Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
198871 5 警告 日本電気
日立
NTP Project
- NTP の ntp-keygen の util/ntp-keygen.c における暗号保護メカニズムを破られる脆弱性 CWE-Other
その他
CVE-2014-9294 2016-11-9 16:47 2014-11-3 Show GitHub Exploit DB Packet Storm
198872 5.9 警告
Network
日立
オラクル
- Oracle Java SE および Java SE Embedded における Networking に関する脆弱性 CWE-200
情報漏えい
CVE-2016-5597 2016-11-9 16:41 2016-10-18 Show GitHub Exploit DB Packet Storm
198873 9.6 緊急
Network
日立
オラクル
- Oracle Java SE および Java SE Embedded における Hotspot に関する脆弱性 CWE-Other
その他
CVE-2016-5582 2016-11-9 16:41 2016-10-18 Show GitHub Exploit DB Packet Storm
198874 8.3 重要
Network
日立
オラクル
- Oracle Java SE および Java SE Embedded における Hotspot に関する脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-5573 2016-11-9 16:41 2016-10-18 Show GitHub Exploit DB Packet Storm
198875 9.6 緊急
Network
日立
オラクル
- Oracle Java SE における AWT に関する脆弱性 CWE-Other
その他
CVE-2016-5568 2016-11-9 16:41 2016-10-18 Show GitHub Exploit DB Packet Storm
198876 9.6 緊急
Network
日立
オラクル
- Oracle Java SE における 2D に関する脆弱性 CWE-Other
その他
CVE-2016-5556 2016-11-9 16:41 2016-10-18 Show GitHub Exploit DB Packet Storm
198877 4.3 警告
Network
日立
オラクル
- Oracle Java SE および Java SE Embedded における JMX に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-5554 2016-11-9 16:41 2016-10-18 Show GitHub Exploit DB Packet Storm
198878 3.1
Network
日立
オラクル
- Oracle Java SE および Java SE Embedded における Libraries に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-5542 2016-11-9 16:40 2016-10-18 Show GitHub Exploit DB Packet Storm
198879 2.6 注意 日本電気
Apache Software Foundation
オラクル
- Apache Tomcat の AsyncContextImpl.java における重要なリクエスト情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-2071 2016-11-9 16:39 2013-05-9 Show GitHub Exploit DB Packet Storm
198880 8.1 重要
Network
レッドハット
日本電気
Fedora Project
The Go Project
- Go の net/http パッケージにおける任意のプロキシサーバに CGI アプリケーションのアウトバウンド HTTP トラフィックをリダイレクトされる脆弱性 CWE-Other
CWE-Other
CVE-2016-5386 2016-11-9 16:35 2016-07-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 10, 2026, 4:58 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
347151 - joomlanook com_hsconfig Directory traversal vulnerability in the Highslide JS (com_hsconfig) component 1.5 and 2.0.9 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter… CWE-22
Path Traversal
CVE-2010-1314 2010-04-9 13:00 2010-04-9 Show GitHub Exploit DB Packet Storm
347152 - mahara mahara SQL injection vulnerability in lib/user.php in mahara 1.0.4 allows remote attackers to execute arbitrary SQL commands via a username. CWE-89
SQL Injection
CVE-2010-0400 2010-04-8 22:25 2010-04-8 Show GitHub Exploit DB Packet Storm
347153 - decryptweb com_dwgraphs Directory traversal vulnerability in dwgraphs.php in the DecryptWeb DW Graphs (com_dwgraphs) component 1.0 for Joomla! allows remote attackers to read arbitrary files via directory traversal sequence… CWE-22
Path Traversal
CVE-2010-1302 2010-04-8 13:00 2010-04-8 Show GitHub Exploit DB Packet Storm
347154 - ermenegildo_fiorito irmin_cms Directory traversal vulnerability in includes/template-loader.php in Irmin CMS (formerly Pepsi CMS) 0.5 and 0.6 BETA2, when register_globals is enabled, allows remote attackers to include and execute… CWE-22
Path Traversal
CVE-2008-7254 2010-04-8 13:00 2010-04-8 Show GitHub Exploit DB Packet Storm
347155 - ekith com_dcs_flashgames SQL injection vulnerability in Adam Corley dcsFlashGames (com_dcs_flashgames) allows remote attackers to execute arbitrary SQL commands via the catid parameter to index.php. CWE-89
SQL Injection
CVE-2010-1265 2010-04-7 13:00 2010-04-7 Show GitHub Exploit DB Packet Storm
347156 - kjetiltroan webmaid_cms Multiple directory traversal vulnerabilities in WebMaid CMS 0.2-6 Beta and earlier allow remote attackers to read arbitrary files via directory traversal sequences in the com parameter to (1) cContac… CWE-22
Path Traversal
CVE-2010-1267 2010-04-7 13:00 2010-04-7 Show GitHub Exploit DB Packet Storm
347157 - bbsxp bbsxp Multiple cross-site scripting (XSS) vulnerabilities in BBSXP 2008 SP2 allow remote attackers to inject arbitrary web script or HTML via the URI in a request to (1) AddPost.asp, (2) AddTopic.asp, (3) … CWE-79
Cross-site Scripting
CVE-2010-1276 2010-04-7 13:00 2010-04-7 Show GitHub Exploit DB Packet Storm
347158 - pulsecms pulse_cms Directory traversal vulnerability in view.php in Pulse CMS 1.2.2 allows remote attackers to read arbitrary files via directory traversal sequences in the f parameter. NOTE: the provenance of this in… CWE-22
Path Traversal
CVE-2010-1298 2010-04-7 13:00 2010-04-7 Show GitHub Exploit DB Packet Storm
347159 - pulsecms pulse_cms per: http://secunia.com/advisories/38650 '2) Input passed via the "f" parameter to view.php is not properly sanitised before being used to read files. This can be exploited to disclose the content… CWE-22
Path Traversal
CVE-2010-1298 2010-04-7 13:00 2010-04-7 Show GitHub Exploit DB Packet Storm
347160 - novell netware_ftp_server
netware
NWFTPD.nlm before 5.08.06 in the FTP server in Novell NetWare does not properly handle partial matches for container names in the FTPREST.TXT file, which allows remote attackers to bypass intended ac… CWE-264
Permissions, Privileges, and Access Controls
CVE-2007-6735 2010-04-6 23:22 2010-04-6 Show GitHub Exploit DB Packet Storm