Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201351 6.5 警告 オラクル - Oracle Database Server の Workspace Manager における脆弱性 CWE-noinfo
情報不足
CVE-2015-4925 2016-01-20 13:55 2016-01-19 Show GitHub Exploit DB Packet Storm
201352 4 警告 オラクル - Oracle Database Server の XML Developer's Kit for C における脆弱性 CWE-noinfo
情報不足
CVE-2015-4923 2016-01-20 13:55 2016-01-19 Show GitHub Exploit DB Packet Storm
201353 4 警告 オラクル - Oracle Database Server の Database Vault における脆弱性 CWE-noinfo
情報不足
CVE-2015-4921 2016-01-20 13:55 2016-01-19 Show GitHub Exploit DB Packet Storm
201354 5 警告 アップル
OpenLDAP Foundation
- OpenLDAP の libraries/liblber/io.c の ber_get_next 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2015-6908 2016-01-19 16:59 2015-09-9 Show GitHub Exploit DB Packet Storm
201355 4.6 警告 ヒューレット・パッカード・エンタープライズ - 複数の HPE Network Switch のソフトウェアにおけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-6859 2016-01-19 16:19 2015-11-10 Show GitHub Exploit DB Packet Storm
201356 7.2 危険 ヒューレット・パッカード・エンタープライズ - 複数の HPE Network Switch のソフトウェアにおけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-6860 2016-01-19 16:19 2015-11-10 Show GitHub Exploit DB Packet Storm
201357 10 危険 Colorscore project - Ruby 用 Colorscore gem の lib/colorscore/histogram.rb の Histogram クラスの初期化メソッドにおける任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2015-7541 2016-01-19 11:05 2015-09-29 Show GitHub Exploit DB Packet Storm
201358 10 危険 アドバンテック株式会社 - Advantech EKI-132x デバイスのファームウェアにおける認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2015-7938 2016-01-19 10:49 2015-12-10 Show GitHub Exploit DB Packet Storm
201359 6.5 警告 アドバンテック株式会社 - Advantech WebAccess における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2015-3947 2016-01-19 10:49 2015-05-12 Show GitHub Exploit DB Packet Storm
201360 6.8 警告 アドバンテック株式会社 - Advantech WebAccess におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2015-3946 2016-01-19 10:49 2015-05-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 25, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
297841 - apple safari Cross-site scripting (XSS) vulnerability in Safari before 3.2.3, and 4 Public Beta, on Apple Mac OS X 10.5 before 10.5.7 and Windows allows remote attackers to inject arbitrary web script or HTML via… CWE-79
Cross-site Scripting
CVE-2009-0162 2017-08-8 10:33 2009-05-14 Show GitHub Exploit DB Packet Storm
297842 - sun java_system_access_manager Sun Java System Access Manager 7.1 allows remote authenticated sub-realm administrators to gain privileges, as demonstrated by creating the amadmin account in the sub-realm, and then logging in as am… CWE-264
Permissions, Privileges, and Access Controls
CVE-2009-0169 2017-08-8 10:33 2009-01-17 Show GitHub Exploit DB Packet Storm
297843 - ibm db2_universal_database Unspecified vulnerability in IBM DB2 8 before FP17a, 9.1 before FP6a, and 9.5 before FP3a allows remote attackers to cause a denial of service (infinite loop) via a crafted CONNECT data stream. CWE-20
 Improper Input Validation 
CVE-2009-0172 2017-08-8 10:33 2009-01-17 Show GitHub Exploit DB Packet Storm
297844 - ibm db2_universal_database Unspecified vulnerability in the server in IBM DB2 8 before FP17a, 9.1 before FP6a, and 9.5 before FP3a allows remote authenticated users to cause a denial of service (trap) via a crafted data stream. CWE-20
 Improper Input Validation 
CVE-2009-0173 2017-08-8 10:33 2009-01-17 Show GitHub Exploit DB Packet Storm
297845 - ibm hardware_management_console Unspecified vulnerability in IBM Hardware Management Console (HMC) 7 release 3.2.0 SP1 has unknown impact and attack vectors. NVD-CWE-noinfo
CVE-2009-0178 2017-08-8 10:33 2009-01-21 Show GitHub Exploit DB Packet Storm
297846 - nfs nfs-utils Certain Fedora build scripts for nfs-utils before 1.1.2-9.fc9 on Fedora 9, and before 1.1.4-6.fc10 on Fedora 10, omit TCP Wrapper support, which might allow remote attackers to bypass intended access… CWE-264
Permissions, Privileges, and Access Controls
CVE-2009-0180 2017-08-8 10:33 2009-01-21 Show GitHub Exploit DB Packet Storm
297847 - hp select_access Cross-site scripting (XSS) vulnerability in HP Select Access 6.1 and 6.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2009-0204 2017-08-8 10:33 2009-01-31 Show GitHub Exploit DB Packet Storm
297848 - hp oncplus Unspecified vulnerability in NFS in HP ONCplus B.11.31.05 and earlier for HP-UX B.11.31 allows local users to cause a denial of service via unknown vectors. NVD-CWE-noinfo
CVE-2009-0206 2017-08-8 10:33 2009-02-9 Show GitHub Exploit DB Packet Storm
297849 - ibm access_support_activex_control Stack-based buffer overflow in the GetXMLValue method in the IBM Access Support ActiveX control in IbmEgath.dll, as distributed on IBM and Lenovo computers, allows remote attackers to execute arbitra… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2009-0215 2017-08-8 10:33 2009-03-26 Show GitHub Exploit DB Packet Storm
297850 - ge_fanuc ifix GE Fanuc iFIX 5.0 and earlier relies on client-side authentication involving a weakly encrypted local password file, which allows remote attackers to bypass intended access restrictions and start pri… CWE-255
Credentials Management
CVE-2009-0216 2017-08-8 10:33 2009-02-14 Show GitHub Exploit DB Packet Storm