Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 20, 2025, 6:03 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
192101 10 危険 noah spurrier - PHP 用の Upload Tool におけるファイルをアップロードされる脆弱性 - CVE-2006-7134 2012-09-25 15:36 2007-03-5 Show GitHub Exploit DB Packet Storm
192102 5 警告 php upload tool - Upload Tool の upload/bin/download.php におけるディレクトリトラバーサルの脆弱性 - CVE-2006-7133 2012-09-25 15:36 2007-03-5 Show GitHub Exploit DB Packet Storm
192103 4.3 警告 オラクル - Oracle APEX におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-7158 2012-09-25 15:36 2006-10-17 Show GitHub Exploit DB Packet Storm
192104 6 警告 オラクル - WWV_FLOW_UTILITIES パッケージの wwv_flow_utilities.gen_popup_list における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2006-7138 2012-09-25 15:36 2006-10-17 Show GitHub Exploit DB Packet Storm
192105 10 危険 jinzora - Jinzora の extras/mt.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-7131 2012-09-25 15:36 2007-03-5 Show GitHub Exploit DB Packet Storm
192106 7.5 危険 jinzora - Jinzora における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2006-7130 2012-09-25 15:36 2007-03-5 Show GitHub Exploit DB Packet Storm
192107 2.1 注意 インターネット セキュリティ システムズ - ISS BlackICE PC Protection におけるスキーム保護を回避される脆弱性 - CVE-2006-7129 2012-09-25 15:36 2007-03-5 Show GitHub Exploit DB Packet Storm
192108 6.8 警告 Joomla! - Joomla BSQ Sitestats における SQL インジェクションの脆弱性 - CVE-2006-7126 2012-09-25 15:36 2007-03-5 Show GitHub Exploit DB Packet Storm
192109 6.8 警告 Joomla! - Joomla BSQ Sitestats におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-7125 2012-09-25 15:36 2007-03-5 Show GitHub Exploit DB Packet Storm
192110 7.5 危険 Joomla! - BSQ Sitestats の external/rssfeeds.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-7124 2012-09-25 15:36 2007-03-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 20, 2025, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
269871 - willings webcam
webcam_lite
Willings WebCam and WebCam Lite 2.8 and earlier stores the password in memory in plaintext, which allows local users to gain sensitive information. NVD-CWE-Other
CVE-2005-1617 2016-10-18 12:21 2005-05-16 Show GitHub Exploit DB Packet Storm
269872 - yahoo messenger The YMSGR URL handler in Yahoo! Messenger 5.x through 6.0 allows remote attackers to cause a denial of service (disconnect) via a room login or a room join request packet with a third : (colon) and a… NVD-CWE-Other
CVE-2005-1618 2016-10-18 12:21 2005-05-16 Show GitHub Exploit DB Packet Storm
269873 - soren_boysen skull-splitter_guestbook Cross-site scripting (XSS) vulnerability in Skull-Splitter Guestbook 1.0, 2.0 and 2.2 allows remote attackers to inject arbitrary web script or HTML via the (1) title or (2) content of a message. NVD-CWE-Other
CVE-2005-1620 2016-10-18 12:21 2005-05-16 Show GitHub Exploit DB Packet Storm
269874 - postnuke_software_foundation postnuke Directory traversal vulnerability in the pnModFunc function in pnMod.php for PostNuke 0.750 through 0.760rc4 allows remote attackers to read arbitrary files via a .. (dot dot) in the func parameter t… NVD-CWE-Other
CVE-2005-1621 2016-10-18 12:21 2005-05-16 Show GitHub Exploit DB Packet Storm
269875 - metalinks metacart_e-shop Cross-site scripting (XSS) vulnerability in productsByCategory.asp in MetaCart e-Shop allows remote attackers to inject arbitrary web script or HTML via the strCatalog_NAME parameter. NVD-CWE-Other
CVE-2005-1622 2016-10-18 12:21 2005-05-16 Show GitHub Exploit DB Packet Storm
269876 - jgs-xa jgs-portal Multiple SQL injection vulnerabilities in JGS-XA JGS-Portal 3.0.2 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) anzahl_beitraege parameter to jgs_portal.php, 2) yea… NVD-CWE-Other
CVE-2005-1633 2016-10-18 12:21 2005-05-17 Show GitHub Exploit DB Packet Storm
269877 - jgs-xa jgs-portal Multiple cross-site scripting (XSS) vulnerabilities in JGS-XA JGS-Portal 3.0.2 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) anzahl_beitraege parameter to jgs_… NVD-CWE-Other
CVE-2005-1634 2016-10-18 12:21 2005-05-17 Show GitHub Exploit DB Packet Storm
269878 - jgs-xa jgs-portal JGS-XA JGS-Portal 3.0.2 and earlier allows remote attackers to obtain the full server path via direct requests to (1) jgs_portal_ref.php, (2) jgs_portal_land.php, (3) jgs_portal_log.php, (4) jgs_port… NVD-CWE-Other
CVE-2005-1635 2016-10-18 12:21 2005-05-17 Show GitHub Exploit DB Packet Storm
269879 - yahoo messenger The Logfile feature in Yahoo! Messenger 5.x through 6.0 can be activated by a YMSGR: URL and writes all output to a single ypager.log file, even when there are multiple users, and does not properly w… NVD-CWE-Other
CVE-2005-1671 2016-10-18 12:21 2005-05-19 Show GitHub Exploit DB Packet Storm
269880 - timo_rossi picasm Stack-based buffer overflow in the error directive in picasm 1.12b and earlier allows attackers to execute arbitrary code via a long error message. NVD-CWE-Other
CVE-2005-1679 2016-10-18 12:21 2005-05-20 Show GitHub Exploit DB Packet Storm