Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
231301 5.8 警告 x-diesel - X-Diesel Unreal Commander におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-4843 2012-12-20 18:33 2007-09-12 Show GitHub Exploit DB Packet Storm
231302 7.5 危険 proxy anket - Proxy Anket の anket.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-4837 2012-12-20 18:33 2007-09-12 Show GitHub Exploit DB Packet Storm
231303 4.3 警告 phpmyquote - phpMyQuote の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-4836 2012-12-20 18:33 2007-09-12 Show GitHub Exploit DB Packet Storm
231304 7.5 危険 phpmyquote - phpMyQuote の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-4835 2012-12-20 18:33 2007-09-12 Show GitHub Exploit DB Packet Storm
231305 7.5 危険 phprealty - phpRealty における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-4834 2012-12-20 18:33 2007-09-12 Show GitHub Exploit DB Packet Storm
231306 2.6 注意 torrenttrader - TorrentTrader の account_settings.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-4831 2012-12-20 18:33 2007-09-12 Show GitHub Exploit DB Packet Storm
231307 7.5 危険 sisfo kampus - Sisfo Kampus 2006 の blanko.preview.php における絶対パストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-4820 2012-12-20 18:33 2007-09-11 Show GitHub Exploit DB Packet Storm
231308 4.3 警告 txx cms - Txx CMS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-4819 2012-12-20 18:33 2007-09-11 Show GitHub Exploit DB Packet Storm
231309 7.5 危険 txx cms - Txx CMS における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-4818 2012-12-20 18:33 2007-09-11 Show GitHub Exploit DB Packet Storm
231310 7.5 危険 tlm cms - TLM CMS における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-4808 2012-12-20 18:33 2007-09-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
313141 4.9 MEDIUM
Network
teamplus team\+_pro The Team+ from TEAMPLUS TECHNOLOGY does not properly validate a specific page parameter, allowing remote attackers with administrator privileges to move arbitrary system files to the website root dir… NVD-CWE-Other
CVE-2024-9923 2024-10-24 22:24 2024-10-14 Show GitHub Exploit DB Packet Storm
313142 7.5 HIGH
Network
teamplus team\+_pro The Team+ from TEAMPLUS TECHNOLOGY does not properly validate a specific page parameter, allowing unauthenticated remote attackers to exploit this vulnerability to read arbitrary system files. NVD-CWE-Other
CVE-2024-9922 2024-10-24 22:21 2024-10-14 Show GitHub Exploit DB Packet Storm
313143 9.8 CRITICAL
Network
teamplus team\+_pro The Team+ from TEAMPLUS TECHNOLOGY does not properly validate specific page parameter, allowing unauthenticated remote attackers to inject arbitrary SQL commands to read, modify and delete database c… CWE-89
SQL Injection
CVE-2024-9921 2024-10-24 22:19 2024-10-14 Show GitHub Exploit DB Packet Storm
313144 6.1 MEDIUM
Network
ujangrohidin localserver Cross-Site Scripting (XSS) vulnerability affecting LocalServer 1.0.9 that could allow a remote user to send a specially crafted query to an authenticated user and steal their session details through … CWE-79
Cross-site Scripting
CVE-2024-10286 2024-10-24 13:08 2024-10-23 Show GitHub Exploit DB Packet Storm
313145 6.1 MEDIUM
Network
ujangrohidin localserver Cross-Site Scripting (XSS) vulnerability affecting LocalServer 1.0.9 that could allow a remote user to send a specially crafted query to an authenticated user and steal their session details through … CWE-79
Cross-site Scripting
CVE-2024-10289 2024-10-24 13:07 2024-10-23 Show GitHub Exploit DB Packet Storm
313146 6.1 MEDIUM
Network
ujangrohidin localserver Cross-Site Scripting (XSS) vulnerability affecting LocalServer 1.0.9 that could allow a remote user to send a specially crafted query to an authenticated user and steal their session details through … CWE-79
Cross-site Scripting
CVE-2024-10288 2024-10-24 13:07 2024-10-23 Show GitHub Exploit DB Packet Storm
313147 6.1 MEDIUM
Network
ujangrohidin localserver Cross-Site Scripting (XSS) vulnerability affecting LocalServer 1.0.9 that could allow a remote user to send a specially crafted query to an authenticated user and steal their session details through … CWE-79
Cross-site Scripting
CVE-2024-10287 2024-10-24 13:07 2024-10-23 Show GitHub Exploit DB Packet Storm
313148 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: media: pci: cx23885: check cx23885_vdev_init() return cx23885_vdev_init() can return a NULL pointer, but that pointer is used in … CWE-476
 NULL Pointer Dereference
CVE-2023-52918 2024-10-24 12:55 2024-10-22 Show GitHub Exploit DB Packet Storm
313149 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: nfc: nci: fix possible NULL pointer dereference in send_acknowledge() Handle memory allocation failure from nci_skb_alloc() (call… CWE-476
 NULL Pointer Dereference
CVE-2023-52919 2024-10-24 12:53 2024-10-22 Show GitHub Exploit DB Packet Storm
313150 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: can: m_can: pci: add missing m_can_class_free_dev() in probe/remove methods In m_can_pci_remove() and error handling path of m_ca… CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2022-49024 2024-10-24 12:50 2024-10-22 Show GitHub Exploit DB Packet Storm