Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 23, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
200811 5.3 警告
Network
Eaton - 特定の Eaton ePDUs のレガシー製品におけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2016-9357 2017-04-6 20:21 2016-11-16 Show GitHub Exploit DB Packet Storm
200812 6.5 警告
Local
virglrenderer project - virglrenderer の vrend_renderer.c の vrend_create_vertex_elements_state 関数 におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2017-6386 2017-04-6 20:11 2017-02-28 Show GitHub Exploit DB Packet Storm
200813 6.5 警告
Local
virglrenderer project - virglrenderer の vrend_renderer.c の add_shader_program 関数 におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2017-6317 2017-04-6 20:11 2017-02-7 Show GitHub Exploit DB Packet Storm
200814 6.5 警告
Local
virglrenderer project - virglrenderer の vrend_decode.c の vrend_decode_reset 関数 におけるサービス運用妨害 (DoS) の脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2017-6210 2017-04-6 20:11 2017-02-10 Show GitHub Exploit DB Packet Storm
200815 6.5 警告
Local
virglrenderer project - virglrenderer の Gallium ドライバの TGSI auxiliary モジュール内の tgsi_text.c におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2017-6209 2017-04-6 20:11 2017-01-23 Show GitHub Exploit DB Packet Storm
200816 5.5 警告
Local
virglrenderer project - virglrenderer の vrend_renderer.c の vrend_create_vertex_elements_state 関数におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2017-5994 2017-04-6 20:11 2017-02-7 Show GitHub Exploit DB Packet Storm
200817 6.5 警告
Local
virglrenderer project - virglrenderer の vrend_blitter.c の vrend_renderer_init_blit_ctx 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2017-5993 2017-04-6 20:11 2017-02-15 Show GitHub Exploit DB Packet Storm
200818 6 警告
Local
Fabrice Bellard - QEMU の hw/watchdog/wdt_i6300esb.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2016-10155 2017-04-6 20:06 2016-12-23 Show GitHub Exploit DB Packet Storm
200819 7.8 重要
Local
LibGD project - GD Graphics Library の gd_io.c における整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2016-10168 2017-04-6 20:04 2016-12-18 Show GitHub Exploit DB Packet Storm
200820 5.5 警告
Local
LibGD project - GD Graphics Library の gd_gd2.c の gdImageCreateFromGd2Ctx 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-10167 2017-04-6 20:04 2016-08-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 23, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292191 - otrs otrs SQL injection vulnerability in the StateGetStatesByType function in Kernel/System/State.pm in Open Ticket Request System (OTRS) 3.1.x before 3.1.19, 3.2.x before 3.2.14, and 3.3.x before 3.3.4 allows… CWE-89
SQL Injection
CVE-2014-1471 2024-11-21 11:04 2014-02-5 Show GitHub Exploit DB Packet Storm
292192 - mediawiki mediawiki MediaWiki 1.22.x before 1.22.2, 1.21.x before 1.21.5, and 1.19.x before 1.19.11, when DjVu or PDF file upload support is enabled, allows remote attackers to execute arbitrary commands via shell metac… CWE-20
 Improper Input Validation 
CVE-2014-1610 2024-11-21 11:04 2014-01-31 Show GitHub Exploit DB Packet Storm
292193 - media5 mediatrix_voip_gateway_4402_firmware
mediatrix_voip_gateway
Cross-site scripting (XSS) vulnerability in login.esp in the Web Management Interface in Media5 Mediatrix 4402 VoIP Gateway with firmware Dgw 1.1.13.186 and earlier allows remote attackers to inject … CWE-79
Cross-site Scripting
CVE-2014-1612 2024-11-21 11:04 2014-01-31 Show GitHub Exploit DB Packet Storm
292194 - anonymous_posting_project anonymous_posting Cross-site scripting (XSS) vulnerability in the Anonymous Posting module 7.x-1.2 and 7.x-1.3 for Drupal allows remote attackers to inject arbitrary web script or HTML via the contact name field. CWE-79
Cross-site Scripting
CVE-2014-1611 2024-11-21 11:04 2014-01-31 Show GitHub Exploit DB Packet Storm
292195 - skybluecanvas skybluecanvas The bashMail function in cms/data/skins/techjunkie/fragments/contacts/functions.php in SkyBlueCanvas CMS before 1.1 r248-04, when the pid parameter is 4, allows remote attackers to execute arbitrary … CWE-134
Use of Externally-Controlled Format String
CVE-2014-1683 2024-11-21 11:04 2014-01-30 Show GitHub Exploit DB Packet Storm
292196 - openbsd openssh The hash_buffer function in schnorr.c in OpenSSH through 6.4, when Makefile.inc is modified to enable the J-PAKE protocol, does not initialize certain data structures, which might allow remote attack… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-1692 2024-11-21 11:04 2014-01-30 Show GitHub Exploit DB Packet Storm
292197 - google chrome Multiple unspecified vulnerabilities in Google Chrome before 32.0.1700.102 have unknown impact and attack vectors, related to 12 "security fixes [that were not] either contributed by external researc… NVD-CWE-noinfo
CVE-2014-1681 2024-11-21 11:04 2014-01-28 Show GitHub Exploit DB Packet Storm
292198 - debian axiom axiom-test.sh in axiom 20100701-1.1 uses tempfile to create a safe temporary file but appends a suffix to the original filename and writes to this new filename, which allows local users to overwrite … CWE-59
Link Following
CVE-2014-1640 2024-11-21 11:04 2014-01-28 Show GitHub Exploit DB Packet Storm
292199 - debian syncevolution syncevo/installcheck-local.sh in syncevolution before 1.3.99.7 uses mktemp to create a safe temporary file but appends a suffix to the original filename and writes to this new filename, which allows … CWE-59
Link Following
CVE-2014-1639 2024-11-21 11:04 2014-01-28 Show GitHub Exploit DB Packet Storm
292200 - debian localepurge (1) debian/postrm and (2) debian/localepurge.config in localepurge before 0.7.3.2 use tempfile to create a safe temporary file but appends a suffix to the original filename and writes to this new fil… CWE-59
Link Following
CVE-2014-1638 2024-11-21 11:04 2014-01-28 Show GitHub Exploit DB Packet Storm