Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201611 5.5 警告
Local
GNOME Project - librsvg2 の rsvg-paint_server.c の rsvg_pattern_fix_fallback 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-125
境界外読み取り
CVE-2016-6163 2017-02-16 14:46 2016-07-7 Show GitHub Exploit DB Packet Storm
201612 8.8 重要
Network
トレンドマイクロ - Trend Micro VMI の /vmi/manager/engine/management/commands/apns_worker.py における任意のコマンドを実行される脆弱性 CWE-77
コマンドインジェクション
CVE-2016-6270 2017-02-16 14:30 2016-09-30 Show GitHub Exploit DB Packet Storm
201613 7.8 重要
Local
IBM - IBM Security Guardium Database Activity Monito アプライアンスにおけるコマンドを挿入される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2016-6065 2017-02-16 14:26 2016-12-15 Show GitHub Exploit DB Packet Storm
201614 6.3 警告
Network
IBM - IBM Security Privileged Identity Manager 仮想アプライアンスにおける悪意のあるファイルをアップロードされる脆弱性 CWE-284
不適切なアクセス制御
CVE-2016-5990 2017-02-16 14:26 2016-12-29 Show GitHub Exploit DB Packet Storm
201615 6.5 警告
Network
IBM - IBM Security Privileged Identity Manager 仮想アプライアンスにおける重要な情報を公開される脆弱性 CWE-200
情報漏えい
CVE-2016-5988 2017-02-16 14:26 2016-12-29 Show GitHub Exploit DB Packet Storm
201616 5.9 警告
Network
IBM - IBM Security Privileged Identity Manager 仮想アプライアンスにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-5966 2017-02-16 14:26 2016-12-29 Show GitHub Exploit DB Packet Storm
201617 7.5 重要
Network
IBM - IBM Security Privileged Identity Manager における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-5958 2017-02-16 14:26 2016-12-29 Show GitHub Exploit DB Packet Storm
201618 7.8 重要
Local
IBM - IBM AIX における root レベルの権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3053 2017-02-16 14:26 2016-10-17 Show GitHub Exploit DB Packet Storm
201619 8.8 重要
Network
IBM - IBM Security Access Manager におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2016-3029 2017-02-16 14:26 2016-12-6 Show GitHub Exploit DB Packet Storm
201620 6.5 警告
Network
IBM - IBM Security Access Manager におけるサービス運用妨害 (DoS) の脆弱性 CWE-611
XML 外部エンティティ参照の不適切な制限
CVE-2016-3027 2017-02-16 14:26 2016-12-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 20, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
289171 - sap hana_extended_application_services SAP HANA Extend Application Services (XS) does not encrypt transmissions for applications that enable form based authentication using SSL, which allows remote attackers to obtain credentials and othe… CWE-310
Cryptographic Issues
CVE-2014-5171 2024-11-21 11:11 2014-07-31 Show GitHub Exploit DB Packet Storm
289172 - torproject tor Tor before 0.2.4.23 and 0.2.5 before 0.2.5.6-alpha maintains a circuit after an inbound RELAY_EARLY cell is received by a client, which makes it easier for remote attackers to conduct traffic-confirm… NVD-CWE-Other
CVE-2014-5117 2024-11-21 11:11 2014-07-31 Show GitHub Exploit DB Packet Storm
289173 - cairographics cairo The cairo_image_surface_get_data function in Cairo 1.10.2, as used in GTK+ and Wireshark, allows context-dependent attackers to cause a denial of service (NULL pointer dereference) via a large string. NVD-CWE-Other
CVE-2014-5116 2024-11-21 11:11 2014-07-29 Show GitHub Exploit DB Packet Storm
289174 - dirphp_project dirphp Absolute path traversal vulnerability in DirPHP 1.0 allows remote attackers to read arbitrary files via a full pathname in the phpfile parameter to index.php. CWE-22
Path Traversal
CVE-2014-5115 2024-11-21 11:11 2014-07-29 Show GitHub Exploit DB Packet Storm
289175 - webidsupport webid WeBid 1.1.1 allows remote attackers to conduct an LDAP injection attack via the (1) js or (2) cat parameter. NVD-CWE-Other
CVE-2014-5114 2024-11-21 11:11 2014-07-29 Show GitHub Exploit DB Packet Storm
289176 - apple
canonical
cups
ubuntu_linux
The web interface in CUPS before 2.0 does not check that files have world-readable permissions, which allows remote attackers to obtains sensitive information via unspecified vectors. CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-5031 2024-11-21 11:11 2014-07-29 Show GitHub Exploit DB Packet Storm
289177 - canonical
apple
ubuntu_linux
cups
CUPS before 2.0 allows local users to read arbitrary files via a symlink attack on (1) index.html, (2) index.class, (3) index.pl, (4) index.php, (5) index.pyc, or (6) index.py. CWE-59
Link Following
CVE-2014-5030 2024-11-21 11:11 2014-07-29 Show GitHub Exploit DB Packet Storm
289178 - apple
canonical
cups
ubuntu_linux
The web interface in CUPS 1.7.4 allows local users in the lp group to read arbitrary files via a symlink attack on a file in /var/cache/cups/rss/ and language[0] set to null. NOTE: this vulnerabilit… CWE-59
Link Following
CVE-2014-5029 2024-11-21 11:11 2014-07-29 Show GitHub Exploit DB Packet Storm
289179 - canonical
fedoraproject
gentoo
transmissionbt
ubuntu_linux
fedora
linux
transmission
Integer overflow in the tr_bitfieldEnsureNthBitAlloced function in bitfield.c in Transmission before 2.84 allows remote attackers to cause a denial of service and possibly execute arbitrary code via … CWE-189
Numeric Errors
CVE-2014-4909 2024-11-21 11:11 2014-07-29 Show GitHub Exploit DB Packet Storm
289180 - visualware myconnection_server Multiple cross-site scripting (XSS) vulnerabilities in test.php in Visualware MyConnection Server 9.7i allow remote attackers to inject arbitrary web script or HTML via the (1) testtype, (2) ver, (3)… CWE-79
Cross-site Scripting
CVE-2014-5113 2024-11-21 11:11 2014-07-29 Show GitHub Exploit DB Packet Storm