Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 3, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229721 4.3 警告 phpmydirectory - phpMyDirectory の alpha.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-4755 2012-12-20 18:02 2006-09-13 Show GitHub Exploit DB Packet Storm
229722 3.6 注意 scarybear - ScaryBear PocketExpense Pro における認証を無効にされる脆弱性 - CVE-2006-4745 2012-12-20 18:02 2006-09-13 Show GitHub Exploit DB Packet Storm
229723 5 警告 WordPress.org - WordPress における重要な情報を取得される脆弱性 - CVE-2006-4743 2012-12-20 18:02 2006-09-13 Show GitHub Exploit DB Packet Storm
229724 7.5 危険 Tiki Software Community Association - Tikiwiki の tiki-g-admin_processes.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2006-4734 2012-12-20 18:02 2006-09-13 Show GitHub Exploit DB Packet Storm
229725 7.5 危険 sips - Haakon Nilsen simple などの sipssys/code/box.inc.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4733 2012-12-20 18:02 2006-09-13 Show GitHub Exploit DB Packet Storm
229726 4.3 警告 tumbleweed - Tumbleweed EMF Administration Module の emfadmin/statusView.do におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2006-4727 2012-12-20 18:02 2006-12-31 Show GitHub Exploit DB Packet Storm
229727 5.1 警告 村栄情報システム - RaidenHTTPD の raidenhttpd-admin/slice/check.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4723 2012-12-20 18:02 2006-09-12 Show GitHub Exploit DB Packet Storm
229728 7.5 危険 spoonlabs - SpoonLabs Vivvo Article Management CMS の pdf_version.php における SQL インジェクションの脆弱性 - CVE-2006-4715 2012-12-20 18:02 2006-09-11 Show GitHub Exploit DB Packet Storm
229729 5.1 警告 spoonlabs - SpoonLabs Vivvo Article Management CMS の index.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4714 2012-12-20 18:02 2006-09-11 Show GitHub Exploit DB Packet Storm
229730 7.5 危険 psywerks - PSYWERKS PUMA の config.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4713 2012-12-20 18:02 2006-09-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 3, 2026, 4:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
731 7.2 HIGH
Network
dlink di-8100_firmware A vulnerability has been found in D-Link DI-8100 16.07.26A1. Affected by this issue is the function file_exten_asp of the file file_exten.asp of the component File Extension Handler. The manipulation… CWE-119
CWE-120
Incorrect Access of Indexable Resource ('Range Error') 
Classic Buffer Overflow
CVE-2026-7247 2026-04-30 22:09 2026-04-28 Show GitHub Exploit DB Packet Storm
732 6.6 MEDIUM
Network
- - OpenStack Ironic before 35.0.1 allows ipmitool execution in a non-default configuration that has a console interface. CWE-829
 Inclusion of Functionality from Untrusted Control Sphere
CVE-2026-42510 2026-04-30 13:16 2026-04-28 Show GitHub Exploit DB Packet Storm
733 - - - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. - CVE-2026-6221 2026-04-30 08:16 2026-04-30 Show GitHub Exploit DB Packet Storm
734 8.8 HIGH
Network
tenda f456_firmware A vulnerability has been found in Tenda F456 1.0.0.5. Affected by this vulnerability is the function fromSafeClientFilter of the file /goform/SafeClientFilter. Such manipulation of the argument menuf… CWE-119
CWE-120
Incorrect Access of Indexable Resource ('Range Error') 
Classic Buffer Overflow
CVE-2026-7033 2026-04-30 07:33 2026-04-26 Show GitHub Exploit DB Packet Storm
735 8.8 HIGH
Network
tenda f456_firmware A security flaw has been discovered in Tenda F456 1.0.0.5. This affects the function frmL7ProtForm of the file /goform/L7Prot of the component httpd. Performing a manipulation of the argument page re… CWE-119
CWE-120
Incorrect Access of Indexable Resource ('Range Error') 
Classic Buffer Overflow
CVE-2026-7053 2026-04-30 07:29 2026-04-27 Show GitHub Exploit DB Packet Storm
736 8.8 HIGH
Network
tenda f456_firmware A weakness has been identified in Tenda F456 1.0.0.5. This vulnerability affects the function fromPptpUserAdd of the file /goform/PPTPDClient of the component httpd. Executing a manipulation of the a… CWE-119
CWE-120
Incorrect Access of Indexable Resource ('Range Error') 
Classic Buffer Overflow
CVE-2026-7054 2026-04-30 07:28 2026-04-27 Show GitHub Exploit DB Packet Storm
737 8.8 HIGH
Network
tenda f456_firmware A security vulnerability has been detected in Tenda F456 1.0.0.5. This issue affects the function fromVirtualSer of the file /goform/VirtualSer of the component httpd. The manipulation of the argumen… CWE-119
CWE-120
Incorrect Access of Indexable Resource ('Range Error') 
Classic Buffer Overflow
CVE-2026-7055 2026-04-30 07:24 2026-04-27 Show GitHub Exploit DB Packet Storm
738 8.8 HIGH
Network
tenda f456_firmware A vulnerability was detected in Tenda F456 1.0.0.5. Impacted is the function fromSafeUrlFilter of the file /goform/SafeUrlFilter of the component httpd. The manipulation of the argument page results … CWE-119
CWE-120
Incorrect Access of Indexable Resource ('Range Error') 
Classic Buffer Overflow
CVE-2026-7056 2026-04-30 07:18 2026-04-27 Show GitHub Exploit DB Packet Storm
739 8.8 HIGH
Network
tenda f456_firmware A flaw has been found in Tenda F456 1.0.0.5. The affected element is an unknown function of the file /goform/setcfm of the component httpd. This manipulation of the argument funcname/funcpara1 causes… CWE-119
CWE-120
Incorrect Access of Indexable Resource ('Range Error') 
Classic Buffer Overflow
CVE-2026-7057 2026-04-30 07:18 2026-04-27 Show GitHub Exploit DB Packet Storm
740 7.8 HIGH
Local
- - Allok AVI to DVD SVCD VCD Converter 4.0.1217 contains a structured exception handling (SEH) based buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying a ma… CWE-120
Classic Buffer Overflow
CVE-2018-25302 2026-04-30 06:22 2026-04-30 Show GitHub Exploit DB Packet Storm