Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201561 7.5 重要
Network
Exponent CMS project - Exponent CMS の /framework/modules/ecommerce/controllers/orderController.php における情報公開の脆弱性 CWE-200
情報漏えい
CVE-2016-9183 2016-11-8 17:23 2016-11-3 Show GitHub Exploit DB Packet Storm
201562 7.5 重要
Network
Exponent CMS project - Exponent CMS におけるパーミッションチェックを回避される脆弱性 CWE-Other
その他
CVE-2016-9182 2016-11-8 17:23 2016-11-3 Show GitHub Exploit DB Packet Storm
201563 8.1 重要
Network
Joomla! - Joomla! の Users コンポーネントの controllers/user.php の UsersModelRegistration クラスにおけるユーザアカウントを作成される脆弱性 CWE-20
不適切な入力確認
CVE-2016-8870 2016-11-8 16:46 2016-10-25 Show GitHub Exploit DB Packet Storm
201564 9.8 緊急
Network
Joomla! - Joomla! の Users コンポーネントの controllers/user.php の UsersModelRegistration クラスにおける権限を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2016-8869 2016-11-8 16:46 2016-10-25 Show GitHub Exploit DB Packet Storm
201565 7.5 重要
Network
シスコシステムズ - Data Processing Card 2 を伴う Cisco ASR 5000 シリーズルータの StarOS における加入者セッションの一部を切断される脆弱性 CWE-399
リソース管理の問題
CVE-2016-6455 2016-11-8 14:13 2016-11-2 Show GitHub Exploit DB Packet Storm
201566 6.5 警告
Network
シスコシステムズ - Cisco Hosted Collaboration Mediation Fulfillment の Web インターフェースにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2016-6454 2016-11-8 14:13 2016-10-26 Show GitHub Exploit DB Packet Storm
201567 7.3 重要
Network
シスコシステムズ - Cisco Identity Services Engine の Web フレームワークのコードにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2016-6453 2016-11-8 14:13 2016-10-26 Show GitHub Exploit DB Packet Storm
201568 9.8 緊急
Network
シスコシステムズ - Cisco Prime Home の Web ベースの GUI における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2016-6452 2016-11-8 14:13 2016-11-2 Show GitHub Exploit DB Packet Storm
201569 6.1 警告
Network
シスコシステムズ - Cisco Prime Collaboration Provisioning の Web フレームワークのコードにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-6451 2016-11-8 14:13 2016-10-26 Show GitHub Exploit DB Packet Storm
201570 9.8 緊急
Network
シスコシステムズ - Cisco Meeting Server の Session Description Protocol パーサにおける任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-6448 2016-11-8 14:13 2016-11-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
290311 - pineapp mail-secure Absolute path traversal vulnerability in admin/viewmsg.php in PineApp Mail-SeCure allows remote attackers to read arbitrary files via a full pathname in the msg parameter. CWE-22
Path Traversal
CVE-2013-6827 2024-11-21 10:59 2013-11-20 Show GitHub Exploit DB Packet Storm
290312 - fortinet fortianalyzer_firmware
fortianalyzer-1000d
fortianalyzer-2000b
fortianalyzer-200d
fortianalyzer-3000d
fortianalyzer-300d
fortianalyzer-4000b
cgi-bin/module//sysmanager/admin/SYSAdminUserDialog in Fortinet FortiAnalyzer before 5.0.5 does not properly validate the csrf_token parameter, which allows remote attackers to perform cross-site req… CWE-352
 Origin Validation Error
CVE-2013-6826 2024-11-21 10:59 2013-11-20 Show GitHub Exploit DB Packet Storm
290313 - sap netweaver GRMGApp in SAP NetWeaver allows remote attackers to bypass intended access restrictions via unspecified vectors. CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-6823 2024-11-21 10:59 2013-11-20 Show GitHub Exploit DB Packet Storm
290314 - sap netweaver GRMGApp in SAP NetWeaver allows remote attackers to have unspecified impact and attack vectors, related to an XML External Entity (XXE) issue. NVD-CWE-noinfo
CVE-2013-6822 2024-11-21 10:59 2013-11-20 Show GitHub Exploit DB Packet Storm
290315 - sap netweaver Directory traversal vulnerability in the Exportability Check Service in SAP NetWeaver allows remote attackers to read arbitrary files via unspecified vectors. CWE-22
Path Traversal
CVE-2013-6821 2024-11-21 10:59 2013-11-20 Show GitHub Exploit DB Packet Storm
290316 - sap netweaver Cross-site scripting (XSS) vulnerability in Performance Provider in SAP NetWeaver allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2013-6819 2024-11-21 10:59 2013-11-20 Show GitHub Exploit DB Packet Storm
290317 - sap netweaver_development_infrastructure Unrestricted file upload vulnerability in the SAP NetWeaver Development Infrastructure (NWDI) allows remote attackers to execute arbitrary code by uploading a file with an executable extension via un… NVD-CWE-Other
CVE-2013-6820 2024-11-21 10:59 2013-11-20 Show GitHub Exploit DB Packet Storm
290318 - sap netweaver_logviewer SAP NetWeaver Logviewer 6.30, when running on Windows, allows remote attackers to bypass intended access restrictions via unspecified vectors. CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-6818 2024-11-21 10:59 2013-11-20 Show GitHub Exploit DB Packet Storm
290319 - sap network_interface_router Heap-based buffer overflow in SAP Network Interface Router (SAProuter) 7.30 allows remote attackers to cause a denial of service and execute arbitrary code via crafted NI Route messages. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-6817 2024-11-21 10:59 2013-11-20 Show GitHub Exploit DB Packet Storm
290320 - sap netweaver Multiple cross-site scripting (XSS) vulnerabilities in the (1) JavaDumpService and (2) DataCollector servlets in SAP NetWeaver allow remote attackers to inject arbitrary web script or HTML via unspec… CWE-79
Cross-site Scripting
CVE-2013-6816 2024-11-21 10:59 2013-11-20 Show GitHub Exploit DB Packet Storm