Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 22, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
200491 6.5 警告
Local
virglrenderer project - virglrenderer の vrend_blitter.c の vrend_renderer_init_blit_ctx 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2017-5993 2017-04-6 20:11 2017-02-15 Show GitHub Exploit DB Packet Storm
200492 6 警告
Local
Fabrice Bellard - QEMU の hw/watchdog/wdt_i6300esb.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2016-10155 2017-04-6 20:06 2016-12-23 Show GitHub Exploit DB Packet Storm
200493 7.8 重要
Local
LibGD project - GD Graphics Library の gd_io.c における整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2016-10168 2017-04-6 20:04 2016-12-18 Show GitHub Exploit DB Packet Storm
200494 5.5 警告
Local
LibGD project - GD Graphics Library の gd_gd2.c の gdImageCreateFromGd2Ctx 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-10167 2017-04-6 20:04 2016-08-17 Show GitHub Exploit DB Packet Storm
200495 9.8 緊急
Network
LibGD project - GD Graphics Library の gd_interpolation.c の _gdContributionsAlloc 関数における整数アンダーフローの脆弱性 CWE-191
整数アンダーフロー
CVE-2016-10166 2017-04-6 20:04 2016-08-6 Show GitHub Exploit DB Packet Storm
200496 5.5 警告
Local
LibGD project - GD Graphics Library の gd_tga.c の read_image_tga 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-125
境界外読み取り
CVE-2016-6906 2017-04-6 20:04 2016-08-16 Show GitHub Exploit DB Packet Storm
200497 7.8 重要
Local
JasPer Project - JasPer の jpc_t2dec.c の jpc_dec_decodepkt 関数におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2017-6852 2017-04-6 20:02 2017-01-25 Show GitHub Exploit DB Packet Storm
200498 5.5 警告
Local
JasPer Project - JasPer の jas_seq.c の jas_matrix_bindsub 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-125
境界外読み取り
CVE-2017-6851 2017-04-6 20:02 2017-01-22 Show GitHub Exploit DB Packet Storm
200499 5.5 警告
Local
JasPer Project - JasPer の jp2_cod.c の jp2_cdef_destroy 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2017-6850 2017-04-6 20:02 2017-03-5 Show GitHub Exploit DB Packet Storm
200500 7.8 重要
Local
JasPer Project - JasPer の jpc_t2cod.c の jpc_pi_nextcprl 関数における整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2016-10251 2017-04-6 20:02 2016-11-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 22, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291531 - intercom web_kyukincho Cross-site scripting (XSS) vulnerability in Intercom Web Kyukincho 3.x before 3.0.030 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2014-2006 2024-11-21 11:05 2014-06-28 Show GitHub Exploit DB Packet Storm
291532 6.8 MEDIUM
Physics
sophos enterprise_console Sophos Disk Encryption (SDE) 5.x in Sophos Enterprise Console (SEC) 5.x before 5.2.2 does not enforce intended authentication requirements for a resume action from sleep mode, which allows physically… CWE-287
Improper Authentication
CVE-2014-2005 2024-11-21 11:05 2014-06-25 Show GitHub Exploit DB Packet Storm
291533 - jreast jr_east_japan The East Japan Railway Company JR East Japan application before 1.2.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to obtain sensitive inf… CWE-310
Cryptographic Issues
CVE-2014-2001 2024-11-21 11:05 2014-06-19 Show GitHub Exploit DB Packet Storm
291534 - cisco adaptive_security_appliance_software The WebVPN portal in Cisco Adaptive Security Appliance (ASA) Software 8.4(.7.15) and earlier allows remote authenticated users to obtain sensitive information via a crafted JavaScript file, aka Bug I… NVD-CWE-noinfo
CVE-2014-2151 2024-11-21 11:05 2014-06-19 Show GitHub Exploit DB Packet Storm
291535 - ntt 050_plus The NTT 050 plus application before 4.2.1 for Android allows attackers to obtain sensitive information by leveraging the ability to read system log files. CWE-200
Information Exposure
CVE-2014-2000 2024-11-21 11:05 2014-06-19 Show GitHub Exploit DB Packet Storm
291536 - iij seil\%2fturbo_firmware
seil\/turbo
seil\%2fneu_2fe_plus_firmware
seil\/neu_2fe_plus
seil\%2fx86_firmware
seil\/x86
seil\%2fx2_firmware
seil\/x2
seil\%2fx1_firmware
seil\/x1…
The PPP Access Concentrator (PPPAC) on SEIL SEIL/x86 routers 1.00 through 3.10, SEIL/X1 routers 1.00 through 4.50, SEIL/X2 routers 1.00 through 4.50, SEIL/B1 routers 1.00 through 4.50, SEIL/Turbo rou… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-2004 2024-11-21 11:05 2014-06-16 Show GitHub Exploit DB Packet Storm
291537 - justsystems just_online_update
ichitaro
JustSystems JUST Online Update, as used in Ichitaro through 2014 and other products, does not properly validate signatures of update modules, which allows remote attackers to spoof modules and execut… CWE-20
 Improper Input Validation 
CVE-2014-2003 2024-11-21 11:05 2014-06-16 Show GitHub Exploit DB Packet Storm
291538 - cisco ios_xr
asr_9001
asr_9006
asr_9010
asr_9904
asr_9912
asr_9922
Cisco IOS XR 4.1.2 through 5.1.1 on ASR 9000 devices, when a Trident-based line card is used, allows remote attackers to cause a denial of service (NP chip and line card reload) via malformed IPv6 pa… CWE-399
 Resource Management Errors
CVE-2014-2176 2024-11-21 11:05 2014-06-14 Show GitHub Exploit DB Packet Storm
291539 - c-board_moyuku_project c-board_moyuku Cross-site scripting (XSS) vulnerability in C-BOARD Moyuku 1.01b6 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2014-2002 2024-11-21 11:05 2014-06-14 Show GitHub Exploit DB Packet Storm
291540 - microsoft lync_server Cross-site scripting (XSS) vulnerability in the Web Components Server in Microsoft Lync Server 2010 and 2013 allows remote attackers to inject arbitrary web script or HTML via a crafted URL containin… CWE-79
Cross-site Scripting
CVE-2014-1823 2024-11-21 11:05 2014-06-11 Show GitHub Exploit DB Packet Storm