Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 5, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229871 5.1 警告 wim fleischhauer - Wim Fleischhauer docpile:we における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4075 2012-12-20 18:02 2006-08-10 Show GitHub Exploit DB Packet Storm
229872 7.5 危険 phpcc - Fabian Hainz phpCC における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4073 2012-12-20 18:02 2006-08-10 Show GitHub Exploit DB Packet Storm
229873 5 警告 pswd.js - pswd.js スクリプトにおけるオフラインの総当り攻撃を実行される脆弱性 CWE-255
証明書・パスワード管理
CVE-2006-4068 2012-12-20 18:02 2006-08-9 Show GitHub Exploit DB Packet Storm
229874 7.5 危険 yenerturk - YenerTurk Haber Script の default.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2006-4064 2012-12-20 18:02 2006-08-9 Show GitHub Exploit DB Packet Storm
229875 7.5 危険 web-scripts - Visual Events Calendar の calendar.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4060 2012-12-20 18:02 2006-08-9 Show GitHub Exploit DB Packet Storm
229876 7.5 危険 usolved - USOLVED NEWSolved Lite における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4059 2012-12-20 18:02 2006-08-9 Show GitHub Exploit DB Packet Storm
229877 6.8 警告 simplog - Simpliciti Locked Browser におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-4058 2012-12-20 18:02 2006-08-9 Show GitHub Exploit DB Packet Storm
229878 7.5 危険 the address book reloaded
the address book
- katzlbt Address Book などの認証プロセスにおける SQL インジェクションの脆弱性 - CVE-2006-4056 2012-12-20 18:02 2006-08-9 Show GitHub Exploit DB Packet Storm
229879 7.5 危険 tsep - Olaf Noehring TSEP における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4055 2012-12-20 18:02 2006-08-9 Show GitHub Exploit DB Packet Storm
229880 7.5 危険 turnkey web tools - Turnkey Web Tools PHP Simple Shop における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4052 2012-12-20 18:02 2006-08-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 5, 2026, 4:51 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
313831 - phppgadmin phppgadmin Directory traversal vulnerability in phpPgAdmin 2.2.1 and earlier versions allows remote attackers to execute arbitrary code via a .. (dot dot) in an argument to the sql.php script. NVD-CWE-Other
CVE-2001-0479 2024-02-14 10:17 2001-06-27 Show GitHub Exploit DB Packet Storm
313832 - pccs-linux mysqldatabase_admin_tool PCCS MySQLDatabase Admin Tool Manager 1.2.4 and earlier installs the file dbconnect.inc within the web root, which allows remote attackers to obtain sensitive information such as the administrative p… NVD-CWE-Other
CVE-2000-0707 2024-02-14 10:17 2000-10-20 Show GitHub Exploit DB Packet Storm
313833 - inter7 vpopmail_vchkpw vchkpw program in vpopmail before version 4.8 does not properly cleanse an untrusted format string used in a call to syslog, which allows remote attackers to cause a denial of service via a USER or P… NVD-CWE-Other
CVE-2000-0583 2024-02-14 10:17 2000-06-30 Show GitHub Exploit DB Packet Storm
313834 - matt_wright formmail Matt Wright's FormMail CGI script allows remote attackers to obtain environmental variables via the env_report parameter. NVD-CWE-Other
CVE-2000-0411 2024-02-14 10:17 2000-05-10 Show GitHub Exploit DB Packet Storm
313835 - gossamer_threads dbman The Gossamer Threads DBMan db.cgi CGI script allows remote attackers to view environmental variables and setup information by referencing a non-existing database in the db parameter. NVD-CWE-Other
CVE-2000-0381 2024-02-14 10:17 2000-05-5 Show GitHub Exploit DB Packet Storm
313836 - bray_systems linux_trustees The Linux trustees kernel patch allows attackers to cause a denial of service by accessing a file or directory with a long name. NVD-CWE-Other
CVE-2000-0274 2024-02-14 10:17 2000-04-10 Show GitHub Exploit DB Packet Storm
313837 - vqsoft vqserver vqSoft vqServer program allows remote attackers to read arbitrary files via a /........../ in the URL, a variation of a .. (dot dot) attack. NVD-CWE-Other
CVE-2000-0240 2024-02-14 10:17 2000-03-21 Show GitHub Exploit DB Packet Storm
313838 - infopop ultimate_bulletin_board Infopop Ultimate Bulletin Board (UBB) allows remote attackers to execute commands via shell metacharacters in the topic hidden field. NVD-CWE-Other
CVE-2000-0141 2024-02-14 10:17 2000-02-11 Show GitHub Exploit DB Packet Storm
313839 - infopop ultimate_bulletin_board Ultimate Bulletin Board stores data files in the cgi-bin directory, allowing remote attackers to view the data if an error occurs when the HTTP server attempts to execute the file. NVD-CWE-Other
CVE-1999-0854 2024-02-14 10:17 1999-11-1 Show GitHub Exploit DB Packet Storm
313840 - ethereal_group ethereal Ethereal allows local users to overwrite arbitrary files via a symlink attack on the packet capture file. NVD-CWE-Other
CVE-1999-1227 2024-02-14 10:17 1999-07-30 Show GitHub Exploit DB Packet Storm