Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
196971 6.3 警告
Local
SimpleSAMLphp - SimpleSAMLphp の SimpleSAML_XML_Validator クラスコンストラクタにおける SAML 1 レスポンス上の署名を偽造される脆弱性 CWE-20
不適切な入力確認
CVE-2016-9955 2017-03-10 15:54 2016-12-2 Show GitHub Exploit DB Packet Storm
196972 5.5 警告
Local
ImageMagick - ImageMagick の MagickCore/pixel-accessor.h の IsPixelGray 関数におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
CWE-125
CVE-2016-9773 2017-03-10 15:51 2016-12-2 Show GitHub Exploit DB Packet Storm
196973 7.5 重要
Local
シトリックス・システムズ - Xen の ioport_read および ioport_write 関数における qemu プロセスの権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-9637 2017-03-10 15:47 2016-12-6 Show GitHub Exploit DB Packet Storm
196974 7.5 重要
Network
SAP - SAP KERNEL の SAP メッセージサーバ HTTP デーモンにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2017-5997 2017-03-10 15:40 2017-02-15 Show GitHub Exploit DB Packet Storm
196975 7.8 重要
Local
JasPer Project - JasPer の jpc_tsfb.c の jpc_tsfb_getbands2 関数におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-9560 2017-03-10 15:39 2016-11-20 Show GitHub Exploit DB Packet Storm
196976 5.5 警告
Local
JasPer Project
Fedora Project
- JasPer の libjasper/bmp/bmp_dec.c の bmp_getdata 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2016-8690 2017-03-10 15:39 2016-10-16 Show GitHub Exploit DB Packet Storm
196977 9.8 緊急
Network
MetalGenix - GeniXCMS における CSRF トークンを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-5959 2017-03-10 15:38 2017-02-13 Show GitHub Exploit DB Packet Storm
196978 9.8 緊急
Network
modified - modified eCommerce Shopsoftware における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2016-3694 2017-03-10 15:38 2016-04-16 Show GitHub Exploit DB Packet Storm
196979 7.5 重要
Network
Fidelix Ltd - Fidelix FX-20 シリーズコントローラにおけるサーバ上の任意のファイルおよびディレクトリにアクセスされる脆弱性 CWE-22
パス・トラバーサル
CVE-2016-9364 2017-03-10 15:37 2016-12-22 Show GitHub Exploit DB Packet Storm
196980 7.5 重要
Network
Debian
OFFIS
- DICOM dcmtk の storescp の parsePresentationContext 関数におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2015-8979 2017-03-10 15:36 2015-12-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
349341 - mozilla bugzilla Cross-site scripting vulnerabilities in Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, could allow remote attackers to execute script as other Bugzilla users via the full name (real name) fiel… NVD-CWE-Other
CVE-2002-0807 2008-09-11 04:12 2002-08-12 Show GitHub Exploit DB Packet Storm
349342 - mozilla bugzilla Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, may allow remote attackers to cause a denial of service or execute certain queries via a SQL injection attack on the sort order parameter to bugl… NVD-CWE-Other
CVE-2002-0811 2008-09-11 04:12 2002-08-12 Show GitHub Exploit DB Packet Storm
349343 - mozilla bugzilla Bugzilla before 2.14.1 allows remote attackers to (1) spoof a user comment via an HTTP request to process_bug.cgi using the "who" parameter, instead of the Bugzilla_login cookie, or (2) post a bug as… NVD-CWE-Other
CVE-2002-0008 2008-09-11 04:11 2002-01-31 Show GitHub Exploit DB Packet Storm
349344 - mozilla bugzilla show_bug.cgi in Bugzilla before 2.14.1 allows a user with "Bugs Access" privileges to see other products that are not accessible to the user, by submitting a bug and reading the resulting Product pul… NVD-CWE-Other
CVE-2002-0009 2008-09-11 04:11 2002-01-31 Show GitHub Exploit DB Packet Storm
349345 - mozilla bugzilla Bugzilla before 2.14.1 allows remote attackers to inject arbitrary SQL code and create files or gain privileges via (1) the sql parameter in buglist.cgi, (2) invalid field names from the "boolean cha… NVD-CWE-Other
CVE-2002-0010 2008-09-11 04:11 2002-01-31 Show GitHub Exploit DB Packet Storm
349346 - mozilla bugzilla Information leak in doeditvotes.cgi in Bugzilla before 2.14.1 may allow remote attackers to more easily conduct attacks on the login. NVD-CWE-Other
CVE-2002-0011 2008-09-11 04:11 2002-01-31 Show GitHub Exploit DB Packet Storm
349347 - isc
astaro
bind
security_linux
Buffer overflows in the DNS stub resolver library in ISC BIND 4.9.2 through 4.9.10, and other derived libraries such as BSD libc and GNU glibc, allow remote attackers to execute arbitrary code via DN… NVD-CWE-Other
CVE-2002-0029 2008-09-11 04:11 2002-11-29 Show GitHub Exploit DB Packet Storm
349348 - adobe acrobat
acrobat_reader
The digital signature mechanism for the Adobe Acrobat PDF viewer only verifies the PE header of executable code for a plug-in, which can allow attackers to execute arbitrary code in certified mode by… NVD-CWE-Other
CVE-2002-0030 2008-09-11 04:11 2003-04-2 Show GitHub Exploit DB Packet Storm
349349 - bindview
funk_software
netrc
funk_software_proxy
Funk Software Proxy Host 3.x is installed with insecure permissions for the registry and the file system. NVD-CWE-Other
CVE-2002-0064 2008-09-11 04:11 2002-04-22 Show GitHub Exploit DB Packet Storm
349350 - bindview
funk_software
netrc
funk_software_proxy
Funk Software Proxy Host 3.x uses weak encryption for the Proxy Host password, which allows local users to gain privileges by recovering the passwords from the PHOST.INI file or the Windows registry. NVD-CWE-Other
CVE-2002-0065 2008-09-11 04:11 2002-04-22 Show GitHub Exploit DB Packet Storm