Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 21, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201161 8.6 重要
Network
The PHP Group - PHP の ext/standard/html.c の php_html_entities 関数における整数オーバーフローの脆弱性 CWE-Other
その他
CVE-2016-5094 2016-10-26 16:42 2016-05-26 Show GitHub Exploit DB Packet Storm
201162 8.6 重要
Network
The PHP Group - PHP の ext/intl/locale/locale_methods.c の get_icu_value_internal 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-5093 2016-10-26 16:41 2016-05-26 Show GitHub Exploit DB Packet Storm
201163 9.8 緊急
Network
The PHP Group
openSUSE project
Fedora Project
- PHP の ext/exif/exif.c の exif_process_TIFF_in_JPEG 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2016-4544 2016-10-26 16:37 2016-04-28 Show GitHub Exploit DB Packet Storm
201164 9.8 緊急
Network
The PHP Group
openSUSE project
Fedora Project
- PHP の ext/exif/exif.c の exif_process_IFD_TAG 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-4542 2016-10-26 16:36 2016-04-28 Show GitHub Exploit DB Packet Storm
201165 9.8 緊急
Network
The PHP Group
openSUSE project
Fedora Project
- PHP の ext/intl/grapheme/grapheme_string.c の grapheme_strpos 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-4541 2016-10-26 16:36 2016-04-28 Show GitHub Exploit DB Packet Storm
201166 9.8 緊急
Network
The PHP Group
openSUSE project
Fedora Project
- PHP の ext/intl/grapheme/grapheme_string.c の grapheme_stripos 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-4540 2016-10-26 16:35 2016-04-28 Show GitHub Exploit DB Packet Storm
201167 9.8 緊急
Network
The PHP Group
openSUSE project
Fedora Project
- PHP の ext/xml/xml.c の xml_parse_into_struct 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2016-4539 2016-10-26 16:34 2016-04-28 Show GitHub Exploit DB Packet Storm
201168 9.8 緊急
Network
The PHP Group
openSUSE project
Fedora Project
- PHP の ext/bcmath/bcmath.c の bcpowmod 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-4538 2016-10-26 16:34 2016-04-28 Show GitHub Exploit DB Packet Storm
201169 9.8 緊急
Network
The PHP Group
openSUSE project
Fedora Project
- PHP の ext/bcmath/bcmath.c の bcpowmod 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-4537 2016-10-26 16:33 2016-04-28 Show GitHub Exploit DB Packet Storm
201170 9.8 緊急
Network
The PHP Group - PHP の ext/phar/tar.c におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-2554 2016-10-26 16:06 2016-02-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
346171 - pi3 pi3web Buffer overflow in Pi3Web 2.0.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a GET request with a large number of / characters. NVD-CWE-Other
CVE-2003-0276 2017-07-11 10:29 2003-06-16 Show GitHub Exploit DB Packet Storm
346172 - happycgi happymall Directory traversal vulnerability in normal_html.cgi in Happycgi.com Happymall 4.3 and 4.4 allows remote attackers to read arbitrary files via .. (dot dot) sequences in the file parameter. NVD-CWE-Other
CVE-2003-0277 2017-07-11 10:29 2003-06-16 Show GitHub Exploit DB Packet Storm
346173 - happycgi.com happymall Cross-site scripting (XSS) vulnerability in normal_html.cgi in Happycgi.com Happymall 4.3 and 4.4 allows remote attackers to insert arbitrary web script via the file parameter. NVD-CWE-Other
CVE-2003-0278 2017-07-11 10:29 2003-06-16 Show GitHub Exploit DB Packet Storm
346174 - francisco_burzi php-nuke Multiple SQL injection vulnerabilities in the Web_Links module for PHP-Nuke 5.x through 6.5 allows remote attackers to steal sensitive information via numeric fields, as demonstrated using (1) the vi… NVD-CWE-Other
CVE-2003-0279 2017-07-11 10:29 2003-06-16 Show GitHub Exploit DB Packet Storm
346175 - youngzsoft cmailserver Multiple buffer overflows in the SMTP Service for ESMTP CMailServer 4.0.2003.03.27 allow remote attackers to execute arbitrary code via long (1) MAIL FROM or (2) RCPT TO commands. NVD-CWE-Other
CVE-2003-0280 2017-07-11 10:29 2003-06-16 Show GitHub Exploit DB Packet Storm
346176 - firebirdsql firebird Buffer overflow in Firebird 1.0.2 and other versions before 1.5, and possibly other products that use the InterBase codebase, allows local users to execute arbitrary code via a long INTERBASE environ… NVD-CWE-Other
CVE-2003-0281 2017-07-11 10:29 2003-06-16 Show GitHub Exploit DB Packet Storm
346177 - phorum phorum Cross-site scripting (XSS) vulnerability in Phorum before 3.4.3 allows remote attackers to inject arbitrary web script and HTML tags via a message with a "<<" before a tag name in the (1) subject, (2… NVD-CWE-Other
CVE-2003-0283 2017-07-11 10:29 2003-06-16 Show GitHub Exploit DB Packet Storm
346178 - ibm aix IBM AIX 5.2 and earlier distributes Sendmail with a configuration file (sendmail.cf) with the (1) promiscuous_relay, (2) accept_unresolvable_domains, and (3) accept_unqualified_senders features enabl… NVD-CWE-Other
CVE-2003-0285 2017-07-11 10:29 2003-06-16 Show GitHub Exploit DB Packet Storm
346179 - snitz_communications snitz_forums_2000 SQL injection vulnerability in register.asp in Snitz Forums 2000 before 3.4.03, and possibly 3.4.07 and earlier, allows remote attackers to execute arbitrary stored procedures via the Email variable. CWE-89
SQL Injection
CVE-2003-0286 2017-07-11 10:29 2003-06-16 Show GitHub Exploit DB Packet Storm
346180 - six_apart movable_type Cross-site scripting (XSS) vulnerability in Movable Type before 2.6, and possibly other versions including 2.63, allows remote attackers to insert arbitrary web script or HTML via the Name textbox, p… NVD-CWE-Other
CVE-2003-0287 2017-07-11 10:29 2003-06-16 Show GitHub Exploit DB Packet Storm