Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
194901 5.3 警告
Network
VMware - VMware Identity Manager および vRealize Automation における /SAAS/WEB-INF および /SAAS/META-INF ファイルを読まれる脆弱性 CWE-284
不適切なアクセス制御
CVE-2016-5334 2017-01-10 18:02 2016-11-22 Show GitHub Exploit DB Packet Storm
194902 5.5 警告
Local
VMware - Mac OS X 上で稼動する VMware Fusion におけるカーネルメモリのアドレスを特定される脆弱性 CWE-200
情報漏えい
CVE-2016-5329 2017-01-10 18:02 2016-10-25 Show GitHub Exploit DB Packet Storm
194903 8.8 重要
Local
VMware - 複数の VMware 製品のドラッグ&ドロップ機能における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-7461 2017-01-10 17:49 2016-11-13 Show GitHub Exploit DB Packet Storm
194904 7.8 重要
Local
VMware - Windows 上で稼動する VMware Workstation Pro および Workstation Player のインストーラにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-7086 2017-01-10 17:49 2016-09-13 Show GitHub Exploit DB Packet Storm
194905 7.8 重要
Local
VMware - Windows 上で稼動する VMware Workstation Pro および Workstation Player のインストーラにおける権限を取得される脆弱性 CWE-426
信頼性のない検索パス
CVE-2016-7085 2017-01-10 17:49 2016-09-13 Show GitHub Exploit DB Packet Storm
194906 7.8 重要
Local
VMware - Windows 上で稼動する VMware Workstation Pro および Workstation Player の tpview.dll における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-7084 2017-01-10 17:49 2016-09-13 Show GitHub Exploit DB Packet Storm
194907 7.8 重要
Local
VMware - Windows 上で稼動する VMware Workstation Pro および Workstation Player における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-7083 2017-01-10 17:49 2016-09-13 Show GitHub Exploit DB Packet Storm
194908 7.8 重要
Local
VMware - Windows 上で稼動する VMware Workstation Pro および Workstation Player における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-7082 2017-01-10 17:49 2016-09-13 Show GitHub Exploit DB Packet Storm
194909 7.8 重要
Local
VMware - Windows 上で稼動する VMware Workstation Pro および Workstation Player におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-7081 2017-01-10 17:49 2016-09-13 Show GitHub Exploit DB Packet Storm
194910 5.4 警告
Network
VMware - VMware vSphere Hypervisor の Host Client におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-7463 2017-01-10 17:40 2016-12-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 24, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
294201 - microsoft windows_media_player Microsoft Windows Media Player (WMP) allows remote attackers to cause a denial of service (application crash) via a certain AIFF file that triggers a divide-by-zero error, as demonstrated by kr.aiff. CWE-189
Numeric Errors
CVE-2007-6236 2017-09-29 10:29 2007-12-5 Show GitHub Exploit DB Packet Storm
294202 - squid squid_web_proxy_cache The "cache update reply processing" functionality in Squid 2.x before 2.6.STABLE17 and Squid 3.0 allows remote attackers to cause a denial of service (crash) via unknown vectors related to HTTP heade… CWE-20
 Improper Input Validation 
CVE-2007-6239 2017-09-29 10:29 2007-12-5 Show GitHub Exploit DB Packet Storm
294203 - adobe flash_player Adobe Flash Player 9.x up to 9.0.48.0, 8.x up to 8.0.35.0, and 7.x up to 7.0.70.0 does not sufficiently restrict the interpretation and usage of cross-domain policy files, which makes it easier for r… CWE-264
Permissions, Privileges, and Access Controls
CVE-2007-6243 2017-09-29 10:29 2007-12-20 Show GitHub Exploit DB Packet Storm
294204 - adobe flash_player Adobe Flash Player 9.x up to 9.0.48.0, 8.x up to 8.0.35.0, and 7.x up to 7.0.70.0, when running on Linux, uses insecure permissions for memory, which might allow local users to gain privileges. CWE-264
Permissions, Privileges, and Access Controls
CVE-2007-6246 2017-09-29 10:29 2007-12-20 Show GitHub Exploit DB Packet Storm
294205 - apple mac_os_x
mac_os_x_server
The accept_connections function in the virtual private network daemon (vpnd) in Apple Mac OS X 10.5 before 10.5.4 allows remote attackers to cause a denial of service (divide-by-zero error and daemon… CWE-189
Numeric Errors
CVE-2007-6276 2017-09-29 10:29 2007-12-7 Show GitHub Exploit DB Packet Storm
294206 - redhat enterprise_linux
enterprise_linux_desktop
The IPsec implementation in Linux kernel before 2.6.25 allows remote routers to cause a denial of service (crash) via a fragmented ESP packet in which the first fragment does not contain the entire E… CWE-16
Configuration
CVE-2007-6282 2017-09-29 10:29 2008-05-8 Show GitHub Exploit DB Packet Storm
294207 - redhat enterprise_linux The default configuration for autofs 5 (autofs5) in some Linux distributions, such as Red Hat Enterprise Linux (RHEL) 4 and 5, does not specify the nodev mount option for the -hosts map, which allows… CWE-16
Configuration
CVE-2007-6285 2017-09-29 10:29 2007-12-21 Show GitHub Exploit DB Packet Storm
294208 - iptel serweb Multiple PHP remote file inclusion vulnerabilities in SerWeb 2.0.0 dev1 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the (1) _SERWEB[configdir] parameter to load_lang… CWE-94
Code Injection
CVE-2007-6289 2017-09-29 10:29 2007-12-11 Show GitHub Exploit DB Packet Storm
294209 - iptel serweb Multiple directory traversal vulnerabilities in js/get_js.php in SERWeb 2.0.0 dev1 and earlier allow remote attackers to read arbitrary files via a .. (dot dot) in the (1) mod and (2) js parameters. CWE-22
Path Traversal
CVE-2007-6290 2017-09-29 10:29 2007-12-11 Show GitHub Exploit DB Packet Storm
294210 - mwopen e-commerce SQL injection vulnerability in leggi_commenti.asp in MWOpen 1.4 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter. CWE-89
SQL Injection
CVE-2007-6292 2017-09-29 10:29 2007-12-11 Show GitHub Exploit DB Packet Storm