Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 7, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
248271 4.3 警告 CKEditor Team - FCKEditorto の "Basic Toolbar Selection" におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2006-6978 2012-06-26 15:38 2007-02-8 Show GitHub Exploit DB Packet Storm
248272 4.3 警告 freetextbox - FreeTextBox の "Basic Toolbar Selection" におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2006-6977 2012-06-26 15:38 2007-02-8 Show GitHub Exploit DB Packet Storm
248273 7.5 危険 centipaid - CentiPaid の centipaid_class.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2006-6976 2012-06-26 15:38 2007-02-8 Show GitHub Exploit DB Packet Storm
248274 7.5 危険 bti-tracker - BtitTracker の torrents.php における SQL インジェクションの脆弱性 - CVE-2006-6972 2012-06-26 15:38 2007-02-7 Show GitHub Exploit DB Packet Storm
248275 4.3 警告 Andreas Gohr - DokuWiki の lib/exe/fetch.php におけるCRLF インジェクションの脆弱性 - CVE-2006-6965 2012-06-26 15:38 2007-01-29 Show GitHub Exploit DB Packet Storm
248276 7.5 危険 Docebo - Docebo LMS における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6963 2012-06-26 15:38 2007-01-29 Show GitHub Exploit DB Packet Storm
248277 6.8 警告 Docebo - Docebo の addons/mod_media/body.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2006-6957 2012-06-26 15:38 2007-01-29 Show GitHub Exploit DB Packet Storm
248278 7.5 危険 Bitweaver - bitweaver の newsletters/edition.php における SQL インジェクションの脆弱性 - CVE-2006-6923 2012-06-26 15:38 2007-01-12 Show GitHub Exploit DB Packet Storm
248279 7.5 危険 deadlock user management system - phpdeadlock における SQL インジェクションの脆弱性 - CVE-2006-6922 2012-06-26 15:38 2007-01-12 Show GitHub Exploit DB Packet Storm
248280 10 危険 geobb - GeoBB の Admin ログインにおける詳細不明な脆弱性 - CVE-2006-6918 2012-06-26 15:38 2007-01-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 7, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211411 8.8 HIGH
Network
optilinknetwork op-xt71000n_firmware A remote attacker can conduct a cross-site request forgery (CSRF) attack on OPTILINK OP-XT71000N Hardware Version: V2.2 , Firmware Version: OP_V3.3.1-191028. The vulnerability is due to insufficient … CWE-352
 Origin Validation Error
CVE-2020-23585 2024-11-21 14:13 2022-11-23 Show GitHub Exploit DB Packet Storm
211412 9.8 CRITICAL
Network
optilinknetwork op-xt71000n_firmware OPTILINK OP-XT71000N V2.2 is vulnerable to Remote Code Execution. The issue occurs when the attacker sends an arbitrary code on "/diag_ping_admin.asp" to "PingTest" interface that leads to COMMAND EX… CWE-77
Command Injection
CVE-2020-23583 2024-11-21 14:13 2022-11-23 Show GitHub Exploit DB Packet Storm
211413 9.8 CRITICAL
Network
mkcms_project mkcms MKCMS V6.2 has SQL injection via the /ucenter/active.php verify parameter. CWE-89
SQL Injection
CVE-2020-22819 2024-11-21 14:13 2022-11-4 Show GitHub Exploit DB Packet Storm
211414 9.8 CRITICAL
Network
mkcms_project mkcms MKCMS V6.2 has SQL injection via /ucenter/reg.php name parameter. CWE-89
SQL Injection
CVE-2020-22818 2024-11-21 14:13 2022-11-4 Show GitHub Exploit DB Packet Storm
211415 7.5 HIGH
Network
asus rt-n12e_firmware Asus RT-N12E 2.0.0.39 is affected by an incorrect access control vulnerability. Through system.asp / start_apply.htm, an attacker can change the administrator password without any authentication. CWE-306
Missing Authentication for Critical Function
CVE-2020-23648 2024-11-21 14:13 2022-10-19 Show GitHub Exploit DB Packet Storm
211416 7.8 HIGH
Local
irfanview irfanview IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!ShowPlugInSaveOptions_W+0x000000000001bcab. CWE-787
 Out-of-bounds Write
CVE-2020-23560 2024-11-21 14:13 2022-09-16 Show GitHub Exploit DB Packet Storm
211417 7.8 HIGH
Local
irfanview irfanview IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!ShowPlugInSaveOptions_W+0x0000000000007d7f. CWE-787
 Out-of-bounds Write
CVE-2020-23559 2024-11-21 14:13 2022-09-16 Show GitHub Exploit DB Packet Storm
211418 7.8 HIGH
Local
irfanview irfanview IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!ShowPlugInSaveOptions_W+0x0000000000007f4b. CWE-787
 Out-of-bounds Write
CVE-2020-23558 2024-11-21 14:13 2022-09-16 Show GitHub Exploit DB Packet Storm
211419 7.8 HIGH
Local
irfanview irfanview IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!ShowPlugInSaveOptions_W+0x000000000000755d. CWE-787
 Out-of-bounds Write
CVE-2020-23557 2024-11-21 14:13 2022-09-16 Show GitHub Exploit DB Packet Storm
211420 7.8 HIGH
Local
irfanview irfanview IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!GetPlugInInfo+0x0000000000007e28. CWE-787
 Out-of-bounds Write
CVE-2020-23556 2024-11-21 14:13 2022-09-16 Show GitHub Exploit DB Packet Storm