Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
193861 7.5 危険 Netwin Ltd - WEB//NEWS の parse/parser.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5100 2012-09-25 15:36 2006-10-3 Show GitHub Exploit DB Packet Storm
193862 7.5 危険 paul schudar - TagIt! Tagboard の Tagmin Control Center における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2006-5093 2012-09-25 15:36 2006-09-29 Show GitHub Exploit DB Packet Storm
193863 6.8 警告 phoenix evolution - PECMS におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5090 2012-09-25 15:36 2006-09-29 Show GitHub Exploit DB Packet Storm
193864 7.5 危険 jl webworks - QB の acc.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5081 2012-09-25 15:36 2006-09-28 Show GitHub Exploit DB Packet Storm
193865 7.5 危険 php arena - Matt Humphrey paBugs の class.mysql.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5079 2012-09-25 15:36 2006-09-28 Show GitHub Exploit DB Packet Storm
193866 5.1 警告 minerva - Chris Smith Minerva における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5077 2012-09-25 15:36 2006-09-28 Show GitHub Exploit DB Packet Storm
193867 5.1 警告 php invoice - PHP Invoice の home.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5074 2012-09-25 15:36 2006-09-28 Show GitHub Exploit DB Packet Storm
193868 6.2 警告 Mono Project - Novell Mono の System.CodeDom.Compiler クラスにおける任意のコードを実行される脆弱性 - CVE-2006-5072 2012-09-25 15:36 2006-10-10 Show GitHub Exploit DB Packet Storm
193869 7.5 危険 pblang - PBL の templates/pb/language/lang_nl.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5062 2012-09-25 15:36 2006-09-27 Show GitHub Exploit DB Packet Storm
193870 5.1 警告 The Jamroom Network - Jamroom の login.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5060 2012-09-25 15:36 2006-09-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 25, 2025, 4:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
911 7.2 HIGH
Network
phpgurukul land_record_system A SQL Injection vulnerability was found in /admin/aboutus.php in PHPGurukul Land Record System v1.0, which allows remote attackers to execute arbitrary code via the pagetitle POST request parameter. CWE-89
SQL Injection
CVE-2025-25352 2025-02-15 04:43 2025-02-14 Show GitHub Exploit DB Packet Storm
912 7.2 HIGH
Network
phpgurukul land_record_system A SQL Injection was found in /admin/admin-profile.php in PHPGurukul Land Record System v1.0, which allows remote attackers to execute arbitrary code via the contactnumber POST request parameter. CWE-89
SQL Injection
CVE-2025-25354 2025-02-15 04:39 2025-02-14 Show GitHub Exploit DB Packet Storm
913 7.2 HIGH
Network
phpgurukul land_record_system A SQL Injection vulnerability was found in /admin/contactus.php in PHPGurukul Land Record System v1.0, which allows remote attackers to execute arbitrary code via the email POST request parameter. CWE-89
SQL Injection
CVE-2025-25357 2025-02-15 04:38 2025-02-14 Show GitHub Exploit DB Packet Storm
914 7.2 HIGH
Network
phpgurukul land_record_system A SQL Injection vulnerability was found in /admin/bwdates-reports-details.php in PHPGurukul Land Record System v1.0, which allows remote attackers to execute arbitrary code via the " todate" POST req… CWE-89
SQL Injection
CVE-2025-25356 2025-02-15 04:38 2025-02-14 Show GitHub Exploit DB Packet Storm
915 9.8 CRITICAL
Network
phpgurukul daily_expense_tracker_system PHPGurukul Daily Expense Tracker System v1.1 is vulnerable to SQL Injection in /dets/add-expense.php via the dateexpense parameter. CWE-89
SQL Injection
CVE-2025-25351 2025-02-15 04:35 2025-02-13 Show GitHub Exploit DB Packet Storm
916 9.8 CRITICAL
Network
phpgurukul daily_expense_tracker_system PHPGurukul Daily Expense Tracker System v1.1 is vulnerable to SQL Injection in /dets/add-expense.php via the costitem parameter. CWE-89
SQL Injection
CVE-2025-25349 2025-02-15 04:34 2025-02-13 Show GitHub Exploit DB Packet Storm
917 - - - A SQL Injection vulnerability was found in /shopping/track-orders.php in PHPGurukul Online Shopping Portal v2.1, which allows remote attackers to execute arbitrary code via orderid POST request param… - CVE-2025-26156 2025-02-15 04:15 2025-02-15 Show GitHub Exploit DB Packet Storm
918 - - - SQL Injection vulnerability in FeMiner wms wms 1.0 allows a remote attacker to obtain sensitive information via the parameter "itemid." - CVE-2025-25993 2025-02-15 04:15 2025-02-15 Show GitHub Exploit DB Packet Storm
919 - - - SQL Injection vulnerability in FeMiner wms 1.0 allows a remote attacker to obtain sensitive information via the inquire_inout_item.php component. - CVE-2025-25992 2025-02-15 04:15 2025-02-15 Show GitHub Exploit DB Packet Storm
920 - - - Cross Site Scripting vulnerability in hooskcms v.1.8 allows a remote attacker to cause a denial of service via the custom Link title parameter and the Title parameter. - CVE-2025-25988 2025-02-15 04:15 2025-02-15 Show GitHub Exploit DB Packet Storm