Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201411 9.3 危険 マイクロソフト - Microsoft Windows 10 のリモートデスクトッププロトコルサービスの実装におけるアクセス制限を回避される脆弱性 CWE-Other
その他
CVE-2016-0019 2016-01-15 13:32 2016-01-12 Show GitHub Exploit DB Packet Storm
201412 6.9 警告 マイクロソフト - 複数の Microsoft Windows 製品における権限昇格の脆弱性 CWE-Other
その他
CVE-2016-0018 2016-01-15 13:32 2016-01-12 Show GitHub Exploit DB Packet Storm
201413 6.9 警告 マイクロソフト - 複数の Microsoft Windows 製品における権限昇格の脆弱性 CWE-Other
その他
CVE-2016-0016 2016-01-15 13:32 2016-01-12 Show GitHub Exploit DB Packet Storm
201414 6.9 警告 マイクロソフト - 複数の Microsoft Windows 製品における権限昇格の脆弱性 CWE-Other
その他
CVE-2016-0014 2016-01-15 13:32 2016-01-12 Show GitHub Exploit DB Packet Storm
201415 6.9 警告 マイクロソフト - 複数の Microsoft Windows 製品のサンドボックスの実装における権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-0007 2016-01-15 11:41 2016-01-12 Show GitHub Exploit DB Packet Storm
201416 6.9 警告 マイクロソフト - 複数の Microsoft Windows 製品のサンドボックスの実装における権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-0006 2016-01-15 11:41 2016-01-12 Show GitHub Exploit DB Packet Storm
201417 4.3 警告 マイクロソフト - Microsoft Exchange Server の Outlook Web Access におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-0032 2016-01-15 11:23 2016-01-12 Show GitHub Exploit DB Packet Storm
201418 4.3 警告 マイクロソフト - Microsoft Exchange Server 2016 の Outlook Web Access におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-0031 2016-01-15 11:22 2016-01-12 Show GitHub Exploit DB Packet Storm
201419 4.3 警告 マイクロソフト - Microsoft Exchange Server の Outlook Web Access におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-0030 2016-01-15 11:22 2016-01-12 Show GitHub Exploit DB Packet Storm
201420 4.3 警告 マイクロソフト - Microsoft Exchange Server 2016 の Outlook Web Access におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-0029 2016-01-15 11:22 2016-01-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 26, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
297951 - glfusion glfusion Cross-site scripting (XSS) vulnerability in the anonymous comments feature in lib-comment.php in glFusion 1.1.0, 1.1.1, and earlier versions allows remote attackers to inject arbitrary web script or … CWE-79
Cross-site Scripting
CVE-2009-0455 2017-08-8 10:33 2009-02-11 Show GitHub Exploit DB Packet Storm
297952 - mahara mahara Cross-site scripting (XSS) vulnerability in Mahara before 1.0.9 allows remote attackers to inject arbitrary web script or HTML via a crafted forum post. CWE-79
Cross-site Scripting
CVE-2009-0487 2017-08-8 10:33 2009-02-10 Show GitHub Exploit DB Packet Storm
297953 - ibm websphere_message_broker IBM WebSphere Message Broker 6.1.x before 6.1.0.2 writes a database connection password to the Event Log and System Log during exception handling for a JDBC error, which allows local users to obtain … CWE-255
Credentials Management
CVE-2009-0503 2017-08-8 10:33 2009-02-14 Show GitHub Exploit DB Packet Storm
297954 - ibm websphere_application_server WSPolicy in the Web Services component in IBM WebSphere Application Server (WAS) 7.0.x before 7.0.0.1 does not properly recognize the IDAssertion.isUsed binding property, which allows local users to … CWE-200
Information Exposure
CVE-2009-0504 2017-08-8 10:33 2009-02-18 Show GitHub Exploit DB Packet Storm
297955 - ibm txseries The CICS listener in IBM TXSeries for Multiplatforms 6.2 GA waits for a forcepurge acknowledgement from the CICS Application Server (CICSAS) after an eci response timeout, which might allow remote au… NVD-CWE-noinfo
CVE-2009-0505 2017-08-8 10:33 2009-02-26 Show GitHub Exploit DB Packet Storm
297956 - ibm websphere_application_server Unspecified vulnerability in IBM WebSphere Application Server (WAS) 5.1 and 6.0.2 before 6.0.2.33 on z/OS, when CSIv2 Identity Assertion is enabled and Enterprise JavaBeans (EJB) interaction occurs b… NVD-CWE-noinfo
CVE-2009-0506 2017-08-8 10:33 2009-02-26 Show GitHub Exploit DB Packet Storm
297957 - ibm websphere_application_server Per http://www-01.ibm.com/support/docview.wss?uid=swg27006876#60223: "Note: WebSphere Application Server V6.0.2 Fix Pack 2 (6.0.2.2), Fix Pack 4 (6.0.2.4), Fix Pack 6 (6.0.2.6), Fix Pack 8 (6.0.2.… NVD-CWE-noinfo
CVE-2009-0506 2017-08-8 10:33 2009-02-26 Show GitHub Exploit DB Packet Storm
297958 - ibm websphere_process_server IBM WebSphere Process Server (WPS) 6.1.2 before 6.1.2.3 and 6.2 before 6.2.0.1 does not properly restrict configuration data during an export of the cluster configuration file from the administrative… CWE-16
Configuration
CVE-2009-0507 2017-08-8 10:33 2009-02-27 Show GitHub Exploit DB Packet Storm
297959 - ibm websphere_application_server The Servlet Engine/Web Container and JSP components in IBM WebSphere Application Server (WAS) 5.1.0, 5.1.1.19, 6.0.2 before 6.0.2.35, 6.1 before 6.1.0.23, and 7.0 before 7.0.0.3 allow remote attacker… CWE-200
Information Exposure
CVE-2009-0508 2017-08-8 10:33 2009-03-17 Show GitHub Exploit DB Packet Storm
297960 - ibm websphere_application_server Per: http://xforce.iss.net/xforce/xfdb/49085 CVSS score based on information provided by ISS. CWE-200
Information Exposure
CVE-2009-0508 2017-08-8 10:33 2009-03-17 Show GitHub Exploit DB Packet Storm