Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 23, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201491 5.5 警告
Local
Debian
openSUSE project
GraphicsMagick
- Graphicsmagick の memory.c の MagickRealloc 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-9830 2017-03-17 16:22 2016-10-21 Show GitHub Exploit DB Packet Storm
201492 5.9 警告
Network
日本ラドウェア - Radware デバイスにおける認証キーを取得される脆弱性 CWE-200
情報漏えい
CVE-2016-10212 2017-03-17 16:05 2016-02-1 Show GitHub Exploit DB Packet Storm
201493 6.1 警告
Network
Jacob Barkdull - HashOver における脆弱な Web サイトのコンテキスト内のブラウザで任意の HTML およびスクリプトコードを実行される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-6395 2017-03-17 15:51 2017-02-28 Show GitHub Exploit DB Packet Storm
201494 6.1 警告
Network
OpenEMR - OpenEMR におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-6394 2017-03-17 15:51 2017-02-28 Show GitHub Exploit DB Packet Storm
201495 6.1 警告
Network
NagVis Project - NagVis における脆弱な Web サイトのコンテキスト内のブラウザで任意の HTML およびスクリプトコードを実行される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-6393 2017-03-17 15:51 2017-02-28 Show GitHub Exploit DB Packet Storm
201496 6.1 警告
Network
Kaltura Inc - Kaltura サーバにおける脆弱な Web サイトのコンテキスト内のブラウザで任意の HTML およびスクリプトコードを実行される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-6392 2017-03-17 15:51 2017-02-28 Show GitHub Exploit DB Packet Storm
201497 6.1 警告
Network
Kaltura Inc - Kaltura サーバにおける脆弱な Web サイトのコンテキスト内のブラウザで任意の HTML およびスクリプトコードを実行される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-6391 2017-03-17 15:51 2017-02-28 Show GitHub Exploit DB Packet Storm
201498 6.1 警告
Network
soruly - whatanime.ga における脆弱な Web サイトのコンテキスト内のブラウザで任意の HTML およびスクリプトコードを実行される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-6390 2017-03-17 15:51 2017-02-28 Show GitHub Exploit DB Packet Storm
201499 7.8 重要
Local
kernel.org - util-linux の runuser における親セッションにエスケープされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-2779 2017-03-17 15:48 2016-02-25 Show GitHub Exploit DB Packet Storm
201500 5.9 警告
Network
A10ネットワークス株式会社 - A10 AX1030 およびその他のデバイスのソフトウェアにおける認証キーを取得される脆弱性 CWE-200
情報漏えい
CVE-2016-10213 2017-03-17 15:39 2016-06-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 24, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293001 - cisco telepresence_system_software
telepresence_system_1000
telepresence_system_1300-65
telepresence_system_3000
telepresence_system_3010
telepresence_system_3200
telepresence_system_3210…
The System Status Collection Daemon (SSCD) in Cisco TelePresence System 500-37, 1000, 1300-65, and 3xxx before 1.10.2(42), and 500-32, 1300-47, TX1310 65, and TX9xxx before 6.0.4(11), allows remote a… CWE-94
Code Injection
CVE-2014-0661 2024-11-21 11:02 2014-01-23 Show GitHub Exploit DB Packet Storm
293002 - cisco telepresence_isdn_gateway_software Cisco TelePresence ISDN Gateway with software before 2.2(1.92) allows remote attackers to cause a denial of service (D-channel call outage) via a crafted Q.931 STATUS message, aka Bug ID CSCui50360. CWE-20
 Improper Input Validation 
CVE-2014-0660 2024-11-21 11:02 2014-01-23 Show GitHub Exploit DB Packet Storm
293003 - cisco mediasense The Search and Play interface in Cisco MediaSense does not properly enforce authorization requirements, which allows remote authenticated users to download arbitrary recordings via a request to this … CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0672 2024-11-21 11:02 2014-01-22 Show GitHub Exploit DB Packet Storm
293004 - cisco mediasense Open redirect vulnerability in Cisco MediaSense allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via an unspecified parameter, aka Bug ID CSCum16749. CWE-20
 Improper Input Validation 
CVE-2014-0671 2024-11-21 11:02 2014-01-22 Show GitHub Exploit DB Packet Storm
293005 - cisco mediasense Cross-site scripting (XSS) vulnerability in the Search and Play interface in Cisco MediaSense allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter, aka Bug ID C… CWE-79
Cross-site Scripting
CVE-2014-0670 2024-11-21 11:02 2014-01-22 Show GitHub Exploit DB Packet Storm
293006 - cisco asr_5000_series_software The Wireless Session Protocol (WSP) feature in the Gateway GPRS Support Node (GGSN) component on Cisco ASR 5000 series devices allows remote attackers to bypass intended Top-Up payment restrictions v… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0669 2024-11-21 11:02 2014-01-22 Show GitHub Exploit DB Packet Storm
293007 - ecava integraxor Stack-based buffer overflow in the SCADA server in Ecava IntegraXor before 4.1.4390 allows remote attackers to cause a denial of service (system crash) by triggering access to DLL code located in the… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-0753 2024-11-21 11:02 2014-01-21 Show GitHub Exploit DB Packet Storm
293008 - cisco secure_access_control_system Cross-site scripting (XSS) vulnerability in the portal in Cisco Secure Access Control System (ACS) allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter, aka Bug… CWE-79
Cross-site Scripting
CVE-2014-0668 2024-11-21 11:02 2014-01-20 Show GitHub Exploit DB Packet Storm
293009 - sonatype nexus Sonatype Nexus 1.x and 2.x before 2.7.1 allows remote attackers to create arbitrary objects and execute arbitrary code via unspecified vectors related to unmarshalling of unintended Object types. CWE-94
Code Injection
CVE-2014-0792 2024-11-21 11:02 2014-01-18 Show GitHub Exploit DB Packet Storm
293010 - cisco secure_access_control_system The RMI interface in Cisco Secure Access Control System (ACS) does not properly enforce authorization requirements, which allows remote authenticated users to read arbitrary files via a request to th… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0667 2024-11-21 11:02 2014-01-17 Show GitHub Exploit DB Packet Storm