Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 31, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201521 5.9 警告
Network
日立
オラクル
- Oracle Java SE および Java SE Embedded における Networking に関する脆弱性 CWE-200
情報漏えい
CVE-2016-5597 2016-11-9 16:41 2016-10-18 Show GitHub Exploit DB Packet Storm
201522 9.6 緊急
Network
日立
オラクル
- Oracle Java SE および Java SE Embedded における Hotspot に関する脆弱性 CWE-Other
その他
CVE-2016-5582 2016-11-9 16:41 2016-10-18 Show GitHub Exploit DB Packet Storm
201523 8.3 重要
Network
日立
オラクル
- Oracle Java SE および Java SE Embedded における Hotspot に関する脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-5573 2016-11-9 16:41 2016-10-18 Show GitHub Exploit DB Packet Storm
201524 9.6 緊急
Network
日立
オラクル
- Oracle Java SE における AWT に関する脆弱性 CWE-Other
その他
CVE-2016-5568 2016-11-9 16:41 2016-10-18 Show GitHub Exploit DB Packet Storm
201525 9.6 緊急
Network
日立
オラクル
- Oracle Java SE における 2D に関する脆弱性 CWE-Other
その他
CVE-2016-5556 2016-11-9 16:41 2016-10-18 Show GitHub Exploit DB Packet Storm
201526 4.3 警告
Network
日立
オラクル
- Oracle Java SE および Java SE Embedded における JMX に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-5554 2016-11-9 16:41 2016-10-18 Show GitHub Exploit DB Packet Storm
201527 3.1
Network
日立
オラクル
- Oracle Java SE および Java SE Embedded における Libraries に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-5542 2016-11-9 16:40 2016-10-18 Show GitHub Exploit DB Packet Storm
201528 2.6 注意 日本電気
Apache Software Foundation
オラクル
- Apache Tomcat の AsyncContextImpl.java における重要なリクエスト情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-2071 2016-11-9 16:39 2013-05-9 Show GitHub Exploit DB Packet Storm
201529 8.1 重要
Network
レッドハット
日本電気
Fedora Project
The Go Project
- Go の net/http パッケージにおける任意のプロキシサーバに CGI アプリケーションのアウトバウンド HTTP トラフィックをリダイレクトされる脆弱性 CWE-Other
CWE-Other
CVE-2016-5386 2016-11-9 16:35 2016-07-18 Show GitHub Exploit DB Packet Storm
201530 - - Claybird
寺尾 進
日本電気
Micco
アップル
Schezo
Lunascape
pon software
フェンリル株式会社
- Windows プログラムの DLL 読み込みに脆弱性 - - 2016-11-9 16:25 2010-08-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 31, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
345621 - smbcms smbcms Cross-site scripting (XSS) vulnerability in SMBCMS 2.1 allows remote attackers to inject arbitrary web script or HTML via the text parameter, which is used by the "Search Site" field. NOTE: the prov… NVD-CWE-Other
CVE-2006-0243 2017-07-20 10:29 2006-01-18 Show GitHub Exploit DB Packet Storm
345622 - devellion cubecart Multiple cross-site scripting (XSS) vulnerabilities in CubeCart 3.0.7-pl1 allow remote attackers to inject arbitrary web script or HTML via the (3) redir, (4) productId, (5) docId, (6) act, and (7) c… NVD-CWE-Other
CVE-2006-0245 2017-07-20 10:29 2006-01-18 Show GitHub Exploit DB Packet Storm
345623 - widexl download_tracker Cross-site scripting (XSS) vulnerability in down.pl in Widexl Download Tracker 1.06 allows remote attackers to inject arbitrary web script or HTML via the ID parameter. NVD-CWE-Other
CVE-2006-0246 2017-07-20 10:29 2006-01-18 Show GitHub Exploit DB Packet Storm
345624 - netbula anyboard Cross-site scripting (XSS) vulnerability in anyboard.cgi in Netbula Anyboard 9.9 and earlier allows remote attackers to inject arbitrary web script or HTML via the tK parameter in a find command. NVD-CWE-Other
CVE-2006-0247 2017-07-20 10:29 2006-01-18 Show GitHub Exploit DB Packet Storm
345625 - intracom jetspeed Virata-EmWeb web server 6_1_0, as used in (1) Intracom JetSpeed 500 and 520 and (2) Allied Data Technologies CopperJet 811 RouterPlus, allows remote attackers to access privileged information, such a… NVD-CWE-Other
CVE-2006-0248 2017-07-20 10:29 2006-01-18 Show GitHub Exploit DB Packet Storm
345626 - bitdamaged geoblog SQL injection vulnerability in viewcat.php in BitDamaged geoBlog MOD_1.0 allows remote attackers to execute arbitrary SQL commands, then steal credentials and upload files, via the cat parameter ($tm… CWE-89
SQL Injection
CVE-2006-0249 2017-07-20 10:29 2006-01-18 Show GitHub Exploit DB Packet Storm
345627 - faq-o-matic faq-o-matic Cross-site scripting (XSS) vulnerability in fom.cgi in Faq-O-Matic 2.711 allows remote attackers to inject arbitrary web script or HTML via the (1) _duration, (2) file, and (3) cmd parameters. NVD-CWE-Other
CVE-2006-0251 2017-07-20 10:29 2006-01-18 Show GitHub Exploit DB Packet Storm
345628 - oracle database_server Unspecified vulnerability in the Change Data Capture component of Oracle Database server 9.2.0.7, 10.1.0.5, and 10.2.0.1 has unspecified impact and attack vectors, as identified by Oracle Vuln# DB02.… NVD-CWE-noinfo
CVE-2006-0257 2017-07-20 10:29 2006-01-18 Show GitHub Exploit DB Packet Storm
345629 - oracle database_server Unspecified vulnerability in the Connection Manager component of Oracle Database server 8.1.7.4 and 9.0.1.5 has unspecified impact and attack vectors, as identified by Oracle Vuln# DB03. NVD-CWE-noinfo
CVE-2006-0258 2017-07-20 10:29 2006-01-18 Show GitHub Exploit DB Packet Storm
345630 - oracle database_server Multiple unspecified vulnerabilities in Oracle Database server 10.1.0.5 have unspecified impact and attack vectors, as identified by Oracle Vuln# (1) DB04 and (2) DB06 in the (a) Data Pump component;… NVD-CWE-noinfo
CVE-2006-0259 2017-07-20 10:29 2006-01-18 Show GitHub Exploit DB Packet Storm