Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
193381 7.5 危険 open newsletter - Open Newsletter の settings.php などのスクリプトにおける不正な管理者の操作を実行される脆弱性 - CVE-2006-6785 2012-09-25 15:36 2006-12-27 Show GitHub Exploit DB Packet Storm
193382 7.5 危険 netbula - Netbula Anyboard における SQL インジェクションの脆弱性 - CVE-2006-6784 2012-09-25 15:36 2006-12-27 Show GitHub Exploit DB Packet Storm
193383 7.5 危険 logahead - logahead UNU における任意のファイルをアップロードされる脆弱性 CWE-287
不適切な認証
CVE-2006-6783 2012-09-25 15:36 2006-12-27 Show GitHub Exploit DB Packet Storm
193384 5 警告 hlstats - HLstats における重要な情報を取得される脆弱性 - CVE-2006-6781 2012-09-25 15:36 2006-12-27 Show GitHub Exploit DB Packet Storm
193385 9.4 危険 oftpd - oftpd におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-6767 2012-09-25 15:36 2007-01-16 Show GitHub Exploit DB Packet Storm
193386 7.5 危険 hlstats - HLstats のログインフォームにおける SQL インジェクションの脆弱性 - CVE-2006-6780 2012-09-25 15:36 2006-12-27 Show GitHub Exploit DB Packet Storm
193387 6.8 警告 vBulletin Solutions, Inc. - Jelsoft vBulletin におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-6779 2012-09-25 15:36 2006-12-27 Show GitHub Exploit DB Packet Storm
193388 6.8 警告 irokez - Irokez CMS における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6771 2012-09-25 15:36 2006-12-27 Show GitHub Exploit DB Packet Storm
193389 6.8 警告 jinzora - Jinzora Media Jukebox における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6770 2012-09-25 15:36 2006-12-27 Show GitHub Exploit DB Packet Storm
193390 6.8 警告 php live - PHP Live! におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-6769 2012-09-25 15:36 2006-12-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 23, 2025, 4:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
266751 - nongnu mail_notification Mail Notification 4.0, when WITH_SSL is set to 0 at compile time, uses unencrypted connections for accounts configured with SSL/TLS, which allows remote attackers to obtain sensitive information by s… NVD-CWE-Other
CVE-2007-3209 2017-07-29 10:32 2007-06-15 Show GitHub Exploit DB Packet Storm
266752 - cellosoft cellosoft_tokens_object Stack-based buffer overflow in nptoken.mox in the Cellosoft Tokens Object 2.0.0.6 extension for Vitalize! allows remote attackers to execute arbitrary code via a long string argument to the RemoveChr… NVD-CWE-Other
CVE-2007-3210 2017-07-29 10:32 2007-06-15 Show GitHub Exploit DB Packet Storm
266753 - domain_technologie_control domain_technologie_control Cross-site scripting (XSS) vulnerability in 404.php in Domain Technologie Control (DTC) before 0.25.9 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO (REQUEST_URI). N… NVD-CWE-Other
CVE-2007-3211 2017-07-29 10:32 2007-06-15 Show GitHub Exploit DB Packet Storm
266754 - beehive_forum beehive_forum Multiple cross-site scripting (XSS) vulnerabilities in links.php in Beehive Forum 0.7.1 allow remote attackers to inject arbitrary web script or HTML via the (1) viewmode, (2) fid, and (3) sort_dir p… NVD-CWE-Other
CVE-2007-3212 2017-07-29 10:32 2007-06-15 Show GitHub Exploit DB Packet Storm
266755 - sporum_forum sporum_forum Multiple cross-site scripting (XSS) vulnerabilities in comments.cgi in Sporum Forum 3.0.9 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) view and (2) mode param… NVD-CWE-Other
CVE-2007-3213 2017-07-29 10:32 2007-06-15 Show GitHub Exploit DB Packet Storm
266756 - php_live php_live Cross-site scripting (XSS) vulnerability in request.php in PHP Live! 3.2.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the pagex parameter. NVD-CWE-Other
CVE-2007-3218 2017-07-29 10:32 2007-06-15 Show GitHub Exploit DB Packet Storm
266757 - invision_power_services invision_power_board Unspecified vulnerability in sources/action_public/xmlout.php in Invision Power Board (IPB or IP.Board) 2.2.0 through 2.2.2 allows remote attackers to modify another user's profile data, such as an A… NVD-CWE-Other
CVE-2007-3219 2017-07-29 10:32 2007-06-15 Show GitHub Exploit DB Packet Storm
266758 - sun java_system_directory_server
one_directory_server
Unspecified vulnerability in Sun ONE/Java System Directory Server (slapd) 6.0, and 5.x before 5.2 Patch 5, allows remote attackers to determine the existence of attributes of an entry via unspecified… NVD-CWE-Other
CVE-2007-3224 2017-07-29 10:32 2007-06-15 Show GitHub Exploit DB Packet Storm
266759 - sun java_system_directory_server Unspecified vulnerability in Sun Java System Directory Server (slapd) 6.0, and 5.2 with Patch 3 or 4, allows remote attackers to modify certain data via unknown vectors. NVD-CWE-Other
CVE-2007-3225 2017-07-29 10:32 2007-06-15 Show GitHub Exploit DB Packet Storm
266760 - dotproject dotproject Cross-site scripting (XSS) vulnerability in dotProject before 2.1 RC2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2006-2… NVD-CWE-Other
CVE-2007-3226 2017-07-29 10:32 2007-06-15 Show GitHub Exploit DB Packet Storm