Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 5, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
248341 7.5 危険 enthrallweb - Enthrallweb ePages の actualpic.asp における SQL インジェクションの脆弱性 - CVE-2006-6802 2012-06-26 15:38 2006-12-28 Show GitHub Exploit DB Packet Storm
248342 7.5 危険 efkan forum - Efkan Forum の default.asp における SQL インジェクションの脆弱性 - CVE-2006-6794 2012-06-26 15:38 2006-12-27 Show GitHub Exploit DB Packet Storm
248343 7.5 危険 chatwm - chatwm の SelGruFra.asp における SQL インジェクションの脆弱性 - CVE-2006-6791 2012-06-26 15:38 2006-12-27 Show GitHub Exploit DB Packet Storm
248344 6.8 警告 future internet - Future Internet の index.cfm におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-6777 2012-06-26 15:38 2006-12-27 Show GitHub Exploit DB Packet Storm
248345 7.5 危険 future internet - Future Internet における SQL インジェクションの脆弱性 - CVE-2006-6776 2012-06-26 15:38 2006-12-27 Show GitHub Exploit DB Packet Storm
248346 3.5 注意 acftp - acFTP におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-6775 2012-06-26 15:38 2006-12-27 Show GitHub Exploit DB Packet Storm
248347 6.8 警告 ciberia - Ciberia Content Federator の members/maquetacion_member.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6774 2012-06-26 15:38 2006-12-27 Show GitHub Exploit DB Packet Storm
248348 7.5 危険 fishyshoop - Fishyshoop の pages/register/register.php における任意の管理者ユーザを作成される脆弱性 - CVE-2006-6773 2012-06-26 15:38 2006-12-27 Show GitHub Exploit DB Packet Storm
248349 7.5 危険 cwm-design - cwmExplorer における SQL インジェクションの脆弱性 - CVE-2006-6766 2012-06-26 15:38 2006-12-26 Show GitHub Exploit DB Packet Storm
248350 7.8 危険 cwm-design - cwmExplorer の index.php におけるディレクトリトラバーサルの脆弱性 - CVE-2006-6757 2012-06-26 15:38 2006-12-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 6, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211691 6.5 MEDIUM
Network
duxcms_project duxcms Cross Site Request Forgery (CSRF) vulnerability in admin.php in DuxCMS 2.1 allows remote attackers to modtify application data via article/admin/content/add. CWE-352
 Origin Validation Error
CVE-2020-21881 2024-11-21 14:12 2023-07-31 Show GitHub Exploit DB Packet Storm
211692 9.8 CRITICAL
Network
yunyecms yunyecms SQL injection vulnerability in yunyecms 2.0.2 allows remote attackers to run arbitrary SQL commands via XFF. CWE-89
SQL Injection
CVE-2020-21662 2024-11-21 14:12 2023-07-31 Show GitHub Exploit DB Packet Storm
211693 8.1 HIGH
Network
duxcms_project duxcms Directory traversal vulnerability in DuxCMS 2.1 allows attackers to delete arbitrary files via /admin/AdminBackup/del. CWE-22
Path Traversal
CVE-2020-21862 2024-11-21 14:12 2023-07-6 Show GitHub Exploit DB Packet Storm
211694 8.8 HIGH
Network
duxcms_project duxcms File upload vulnerability in DuxCMS 2.1 allows attackers to execute arbitrary php code via duxcms/AdminUpload/upload. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-21861 2024-11-21 14:12 2023-07-6 Show GitHub Exploit DB Packet Storm
211695 9.8 CRITICAL
Network
feehi feehicms File Upload vulnerability in Feehicms v.2.0.8 allows a remote attacker to execute arbitrary code via the /admin/index.php?r=admin-user%2Fupdate-self component. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-21489 2024-11-21 14:12 2023-06-21 Show GitHub Exploit DB Packet Storm
211696 6.1 MEDIUM
Network
alluxio alluxio Cross Site Scripting vulnerability in Alluxio v.1.8.1 allows a remote attacker to executea arbitrary code via the path parameter in the browse board component. CWE-79
Cross-site Scripting
CVE-2020-21485 2024-11-21 14:12 2023-06-21 Show GitHub Exploit DB Packet Storm
211697 9.8 CRITICAL
Network
nucleuscms nucleuscms File Upload vulnerability in NucleusCMS v.3.71 allows a remote attacker to execute arbitrary code via the /nucleus/plugins/skinfiles/?dir=rsd parameter. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-21474 2024-11-21 14:12 2023-06-21 Show GitHub Exploit DB Packet Storm
211698 7.2 HIGH
Network
phpmywind phpmywind SQL injection vulnerability in gaozhifeng PHPMyWind v.5.6 allows a remote attacker to execute arbitrary code via the id variable in the modify function. CWE-89
SQL Injection
CVE-2020-21400 2024-11-21 14:12 2023-06-21 Show GitHub Exploit DB Packet Storm
211699 8.0 HIGH
Network
njtech greencms Cross Site Request Forgery vulnerability in GreenCMS v.2.3 allows an attacker to gain privileges via the adduser function of index.php. CWE-352
 Origin Validation Error
CVE-2020-21366 2024-11-21 14:12 2023-06-21 Show GitHub Exploit DB Packet Storm
211700 8.8 HIGH
Network
wuzhicms wuzhicms An issue in WUZHI CMS v.4.1.0 allows a remote attacker to execute arbitrary code via the set_chache method of the function\common.func.php file. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2020-21325 2024-11-21 14:12 2023-06-21 Show GitHub Exploit DB Packet Storm