Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
197221 3.3
Local
IBM - IBM Cloud Orchestrator におけるサーバが短時間遅くなる脆弱性 CWE-20
不適切な入力確認
CVE-2016-0206 2017-03-2 18:31 2016-10-30 Show GitHub Exploit DB Packet Storm
197222 3.3
Local
IBM - IBM Cloud Orchestrator におけるカレントユーザのドメインの全てのタスクを表示される脆弱性 CWE-200
情報漏えい
CVE-2016-0202 2017-03-2 18:31 2016-11-18 Show GitHub Exploit DB Packet Storm
197223 2.8
Local
IBM - IBM Cloud Orchestrator の services/[action]/launch API におけるクロスドメインリソースを変更される脆弱性 CWE-284
不適切なアクセス制御
CVE-2015-7494 2017-03-2 18:31 2015-09-29 Show GitHub Exploit DB Packet Storm
197224 5.4 警告
Network
IBM - IBM Cognos TM1 におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-0218 2017-03-2 18:00 2016-12-15 Show GitHub Exploit DB Packet Storm
197225 5.5 警告
Local
IBM - IBM BigFix Inventory における Web ページをローカルに保存される脆弱性 CWE-200
情報漏えい
CVE-2016-8981 2017-03-2 17:07 2016-12-16 Show GitHub Exploit DB Packet Storm
197226 8.1 重要
Network
IBM - IBM BigFix Inventory におけるサービス運用妨害 (DoS) の脆弱性 CWE-611
XML 外部エンティティ参照の不適切な制限
CVE-2016-8980 2017-03-2 17:07 2016-12-16 Show GitHub Exploit DB Packet Storm
197227 5.3 警告
Network
IBM - IBM BigFix Inventory における重要な情報を公開される脆弱性 CWE-200
情報漏えい
CVE-2016-8977 2017-03-2 17:07 2016-12-9 Show GitHub Exploit DB Packet Storm
197228 5.9 警告
Network
IBM - IBM BigFix Inventory における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-8966 2017-03-2 17:07 2016-12-16 Show GitHub Exploit DB Packet Storm
197229 5.5 警告
Local
IBM - IBM BigFix Inventory における重要な情報を読まれる脆弱性 CWE-200
情報漏えい
CVE-2016-8963 2017-03-2 17:07 2016-12-12 Show GitHub Exploit DB Packet Storm
197230 6.1 警告
Network
IBM - IBM BigFix Inventory におけるオープンリダイレクトの脆弱性 CWE-601
オープンリダイレクト
CVE-2016-8961 2017-03-2 17:07 2016-12-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 18, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
348951 - freebsd freebsd jail.c in jail in FreeBSD 8.0 and 8.1-PRERELEASE, when the "-l -U root" options are omitted, does not properly restrict access to the current working directory, which might allow local users to read,… CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-2022 2010-06-1 13:00 2010-05-29 Show GitHub Exploit DB Packet Storm
348952 - intervations filecopa Directory traversal vulnerability in the FTP service in FileCOPA before 5.03 allows remote attackers to read or overwrite arbitrary files via unknown vectors. NOTE: the provenance of this informatio… CWE-22
Path Traversal
CVE-2010-2112 2010-06-1 13:00 2010-05-29 Show GitHub Exploit DB Packet Storm
348953 - brekeke pbx Cross-site request forgery (CSRF) vulnerability in pbx/gate in Brekeke PBX 2.4.4.8 allows remote attackers to hijack the authentication of users for requests that change passwords via the pbxadmin.we… CWE-352
 Origin Validation Error
CVE-2010-2114 2010-06-1 13:00 2010-05-29 Show GitHub Exploit DB Packet Storm
348954 - solarwinds tftp_server SolarWinds TFTP Server 10.4.0.10 allows remote attackers to cause a denial of service (no new connections) via a crafted read request. CWE-20
 Improper Input Validation 
CVE-2010-2115 2010-06-1 13:00 2010-05-29 Show GitHub Exploit DB Packet Storm
348955 - hp mercury_testdirector_for_quality_center Unspecified vulnerability in HP TestDirector for Quality Center 9.2 before Patch8 allows remote attackers to modify data via unknown vectors. NVD-CWE-noinfo
CVE-2010-1959 2010-05-29 14:47 2010-05-28 Show GitHub Exploit DB Packet Storm
348956 - microsoft asp.net Microsoft ASP.NET 2.0 does not prevent setting the InnerHtml property on a control that inherits from HtmlContainerControl, which allows remote attackers to conduct cross-site scripting (XSS) attacks… CWE-79
Cross-site Scripting
CVE-2010-2084 2010-05-28 13:00 2010-05-28 Show GitHub Exploit DB Packet Storm
348957 - microsoft .net_framework The default configuration of ASP.NET in Microsoft .NET before 1.1 has a value of FALSE for the EnableViewStateMac property, which allows remote attackers to conduct cross-site scripting (XSS) attacks… CWE-79
Cross-site Scripting
CVE-2010-2085 2010-05-28 13:00 2010-05-28 Show GitHub Exploit DB Packet Storm
348958 - apache myfaces Apache MyFaces 1.1.7 and 1.2.8, as used in IBM WebSphere Application Server and other applications, does not properly handle an unencrypted view state, which allows remote attackers to conduct cross-… CWE-79
Cross-site Scripting
CVE-2010-2086 2010-05-28 13:00 2010-05-28 Show GitHub Exploit DB Packet Storm
348959 - microsoft asp.net ASP.NET in Microsoft .NET 3.5 does not properly handle an unencrypted view state, which allows remote attackers to conduct cross-site scripting (XSS) attacks against the form control via the __VIEWST… CWE-79
Cross-site Scripting
CVE-2010-2088 2010-05-28 13:00 2010-05-28 Show GitHub Exploit DB Packet Storm
348960 - cmsqlite cmsqlite SQL injection vulnerability in index.php in CMSQlite 1.2 and earlier allows remote attackers to execute arbitrary SQL commands via the c parameter. CWE-89
SQL Injection
CVE-2010-2095 2010-05-28 13:00 2010-05-28 Show GitHub Exploit DB Packet Storm