008-04-3 Show GitHub Exploit DB Packet Storm
189565 7.2 危険 Novell - Windows 用の Novell Client における権限を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2007-5667 2012-09-25 16:59 2007-11-13 Show GitHub Exploit DB Packet Storm
189566 9.3 危険 macrovision - MacroVision FLEXnet Connect などの製品の isusweb.dll におけるコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2007-5660 2012-09-25 16:59 2007-11-2 Show GitHub Exploit DB Packet Storm
189567 5 警告 LiteSpeed Technologies - LiteSpeed Web Server における任意の MIME タイプの使用を誘発される脆弱性 CWE-200
情報漏えい
CVE-2007-5654 2012-09-25 16:59 2007-10-23 Show GitHub Exploit DB Packet Storm
189568 9.3 危険 The PHP Group - PHP の COM 関数における制限を回避される脆弱性 CWE-78
CWE-DesignError
CVE-2007-5653 2012-09-25 16:59 2007-10-23 Show GitHub Exploit DB Packet Storm
189569 7.8 危険 IBM - IBM DB2 UDB におけるメモリ破損を誘発する脆弱性 CWE-119
バッファエラー
CVE-2007-5652 2012-09-25 16:59 2007-10-10 Show GitHub Exploit DB Packet Storm
189570 6.8 警告 Simple Machines
MySQL AB
- SMF の Sources/Search.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-5646 2012-09-25 16:59 2007-09-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 12, 2025, 4:59 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
268121 - mystats mystats SQL injection vulnerability in mystats.php in MyStats 1.0.8 and earlier allows remote attackers to execute arbitrary SQL commands via the details parameter. CWE-89
SQL Injection
CVE-2006-6402 2016-11-19 02:24 2006-12-10 Show GitHub Exploit DB Packet Storm
268122 - mystats mystats Multiple cross-site scripting (XSS) vulnerabilities in mystats.php in MyStats 1.0.8 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) connexion, (2) by, and (3) de… CWE-79
Cross-site Scripting
CVE-2006-6401 2016-11-19 02:23 2006-12-10 Show GitHub Exploit DB Packet Storm
268123 - dotnetindex active_news_manager Cross-site scripting (XSS) vulnerability in activenews_search.asp in ActiveNews Manager allows remote attackers to inject arbitrary web script or HTML via the query parameter. CWE-79
Cross-site Scripting
CVE-2006-6096 2016-11-19 02:21 2006-11-25 Show GitHub Exploit DB Packet Storm
268124 - grisoft avg_antivirus Unspecified vulnerability in Grisoft AVG Anti-Virus before 7.1.407 has unknown impact and remote attack vectors related to "Integer Issues" and parsing of .EXE files. CWE-189
Numeric Errors
CVE-2006-5940 2016-11-19 02:15 2006-11-16 Show GitHub Exploit DB Packet Storm
268125 - grisoft avg_antivirus Multiple integer overflows in Grisoft AVG Anti-Virus before 7.1.407 allow remote attackers to execute arbitrary code via crafted (1) CAB or (2) RAR archives that trigger a heap-based buffer overflow.… CWE-190
 Integer Overflow or Wraparound
CVE-2006-5937 2016-11-19 02:13 2006-11-16 Show GitHub Exploit DB Packet Storm
268126 - oracle
ibm
application_server
websphere_portal
Unspecified vulnerability in the Outside In Technology component in Oracle Application Server 8.1.9 allows local users to affect confidentiality, integrity, and availability, related to HTML. NVD-CWE-noinfo
CVE-2009-1009 2016-11-19 00:22 2009-04-15 Show GitHub Exploit DB Packet Storm
268127 - microsoft internet_explorer The Microsoft Active Movie ActiveX Control in Internet Explorer 5 does not restrict which file types can be downloaded, which allows an attacker to download any type of file to a user's system by enc… CWE-20
 Improper Input Validation 
CVE-2000-0400 2016-11-8 03:25 2000-05-13 Show GitHub Exploit DB Packet Storm
268128 - openbsd openbsd Buffer overflow in kern/uipc_mbuf2.c in OpenBSD 3.9 and 4.0 allows remote attackers to execute arbitrary code via fragmented IPv6 packets due to "incorrect mbuf handling for ICMP6 packets." NOTE: th… NVD-CWE-Other
CVE-2007-1365 2016-10-18 12:43 2007-03-11 Show GitHub Exploit DB Packet Storm
268129 - horde kronolith Directory traversal vulnerability in lib/FBView.php in Horde Kronolith H3 before 2.0.7 and 2.1.x before 2.1.4 allows remote attackers to include arbitrary files and execute PHP code via a .. (dot dot… NVD-CWE-Other
CVE-2006-6175 2016-10-18 12:42 2006-12-1 Show GitHub Exploit DB Packet Storm
268130 - karl_dahlke edbrowse Stack-based buffer overflow in http.c in Karl Dahlke Edbrowse (aka Command line editor browser) 3.1.3 allows remote attackers to execute arbitrary code by operating an FTP server that sends directory… NVD-CWE-Other
CVE-2006-6909 2016-10-18 12:42 2006-12-31 Show GitHub Exploit DB Packet Storm