Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 25, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225621 7.5 危険 David Clark - phpVMS 用 Pop Up News モジュールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-3524 2013-05-14 15:36 2013-05-10 Show GitHub Exploit DB Packet Storm
225622 7.5 危険 greg jennings - This HTML Is Simple における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-3523 2013-05-14 15:35 2013-04-1 Show GitHub Exploit DB Packet Storm
225623 6.5 警告 vBulletin Solutions, Inc. - vBulletin の index.php/ajax/api/reputation/vote における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-3522 2013-05-14 15:34 2013-05-10 Show GitHub Exploit DB Packet Storm
225624 4.6 警告 シスコシステムズ - Cisco Aggregation Services Router Route Processor 上で稼働する Cisco IOS におけるサービス運用妨害 (DoS) 状態にされる脆弱性 CWE-399
リソース管理の問題
CVE-2013-1136 2013-05-14 14:52 2013-05-13 Show GitHub Exploit DB Packet Storm
225625 10 危険 phpvms.net - phpVMS の admin/action.php における脆弱性 CWE-noinfo
情報不足
CVE-2012-6552 2013-05-14 12:00 2012-08-24 Show GitHub Exploit DB Packet Storm
225626 9.3 危険 サムスン - MarkAny ContentSAFER MASetupCaller の ActiveX コントロールに脆弱性 CWE-94
コード・インジェクション
CVE-2012-2990 2013-05-13 17:59 2012-08-24 Show GitHub Exploit DB Packet Storm
225627 4.3 警告 WPPA Opa Jaap - WordPress 用 WP Photo Album Plus プラグインの wp-admin/admin.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-3254 2013-05-13 17:32 2013-05-6 Show GitHub Exploit DB Packet Storm
225628 6.8 警告 NetWebLogic - WordPress 用 Login With Ajax プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-2707 2013-05-13 17:31 2013-05-6 Show GitHub Exploit DB Packet Storm
225629 5 警告 シスコシステムズ - Cisco Unified Presence のサーバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2013-1242 2013-05-13 17:30 2013-05-7 Show GitHub Exploit DB Packet Storm
225630 9.3 危険 DELL EMC (旧 EMC Corporation) - EMC AlphaStor の Library Control Program におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-0946 2013-05-13 16:14 2013-05-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 25, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
347091 - banex banex Multiple SQL injection vulnerabilities in Banex PHP MySQL Banner Exchange 2.21 allow remote attackers to execute arbitrary SQL commands via the (1) site_name parameter to (a) signup.php, and the (2) … NVD-CWE-Other
CVE-2006-3963 2016-10-18 12:40 2006-08-2 Show GitHub Exploit DB Packet Storm
347092 - banex banex PHP remote file inclusion vulnerability in members.php in Banex PHP MySQL Banner Exchange 2.21 allows remote attackers to execute arbitrary PHP code via a URL in the cfg_root parameter. NVD-CWE-Other
CVE-2006-3964 2016-10-18 12:40 2006-08-2 Show GitHub Exploit DB Packet Storm
347093 - banex banex Banex PHP MySQL Banner Exchange 2.21 stores lib.inc under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information such as database userna… NVD-CWE-Other
CVE-2006-3965 2016-10-18 12:40 2006-08-2 Show GitHub Exploit DB Packet Storm
347094 - linux linux_kernel The __group_complete_signal function in the RCU signal handling (signal.c) in Linux kernel 2.6.16, and possibly other versions, has unknown impact and attack vectors related to improper use of BUG_ON. NVD-CWE-Other
CVE-2006-1523 2016-10-18 12:39 2006-04-13 Show GitHub Exploit DB Packet Storm
347095 - alt-n mdaemon Buffer overflow in Alt-N MDaemon, possibly 9.0.1 and earlier, allows remote attackers to execute arbitrary code via a long A0001 argument that begins with a '"' (double quote). NVD-CWE-Other
CVE-2006-2646 2016-10-18 12:39 2006-05-30 Show GitHub Exploit DB Packet Storm
347096 - open-xchange open-xchange Cross-site scripting (XSS) vulnerability in webmail in Open-Xchange 0.8.1-6 and earlier, with "Inline HTML" enabled, allows remote attackers to inject arbitrary web script or HTML via e-mail attachme… NVD-CWE-Other
CVE-2006-0091 2016-10-18 12:38 2006-01-5 Show GitHub Exploit DB Packet Storm
347097 - motorola motorola_cable_modem Motorola SB5100E Cable Modem allows remote attackers to cause a denial of service (device crash) via an IP packet with the same source and destination IPs and ports, and with the SYN flag set (aka LA… NVD-CWE-Other
CVE-2005-4215 2016-10-18 12:38 2005-12-14 Show GitHub Exploit DB Packet Storm
347098 - mailenable mailenable_enterprise
mailenable_professional
Buffer overflow in MailEnable Professional 1.71 and earlier, and Enterprise 1.1 and earlier, allows remote authenticated users to execute arbitrary code via a long IMAP EXAMINE command. NVD-CWE-Other
CVE-2005-4402 2016-10-18 12:38 2005-12-20 Show GitHub Exploit DB Packet Storm
347099 - extensis netpublish_server Directory traversal vulnerability in server.np in NetPublish Server 7 allows remote attackers to read arbitrary files via "../" sequences in the template parameter. NVD-CWE-Other
CVE-2005-4510 2016-10-18 12:38 2005-12-23 Show GitHub Exploit DB Packet Storm
347100 - oracle application_server_discussion_forum_portlet Cross-site scripting (XSS) vulnerability in Oracle Application Server (OracleAS) Discussion Forum Portlet allows remote attackers to inject arbitrary web script or HTML via the (1) RowKeyValue parame… NVD-CWE-Other
CVE-2005-4549 2016-10-18 12:38 2005-12-28 Show GitHub Exploit DB Packet Storm