Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 5, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
199531 3.5
Network
IBM - IBM Connections におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2016-2998 2016-09-2 12:00 2016-08-17 Show GitHub Exploit DB Packet Storm
199532 5.4 警告
Network
IBM - IBM Connections の Web UI におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-2997 2016-09-2 12:00 2016-08-17 Show GitHub Exploit DB Packet Storm
199533 5.4 警告
Network
IBM - IBM Connections の Web UI におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-2995 2016-09-2 12:00 2016-08-17 Show GitHub Exploit DB Packet Storm
199534 5.4 警告
Network
IBM - IBM Connections の Web UI におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-2956 2016-09-2 12:00 2016-08-16 Show GitHub Exploit DB Packet Storm
199535 5.4 警告
Network
IBM - IBM Connections の Web UI におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-2954 2016-09-2 12:00 2016-08-16 Show GitHub Exploit DB Packet Storm
199536 6.5 警告
Network
NetApp - NetApp OnCommand System Manager におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2016-5047 2016-09-2 11:43 2016-08-30 Show GitHub Exploit DB Packet Storm
199537 6.5 警告
Network
NetApp - NetApp Clustered Data ONTAP における重要なクラスタおよびテナント情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-3064 2016-09-2 11:43 2016-08-30 Show GitHub Exploit DB Packet Storm
199538 5.5 警告
Local
Debian - Debian Wheezy の linux-image パッケージの "aufs 3.2.x+setfl-debian" パッチにおけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-7118 2016-09-2 11:17 2016-08-31 Show GitHub Exploit DB Packet Storm
199539 7.8 重要
Local
Linux - Linux Kernel の net/socket.c における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-2686 2016-09-1 17:17 2015-03-26 Show GitHub Exploit DB Packet Storm
199540 7.8 重要
Local
Debian
Canonical
OpenBSD
- OpenSSH の sshd の session.c 内の do_setup_env 関数における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-8325 2016-09-1 17:10 2015-11-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 5, 2026, 4:51 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
347571 - sven-ove_bjerkan downloadprotect Directory traversal vulnerability in DownloadProtect before 1.0.3 allows remote attackers to read files above the download folder. NVD-CWE-Other
CVE-2005-2248 2008-09-6 05:51 2005-07-13 Show GitHub Exploit DB Packet Storm
347572 - jinzora jinzora Multiple unknown vulnerabilities in Jinzora 2.0.1 have unknown impact and attack vectors, possibly involving a PHP file inclusion vulnerability. NVD-CWE-Other
CVE-2005-2249 2008-09-6 05:51 2005-07-13 Show GitHub Exploit DB Packet Storm
347573 - nokia affix Buffer overflow in Bluetooth FTP client (BTFTP) in Nokia Affix 2.1.2 and 3.2.0 allows remote attackers to execute arbitrary code via a long filename in an OBEX file share. NVD-CWE-Other
CVE-2005-2250 2008-09-6 05:51 2005-07-13 Show GitHub Exploit DB Packet Storm
347574 - gianluca_baldo phpauction PhpAuction 2.5 allows remote attackers to bypass authentication and gain privileges as another user by setting the PHPAUCTION_RM_ID cookie to the user ID. NVD-CWE-Other
CVE-2005-2252 2008-09-6 05:51 2005-07-13 Show GitHub Exploit DB Packet Storm
347575 - gianluca_baldo phpauction SQL injection vulnerability in PhpAuction 2.5 allow remote attackers to modify SQL queries via the category parameter to adsearch.php. NOTE: there is evidence that viewnews.php may not be part of the… NVD-CWE-Other
CVE-2005-2253 2008-09-6 05:51 2005-07-13 Show GitHub Exploit DB Packet Storm
347576 - gianluca_baldo phpauction Directory traversal vulnerability in PhpAuction 2.5 allows remote attackers to read arbitrary files, include local PHP files, or obtain sensitive path information via ".." sequences in the lan param… NVD-CWE-Other
CVE-2005-2255 2008-09-6 05:51 2005-07-13 Show GitHub Exploit DB Packet Storm
347577 - phppgadmin phppgadmin Encoded directory traversal vulnerability in phpPgAdmin 3.1 to 3.5.3 allows remote attackers to access arbitrary files via "%2e%2e%2f" (encoded dot dot) sequences in the formLanguage parameter. NVD-CWE-Other
CVE-2005-2256 2008-09-6 05:51 2005-07-13 Show GitHub Exploit DB Packet Storm
347578 - squitosoft squito_gallery PHP remote file inclusion vulnerability in photolist.inc.php in Squito Gallery 1.33 allows remote attackers to execute arbitrary code via the photoroot parameter. NVD-CWE-Other
CVE-2005-2258 2008-09-6 05:51 2005-07-13 Show GitHub Exploit DB Packet Storm
347579 - usanet_creations domain_name_auction
makebid_auction_deluxe
makebid_auction_standard
makebid_reverse_auction
standard_classified_ads
usanet_shopping_mall
The dispallclosed2 function in dispallclosed.pl for multiple USANet Creations products, including (1) USANet Shopping Mall Software, (2) Domain Name Auction Software, (3) Standard Classified Ads Soft… NVD-CWE-Other
CVE-2005-2259 2008-09-6 05:51 2005-07-13 Show GitHub Exploit DB Packet Storm
347580 - alexander_clauss icab iCab 2.9.8 does not clearly associate a Javascript dialog box with the web page that generated it, which allows remote attackers to spoof a dialog box from a trusted site and facilitates phishing att… NVD-CWE-Other
CVE-2005-2271 2008-09-6 05:51 2005-07-13 Show GitHub Exploit DB Packet Storm