Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
231891 7.5 危険 pixaria - Pixaria Gallery の resources/includes/class.Smarty.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2457 2012-12-20 18:19 2007-04-15 Show GitHub Exploit DB Packet Storm
231892 2.1 注意 CollabNet, Inc. - Subversion における重要な情報 (プロパティの改定) を取得される脆弱性 - CVE-2007-2448 2012-12-20 18:19 2007-06-14 Show GitHub Exploit DB Packet Storm
231893 6.8 警告 tecnick.com - TCExam の shared/config/tce_config.php におけるクロスサイトスクリプティング攻撃 (XSS) を実行される脆弱性 - CVE-2007-2431 2012-12-20 18:19 2007-05-1 Show GitHub Exploit DB Packet Storm
231894 7.8 危険 tecnick.com - TCExam の shared/code/tce_tmx.php における cache/ 配下の任意の PHP ファイルを作成される脆弱性 - CVE-2007-2430 2012-12-20 18:19 2007-05-1 Show GitHub Exploit DB Packet Storm
231895 7.5 危険 pnflashgames - PostNuke 用の pnFlashGames モジュールの index.php における SQL インジェクションの脆弱性 - CVE-2007-2427 2012-12-20 18:19 2007-05-1 Show GitHub Exploit DB Packet Storm
231896 7.5 危険 wildbits - WordPress 用の myGallery プラグインにおける PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2426 2012-12-20 18:19 2007-05-1 Show GitHub Exploit DB Packet Storm
231897 7.5 危険 the merchant project - themerchant の help/index.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2424 2012-12-20 18:19 2007-05-1 Show GitHub Exploit DB Packet Storm
231898 10 危険 RSAセキュリティ
Progress Software Corporation
- 複数の RSA 製品で使用される Progress Software Progress および OpenEdge におけるヒープベースのバッファオーバーフローの脆弱性 - CVE-2007-2417 2012-12-20 18:19 2007-07-15 Show GitHub Exploit DB Packet Storm
231899 5 警告 pi3web - Pi3Web Web Server におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2007-2415 2012-12-20 18:19 2007-05-1 Show GitHub Exploit DB Packet Storm
231900 4 警告 Samba Project - Apple Mac OS X 上で稼動している Samba サーバにおける割り当てを超えるディスクスペースを使用される脆弱性 - CVE-2007-2407 2012-12-20 18:19 2007-07-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
349691 - duware duportal_pro Multiple SQL injection vulnerabilities in DUware DUportal PRO 3.4.3 allow remote attackers to execute arbitrary SQL commands via the (1) iChannel parameter to default.asp, (2) iData parameter to deta… NVD-CWE-Other
CVE-2005-2045 2016-10-18 12:24 2005-06-22 Show GitHub Exploit DB Packet Storm
349692 - duware duamazon_pro Multiple SQL injection vulnerabilities in DUware DUamazon Pro 3.0 and 3.1 allow remote attackers to execute arbitrary SQL commands via the (1) iCat parameter to cat.asp, (2) iSub parameter to sub.asp… NVD-CWE-Other
CVE-2005-2046 2016-10-18 12:24 2005-06-22 Show GitHub Exploit DB Packet Storm
349693 - duware dupaypal_pro Multiple SQL injection vulnerabilities in DUware DUpaypal Pro 3.0 allow remote attackers to execute arbitrary SQL commands via the (1) iCat parameter to cat.asp, (2) iPro parameter to detail.asp, (3)… NVD-CWE-Other
CVE-2005-2047 2016-10-18 12:24 2005-06-22 Show GitHub Exploit DB Packet Storm
349694 - duware duclassmate Multiple SQL injection vulnerabilities in DUware DUclassmate 1.2 allow remote attackers to execute arbitrary SQL commands via the (1) iState parameter to default.asp or (2) iPro parameter to edit.asp. NVD-CWE-Other
CVE-2005-2049 2016-10-18 12:24 2005-06-22 Show GitHub Exploit DB Packet Storm
349695 - symantec_veritas backup_exec Buffer overflow in the VERITAS Backup Exec Web Administration Console (BEWAC) 9.0 4367 through 10.0 rev. 5484 allows remote attackers to execute arbitrary code. NVD-CWE-Other
CVE-2005-2051 2016-10-18 12:24 2005-06-28 Show GitHub Exploit DB Packet Storm
349696 - realnetworks realone_player
realplayer
Heap-based buffer overflow in vidplin.dll in RealPlayer 10 and 10.5 (6.0.12.1040 through 1069), RealOne Player v1 and v2, RealPlayer 8 and RealPlayer Enterprise allows remote attackers to execute arb… NVD-CWE-Other
CVE-2005-2052 2016-10-18 12:24 2005-06-28 Show GitHub Exploit DB Packet Storm
349697 - salims_softhouse jaf_cms Just another flat file (JAF) CMS before 3.0 Final allows remote attackers to obtain sensitive information via (1) an * (asterisk) in the id parameter, (2) a blank id parameter, or (3) an * (asterisk)… NVD-CWE-Other
CVE-2005-2053 2016-10-18 12:24 2005-06-28 Show GitHub Exploit DB Packet Storm
349698 - ubbcentral ubb.threads Multiple cross-site scripting (XSS) vulnerabilities in Infopop UBB.Threads before 6.5.2 Beta allow remote attackers to inject arbitrary web script or HTML via the (1) Searchpage parameter to dosearch… NVD-CWE-Other
CVE-2005-2057 2016-10-18 12:24 2005-06-29 Show GitHub Exploit DB Packet Storm
349699 - ubbcentral ubb.threads Multiple SQL injection vulnerabilities in Infopop UBB.Threads before 6.5.2 Beta allow remote attackers to execute arbitrary SQL commands via the Number parameter to (1) download.php, (2) modifypost.p… NVD-CWE-Other
CVE-2005-2058 2016-10-18 12:24 2005-06-29 Show GitHub Exploit DB Packet Storm
349700 - ubbcentral ubb.threads Multiple HTTP Response Splitting vulnerabilities in (1) toggleshow.php, (2) togglecats.php, and (3) showprofile.php in Infopop UBB.Threads before 6.5.2 Beta allow remote attackers to spoof web conten… NVD-CWE-Other
CVE-2005-2060 2016-10-18 12:24 2005-06-29 Show GitHub Exploit DB Packet Storm