Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
193991 6.8 警告
Physics
cryptsetup project - cryptsetup パッケージ用 Debian initrd スクリプトにおけるシェルのアクセス権を取得される脆弱性 CWE-287
不適切な認証
CVE-2016-4484 2017-02-8 18:15 2016-11-17 Show GitHub Exploit DB Packet Storm
193992 8.8 重要
Network
GitLab.org - Gitlab の偽装の機能における他のユーザとして "ログイン" される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-4340 2017-02-8 18:15 2016-05-2 Show GitHub Exploit DB Packet Storm
193993 9.8 緊急
Network
Magento, Inc. - Magento CE および EE における PHP オブジェクトインジェクション攻撃を実行される脆弱性 CWE-74
インジェクション
CVE-2016-4010 2017-02-8 17:23 2016-05-17 Show GitHub Exploit DB Packet Storm
193994 9.8 緊急
Network
LibGD project - GD Graphics ライブラリの gdImageWebPtr 関数におけるメモリ二重解放の脆弱性 CWE-415
二重解放
CVE-2016-6912 2017-02-8 17:03 2016-08-17 Show GitHub Exploit DB Packet Storm
193995 7.8 重要
Local
シトリックス・システムズ
Xen プロジェクト
- Xen の x86 エミュレータにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-9386 2017-02-8 16:53 2016-11-22 Show GitHub Exploit DB Packet Storm
193996 6 警告
Local
シトリックス・システムズ
Xen プロジェクト
- Xen の x86 セグメントベースの書き込みのエミュレーション機能におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-9385 2017-02-8 16:53 2016-11-22 Show GitHub Exploit DB Packet Storm
193997 8.8 重要
Local
シトリックス・システムズ
Xen プロジェクト
- Xen における任意のメモリを変更される脆弱性 CWE-20
不適切な入力確認
CVE-2016-9383 2017-02-8 16:53 2016-11-22 Show GitHub Exploit DB Packet Storm
193998 7.8 重要
Local
シトリックス・システムズ
Xen プロジェクト
- Xen における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-9382 2017-02-8 16:53 2016-11-22 Show GitHub Exploit DB Packet Storm
193999 7.5 重要
Local
シトリックス・システムズ
Fabrice Bellard
- Xen の QEMU における権限を取得される脆弱性 CWE-264
CWE-362
CVE-2016-9381 2017-02-8 16:53 2016-11-22 Show GitHub Exploit DB Packet Storm
194000 8.8 重要
Adjacent
Ubiquiti Networks - Ubiquiti Networks UniFi におけるデータベースを変更される脆弱性 CWE-284
不適切なアクセス制御
CVE-2016-7792 2017-02-8 16:52 2016-09-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 18, 2026, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293871 - xensource_inc xen Xen 3.1.1 does not prevent modification of the CR4 TSC from applications, which allows pv guests to cause a denial of service (crash). CWE-264
Permissions, Privileges, and Access Controls
CVE-2007-5907 2017-09-29 10:29 2007-11-10 Show GitHub Exploit DB Packet Storm
293872 - viewpoint media_player Multiple stack-based buffer overflows in the AxMetaStream ActiveX control in AxMetaStream.dll 3.3.2.26 in Viewpoint Media Player 3.2 allow remote attackers to execute arbitrary code via a long string… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2007-5911 2017-09-29 10:29 2007-11-10 Show GitHub Exploit DB Packet Storm
293873 - jportal jportal_web_portal SQL injection vulnerability in mailer.php in jPORTAL 2 allows remote attackers to execute arbitrary SQL commands via the to parameter. CWE-89
SQL Injection
CVE-2007-5912 2017-09-29 10:29 2007-11-10 Show GitHub Exploit DB Packet Storm
293874 - adobe shockwave_player Stack-based buffer overflow in the SWCtl.SWCtl ActiveX control in Adobe Shockwave allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long argument to the S… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2007-5941 2017-09-29 10:29 2007-11-14 Show GitHub Exploit DB Packet Storm
293875 - hp hp-ux Unspecified vulnerability in the Aries PA-RISC emulator on HP-UX B.11.23 and B.11.31 on the IA-64 platform allows local users to obtain unspecified access. NVD-CWE-noinfo
CVE-2007-5946 2017-09-29 10:29 2007-11-14 Show GitHub Exploit DB Packet Storm
293876 - redhat enterprise_linux The default configuration of autofs 5 in some Linux distributions, such as Red Hat Enterprise Linux (RHEL) 5, omits the nosuid option for the hosts (/net filesystem) map, which allows local users to … CWE-16
Configuration
CVE-2007-5964 2017-09-29 10:29 2007-12-14 Show GitHub Exploit DB Packet Storm
293877 - jportal jportal_web_portal SQL injection vulnerability in articles.php in JPortal 2.3.1 and earlier allows remote attackers to execute arbitrary SQL commands via the topic parameter. CWE-89
SQL Injection
CVE-2007-5973 2017-09-29 10:29 2007-11-15 Show GitHub Exploit DB Packet Storm
293878 - jportal jportal_web_portal SQL injection vulnerability in mailer.php in JPortal 2 allows remote attackers to execute arbitrary SQL commands via the to parameter. CWE-89
SQL Injection
CVE-2007-5974 2017-09-29 10:29 2007-11-15 Show GitHub Exploit DB Packet Storm
293879 - datecomm social_networking_script SQL injection vulnerability in index.php in datecomm Social Networking Script (aka Myspace Clone Script) allows remote attackers to execute arbitrary SQL commands via the seid parameter in a viewcat … CWE-89
SQL Injection
CVE-2007-5992 2017-09-29 10:29 2007-11-16 Show GitHub Exploit DB Packet Storm
293880 - php-tools patbbcode PHP remote file inclusion vulnerability in examples/patExampleGen/bbcodeSource.php in patBBcode 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the example parameter. CWE-94
Code Injection
CVE-2007-5995 2017-09-29 10:29 2007-11-16 Show GitHub Exploit DB Packet Storm