Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201591 5.3 警告
Network
Digium - Asterisk Open Source および Certified Asterisk の chan_sip チャネルドライバにおけるプロキシの認証なしに Asterisk に INVITE リクエストを許可される脆弱性 CWE-285
不適切な認可
CVE-2016-9938 2017-01-6 11:48 2016-12-8 Show GitHub Exploit DB Packet Storm
201592 7.1 重要
Local
Image-Info project - Image::Info におけるサービス運用妨害 (DoS) の脆弱性 CWE-611
XML 外部エンティティ参照の不適切な制限
CVE-2016-9181 2017-01-6 11:18 2016-09-27 Show GitHub Exploit DB Packet Storm
201593 9.8 緊急
Network
Bundler - Bundler における任意の Ruby コードをアプリケーションに挿入される脆弱性 CWE-94
コード・インジェクション
CVE-2016-7954 2017-01-6 11:03 2016-10-5 Show GitHub Exploit DB Packet Storm
201594 7.5 重要
Network
Digium - Asterisk Open Source におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2016-9937 2017-01-6 09:40 2016-11-11 Show GitHub Exploit DB Packet Storm
201595 6.1 警告
Network
Tiki Software Community Association - Tiki Wiki CMS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-9889 2017-01-5 18:40 2016-12-22 Show GitHub Exploit DB Packet Storm
201596 8.1 重要
Network
シーメンス - SIEMENS SIMATIC WinCC および SIEMENS SIMATIC PCS 7 における ActiveX コンポーネントをクラッシュさせられる脆弱性 CWE-254
セキュリティ機能
CVE-2016-9160 2017-01-5 18:24 2016-12-9 Show GitHub Exploit DB Packet Storm
201597 5.9 警告
Network
シーメンス - SIEMENS SIMATIC S7-300 PN CPU および SIMATIC S7-400 PN CPU における PLC から資格情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-9159 2017-01-5 18:24 2016-12-9 Show GitHub Exploit DB Packet Storm
201598 7.5 重要
Network
シーメンス - SIEMENS SIMATIC S7-300 PN CPU および SIMATIC S7-400 PN CPU におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-9158 2017-01-5 18:24 2016-12-9 Show GitHub Exploit DB Packet Storm
201599 7.5 重要
Network
シーメンス - Siemens Desigo PX オートメーションコントローラ用 Desigo PX Web モジュールにおける対応する秘密鍵を再構成される脆弱性 CWE-332
PRNG における不十分なエントロピー
CVE-2016-9154 2017-01-5 18:24 2016-12-16 Show GitHub Exploit DB Packet Storm
201600 7 重要
Local
Percona
MariaDB Corporation Ab.
オラクル
- Oracle MySQL およびその他のデータベースにおける権限を取得される脆弱性 CWE-362
競合状態
CVE-2016-6663 2017-01-5 18:20 2016-09-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
354741 - datawizard ftpxq The default configuration of DataWizard FtpXQ 2.0 and 2.1 includes a default username and password, which allows remote attackers to read and write arbitrary files in the root folder. NVD-CWE-Other
CVE-2001-1213 2008-09-11 04:09 2001-12-18 Show GitHub Exploit DB Packet Storm
354742 - marcus_s._xenakis unix_manual manual.php in Marcus S. Xenakis Unix Manual 1.0 allows remote attackers to execute arbitrary code via a URL that contains shell metacharacters. NVD-CWE-Other
CVE-2001-1214 2008-09-11 04:09 2001-12-15 Show GitHub Exploit DB Packet Storm
354743 - michael_baumer pfinger Format string vulnerability in PFinger 0.7.5 through 0.7.7 allows remote attackers to execute arbitrary code via format string specifiers in a .plan file. NVD-CWE-Other
CVE-2001-1215 2008-09-11 04:09 2001-12-20 Show GitHub Exploit DB Packet Storm
354744 - microsoft ie Microsoft Internet Explorer for Unix 5.0SP1 allows local users to possibly cause a denial of service (crash) in CDE or the X server on Solaris 2.6 by rapidly scrolling Chinese characters or maximizin… NVD-CWE-Other
CVE-2001-1218 2008-09-11 04:09 2001-12-20 Show GitHub Exploit DB Packet Storm
354745 - gnu gzip Buffer overflows in gzip 1.3x, 1.2.4, and other versions might allow attackers to execute code via a long file name, possibly remotely if gzip is run on an FTP server. NVD-CWE-Other
CVE-2001-1228 2008-09-11 04:09 2001-11-18 Show GitHub Exploit DB Packet Storm
354746 - derek_leung pslash pSlash PHP script 0.7 and earlier allows remote attackers to execute arbitrary code by including files from remote web sites, using an HTTP request that modifies the includedir variable. NVD-CWE-Other
CVE-2001-1235 2008-09-11 04:09 2001-10-2 Show GitHub Exploit DB Packet Storm
354747 - sebastian_bunka myphppagetool myphpPagetool PHP script 0.4.3-1 and earlier allows remote attackers to execute arbitrary code by including files from remote web sites, using an HTTP request that modifies the includedir variable. NVD-CWE-Other
CVE-2001-1236 2008-09-11 04:09 2001-10-2 Show GitHub Exploit DB Packet Storm
354748 - ibm aix_snmp AIX SNMP server snmpd allows remote attackers to cause a denial of service via a RST during the TCP connection. NVD-CWE-Other
CVE-2001-0487 2008-09-11 04:08 2001-06-27 Show GitHub Exploit DB Packet Storm
354749 - oracle oracle8i Transparent Network Substrate (TNS) over Net8 (SQLNet) in Oracle 8i 8.1.7 and earlier allows remote attackers to cause a denial of service via a malformed SQLNet connection request with a large offse… NVD-CWE-Other
CVE-2001-0498 2008-09-11 04:08 2001-07-21 Show GitHub Exploit DB Packet Storm
354750 - oracle database_server
oracle8i
Oracle Listener in Oracle 7.3 and 8i allows remote attackers to cause a denial of service via a malformed connection packet with a large offset_to_data value. NVD-CWE-Other
CVE-2001-0515 2008-09-11 04:08 2001-07-21 Show GitHub Exploit DB Packet Storm