Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 23, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
200931 9.8 緊急
Network
Sage CRM - SageCRM の Component Manager 機能におけるコンポーネントの追加を許可する脆弱性 CWE-254
セキュリティ機能
CVE-2017-5219 2017-04-3 15:22 2017-01-24 Show GitHub Exploit DB Packet Storm
200932 9.8 緊急
Network
bitlbee - bitlbee-libpurple におけるサービス運用妨害 (DoS) の脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2017-5668 2017-03-31 17:30 2017-01-30 Show GitHub Exploit DB Packet Storm
200933 7.5 重要
Network
bitlbee - BitlBee におけるサービス運用妨害 (DoS) の脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2016-10189 2017-03-31 17:30 2016-11-14 Show GitHub Exploit DB Packet Storm
200934 9.8 緊急
Network
bitlbee - bitlbee-libpurple におけるサービス運用妨害 (DoS) の脆弱性 CWE-416
解放済みメモリの使用
CVE-2016-10188 2017-03-31 17:30 2016-11-14 Show GitHub Exploit DB Packet Storm
200935 8.1 重要
Network
WP Technologies, Inc - WePresent WiPG-1500 デバイスのファームウェアにおけるハードコードされたアカウントでデバイスにログインされる脆弱性 CWE-798
ハードコードされた認証情報の使用
CVE-2017-6351 2017-03-31 17:29 2017-03-5 Show GitHub Exploit DB Packet Storm
200936 7.5 重要
Network
OP-TEE
Libtom
- OP-TEE で使用される LibTomCrypt の rsa_verify_hash.c における RSA 署名または公開証明書を偽造される脆弱性 CWE-20
不適切な入力確認
CVE-2016-6129 2017-03-31 17:24 2016-06-30 Show GitHub Exploit DB Packet Storm
200937 8.8 重要
Network
Puppet - Windows 上で稼動する mcollective-puppet-agent プラグインにおけるファイルを作成される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2017-2290 2017-03-31 17:22 2017-03-1 Show GitHub Exploit DB Packet Storm
200938 5.5 警告
Local
Wavpack project - Wavpack の open_utils.c の read_new_config_info 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-125
境界外読み取り
CVE-2016-10172 2017-03-31 17:16 2016-12-22 Show GitHub Exploit DB Packet Storm
200939 5.5 警告
Local
Wavpack project - Wavpack の cli/wvunpack.c の unreorder_channels 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-125
境界外読み取り
CVE-2016-10171 2017-03-31 17:16 2016-12-22 Show GitHub Exploit DB Packet Storm
200940 5.5 警告
Local
Wavpack project - Wavpack の cli/caff.c の WriteCaffHeader 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-125
境界外読み取り
CVE-2016-10170 2017-03-31 17:16 2016-12-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 23, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
344241 - microsoft office_web_components
project
The Host function in Microsoft Office Web Components (OWC) 2000 and 2002 is exposed in components that are marked as safe for scripting, which allows remote attackers to execute arbitrary commands vi… NVD-CWE-Other
CVE-2002-0727 2018-10-13 06:31 2002-09-24 Show GitHub Exploit DB Packet Storm
344242 - microsoft office_web_components
project
The LoadText method in the spreadsheet component in Microsoft Office Web Components (OWC) 2000 and 2002 allows remote attackers to read arbitrary files through Internet Explorer via a URL that redire… NVD-CWE-Other
CVE-2002-0860 2018-10-13 06:31 2002-09-24 Show GitHub Exploit DB Packet Storm
344243 - microsoft office_web_components
project
Microsoft Office Web Components (OWC) 2000 and 2002 allows remote attackers to bypass the "Allow paste operations via script" setting, even when it is disabled, via the (1) Copy method of the Cell ob… NVD-CWE-Other
CVE-2002-0861 2018-10-13 06:31 2002-09-24 Show GitHub Exploit DB Packet Storm
344244 - microsoft virtual_machine A certain class that supports XML (Extensible Markup Language) in Microsoft Virtual Machine (VM) 5.0.3805 and earlier, probably com.ms.osp.ospmrshl, exposes certain unsafe methods, which allows remot… NVD-CWE-Other
CVE-2002-0865 2018-10-13 06:31 2002-10-11 Show GitHub Exploit DB Packet Storm
344245 - microsoft virtual_machine Java Database Connectivity (JDBC) classes in Microsoft Virtual Machine (VM) up to and including 5.0.3805 allow remote attackers to load and execute DLLs (dynamic link libraries) via a Java applet tha… NVD-CWE-Other
CVE-2002-0866 2018-10-13 06:31 2002-10-11 Show GitHub Exploit DB Packet Storm
344246 - microsoft virtual_machine Microsoft Virtual Machine (VM) up to and including build 5.0.3805 allows remote attackers to cause a denial of service (crash) in Internet Explorer via invalid handle data in a Java applet, aka "Hand… NVD-CWE-Other
CVE-2002-0867 2018-10-13 06:31 2002-10-11 Show GitHub Exploit DB Packet Storm
344247 - microsoft outlook
word
Microsoft Outlook 2000 and 2002, when configured to use Microsoft Word as the email editor, does not block scripts that are used while editing email messages in HTML or Rich Text Format (RTF), which … NVD-CWE-Other
CVE-2002-1056 2018-10-13 06:31 2002-05-16 Show GitHub Exploit DB Packet Storm
344248 - microsoft data_engine
sql_server
Buffer overflow in the authentication function for Microsoft SQL Server 2000 and Microsoft Desktop Engine (MSDE) 2000 allows remote attackers to execute arbitrary code via a long request to TCP port … NVD-CWE-Other
CVE-2002-1123 2018-10-13 06:31 2002-09-24 Show GitHub Exploit DB Packet Storm
344249 - microsoft data_engine
sql_server
Buffer overflow in the Database Console Command (DBCC) that handles user inputs in Microsoft SQL Server 7.0 and 2000, including Microsoft Data Engine (MSDE) 1.0 and Microsoft Desktop Engine (MSDE) 20… NVD-CWE-Other
CVE-2002-1137 2018-10-13 06:31 2002-10-11 Show GitHub Exploit DB Packet Storm
344250 - microsoft data_engine
sql_server
Microsoft SQL Server 7.0 and 2000, including Microsoft Data Engine (MSDE) 1.0 and Microsoft Desktop Engine (MSDE) 2000, writes output files for scheduled jobs under its own privileges instead of the … NVD-CWE-Other
CVE-2002-1138 2018-10-13 06:31 2002-10-11 Show GitHub Exploit DB Packet Storm