Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201421 7.8 重要
Local
マイクロソフト - 複数の Microsoft Windows 製品の CLFS ドライバにおける権限昇格の脆弱性 CWE-119
バッファエラー
CVE-2016-3335 2016-11-11 16:52 2016-11-8 Show GitHub Exploit DB Packet Storm
201422 7.8 重要
Local
マイクロソフト - 複数の Microsoft Windows 製品の CLFS ドライバにおける権限昇格の脆弱性 CWE-119
バッファエラー
CVE-2016-3334 2016-11-11 16:52 2016-11-8 Show GitHub Exploit DB Packet Storm
201423 7.8 重要
Local
マイクロソフト - 複数の Microsoft Windows 製品の CLFS ドライバにおける権限昇格の脆弱性 CWE-119
バッファエラー
CVE-2016-3333 2016-11-11 16:52 2016-11-8 Show GitHub Exploit DB Packet Storm
201424 7.8 重要
Local
マイクロソフト - 複数の Microsoft Windows 製品の CLFS ドライバにおける権限昇格の脆弱性 CWE-119
バッファエラー
CVE-2016-3332 2016-11-11 16:52 2016-11-8 Show GitHub Exploit DB Packet Storm
201425 7.8 重要
Local
マイクロソフト - 複数の Microsoft Windows 製品の CLFS ドライバにおける権限昇格の脆弱性 CWE-119
バッファエラー
CVE-2016-0026 2016-11-11 16:52 2016-11-8 Show GitHub Exploit DB Packet Storm
201426 7.8 重要
Local
マイクロソフト - 複数の Microsoft Windows 製品のカーネルモードドライバにおける権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-7255 2016-11-11 16:31 2016-11-8 Show GitHub Exploit DB Packet Storm
201427 7.8 重要
Local
マイクロソフト - 複数の Microsoft Windows 製品のカーネルモードドライバにおける権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-7246 2016-11-11 16:31 2016-11-8 Show GitHub Exploit DB Packet Storm
201428 7.8 重要
Local
マイクロソフト - 複数の Microsoft Windows 製品のカーネルモードドライバにおける権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-7215 2016-11-11 16:31 2016-11-8 Show GitHub Exploit DB Packet Storm
201429 3.3
Local
マイクロソフト - 複数の Microsoft Windows 製品のカーネルモードドライバにおける ASLR 保護メカニズムを回避される脆弱性 CWE-200
情報漏えい
CVE-2016-7214 2016-11-11 16:31 2016-11-8 Show GitHub Exploit DB Packet Storm
201430 7.8 重要
Local
マイクロソフト - 複数の Microsoft Windows 製品における権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-7238 2016-11-11 16:30 2016-11-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 2, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
290821 - dhtmlx dhtmlxspreadsheet Cross-site scripting (XSS) vulnerability in codebase/spreadsheet.php in the Spreadsheet (dhtmlxSpreadsheet) plugin 2.0 for WordPress allows remote attackers to inject arbitrary web script or HTML via… CWE-79
Cross-site Scripting
CVE-2013-6281 2024-11-21 10:58 2013-10-25 Show GitHub Exploit DB Packet Storm
290822 - linksalpha social_sharing_toolkit_plugin Cross-site scripting (XSS) vulnerability in Social Sharing Toolkit plugin before 2.1.2 for WordPress allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2013-6280 2024-11-21 10:58 2013-10-25 Show GitHub Exploit DB Packet Storm
290823 - dell quest_one_password_manager The Dell Quest One Password Manager, possibly 5.0, allows remote attackers to bypass CAPTCHA protections and obtain sensitive information (user's full name) by sending a login request with a valid do… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-6246 2024-11-21 10:58 2013-10-24 Show GitHub Exploit DB Packet Storm
290824 - sybase adaptive_server_enterprise Unspecified vulnerability in SAP Sybase Adaptive Server Enterprise (ASE) before 15.0.3 ESD#4.3. 15.5 before 15.5 ESD#5.3, and 15.7 before 15.7 SP50 or 15.7 SP100 allows remote authenticated users to … NVD-CWE-noinfo
CVE-2013-6245 2024-11-21 10:58 2013-10-24 Show GitHub Exploit DB Packet Storm
290825 - sap netweaver The Live Update webdynpro application (webdynpro/dispatcher/sap.com/tc~slm~ui_lup/LUP) in SAP NetWeaver 7.31 and earlier allows remote attackers to read arbitrary files and directories via an XML doc… NVD-CWE-noinfo
CVE-2013-6244 2024-11-21 10:58 2013-10-24 Show GitHub Exploit DB Packet Storm
290826 - landing_pages_project landing_pages_plugin SQL injection vulnerability in the Landing Pages plugin 1.2.3, before 20131009, and earlier for WordPress allows remote attackers to execute arbitrary SQL commands via the "post" parameter to index.p… CWE-89
SQL Injection
CVE-2013-6243 2024-11-21 10:58 2013-10-24 Show GitHub Exploit DB Packet Storm
290827 - vmware vcenter_server Session fixation vulnerability in the vSphere Web Client Server in VMware vCenter Server 5.0 before Update 3 allows remote attackers to hijack web sessions and gain privileges via unspecified vectors. CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-5971 2024-11-21 10:58 2013-10-21 Show GitHub Exploit DB Packet Storm
290828 - vmware esx
esxi
hostd-vmdb in VMware ESXi 4.0 through 5.0 and ESX 4.0 through 4.1 allows remote attackers to cause a denial of service (hostd-vmdb service outage) by modifying management traffic. CWE-20
 Improper Input Validation 
CVE-2013-5970 2024-11-21 10:58 2013-10-21 Show GitHub Exploit DB Packet Storm
290829 - vbulletin vbulletin The install/upgrade.php scripts in vBulletin 4.1 and 5 allow remote attackers to create administrative accounts via the customerid, htmldata[password], htmldata[confirmpassword], and htmldata[email] … CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-6129 2024-11-21 10:58 2013-10-19 Show GitHub Exploit DB Packet Storm
290830 - dlink dir-100 Stack-based buffer overflow in the RuntimeDiagnosticPing function in /bin/webs on D-Link DIR-100 routers might allow remote authenticated administrators to execute arbitrary commands via a long set/r… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-6027 2024-11-21 10:58 2013-10-19 Show GitHub Exploit DB Packet Storm