Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 2, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229491 7.5 危険 techno dreams - Techno Dreams Announcement の MainAnnounce2.asp における SQL インジェクションの脆弱性 - CVE-2006-5641 2012-12-20 18:02 2006-10-31 Show GitHub Exploit DB Packet Storm
229492 7.5 危険 techno dreams - Techno Dreams Guest Book の guestbookview.asp における SQL インジェクションの脆弱性 - CVE-2006-5640 2012-12-20 18:02 2006-10-31 Show GitHub Exploit DB Packet Storm
229493 7.5 危険 phpmyring - PHPMyRing の cherche.php における SQL インジェクションの脆弱性 - CVE-2006-5638 2012-12-20 18:02 2006-10-31 Show GitHub Exploit DB Packet Storm
229494 5.1 警告 sws - SWS の common.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5636 2012-12-20 18:02 2006-10-31 Show GitHub Exploit DB Packet Storm
229495 7.5 危険 web wiz forums - Web Wiz Forums の forum/search.asp における SQL インジェクションの脆弱性 - CVE-2006-5635 2012-12-20 18:02 2006-10-31 Show GitHub Exploit DB Packet Storm
229496 6.8 警告 phpprofiles - phpProfiles における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2006-5634 2012-12-20 18:02 2006-10-31 Show GitHub Exploit DB Packet Storm
229497 7.5 危険 unisor cms - UNISOR CMS の login.asp における SQL インジェクションの脆弱性 - CVE-2006-5628 2012-12-20 18:02 2006-10-31 Show GitHub Exploit DB Packet Storm
229498 7.5 危険 qnecms - QnECMS における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5627 2012-12-20 18:02 2006-10-31 Show GitHub Exploit DB Packet Storm
229499 4.3 警告 phpfaber - phpFaber CMS の cms_images/js/htmlarea/htmlarea.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5626 2012-12-20 18:02 2006-10-31 Show GitHub Exploit DB Packet Storm
229500 7.5 危険 thepeak - Thepeak File Upload Manager の index.php におけるディレクトリトラバーサルの脆弱性 - CVE-2006-5617 2012-12-20 18:02 2006-10-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 2, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
198821 5.5 MEDIUM
Local
libtiff
netapp
fedoraproject
redhat
libtiff
ontap_select_deploy_administration_utility
fedora
enterprise_linux
In LibTIFF, there is a memory malloc failure in tif_pixarlog.c. A crafted TIFF document can lead to an abort, resulting in a remote denial of service attack. - CVE-2020-35522 2024-11-21 14:27 2021-03-10 Show GitHub Exploit DB Packet Storm
198822 5.5 MEDIUM
Local
libtiff
redhat
fedoraproject
netapp
libtiff
enterprise_linux
fedora
ontap_select_deploy_administration_utility
A flaw was found in libtiff. Due to a memory allocation failure in tif_read.c, a crafted TIFF file can lead to an abort, resulting in denial of service. - CVE-2020-35521 2024-11-21 14:27 2021-03-10 Show GitHub Exploit DB Packet Storm
198823 4.7 MEDIUM
Local
apache oozie There is a race condition in OozieSharelibCLI in Apache Oozie before version 5.2.1 which allows a malicious attacker to replace the files in Oozie's sharelib during it's creation. CWE-362
Race Condition
CVE-2020-35451 2024-11-21 14:27 2021-03-10 Show GitHub Exploit DB Packet Storm
198824 6.1 MEDIUM
Network
zohocorp manageengine_admanager_plus Zoho ManageEngine ADManager Plus before 7066 allows XSS. CWE-79
Cross-site Scripting
CVE-2020-35594 2024-11-21 14:27 2021-03-6 Show GitHub Exploit DB Packet Storm
198825 9.8 CRITICAL
Network
cgal
debian
computational_geometry_algorithms_library
debian_linux
A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1 in Nef_S2/SNC_io_parser.h SNC_io_parser::read_sface() sfh->volume() OOB read. A specially cra… - CVE-2020-35636 2024-11-21 14:27 2021-03-5 Show GitHub Exploit DB Packet Storm
198826 9.8 CRITICAL
Network
cgal
fedoraproject
debian
computational_geometry_algorithms_library
fedora
debian_linux
A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1. An oob read vulnerability exists in Nef_S2/SNC_io_parser.h SNC_io_parser::read_sloop() slh->… - CVE-2020-35628 2024-11-21 14:27 2021-03-5 Show GitHub Exploit DB Packet Storm
198827 6.5 MEDIUM
Network
courier_management_system_project courier_management_system Courier Management System 1.0 1.0 is affected by SQL Injection via 'MULTIPART street '. CWE-89
SQL Injection
CVE-2020-35329 2024-11-21 14:27 2021-03-5 Show GitHub Exploit DB Packet Storm
198828 5.4 MEDIUM
Network
courier_management_system_project courier_management_system Courier Management System 1.0 - 'First Name' Stored XSS CWE-79
Cross-site Scripting
CVE-2020-35328 2024-11-21 14:27 2021-03-5 Show GitHub Exploit DB Packet Storm
198829 6.5 MEDIUM
Network
courier_management_system_project courier_management_system SQL injection vulnerability was discovered in Courier Management System 1.0, which can be exploited via the ref_no (POST) parameter to admin_class.php CWE-89
SQL Injection
CVE-2020-35327 2024-11-21 14:27 2021-03-5 Show GitHub Exploit DB Packet Storm
198830 7.5 HIGH
Network
thinkadmin thinkadmin ThinkAdmin v6 has default administrator credentials, which allows attackers to gain unrestricted administratior dashboard access. CWE-798
 Use of Hard-coded Credentials
CVE-2020-35296 2024-11-21 14:27 2021-03-4 Show GitHub Exploit DB Packet Storm