Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 26, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201321 7.8 重要
Local
freedesktop.org - pkexec における親セッションにエスケープされる脆弱性 CWE-116
不適切なエンコード、または出力のエスケープ
CVE-2016-2568 2017-03-30 15:47 2016-01-21 Show GitHub Exploit DB Packet Storm
201322 7.5 重要
Network
Webkit - Webkit の regex コードにおけるサービス運用妨害 (DoS) の脆弱性 CWE-400
リソースの枯渇
CVE-2016-9643 2017-03-30 15:44 2016-11-26 Show GitHub Exploit DB Packet Storm
201323 6.1 警告
Network
MantisBT Group - MantisBT の view_filters_page.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-6799 2017-03-30 15:39 2017-03-8 Show GitHub Exploit DB Packet Storm
201324 6.1 警告
Network
MantisBT Group - MantisBT の bug_change_status_page.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-6797 2017-03-30 15:39 2017-03-7 Show GitHub Exploit DB Packet Storm
201325 9.8 緊急
Network
Canonical
click project
- click の install.py における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-8768 2017-03-30 15:39 2015-10-15 Show GitHub Exploit DB Packet Storm
201326 9.8 緊急
Network
NetComm Wireless Limited. - NetCommWireless HSPA 3G10WVE Wireless Router のファームウェアの ping.cgi における任意のコマンドを実行される脆弱性 CWE-77
コマンドインジェクション
CVE-2015-6024 2017-03-30 15:31 2015-09-3 Show GitHub Exploit DB Packet Storm
201327 7.3 重要
Network
NetComm Wireless Limited. - NetCommWireless HSPA 3G10WVE Wireless Router のファームウェアの ping.cgi におけるアクセス制限を回避される脆弱性 CWE-284
不適切なアクセス制御
CVE-2015-6023 2017-03-30 15:31 2015-09-3 Show GitHub Exploit DB Packet Storm
201328 6.7 警告
Local
DELL EMC (旧 EMC Corporation) - EMC RecoverPoint および RecoverPoint for Virtual Machines におけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2016-6649 2017-03-30 15:25 2016-08-10 Show GitHub Exploit DB Packet Storm
201329 4.4 警告
Local
DELL EMC (旧 EMC Corporation) - EMC RecoverPoint および RecoverPoint for Virtual Machines における重要なシステムファイルにアクセスされる脆弱性 CWE-275
パーミッションの問題
CVE-2016-6648 2017-03-30 15:25 2016-08-10 Show GitHub Exploit DB Packet Storm
201330 6.1 警告
Network
Agora-Project - Agora-Project の index.php?ctrl=file&targetObjId=fileFolder-2&targetObjIdChild におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-6562 2017-03-30 15:19 2017-03-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 26, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292991 - gapless_player simzip Directory traversal vulnerability in the Gapless Player SimZip (aka Simple Zip Viewer) application before 1.2.1 for Android allows remote attackers to overwrite or create arbitrary files via a crafte… CWE-22
Path Traversal
CVE-2014-0809 2024-11-21 11:02 2014-01-25 Show GitHub Exploit DB Packet Storm
292992 - cisco video_surveillance_operations_manager Cisco Video Surveillance Operations Manager (VSOM) does not require authentication for MySQL database connections, which allows remote attackers to obtain sensitive information, modify data, or cause… CWE-287
Improper Authentication
CVE-2014-0674 2024-11-21 11:02 2014-01-24 Show GitHub Exploit DB Packet Storm
292993 - adobe digital_editions Adobe Digital Editions 2.0.1 allows attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via unspecified vectors. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-0494 2024-11-21 11:02 2014-01-24 Show GitHub Exploit DB Packet Storm
292994 - cisco telepresence_video_communication_server The Expressway component in Cisco TelePresence Video Communication Server (VCS) uses the same default X.509 certificate across different customers' installations, which makes it easier for remote att… CWE-255
Credentials Management
CVE-2014-0675 2024-11-21 11:02 2014-01-23 Show GitHub Exploit DB Packet Storm
292995 - lockon ec-cube Authorization bypass through user-controlled key issue exists in EC-CUBE 2.11.0 through 2.12.2 and EC-Orange systems deployed before June 29th, 2015. If this vulnerability is exploited, a user of the… NVD-CWE-noinfo
CVE-2014-0808 2024-11-21 11:02 2014-01-23 Show GitHub Exploit DB Packet Storm
292996 - lockon ec-cube data/class/pages/shopping/LC_Page_Shopping_Deliv.php in LOCKON EC-CUBE 2.4.4 and earlier, and 2.11.0 through 2.12.2, allows remote attackers to modify data via unspecified vectors. NVD-CWE-noinfo
CVE-2014-0807 2024-11-21 11:02 2014-01-23 Show GitHub Exploit DB Packet Storm
292997 - fenrir-inc sleipnir_mobile The Sleipnir Mobile application 2.12.1 and earlier and Sleipnir Mobile Black Edition application 2.12.1 and earlier for Android provide Geolocation API data without verifying user consent, which allo… CWE-200
Information Exposure
CVE-2014-0806 2024-11-21 11:02 2014-01-23 Show GitHub Exploit DB Packet Storm
292998 - cisco nx-os The Label Distribution Protocol (LDP) functionality in Cisco NX-OS allows remote attackers to cause a denial of service (temporary LDP session outage) via LDP discovery traffic containing malformed H… CWE-20
 Improper Input Validation 
CVE-2014-0677 2024-11-21 11:02 2014-01-23 Show GitHub Exploit DB Packet Storm
292999 - cisco nx-os Cisco NX-OS allows local users to bypass intended TACACS+ command restrictions via a series of multiple commands, aka Bug ID CSCum47367. CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0676 2024-11-21 11:02 2014-01-23 Show GitHub Exploit DB Packet Storm
293000 - cisco telepresence_video_communication_servers_software
telepresence_video_communication_server_software
The SIP module in Cisco TelePresence Video Communication Server (VCS) before 8.1 allows remote attackers to cause a denial of service (process failure) via a crafted SDP message, aka Bug ID CSCue9763… CWE-20
 Improper Input Validation 
CVE-2014-0662 2024-11-21 11:02 2014-01-23 Show GitHub Exploit DB Packet Storm