Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
199201 7.5 危険 exoscripts - ExoPHPdesk の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-5991 2012-06-26 15:54 2007-11-15 Show GitHub Exploit DB Packet Storm
199202 4.3 警告 exoscripts - ExoPHPdesk におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-5990 2012-06-26 15:54 2007-11-15 Show GitHub Exploit DB Packet Storm
199203 7.5 危険 bti-tracker - BtiTracker の blocks/shoutbox_block.php における任意ユーザとしてシャウトボックスエントリを投稿される脆弱性 CWE-255
CWE-264
CWE-287
CVE-2007-5988 2012-06-26 15:54 2007-11-14 Show GitHub Exploit DB Packet Storm
199204 6.8 警告 bti-tracker - BtiTracker の details.php における保護メカニズムを回避される脆弱性 CWE-264
CWE-287
CVE-2007-5987 2012-06-26 15:54 2007-11-14 Show GitHub Exploit DB Packet Storm
199205 7.5 危険 BTITeam - BtiTracker の include/functions.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-5986 2012-06-26 15:54 2007-11-14 Show GitHub Exploit DB Packet Storm
199206 4.3 警告 bti-tracker - BtiTracker におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-5985 2012-06-26 15:54 2007-11-14 Show GitHub Exploit DB Packet Storm
199207 4.3 警告 eggblog - eggblog の home/rss.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-5980 2012-06-26 15:54 2007-11-14 Show GitHub Exploit DB Packet Storm
199208 4.3 警告 F5 Networks - F5 Firepass 4100 SSL VPN の download_plugin.php3 におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-5979 2012-06-26 15:54 2007-11-14 Show GitHub Exploit DB Packet Storm
199209 7.5 危険 e-vendejo - E-Vendejo の articles.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-5951 2012-06-26 15:54 2007-11-13 Show GitHub Exploit DB Packet Storm
199210 4 警告 bandersnatch - Bandersnatch における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2007-5942 2012-06-26 15:54 2007-11-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 4, 2025, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
267381 - phpkit phpkit SQL injection vulnerability in include.php in PHPKIT 1.6.1 Release 2 and earlier allows remote attackers to execute arbitrary SQL commands via the contentid parameter, possibly involving content/news… NVD-CWE-Other
CVE-2006-1773 2017-07-20 10:30 2006-04-13 Show GitHub Exploit DB Packet Storm
267382 - mambo mambo SQL injection vulnerability in Mambo 4.5.3, 4.5.3h, and possibly earlier versions allows remote attackers to execute arbitrary SQL commands via (1) the $username variable in the mosGetParam function … NVD-CWE-Other
CVE-2006-1794 2017-07-20 10:30 2006-04-17 Show GitHub Exploit DB Packet Storm
267383 - mambo mambo Successful exploitation requires that "magic_quotes_gpc" is disabled. NVD-CWE-Other
CVE-2006-1794 2017-07-20 10:30 2006-04-17 Show GitHub Exploit DB Packet Storm
267384 - netbsd netbsd The kernel in NetBSD-current before September 28, 2005 allows local users to cause a denial of service (system crash) by using the SIOCGIFALIAS ioctl to gather information on a non-existent alias of … NVD-CWE-Other
CVE-2006-1797 2017-07-20 10:30 2006-04-18 Show GitHub Exploit DB Packet Storm
267385 - simplemedia simplebbs Directory traversal vulnerability in posts.php in SimpleBBS 1.0.6 through 1.1 allows remote attackers to include and execute arbitrary files via ".." sequences in the language cookie, as demonstrated… NVD-CWE-Other
CVE-2006-1800 2017-07-20 10:30 2006-04-18 Show GitHub Exploit DB Packet Storm
267386 - netbsd netbsd NetBSD 1.6, 2.0, 2.1 and 3.0 allows local users to cause a denial of service (memory exhaustion) by using the sysctl system call to lock a large buffer into physical memory. NVD-CWE-Other
CVE-2006-1814 2017-07-20 10:30 2006-04-18 Show GitHub Exploit DB Packet Storm
267387 - tritanium_scripts tritanium_bulletin_board Multiple cross-site scripting (XSS) vulnerabilities in register.php in Tritanium Bulletin Board (TBB) 1.2.3 allow remote attackers to inject arbitrary web script or HTML via the (1) newuser_realname … NVD-CWE-Other
CVE-2006-1815 2017-07-20 10:30 2006-04-18 Show GitHub Exploit DB Packet Storm
267388 - phplinks phplinks Cross-site scripting (XSS) vulnerability in index.php in phpLinks 2.1.3.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the term parameter. NVD-CWE-Other
CVE-2006-1825 2017-07-20 10:30 2006-04-18 Show GitHub Exploit DB Packet Storm
267389 - sybase easerver EAServer Manager in Sybase EAServer 5.2 and 5.3 allows remote authenticated users, possibly guests, to obtain password credentials of arbitrary users via unspecified vectors involving (1) connection … NVD-CWE-Other
CVE-2006-1829 2017-07-20 10:30 2006-04-20 Show GitHub Exploit DB Packet Storm
267390 - sun java_studio_enterprise Sun Java Studio Enterprise 8, when installed as root, creates certain files with world-writable permissions, which allows local users to execute arbitrary commands via unspecified vectors. NVD-CWE-Other
CVE-2006-1830 2017-07-20 10:30 2006-04-20 Show GitHub Exploit DB Packet Storm