Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 3, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
232141 6.8 警告 t-systems solutions for research gmbh - Groupit の groupit/base/groupit.start.inc におけるリモートファイルインクルージョン攻撃を実行される脆弱性 CWE-94
コード・インジェクション
CVE-2007-1472 2012-12-20 18:19 2007-03-16 Show GitHub Exploit DB Packet Storm
232142 7.5 危険 xigla - Absolute Image Gallery の gallery.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-1469 2012-12-20 18:19 2007-03-16 Show GitHub Exploit DB Packet Storm
232143 6.8 警告 webcreator - WebCreator における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-1459 2012-12-20 18:19 2007-03-14 Show GitHub Exploit DB Packet Storm
232144 7.5 危険 PHPNUKE - PHP-Nuke の mainfile.php における SQL インジェクションの脆弱性 - CVE-2007-1450 2012-12-20 18:19 2007-03-14 Show GitHub Exploit DB Packet Storm
232145 4.3 警告 PHPNUKE - PHP-Nuke の mainfile.php におけるディレクトリトラバーサルの脆弱性 - CVE-2007-1449 2012-12-20 18:19 2007-03-14 Show GitHub Exploit DB Packet Storm
232146 4.3 警告 woltlab - wBB および Burning Board Lite の register.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-1443 2012-12-20 18:19 2007-03-13 Show GitHub Exploit DB Packet Storm
232147 4.3 警告 BlackBerry - RIM BlackBerry 8100 上で稼動している 4thPass ブラウザにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2007-1441 2012-12-20 18:19 2007-03-13 Show GitHub Exploit DB Packet Storm
232148 7.5 危険 x-ice - X-Ice News System の devami.asp における SQL インジェクションの脆弱性 - CVE-2007-1438 2012-12-20 18:19 2007-03-13 Show GitHub Exploit DB Packet Storm
232149 7.5 危険 triexa - Triexa SonicMailer Pro の index.php における SQL インジェクションの脆弱性 - CVE-2007-1425 2012-12-20 18:19 2007-03-12 Show GitHub Exploit DB Packet Storm
232150 7.5 危険 softnews media group - Softnews Media Group DataLife Engine における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-1424 2012-12-20 18:19 2007-03-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 3, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
314101 - - - The EWON FLEXY 202 transmits credentials using a weak encoding method base64. An attacker who is present in the network can sniff the traffic and decode the credentials. CWE-522
 Insufficiently Protected Credentials
CVE-2024-7755 2024-10-18 21:52 2024-10-18 Show GitHub Exploit DB Packet Storm
314102 - - - Incorrect Privilege Assignment vulnerability in CodePassenger Job Board Manager for WordPress allows Privilege Escalation.This issue affects Job Board Manager for WordPress: from n/a through 1.0. CWE-266
 Incorrect Privilege Assignment
CVE-2024-49322 2024-10-18 21:52 2024-10-18 Show GitHub Exploit DB Packet Storm
314103 - - - Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ZIPANG Point Maker allows PHP Local File Inclusion.This issue affects Point Ma… CWE-98
 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion')
CVE-2024-49317 2024-10-18 21:52 2024-10-18 Show GitHub Exploit DB Packet Storm
314104 - - - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in anand23 Ajax Rating with Custom Login allows SQL Injection.This issue affects Ajax Rating with Cu… CWE-89
SQL Injection
CVE-2024-49246 2024-10-18 21:52 2024-10-18 Show GitHub Exploit DB Packet Storm
314105 - - - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in cmssoft CSV Product Import Export for WooCommerce allows SQL Injection.This issue affects CSV Pro… CWE-89
SQL Injection
CVE-2024-49244 2024-10-18 21:52 2024-10-18 Show GitHub Exploit DB Packet Storm
314106 - - - Insertion of Sensitive Information Into Sent Data vulnerability in VideoWhisper.Com Contact Forms, Live Support, CRM, Video Messages allows Retrieve Embedded Sensitive Data.This issue affects Contact… CWE-201
 Insertion of Sensitive Information Into Sent Data
CVE-2024-49235 2024-10-18 21:52 2024-10-18 Show GitHub Exploit DB Packet Storm
314107 - - - D-Link DIR_882_FW130B06 and DIR_878 DIR_878_FW130B08 were discovered to contain a command injection vulnerability via the SubnetMask parameter in the SetGuestZoneRouterSettings function. This vulnera… - CVE-2024-48638 2024-10-18 21:52 2024-10-18 Show GitHub Exploit DB Packet Storm
314108 - - - D-Link DIR_882_FW130B06 and DIR_878 DIR_878_FW130B08 were discovered to contain a command injection vulnerability via the VLANID:1/VID parameter in the SetVLANSettings function. This vulnerability al… - CVE-2024-48637 2024-10-18 21:52 2024-10-18 Show GitHub Exploit DB Packet Storm
314109 - - - D-Link DIR_882_FW130B06 and DIR_878 DIR_878_FW130B08 were discovered to contain a command injection vulnerability via the VLANID:0/VID parameter in the SetVLANSettings function. This vulnerability al… - CVE-2024-48636 2024-10-18 21:52 2024-10-18 Show GitHub Exploit DB Packet Storm
314110 - - - D-Link DIR_882_FW130B06 and DIR_878 DIR_878_FW130B08 were discovered to contain a command injection vulnerability via the VLANID:2/VID parameter in the SetVLANSettings function. This vulnerability al… - CVE-2024-48635 2024-10-18 21:52 2024-10-18 Show GitHub Exploit DB Packet Storm