Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 6, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201291 6 警告
Local
Fabrice Bellard - QEMU の hw/virtio/virtio.c の virtqueue_map_desc 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2016-7422 2016-12-13 16:01 2016-09-15 Show GitHub Exploit DB Packet Storm
201292 4.4 警告
Local
Fabrice Bellard - QEMU の hw/scsi/vmw_pvscsi.c の pvscsi_ring_pop_req_descr 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2016-7421 2016-12-13 16:01 2016-09-15 Show GitHub Exploit DB Packet Storm
201293 4.4 警告
Local
Fabrice Bellard - QEMU の hw/display/vmware_vga.c の vmsvga_fifo_run 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-787
境界外書き込み
CVE-2016-7170 2016-12-13 16:01 2016-09-8 Show GitHub Exploit DB Packet Storm
201294 4.4 警告
Local
Fabrice Bellard - QEMU の hw/scsi/mptconfig.c の mptsas_config_manufacturing_1 および mptsas_config_ioc_0 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-7157 2016-12-13 16:01 2016-08-31 Show GitHub Exploit DB Packet Storm
201295 4.4 警告
Local
Fabrice Bellard - QEMU の hw/scsi/vmw_pvscsi.c の pvscsi_convert_sglist 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2016-7156 2016-12-13 16:01 2016-09-6 Show GitHub Exploit DB Packet Storm
201296 4.4 警告
Local
Fabrice Bellard - QEMU の hw/scsi/vmw_pvscsi.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-125
CWE-399
CVE-2016-7155 2016-12-13 16:01 2016-09-1 Show GitHub Exploit DB Packet Storm
201297 6 警告
Local
Fabrice Bellard - QEMU の hw/9pfs/9p.c におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2016-7116 2016-12-13 16:00 2016-08-26 Show GitHub Exploit DB Packet Storm
201298 4.4 警告
Local
Fabrice Bellard - QEMU の hw/net/net_tx_pkt.c の net_tx_pkt_init 関数における整数オーバーフローの脆弱性 CWE-190
CWE-476
CVE-2016-6888 2016-12-13 16:00 2016-08-18 Show GitHub Exploit DB Packet Storm
201299 6 警告
Local
Fabrice Bellard - QEMU の hw/net/vmxnet3.c の vmxnet3_complete_packet 関数における重要なホストのメモリ情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-6836 2016-12-13 16:00 2016-08-11 Show GitHub Exploit DB Packet Storm
201300 6 警告
Local
Fabrice Bellard - QEMU の hw/net/vmxnet_tx_pkt.c の vmxnet_tx_pkt_parse_headers 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2016-6835 2016-12-13 16:00 2016-08-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 6, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291311 - horizon_quick_content_management_system_project horizon_quick_content_management_system Directory traversal vulnerability in lib/functions/d-load.php in Horizon Quick Content Management System (QCMS) 4.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in t… CWE-22
Path Traversal
CVE-2013-7138 2024-11-21 11:00 2014-01-10 Show GitHub Exploit DB Packet Storm
291312 - libreswan libreswan Race condition in the libreswan.spec files for Red Hat Enterprise Linux (RHEL) and Fedora packages in libreswan 3.6 has unspecified impact and attack vectors, involving the /var/tmp/libreswan-nss-pwd… CWE-362
Race Condition
CVE-2013-7283 2024-11-21 11:00 2014-01-10 Show GitHub Exploit DB Packet Storm
291313 - qnap qts Absolute path traversal vulnerability in cgi-bin/jc.cgi in QNAP QTS before 4.1.0 allows remote attackers to read arbitrary files via a full pathname in the f parameter. CWE-22
Path Traversal
CVE-2013-7174 2024-11-21 11:00 2014-01-10 Show GitHub Exploit DB Packet Storm
291314 - synology diskstation_manager webman/imageSelector.cgi in Synology DiskStation Manager (DSM) 4.0 before 4.0-2259, 4.2 before 4.2-3243, and 4.3 before 4.3-3810 Update 1 allows remote attackers to append data to arbitrary files, an… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-6955 2024-11-21 11:00 2014-01-10 Show GitHub Exploit DB Packet Storm
291315 - open-xchange open-xchange_appsuite Multiple cross-site scripting (XSS) vulnerabilities in Open-Xchange (OX) AppSuite 7.4.0 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) an HTML email with crafted CS… CWE-79
Cross-site Scripting
CVE-2013-6997 2024-11-21 11:00 2014-01-9 Show GitHub Exploit DB Packet Storm
291316 - cisco nx-os The BGP implementation in Cisco NX-OS 6.2(2a) and earlier does not properly handle the interaction of UPDATE messages with IPv6, VPNv4, and VPNv6 labeled unicast-address families, which allows remote… CWE-20
 Improper Input Validation 
CVE-2013-6982 2024-11-21 11:00 2014-01-9 Show GitHub Exploit DB Packet Storm
291317 - linux linux_kernel The dgram_recvmsg function in net/ieee802154/dgram.c in the Linux kernel before 3.12.4 updates a certain length value without ensuring that an associated data structure has been initialized, which al… CWE-200
Information Exposure
CVE-2013-7281 2024-11-21 11:00 2014-01-9 Show GitHub Exploit DB Packet Storm
291318 - hansotools hanso_player Buffer overflow in HansoTools Hanso Player 2.1.0, 2.5.0, and earlier allows remote attackers to cause a denial of service (crash) via a long string in a .m3u file. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-7280 2024-11-21 11:00 2014-01-9 Show GitHub Exploit DB Packet Storm
291319 - anthony_mills s3_video Cross-site scripting (XSS) vulnerability in views/video-management/preview_video.php in the S3 Video plugin before 0.983 for WordPress allows remote attackers to inject arbitrary web script or HTML v… CWE-79
Cross-site Scripting
CVE-2013-7279 2024-11-21 11:00 2014-01-9 Show GitHub Exploit DB Packet Storm
291320 - naxtech cms_afroditi SQL injection vulnerability in Naxtech CMS Afroditi 1.0 allows remote attackers to execute arbitrary SQL commands via the id parameter to default.asp. CWE-89
SQL Injection
CVE-2013-7278 2024-11-21 11:00 2014-01-9 Show GitHub Exploit DB Packet Storm