Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
4461 8.8 重要
Network
Shenzhen Tenda Technology Co.,Ltd. F451 Firmware Shenzhen Tenda Technology Co.,Ltd.のF451 Firmwareにおける複数の脆弱性 CWE-119
CWE-121
CVE-2026-6137 2026-05-1 10:41 2026-04-13 Show GitHub Exploit DB Packet Storm
4462 7.5 重要
Network
Cesanta Mongoose CesantaのMongooseにおける複数の脆弱性 CWE-404
CWE-835
CVE-2026-6985 2026-05-1 10:41 2026-04-25 Show GitHub Exploit DB Packet Storm
4463 3.7
Network
Cesanta Mongoose CesantaのMongooseにおける複数の脆弱性 CWE-345
CWE-347
CVE-2026-6986 2026-05-1 10:41 2026-04-25 Show GitHub Exploit DB Packet Storm
4464 8.8 重要
Network
Shenzhen Tenda Technology Co.,Ltd. HG10 Firmware Shenzhen Tenda Technology Co.,Ltd.のHG10 Firmwareにおける複数の脆弱性 CWE-119
CWE-120
CVE-2026-6988 2026-05-1 10:41 2026-04-25 Show GitHub Exploit DB Packet Storm
4465 8.8 重要
Network
Shenzhen Tenda Technology Co.,Ltd. F453 Firmware Shenzhen Tenda Technology Co.,Ltd.のF453 Firmwareにおける複数の脆弱性 CWE-74
CWE-77
CVE-2026-6989 2026-05-1 10:41 2026-04-25 Show GitHub Exploit DB Packet Storm
4466 7.2 重要
Network
シスコシステムズ (Linksys) mr9600 ファームウェア Linksysのmr9600 ファームウェアにおける複数の脆弱性 CWE-77
CWE-78
CVE-2026-6992 2026-05-1 10:41 2026-04-25 Show GitHub Exploit DB Packet Storm
4467 4.8 警告
Network
D-Link Systems, Inc. DSL-2740R ファームウェア D-Link CorporationのDSL-2740R ファームウェアにおける複数の脆弱性 CWE-79
CWE-94
CVE-2026-7027 2026-05-1 10:41 2026-04-26 Show GitHub Exploit DB Packet Storm
4468 8.8 重要
Network
Shenzhen Tenda Technology Co.,Ltd. FH1202 ファームウェア Shenzhen Tenda Technology Co.,Ltd.のFH1202 ファームウェアにおける複数の脆弱性 CWE-119
CWE-121
CVE-2026-7034 2026-05-1 10:41 2026-04-26 Show GitHub Exploit DB Packet Storm
4469 8.8 重要
Network
Shenzhen Tenda Technology Co.,Ltd. FH1202 ファームウェア Shenzhen Tenda Technology Co.,Ltd.のFH1202 ファームウェアにおける複数の脆弱性 CWE-119
CWE-121
CVE-2026-7035 2026-05-1 10:41 2026-04-26 Show GitHub Exploit DB Packet Storm
4470 9.8 緊急
Network
Shenzhen Tenda Technology Co.,Ltd. i9 ファームウェア Shenzhen Tenda Technology Co.,Ltd.のi9 ファームウェアにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-7036 2026-05-1 10:41 2026-04-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 8, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
348651 - winftp_server winftp_server Buffer overflow in the Log-SCR function in the "Log to Screen" feature in WinFtp Server 1.6.8 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary c… NVD-CWE-Other
CVE-2005-2634 2017-07-11 10:32 2005-08-23 Show GitHub Exploit DB Packet Storm
348652 - phpadsnew
phppgads
phpadsnew
phppgads
Multiple directory traversal vulnerabilities in phpAdsNew and phpPgAds before 2.0.6 allow remote attackers to include arbitrary files via a .. (dot dot) in the (1) layerstyle parameter to adlayer.php… NVD-CWE-Other
CVE-2005-2635 2017-07-11 10:32 2005-08-23 Show GitHub Exploit DB Packet Storm
348653 - phpadsnew
phppgads
phpadsnew
phppgads
SQL injection vulnerability in lib-view-direct.inc.php in phpAdsNew and phpPgAds before 2.0.6 allows remote attackers to execute arbitrary SQL commands via the clientid parameter. NVD-CWE-Other
CVE-2005-2636 2017-07-11 10:32 2005-08-23 Show GitHub Exploit DB Packet Storm
348654 - w-agora w-agora Directory traversal vulnerability in index.php in W-Agora 4.2.0 and earlier allows remote attackers to read arbitrary files via the site parameter. NVD-CWE-Other
CVE-2005-2648 2017-07-11 10:32 2005-08-23 Show GitHub Exploit DB Packet Storm
348655 - adaptive_technology_resource_centre atutor Cross-site scripting (XSS) vulnerability in ATutor 1.5.1 allows remote attackers to inject arbitrary web script or HTML via (1) course parameter in login.php or (2) words parameter in search.php. NVD-CWE-Other
CVE-2005-2649 2017-07-11 10:32 2005-08-23 Show GitHub Exploit DB Packet Storm
348656 - phpoutsourcing zorum gorum/prod.php in Zorum 3.5 allows remote attackers to execute arbitrary code via shell metacharacters in the argv parameter. NVD-CWE-Other
CVE-2005-2651 2017-07-11 10:32 2005-08-23 Show GitHub Exploit DB Packet Storm
348657 - phpoutsourcing zorum Zorum 3.5 allows remote attackers to obtain the full installation path via direct requests to (1) gorum/notification.php, (2) user.php, (3) attach.php, (4) blacklist.php, (5) zorum/forum.php, (6) glo… NVD-CWE-Other
CVE-2005-2652 2017-07-11 10:32 2005-08-23 Show GitHub Exploit DB Packet Storm
348658 - bbcaffe bbcaffe Cross-site scripting (XSS) vulnerability in BBCaffe 2.0 allows remote attackers to inject arbitrary web script or HTML via e-mail data in a message. NVD-CWE-Other
CVE-2005-2653 2017-07-11 10:32 2005-08-23 Show GitHub Exploit DB Packet Storm
348659 - common-lisp-controller common-lisp-controller Unknown vulnerability in common-lisp-controller 4.18 and earlier allows local users to gain privileges by compiling arbitrary code in the cache directory, which is executed by another user if the use… NVD-CWE-Other
CVE-2005-2657 2017-07-11 10:32 2005-09-17 Show GitHub Exploit DB Packet Storm
348660 - masqmail masqmail masqmail before 0.2.18 allows remote attackers to execute arbitrary commands via crafted e-mail addresses that are not properly sanitized when creating a failed delivery message. NVD-CWE-Other
CVE-2005-2662 2017-07-11 10:32 2005-09-22 Show GitHub Exploit DB Packet Storm