Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
193161 7.5 危険 mgb - MGB OpenSource Gustbook の email.php における SQL インジェクションの脆弱性 - CVE-2007-0354 2012-09-25 16:47 2007-01-18 Show GitHub Exploit DB Packet Storm
193162 6.8 警告 mywebland - myBloggie の index.php などにおけるクロスサイトスクリプティングの脆弱性 - CVE-2007-0353 2012-09-25 16:47 2007-01-18 Show GitHub Exploit DB Packet Storm
193163 9.3 危険 マイクロソフト - Microsoft Help Workshop におけるスタックベースのバッファオーバーフローの脆弱性 - CVE-2007-0352 2012-09-25 16:47 2007-01-18 Show GitHub Exploit DB Packet Storm
193164 5 警告 nicecoder - nicecoder.com INDEXU の upgrade.php におけるディレクトリトラバーサルの脆弱性 - CVE-2007-0349 2012-09-25 16:47 2007-01-18 Show GitHub Exploit DB Packet Storm
193165 9.3 危険 ROXIO
intervideo
interactual technologies
- InterActual Player などの IASystemInfo.dll ActiveX コントロールにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-0348 2012-09-25 16:47 2007-03-21 Show GitHub Exploit DB Packet Storm
193166 5 警告 OpenBSD - OpenBSD におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-0343 2012-09-25 16:47 2007-01-16 Show GitHub Exploit DB Packet Storm
193167 7.5 危険 KGB - KGB の sesskglogadmin.php におけるディレクトリトラバーサルの脆弱性 - CVE-2007-0337 2012-09-25 16:47 2007-01-17 Show GitHub Exploit DB Packet Storm
193168 6.8 警告 jax scripts - Jax Petition Book におけるディレクトリトラバーサルの脆弱性 - CVE-2007-0335 2012-09-25 16:47 2007-01-17 Show GitHub Exploit DB Packet Storm
193169 7.5 危険 ingate - Ingate Firewall などの SIP モジュールにおける認証メカニズム上で再生攻撃を実行される脆弱性 - CVE-2007-0334 2012-09-25 16:47 2007-01-17 Show GitHub Exploit DB Packet Storm
193170 7.5 危険 Ipswitch, Inc. - Ipswitch WS_FTP 2007 Professional の wsftpurl.exe におけるバッファオーバーフローの脆弱性 - CVE-2007-0330 2012-09-25 16:47 2007-01-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 26, 2025, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
266581 - ibm hardware_management_console Multiple unspecified vulnerabilities in IBM Hardware Management Console (HMC) 3 R3.7 allow attackers to gain privileges via "some HMC commands." NVD-CWE-noinfo
CWE-264
Permissions, Privileges, and Access Controls
CVE-2007-6294 2017-08-8 10:29 2007-12-11 Show GitHub Exploit DB Packet Storm
266582 - ibm lotus_sametime Cross-site scripting (XSS) vulnerability in the WebRunMenuFrame page in the online meeting center template in IBM Lotus Sametime before 8.0 allows remote attackers to inject arbitrary web script or H… CWE-79
Cross-site Scripting
CVE-2007-6295 2017-08-8 10:29 2007-12-11 Show GitHub Exploit DB Packet Storm
266583 - drupal shoutbox Cross-site scripting (XSS) vulnerability in the Shoutbox module for Drupal 5.x before Shoutbox 5.x-1.1 allows remote authenticated users to inject arbitrary web script or HTML via Shoutbox block mess… CWE-79
Cross-site Scripting
CVE-2007-6298 2017-08-8 10:29 2007-12-11 Show GitHub Exploit DB Packet Storm
266584 - drupal drupal Multiple SQL injection vulnerabilities in Drupal and vbDrupal 4.7.x before 4.7.9 and 5.x before 5.4 allow remote attackers to execute arbitrary SQL commands via modules that pass input to the taxonom… CWE-89
CWE-20
SQL Injection
 Improper Input Validation 
CVE-2007-6299 2017-08-8 10:29 2007-12-11 Show GitHub Exploit DB Packet Storm
266585 - clam_anti-virus clamav Off-by-one error in ClamAV before 0.92 allows remote attackers to execute arbitrary code via a crafted MS-ZIP compressed CAB file. CWE-189
CWE-119
Numeric Errors
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2007-6336 2017-08-8 10:29 2007-12-20 Show GitHub Exploit DB Packet Storm
266586 - akamai_technologies download_manager The Akamai Download Manager (aka DLM or dlmanager) ActiveX control (DownloadManagerV2.ocx) before 2.2.3.5 allows remote attackers to force the download and execution of arbitrary code via unspecified… CWE-94
Code Injection
CVE-2007-6339 2017-08-8 10:29 2008-05-2 Show GitHub Exploit DB Packet Storm
266587 - aurora aurora_framework SQL injection vulnerability in aurora framework before 20071208 allows remote attackers to execute arbitrary SQL commands via unspecified vectors, possibly the value parameter to the pack_var functio… CWE-89
SQL Injection
CVE-2007-6345 2017-08-8 10:29 2007-12-14 Show GitHub Exploit DB Packet Storm
266588 - rainboard rainboard Cross-site scripting (XSS) vulnerability in Rainboard before 2.10 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2007-6346 2017-08-8 10:29 2007-12-14 Show GitHub Exploit DB Packet Storm
266589 - apple mac_os_x The cs_validate_page function in bsd/kern/ubc_subr.c in the xnu kernel 1228.0 and earlier in Apple Mac OS X 10.5.1 allows local users to cause a denial of service (failed assertion and system crash) … CWE-189
Numeric Errors
CVE-2007-6359 2017-08-8 10:29 2007-12-15 Show GitHub Exploit DB Packet Storm
266590 - sun extended_system_control_facility_xcp_1040 Unspecified vulnerability in the Sun eXtended System Control Facility (XSCF) Control Package (XCP) firmware before 1050 on SPARC Enterprise M4000, M5000, M8000, and M9000 servers allows remote attack… NVD-CWE-noinfo
CVE-2007-6360 2017-08-8 10:29 2007-12-15 Show GitHub Exploit DB Packet Storm