Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230611 7.5 危険 VWar - VWar の extra/online.php における SQL インジェクションの脆弱性 - CVE-2006-4142 2012-12-20 18:02 2006-08-14 Show GitHub Exploit DB Packet Storm
230612 7.5 危険 VWar - VWar の news.php における SQL インジェクションの脆弱性 - CVE-2006-4141 2012-12-20 18:02 2006-08-14 Show GitHub Exploit DB Packet Storm
230613 5 警告 SAP - SAP IGS におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-4134 2012-12-20 18:02 2006-08-14 Show GitHub Exploit DB Packet Storm
230614 7.5 危険 SAP - SAP IGS におけるヒープベースのバッファオーバーフローの脆弱性 - CVE-2006-4133 2012-12-20 18:02 2006-08-14 Show GitHub Exploit DB Packet Storm
230615 6.5 警告 symantec veritas - Symantec VERITAS Backup Exec におけるヒープベースのバッファオーバーフローの脆弱性 - CVE-2006-4128 2012-12-20 18:02 2006-08-11 Show GitHub Exploit DB Packet Storm
230616 7.5 危険 simple one-file guestbook - Simple one-file guestbook における認証を回避される脆弱性 - CVE-2006-4122 2012-12-20 18:02 2006-08-14 Show GitHub Exploit DB Packet Storm
230617 5.1 警告 see-commerce - See-Commerce の owimg.php3 における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4121 2012-12-20 18:02 2006-08-14 Show GitHub Exploit DB Packet Storm
230618 5.4 警告 サン・マイクロシステムズ - Sun Solaris の squeue_drain 関数におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-4117 2012-12-20 18:02 2006-08-14 Show GitHub Exploit DB Packet Storm
230619 7.5 危険 phpmyring - Nicolas Grandjean PHPMyRing の view_com.php における SQL インジェクションの脆弱性 - CVE-2006-4114 2012-12-20 18:02 2006-08-14 Show GitHub Exploit DB Packet Storm
230620 7.5 危険 Ruby on Rails project - Ruby on Rails の "依存型分類メカニズム" における任意の Ruby コードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2006-4112 2012-12-20 18:02 2006-08-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
348331 - tor tor TLS handshakes in Tor before 0.1.1.20 generate public-private keys based on TLS context rather than the connection, which makes it easier for remote attackers to conduct brute force attacks on the en… NVD-CWE-Other
CVE-2006-3411 2008-09-6 06:07 2006-07-7 Show GitHub Exploit DB Packet Storm
348332 - tor tor Tor before 0.1.1.20 does not sufficiently obey certain firewall options, which allows remote attackers to bypass intended access restrictions for dirservers, direct connections, or proxy servers. NVD-CWE-Other
CVE-2006-3412 2008-09-6 06:07 2006-07-7 Show GitHub Exploit DB Packet Storm
348333 - tor tor The privoxy configuration file in Tor before 0.1.1.20, when run on Apple OS X, logs all data via the "logfile", which allows attackers to obtain potentially sensitive information. NVD-CWE-Other
CVE-2006-3413 2008-09-6 06:07 2006-07-7 Show GitHub Exploit DB Packet Storm
348334 - tor tor Tor before 0.1.1.20 supports server descriptors that contain hostnames instead of IP addresses, which allows remote attackers to arbitrarily group users by providing preferential address resolution. NVD-CWE-Other
CVE-2006-3414 2008-09-6 06:07 2006-07-7 Show GitHub Exploit DB Packet Storm
348335 - tor tor Tor before 0.1.1.20 uses improper logic to validate the "OR" destination, which allows remote attackers to perform a man-in-the-middle (MITM) attack via unspecified vectors. NVD-CWE-Other
CVE-2006-3415 2008-09-6 06:07 2006-07-7 Show GitHub Exploit DB Packet Storm
348336 - tor tor Tor client before 0.1.1.20 prefers entry points based on is_fast or is_stable flags, which could allow remote attackers to be preferred over nodes that are identified as more trustworthy "entry guard… NVD-CWE-Other
CVE-2006-3417 2008-09-6 06:07 2006-07-7 Show GitHub Exploit DB Packet Storm
348337 - tor tor Tor before 0.1.1.20 does not validate that a server descriptor's fingerprint line matches its identity key, which allows remote attackers to spoof the fingerprint line, which might be trusted by user… NVD-CWE-Other
CVE-2006-3418 2008-09-6 06:07 2006-07-7 Show GitHub Exploit DB Packet Storm
348338 - tor tor Tor before 0.1.1.20 uses OpenSSL pseudo-random bytes (RAND_pseudo_bytes) instead of cryptographically strong RAND_bytes, and seeds the entropy value at start-up with 160-bit chunks without reseeding,… NVD-CWE-Other
CVE-2006-3419 2008-09-6 06:07 2006-07-7 Show GitHub Exploit DB Packet Storm
348339 - phpmaillist phpmaillist PHPMailList 1.8.0 stores sensitive information under the web document root iwth insufficient access control, which allows remote attackers to obtain email addresses of subscribers, configuration info… NVD-CWE-Other
CVE-2006-3483 2008-09-6 06:07 2006-07-11 Show GitHub Exploit DB Packet Storm
348340 - virtuastore virtuastore VirtuaStore 2.0 stores sensitive files under the web root with insufficient access control, which allows remote attackers to obtain local database information by directly accessing database/virtuasto… NVD-CWE-Other
CVE-2006-3487 2008-09-6 06:07 2006-07-11 Show GitHub Exploit DB Packet Storm