Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
200531 9.8 緊急
Network
GNOME Project
Fedora Project
- gtk-vnc の複数の関数における整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2017-5885 2017-03-23 12:29 2017-02-7 Show GitHub Exploit DB Packet Storm
200532 7.8 重要
Local
GNOME Project
Fedora Project
- gtk-vnc における任意のコードを実行される脆弱性 CWE-118
インデックス化が可能なリソースの不適切なアクセス (範囲エラー)
CVE-2017-5884 2017-03-23 12:29 2017-02-7 Show GitHub Exploit DB Packet Storm
200533 7.5 重要
Network
Kodi - Kodi 用 Chorus2 アドオンにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2017-5982 2017-03-23 12:26 2017-02-12 Show GitHub Exploit DB Packet Storm
200534 7.5 重要
Network
シスコシステムズ - Cisco NetFlow Generation アプライアンスソフトウェアの Stream Control Transmission Protocol デコーダにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2017-3826 2017-03-23 12:21 2017-03-1 Show GitHub Exploit DB Packet Storm
200535 9.8 緊急
Network
Lenovo - Lenovo XClarity Administrator が生成するログファイルにおけるユーザ資格情報を閲覧される脆弱性 CWE-532
ログファイルからの情報漏えい
CVE-2016-8233 2017-03-23 12:20 2016-09-16 Show GitHub Exploit DB Packet Storm
200536 2.6
Adjacent
マイクロソフト - 複数の Microsoft Windows 製品の Hyper-V におけるホスト OS メモリから重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2017-0096 2017-03-23 10:08 2017-03-14 Show GitHub Exploit DB Packet Storm
200537 7.6 重要
Adjacent
マイクロソフト - 複数の Microsoft Windows 製品の Hyper-V におけるホスト OS 上で任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2017-0109 2017-03-23 10:04 2017-03-14 Show GitHub Exploit DB Packet Storm
200538 7.6 重要
Adjacent
マイクロソフト - 複数の Microsoft Windows 製品の Hyper-V におけるホスト OS 上で任意のコードを実行される脆弱性 CWE-284
不適切なアクセス制御
CVE-2017-0075 2017-03-23 10:04 2017-03-14 Show GitHub Exploit DB Packet Storm
200539 9.8 緊急
Network
rubyzip - Ruby 用 rubyzip gem の Zip::File コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2017-5946 2017-03-23 09:47 2017-02-8 Show GitHub Exploit DB Packet Storm
200540 7.5 重要
Network
TigerVNC
openSUSE project
- TigerVNC の Xvnc サーバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2016-10207 2017-03-22 18:17 2016-08-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 19, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
290081 - debian dpkg-dev Multiple directory traversal vulnerabilities in dpkg-source in dpkg-dev 1.3.0 allow remote attackers to modify files outside of the intended directories via a source package with a crafted Index: pse… CWE-22
Path Traversal
CVE-2014-3865 2024-11-21 11:09 2014-05-31 Show GitHub Exploit DB Packet Storm
290082 - debian dpkg-dev Directory traversal vulnerability in dpkg-source in dpkg-dev 1.3.0 allows remote attackers to modify files outside of the intended directories via a crafted source package that lacks a --- header lin… CWE-22
Path Traversal
CVE-2014-3864 2024-11-21 11:09 2014-05-31 Show GitHub Exploit DB Packet Storm
290083 - webmin webmin
userwin
Multiple cross-site scripting (XSS) vulnerabilities in Webmin before 1.690 and Usermin before 1.600 allow remote attackers to inject arbitrary web script or HTML via vectors related to popup windows. CWE-79
Cross-site Scripting
CVE-2014-3924 2024-11-21 11:09 2014-05-30 Show GitHub Exploit DB Packet Storm
290084 - digitalzoomstudio video_gallery Multiple cross-site scripting (XSS) vulnerabilities in the Digital Zoom Studio (DZS) Video Gallery plugin for WordPress allow remote attackers to inject arbitrary web script or HTML via the logoLink … CWE-79
Cross-site Scripting
CVE-2014-3923 2024-11-21 11:09 2014-05-30 Show GitHub Exploit DB Packet Storm
290085 - trendmicro interscan_messaging_security_virtual_appliance Cross-site scripting (XSS) vulnerability in Trend Micro InterScan Messaging Security Virtual Appliance 8.5.1.1516 allows remote authenticated users to inject arbitrary web script or HTML via the addW… CWE-79
Cross-site Scripting
CVE-2014-3922 2024-11-21 11:09 2014-05-30 Show GitHub Exploit DB Packet Storm
290086 - simple_popup_project simple_popup Cross-site scripting (XSS) vulnerability in popup.php in the Simple Popup Images plugin for WordPress allows remote attackers to inject arbitrary web script or HTML via the z parameter. CWE-79
Cross-site Scripting
CVE-2014-3921 2024-11-21 11:09 2014-05-30 Show GitHub Exploit DB Packet Storm
290087 - dlink dap-1350_firmware
dap-1350
Multiple SQL injection vulnerabilities in the administration login page in D-Link DAP-1350 (Rev. A1) with firmware 1.14 and earlier allow remote attackers to execute arbitrary SQL commands via the (1… CWE-89
SQL Injection
CVE-2014-3872 2024-11-21 11:09 2014-05-27 Show GitHub Exploit DB Packet Storm
290088 - geodesicsolutions geocore_max Multiple SQL injection vulnerabilities in register.php in Geodesic Solutions GeoCore MAX 7.3.3 (formerly GeoClassifieds and GeoAuctions) allow remote attackers to execute arbitrary SQL commands via t… CWE-89
SQL Injection
CVE-2014-3871 2024-11-21 11:09 2014-05-27 Show GitHub Exploit DB Packet Storm
290089 - bib2html_project bib2html Cross-site scripting (XSS) vulnerability in the bib2html plugin 0.9.3 for WordPress allows remote attackers to inject arbitrary web script or HTML via the styleShortName parameter in an adminStyleAdd… CWE-79
Cross-site Scripting
CVE-2014-3870 2024-11-21 11:09 2014-05-27 Show GitHub Exploit DB Packet Storm
290090 - usercake usercake Multiple cross-site request forgery (CSRF) vulnerabilities in user_settings.php in Usercake 2.0.2 and earlier allow remote attackers to hijack the authentication of administrators for requests that c… CWE-352
 Origin Validation Error
CVE-2014-3866 2024-11-21 11:09 2014-05-27 Show GitHub Exploit DB Packet Storm