Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230881 6.8 警告 unsanity - APE における権限を取得される脆弱性 - CVE-2007-0162 2012-12-20 18:19 2007-01-9 Show GitHub Exploit DB Packet Storm
230882 7.5 危険 webulas - Webulas におけるパスワードを含むデータベースをダウンロードされる脆弱性 - CVE-2007-0154 2012-12-20 18:19 2007-01-9 Show GitHub Exploit DB Packet Storm
230883 7.5 危険 shopstorenow - ShopStoreNow E-commerce Shopping Cart の orange.asp における SQL インジェクションの脆弱性 - CVE-2007-0142 2012-12-20 18:19 2007-01-9 Show GitHub Exploit DB Packet Storm
230884 6.8 警告 yet another link directory - Yet Another Link Directory の yald.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-0141 2012-12-20 18:19 2007-01-9 Show GitHub Exploit DB Packet Storm
230885 6.8 警告 uber uploader - Uber Uploader における任意の PHP スクリプトを実行される脆弱性 - CVE-2007-0123 2012-12-20 18:19 2007-01-8 Show GitHub Exploit DB Packet Storm
230886 5 警告 サン・マイクロシステムズ - Sun Java System Content Delivery Server における "コンテンツの詳細" を読み込まれ重要な情報を取得される脆弱性 - CVE-2007-0114 2012-12-20 18:19 2007-01-5 Show GitHub Exploit DB Packet Storm
230887 6.8 警告 resco - Windows Mobile 上で稼動しているモバイルデバイスで使用されている PocketPC 用の Resco Photo Viewer におけるバッファオーバーフローの脆弱性 - CVE-2007-0111 2012-12-20 18:19 2007-01-8 Show GitHub Exploit DB Packet Storm
230888 5 警告 WordPress.org - WordPress の wp-login.php における重要な情報を取得される脆弱性 - CVE-2007-0109 2012-12-20 18:19 2007-01-8 Show GitHub Exploit DB Packet Storm
230889 6.8 警告 WordPress.org - WordPress における SQL インジェクション保護スキームを回避される脆弱性 - CVE-2007-0107 2012-12-20 18:19 2007-01-5 Show GitHub Exploit DB Packet Storm
230890 6.8 警告 WordPress.org - WordPress の CSRF 保護スキームにおけるクロスサイトスクリプティングの脆弱性 - CVE-2007-0106 2012-12-20 18:19 2007-01-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
315491 - vmware player EMC VMware Player allows user-assisted attackers to cause a denial of service (unrecoverable application failure) via a long value of the ide1:0.fileName parameter in the .vmx file of a virtual machi… NVD-CWE-Other
CVE-2006-3547 2024-08-8 04:15 2006-07-13 Show GitHub Exploit DB Packet Storm
315492 - tor tor Tor before 0.1.1.20 kills the circuit when it receives an unrecognized relay command, which causes network circuits to be disbanded. NOTE: while this item is listed under the "Security fixes" sectio… NVD-CWE-Other
CVE-2006-3416 2024-08-8 04:15 2006-07-7 Show GitHub Exploit DB Packet Storm
315493 - jelsoft vbulletin Cross-site scripting (XSS) vulnerability in member.php in vBulletin 3.5.x allows remote attackers to inject arbitrary web script or HTML via the u parameter. NOTE: the vendor has disputed this repor… NVD-CWE-Other
CVE-2006-3253 2024-08-8 04:15 2006-06-28 Show GitHub Exploit DB Packet Storm
315494 - microsoft windows_xp The Task scheduler (at.exe) on Microsoft Windows XP spawns each scheduled process with SYSTEM permissions, which allows local users to gain privileges. NOTE: this issue has been disputed by third pa… NVD-CWE-Other
CVE-2006-3209 2024-08-8 04:15 2006-06-24 Show GitHub Exploit DB Packet Storm
315495 - mysql
oracle
mysql Off-by-one buffer overflow in the Instance_options::complete_initialization function in instance_options.cc in the Instance Manager in MySQL before 5.0.23 and 5.1 before 5.1.12 might allow local user… CWE-189
Numeric Errors
CVE-2006-3486 2024-08-8 04:15 2006-07-11 Show GitHub Exploit DB Packet Storm
315496 - mozilla firefox Cross-domain vulnerability in Mozilla Firefox allows remote attackers to access restricted information from other domains via an object tag with a data parameter that references a link on the attacke… NVD-CWE-Other
CVE-2006-3352 2024-08-8 04:15 2006-07-6 Show GitHub Exploit DB Packet Storm
315497 - phorum phorum SQL injection vulnerability in search.php in Phorum 5.1.14 and earlier allows remote attackers to execute arbitrary SQL commands via the page parameter. NOTE: the vendor has disputed this report, st… NVD-CWE-Other
CVE-2006-3249 2024-08-8 04:15 2006-06-27 Show GitHub Exploit DB Packet Storm
315498 - nucleus_group nucleus_cms Multiple PHP remote file inclusion vulnerabilities in Nucleus 3.23 allow remote attackers to execute arbitrary PHP code via a URL the DIR_LIBS parameter in (1) path/action.php, and to files in path/n… CWE-94
Code Injection
CVE-2006-3136 2024-08-8 04:15 2006-06-23 Show GitHub Exploit DB Packet Storm
315499 - iglooweb doublespeak PHP remote file inclusion vulnerability in DoubleSpeak 0.1, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via the config[private] parameter in multiple files… NVD-CWE-Other
CVE-2006-3069 2024-08-8 04:15 2006-06-19 Show GitHub Exploit DB Packet Storm
315500 - phorum phorum PHP remote file inclusion vulnerability in common.php in PHORUM 5.1.13 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the PHORUM[http_path] parameter. NOTE: this issu… NVD-CWE-Other
CVE-2006-3053 2024-08-8 04:15 2006-06-16 Show GitHub Exploit DB Packet Storm