Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 12:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201281 3.7
Network
IBM - IBM Connections における重要な平文情報を取得される脆弱性 CWE-310
暗号の問題
CVE-2016-2953 2016-12-1 16:48 2016-09-30 Show GitHub Exploit DB Packet Storm
201282 5.3 警告
Network
IBM - IBM Sterling B2B Integrator におけるクロスサイトスクリプティングの脆弱性 CWE-255
証明書・パスワード管理
CVE-2016-5890 2016-12-1 16:33 2016-09-8 Show GitHub Exploit DB Packet Storm
201283 6.1 警告
Network
IBM - IBM Sterling B2B Integrator におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-3057 2016-12-1 16:33 2016-09-8 Show GitHub Exploit DB Packet Storm
201284 5.3 警告
Network
IBM - IBM Maximo Asset Management における重要な情報を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2016-5987 2016-12-1 16:32 2016-10-10 Show GitHub Exploit DB Packet Storm
201285 5.4 警告
Network
IBM - IBM Maximo Asset Management におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-5905 2016-12-1 16:32 2016-09-29 Show GitHub Exploit DB Packet Storm
201286 7.5 重要
Network
Boa - Boa Webserver の send_redirect() におけるバッファオーバーフローの脆弱性 CWE-20
不適切な入力確認
CVE-2016-9564 2016-12-1 14:29 2016-11-28 Show GitHub Exploit DB Packet Storm
201287 9.8 緊急
Network
Exponent CMS project - Exponent CMS の framework/modules/core/controllers/expCommentController.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2016-9481 2016-12-1 14:18 2016-11-29 Show GitHub Exploit DB Packet Storm
201288 6.5 警告
Network
マイクロフォーカス株式会社 - 複数の Micro Focus 製品の管理サーバにおける任意のファイルを読まれる脆弱性 CWE-200
CWE-22
CVE-2016-5765 2016-12-1 14:03 2016-11-28 Show GitHub Exploit DB Packet Storm
201289 6.5 警告
Network
Drupal - Drupal の transliterate メカニズムにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-9452 2016-12-1 11:47 2016-11-16 Show GitHub Exploit DB Packet Storm
201290 6.8 警告
Network
Drupal - Drupal の確認フォームにおけるオープンリダイレクトの脆弱性 CWE-Other
その他
CVE-2016-9451 2016-12-1 11:47 2016-11-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 4, 2026, 4:17 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
290581 - synology diskstation_manager Multiple directory traversal vulnerabilities in the FileBrowser components in Synology DiskStation Manager (DSM) before 4.3-3810 Update 3 allow remote attackers to read, write, and delete arbitrary f… CWE-22
Path Traversal
CVE-2013-6987 2024-11-21 11:00 2014-01-1 Show GitHub Exploit DB Packet Storm
290582 - zenphoto zenphoto SQL injection vulnerability in zp-core/zp-extensions/wordpress_import.php in Zenphoto before 1.4.5.4 allows remote authenticated administrators to execute arbitrary SQL commands via the tableprefix p… CWE-89
SQL Injection
CVE-2013-7242 2024-11-21 11:00 2014-01-1 Show GitHub Exploit DB Packet Storm
290583 - zenphoto zenphoto Cross-site scripting (XSS) vulnerability in the export function in zp-core/zp-extensions/mergedRSS.php in Zenphoto before 1.4.5.4 allows remote attackers to inject arbitrary web script or HTML via th… CWE-79
Cross-site Scripting
CVE-2013-7241 2024-11-21 11:00 2014-01-1 Show GitHub Exploit DB Packet Storm
290584 - cisco unified_presence_server SQL injection vulnerability in the web interface in Cisco Unified Presence Server allows remote authenticated users to execute arbitrary SQL commands via a crafted URL, aka Bug ID CSCuh35615. CWE-89
SQL Injection
CVE-2013-6983 2024-11-21 11:00 2014-01-1 Show GitHub Exploit DB Packet Storm
290585 - jforum jforum Cross-site request forgery (CSRF) vulnerability in admBase/login.page in the Admin module in JForum allows remote attackers to hijack the authentication of administrators for requests that change the… CWE-352
 Origin Validation Error
CVE-2013-7209 2024-11-21 11:00 2013-12-31 Show GitHub Exploit DB Packet Storm
290586 - wordpress wordpress Cross-site request forgery (CSRF) vulnerability in the retrospam component in wp-admin/options-discussion.php in WordPress 2.0.11 and earlier allows remote attackers to hijack the authentication of a… CWE-352
 Origin Validation Error
CVE-2013-7233 2024-11-21 11:00 2013-12-30 Show GitHub Exploit DB Packet Storm
290587 - esri arcgis_server SQL injection vulnerability in ESRI ArcGIS for Server through 10.2 allows remote attackers to execute arbitrary SQL commands via unspecified input to the map or feature service. CWE-89
SQL Injection
CVE-2013-7232 2024-11-21 11:00 2013-12-30 Show GitHub Exploit DB Packet Storm
290588 - esri arcgis_server Cross-site scripting (XSS) vulnerability in the Mobile Content Server in ESRI ArcGIS for Server 10.1 and 10.2 allows remote authenticated users to inject arbitrary web script or HTML via unspecified … CWE-79
Cross-site Scripting
CVE-2013-7231 2024-11-21 11:00 2013-12-30 Show GitHub Exploit DB Packet Storm
290589 - openx
revive-adserver
openx
revive_adserver
SQL injection vulnerability in www/delivery/axmlrpc.php (aka the XML-RPC delivery invocation script) in Revive Adserver before 3.0.2, and OpenX Source 2.8.11 and earlier, allows remote attackers to e… CWE-89
SQL Injection
CVE-2013-7149 2024-11-21 11:00 2013-12-28 Show GitHub Exploit DB Packet Storm
290590 - cisco ios_xe Cisco IOS XE 3.7S(.1) and earlier allows remote attackers to cause a denial of service (Packet Processor crash) via fragmented MPLS IP packets, aka Bug ID CSCul00709. CWE-20
 Improper Input Validation 
CVE-2013-6981 2024-11-21 11:00 2013-12-28 Show GitHub Exploit DB Packet Storm