Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230441 2.6 注意 top xl - Top XL におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-3769 2012-12-20 18:02 2006-07-24 Show GitHub Exploit DB Packet Storm
230442 6.4 警告 intervations - FileCOPA FTP Server の filecpnt.exe における整数アンダーフローの脆弱性 - CVE-2006-3768 2012-12-20 18:02 2006-07-28 Show GitHub Exploit DB Packet Storm
230443 6.8 警告 darrens 5-dollar script archive - Darren's $5 Script Archive osDate の showprofile.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-3767 2012-12-20 18:02 2006-07-21 Show GitHub Exploit DB Packet Storm
230444 5 警告 darrens 5-dollar script archive - Darren's $5 Script Archive osDate における本人のレートを格上げできる脆弱性 - CVE-2006-3766 2012-12-20 18:02 2006-07-21 Show GitHub Exploit DB Packet Storm
230445 4.3 警告 huttenlocher webdesign - Huttenlocher Webdesign hwdeGUEST におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-3765 2012-12-20 18:02 2006-07-21 Show GitHub Exploit DB Packet Storm
230446 5 警告 till gerken - Till Gerken phpPolls における新規の世論調査を作成される脆弱性 - CVE-2006-3764 2012-12-20 18:02 2006-07-21 Show GitHub Exploit DB Packet Storm
230447 7.5 危険 dieselscripts - Diesel Joke Site の category.php における SQL インジェクションの脆弱性 - CVE-2006-3763 2012-12-20 18:02 2006-07-21 Show GitHub Exploit DB Packet Storm
230448 7.5 危険 touch control - Touch Control ActiveX コントロールにおける任意のファイルを実行される脆弱性 - CVE-2006-3762 2012-12-20 18:02 2006-07-21 Show GitHub Exploit DB Packet Storm
230449 4.3 警告 mybulletinboard - MyBB の inc/functions_post.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2006-3761 2012-12-20 18:02 2006-06-27 Show GitHub Exploit DB Packet Storm
230450 7.5 危険 mybulletinboard - MyBB における SQL インジェクションの脆弱性 - CVE-2006-3760 2012-12-20 18:02 2006-06-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
314271 - phpbb_group phpbb viewtopic.php in phpBB 2.0.12 and earlier allows remote attackers to obtain sensitive information via a highlight parameter containing invalid regular expression syntax, which reveals the path in a P… NVD-CWE-Other
CVE-2005-0603 2024-02-14 10:17 2005-02-28 Show GitHub Exploit DB Packet Storm
314272 - gallery_project
gentoo
gallery
linux
Cross-site scripting (XSS) vulnerability in Gallery 1.4.4-pl3 and earlier allows remote attackers to execute arbitrary web script or HTML via "specially formed URLs," possibly via the include paramet… NVD-CWE-Other
CVE-2004-1106 2024-02-14 10:17 2005-01-10 Show GitHub Exploit DB Packet Storm
314273 - ethereal_group ethereal Ethereal 0.9.0 through 0.10.7 allows remote attackers to cause a denial of service (application hang) and possibly fill available disk space via an invalid RTP timestamp. NVD-CWE-Other
CVE-2004-1140 2024-02-14 10:17 2004-12-31 Show GitHub Exploit DB Packet Storm
314274 - ethereal_group ethereal The HTTP dissector in Ethereal 0.10.1 through 0.10.7 allows remote attackers to cause a denial of service (application crash) via a certain packet that causes the dissector to access previously-freed… NVD-CWE-Other
CVE-2004-1141 2024-02-14 10:17 2004-12-31 Show GitHub Exploit DB Packet Storm
314275 - psychostats psychostats Cross-site scripting (XSS) vulnerability in login.php in PsychoStats 2.2.4 Beta and earlier allows remote attackers to inject arbitrary web script or HTML via the login parameter. CWE-79
Cross-site Scripting
CVE-2004-1417 2024-02-14 10:17 2004-12-31 Show GitHub Exploit DB Packet Storm
314276 - argosoft ftp_server ArGoSoft FTP before 1.4.2.1 generates an error message if the user name does not exist instead of prompting for a password, which allows remote attackers to determine valid usernames. CWE-203
 Information Exposure Through Discrepancy
CVE-2004-1428 2024-02-14 10:17 2004-12-31 Show GitHub Exploit DB Packet Storm
314277 - ethereal_group ethereal Unknown vulnerability in Ethereal 0.8.13 to 0.10.2 allows attackers to cause a denial of service (segmentation fault) via a malformed color filter file. NVD-CWE-Other
CVE-2004-1761 2024-02-14 10:17 2004-12-31 Show GitHub Exploit DB Packet Storm
314278 - alan_ward a-cart SQL injection vulnerability in category.asp in A-CART Pro and A-CART 2.0 allows remote attackers to gain privileges via the catcode parameter. NVD-CWE-Other
CVE-2004-1873 2024-02-14 10:17 2004-12-31 Show GitHub Exploit DB Packet Storm
314279 - oscommerce oscommerce Directory traversal vulnerability in file_manager.php in osCommerce 2.2 allows remote attackers to view arbitrary files via a .. (dot dot) in the filename argument. NVD-CWE-Other
CVE-2004-2021 2024-02-14 10:17 2004-12-31 Show GitHub Exploit DB Packet Storm
314280 - allwebscripts mysqlguest Cross-site scripting (XSS) vulnerability in AWSguest.php in AllWebScripts MySQLGuest allows remote attackers to inject arbitrary HTML and PHP code via the (1) Name, (2) Email, (3) Homepage or (4) Com… NVD-CWE-Other
CVE-2004-2138 2024-02-14 10:17 2004-12-31 Show GitHub Exploit DB Packet Storm