Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230951 5 警告 threesquared.net - threesquared.net Php download の download/index.php および download.php におけるディレクトリトラバーサルの脆弱性 - CVE-2006-4651 2012-12-20 18:02 2006-09-8 Show GitHub Exploit DB Packet Storm
230952 7.5 危険 sponge news - Sponge News の news.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4647 2012-12-20 18:02 2006-09-8 Show GitHub Exploit DB Packet Storm
230953 7.5 危険 phpfullannu - phpFullAnnu の modules/home.module.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4644 2012-12-20 18:02 2006-09-8 Show GitHub Exploit DB Packet Storm
230954 7.5 危険 uni-vert - Uni-Vert PhpLeague の consult/joueurs.php における SQL インジェクションの脆弱性 - CVE-2006-4643 2012-12-20 18:02 2006-09-8 Show GitHub Exploit DB Packet Storm
230955 7.5 危険 szewo - SZEWO PhpCommander におけるディレクトリトラバーサルの脆弱性 - CVE-2006-4636 2012-12-20 18:02 2006-09-8 Show GitHub Exploit DB Packet Storm
230956 6.5 警告 Squiz - MySource Classic における任意の PHP コードを挿入される脆弱性 - CVE-2006-4635 2012-12-20 18:02 2006-09-8 Show GitHub Exploit DB Packet Storm
230957 4.3 警告 vbzoom - VBZooM の index.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-4634 2012-12-20 18:02 2006-09-8 Show GitHub Exploit DB Packet Storm
230958 5 警告 Softbb.net - SoftBB の index.php におけるインストールパスを取得される脆弱性 - CVE-2006-4633 2012-12-20 18:02 2006-09-8 Show GitHub Exploit DB Packet Storm
230959 7.5 危険 Softbb.net - SoftBB における SQL インジェクションの脆弱性 - CVE-2006-4632 2012-12-20 18:02 2006-09-8 Show GitHub Exploit DB Packet Storm
230960 6.5 警告 Softbb.net - SoftBB の admin/save_opt.php における任意の PHP コードを実行される脆弱性 - CVE-2006-4631 2012-12-20 18:02 2006-09-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 13, 2026, 5:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
661 9.1 CRITICAL
Network
- - Affected devices do not properly validate and sanitize PLC/station name rendered on the "communication" parameters page of the web interface. This could allow an authenticated attacker who is author… New CWE-79
Cross-site Scripting
CVE-2026-25786 2026-05-12 23:19 2026-05-12 Show GitHub Exploit DB Packet Storm
662 5.3 MEDIUM
Network
- - A vulnerability has been identified in SIPROTEC 5 6MD84 (CP300) (All versions < V11.0), SIPROTEC 5 6MD85 (CP200) (All versions), SIPROTEC 5 6MD85 (CP300) (All versions >= V7.80 < V11.0), SIPROTEC 5 6… New CWE-334
 Small Space of Random Values
CVE-2024-54017 2026-05-12 23:19 2026-05-12 Show GitHub Exploit DB Packet Storm
663 7.5 HIGH
Network
- - A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.17.1), RUGGEDCOM ROX MX5000RE (All versions < V2.17.1), RUGGEDCOM ROX RX1400 (All versions < V2.17.1), RUGGEDCOM ROX RX1… New CWE-78
OS Command 
CVE-2025-40947 2026-05-12 23:19 2026-05-12 Show GitHub Exploit DB Packet Storm
664 6.8 MEDIUM
Network
- - A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.17.1), RUGGEDCOM ROX MX5000RE (All versions < V2.17.1), RUGGEDCOM ROX RX1400 (All versions < V2.17.1), RUGGEDCOM ROX RX1… New CWE-88
Argument Injection
CVE-2025-40948 2026-05-12 23:19 2026-05-12 Show GitHub Exploit DB Packet Storm
665 9.1 CRITICAL
Network
- - Affected devices do not properly validate and sanitize Technology Object (TO) name rendered on the "Motion Control Diagnostics" page of the web interface. This could allow an authenticated attacker w… New CWE-79
Cross-site Scripting
CVE-2026-25787 2026-05-12 23:19 2026-05-12 Show GitHub Exploit DB Packet Storm
666 7.1 HIGH
Network
- - Affected devices do not properly validate and sanitize filenames on the Firmware Update page. This could allow a remote attacker to social engineer the user into selecting the modified firmware file… New CWE-79
Cross-site Scripting
CVE-2026-25789 2026-05-12 23:19 2026-05-12 Show GitHub Exploit DB Packet Storm
667 7.7 HIGH
Local
- - Affected devices do not properly restrict access to the web browser via the Control Panel when no corresponding security mechanisms are in place. This could allow an unauthenticated attacker to gain… New CWE-1188
 Insecure Default Initialization of Resource
CVE-2026-27662 2026-05-12 23:19 2026-05-12 Show GitHub Exploit DB Packet Storm
668 9.1 CRITICAL
Network
- - A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.17.1), RUGGEDCOM ROX MX5000RE (All versions < V2.17.1), RUGGEDCOM ROX RX1400 (All versions < V2.17.1), RUGGEDCOM ROX RX1… New CWE-78
OS Command 
CVE-2025-40949 2026-05-12 23:19 2026-05-12 Show GitHub Exploit DB Packet Storm
669 7.3 HIGH
Network
- - A vulnerability has been identified in Teamcenter V2312 (All versions < V2312.0014), Teamcenter V2406 (All versions < V2406.0012), Teamcenter V2412 (All versions < V2412.0009), Teamcenter V2506 (All … New CWE-79
Cross-site Scripting
CVE-2026-33862 2026-05-12 23:19 2026-05-12 Show GitHub Exploit DB Packet Storm
670 7.5 HIGH
Network
- - A vulnerability has been identified in Teamcenter V2312 (All versions < V2312.0014), Teamcenter V2406 (All versions < V2406.0012), Teamcenter V2412 (All versions < V2412.0009), Teamcenter V2506 (All … New CWE-798
 Use of Hard-coded Credentials
CVE-2026-33893 2026-05-12 23:19 2026-05-12 Show GitHub Exploit DB Packet Storm