Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 5, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201081 5.5 警告
Local
マイクロソフト - 複数の Microsoft Excel 製品におけるプロセスメモリから重要な情報を取得される脆弱性 CWE-125
境界外読み取り
CVE-2016-7264 2016-12-22 14:48 2016-12-13 Show GitHub Exploit DB Packet Storm
201082 7.8 重要
Local
マイクロソフト - 複数の Microsoft Excel 製品における任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2016-7262 2016-12-22 14:48 2016-12-13 Show GitHub Exploit DB Packet Storm
201083 8.8 重要
Network
マイクロソフト - 複数の Microsoft Windows の Uniscribe における任意のコードを実行される脆弱性 CWE-19
データ処理
CVE-2016-7274 2016-12-22 11:35 2016-12-13 Show GitHub Exploit DB Packet Storm
201084 7.8 重要
Local
マイクロソフト - 複数の Microsoft Windows 製品のカーネルモードドライバのグラフィックコンポーネントにおける権限昇格の脆弱性 CWE-19
データ処理
CVE-2016-7259 2016-12-22 11:32 2016-12-13 Show GitHub Exploit DB Packet Storm
201085 7.8 重要
Local
マイクロソフト - 複数の Microsoft Windows 製品のインストーラーにおける権限昇格の脆弱性 CWE-19
データ処理
CVE-2016-7292 2016-12-22 11:28 2016-12-13 Show GitHub Exploit DB Packet Storm
201086 5.5 警告
Local
マイクロソフト - 複数の Microsoft Windows 製品の Windows Crypto Driver における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-7219 2016-12-22 11:28 2016-12-13 Show GitHub Exploit DB Packet Storm
201087 5.5 警告
Local
マイクロソフト - 複数の Microsoft Windows 製品の CLFS ドライバにおけるプロセスメモリから重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-7295 2016-12-22 11:05 2016-12-13 Show GitHub Exploit DB Packet Storm
201088 8.8 重要
Network
マイクロソフト - 複数の Microsoft Windows 製品の Graphics コンポーネントにおける任意のコードを実行される脆弱性 CWE-19
データ処理
CVE-2016-7272 2016-12-22 11:00 2016-12-13 Show GitHub Exploit DB Packet Storm
201089 5.5 警告
Local
マイクロソフト - 複数の Microsoft Excel 製品における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2016-7267 2016-12-21 17:47 2016-12-13 Show GitHub Exploit DB Packet Storm
201090 7.8 重要
Local
マイクロソフト - Microsoft Excel for Mac 2011 および Excel 2016 for Mac における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-7263 2016-12-21 17:47 2016-12-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 6, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
290941 - moodle moodle badges/mybadges.php in Moodle 2.5.x before 2.5.5 and 2.6.x before 2.6.2 does not properly track the user to whom a badge was issued, which allows remote authenticated users to modify the visibility o… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0129 2024-11-21 11:01 2014-03-24 Show GitHub Exploit DB Packet Storm
290942 - moodle moodle repository/alfresco/lib.php in Moodle through 2.3.11, 2.4.x before 2.4.9, 2.5.x before 2.5.5, and 2.6.x before 2.6.2 places a session key in a URL, which allows remote attackers to bypass intended Al… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0125 2024-11-21 11:01 2014-03-24 Show GitHub Exploit DB Packet Storm
290943 - moodle moodle Cross-site request forgery (CSRF) vulnerability in enrol/imsenterprise/importnow.php in Moodle through 2.3.11, 2.4.x before 2.4.9, 2.5.x before 2.5.5, and 2.6.x before 2.6.2 allows remote attackers t… CWE-352
 Origin Validation Error
CVE-2014-0126 2024-11-21 11:01 2014-03-24 Show GitHub Exploit DB Packet Storm
290944 - moodle moodle The identity-reporting implementations in mod/forum/renderer.php and mod/quiz/override_form.php in Moodle through 2.3.11, 2.4.x before 2.4.9, 2.5.x before 2.5.5, and 2.6.x before 2.6.2 do not properl… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0124 2024-11-21 11:01 2014-03-24 Show GitHub Exploit DB Packet Storm
290945 - moodle moodle mod/chat/chat_ajax.php in Moodle through 2.3.11, 2.4.x before 2.4.9, 2.5.x before 2.5.5, and 2.6.x before 2.6.2 does not properly check for the mod/chat:chat capability during chat sessions, which al… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0122 2024-11-21 11:01 2014-03-24 Show GitHub Exploit DB Packet Storm
290946 - moodle moodle The wiki subsystem in Moodle through 2.3.11, 2.4.x before 2.4.9, 2.5.x before 2.5.5, and 2.6.x before 2.6.2 does not properly restrict (1) view and (2) edit access, which allows remote authenticated … CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0123 2024-11-21 11:01 2014-03-24 Show GitHub Exploit DB Packet Storm
290947 - apache camel The XSLT component in Apache Camel 2.11.x before 2.11.4, 2.12.x before 2.12.3, and possibly earlier versions allows remote attackers to execute arbitrary Java methods via a crafted message. CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0003 2024-11-21 11:01 2014-03-21 Show GitHub Exploit DB Packet Storm
290948 - apache camel The XSLT component in Apache Camel before 2.11.4 and 2.12.x before 2.12.3 allows remote attackers to read arbitrary files and possibly have other unspecified impact via an XML document containing an … CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0002 2024-11-21 11:01 2014-03-21 Show GitHub Exploit DB Packet Storm
290949 - fedoraproject 389_directory_server The SASL authentication functionality in 389 Directory Server before 1.2.11.26 allows remote authenticated users to connect as an arbitrary user and gain privileges via the authzid parameter in a SAS… CWE-287
Improper Authentication
CVE-2014-0132 2024-11-21 11:01 2014-03-19 Show GitHub Exploit DB Packet Storm
290950 - redhat cloudforms
cloudforms_3.0_management_engine
The x_button method in the ServiceController (vmdb/app/controllers/service_controller.rb) in Red Hat CloudForms 3.0 Management Engine 5.2 allows remote attackers to execute arbitrary methods via unsp… CWE-94
Code Injection
CVE-2014-0057 2024-11-21 11:01 2014-03-19 Show GitHub Exploit DB Packet Storm