Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201611 8.6 重要
Network
IBM - IBM Security Guardium Database Activity Monitor における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2016-0249 2016-10-20 15:56 2016-10-3 Show GitHub Exploit DB Packet Storm
201612 6.8 警告
Network
IBM - IBM Cloud Orchestrator におけるオープンリダイレクトの脆弱性 CWE-Other
その他
CVE-2016-0204 2016-10-20 15:56 2016-05-30 Show GitHub Exploit DB Packet Storm
201613 8.8 重要
Network
レッドハット - Red Hat JBoss Enterprise Application Platform の JMX サーブレットにおけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-7065 2016-10-20 15:36 2016-10-6 Show GitHub Exploit DB Packet Storm
201614 9.1 緊急
Network
google-adsense-and-hotel-booking project - WordPress 用 google-adsense-and-hotel-booking プラグインの Open Proxy における脆弱性 CWE-Other
その他
CVE-2015-1000009 2016-10-20 15:35 2015-08-15 Show GitHub Exploit DB Packet Storm
201615 9.1 緊急
Network
シーメンス - Siemens Automation License Manager におけるファイルに書き込まれる脆弱性 CWE-Other
その他
CVE-2016-8565 2016-10-20 15:31 2016-10-12 Show GitHub Exploit DB Packet Storm
201616 6.5 警告
Network
シーメンス - Siemens Automation License Manager における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2016-8564 2016-10-20 15:31 2016-10-12 Show GitHub Exploit DB Packet Storm
201617 7.5 重要
Network
シーメンス - Siemens Automation License Manager におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-8563 2016-10-20 15:31 2016-10-12 Show GitHub Exploit DB Packet Storm
201618 2.5
Local
シーメンス - Siemens SIMATIC STEP 7 における重要な設定情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-7960 2016-10-20 15:31 2016-10-12 Show GitHub Exploit DB Packet Storm
201619 4.7 警告
Local
シーメンス - Siemens SIMATIC STEP 7 における重要な情報を取得される脆弱性 CWE-Other
その他
CVE-2016-7959 2016-10-20 15:31 2016-10-12 Show GitHub Exploit DB Packet Storm
201620 5.3 警告
Network
シスコシステムズ - 複数の Cisco Nexus デバイス上で稼動する Cisco NX-OS におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-1454 2016-10-20 15:23 2016-10-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
290721 - atlassian crowd Atlassian Crowd 2.6.3 allows remote attackers to execute arbitrary commands via unspecified vectors related to a "symmetric backdoor." NOTE: as of 20130704, the vendor could not reproduce the issue,… NVD-CWE-Other
CVE-2013-3926 2024-11-21 10:54 2013-07-2 Show GitHub Exploit DB Packet Storm
290722 - atlassian crowd Atlassian Crowd 2.5.x before 2.5.4, 2.6.x before 2.6.3, 2.3.8, and 2.4.9 allows remote attackers to read arbitrary files and send HTTP requests to intranet servers via a request to (1) /services/2 or… CWE-20
 Improper Input Validation 
CVE-2013-3925 2024-11-21 10:54 2013-07-2 Show GitHub Exploit DB Packet Storm
290723 - lockon ec-cube Multiple cross-site scripting (XSS) vulnerabilities in the RecommendSearch feature in the management screen in LOCKON EC-CUBE before 2.12.5 allow remote attackers to inject arbitrary web script or HT… CWE-79
Cross-site Scripting
CVE-2013-3653 2024-11-21 10:54 2013-07-1 Show GitHub Exploit DB Packet Storm
290724 - lockon ec-cube Cross-site scripting (XSS) vulnerability in data/class/pages/products/LC_Page_Products_List.php in LOCKON EC-CUBE 2.11.0 through 2.12.4 allows remote attackers to inject arbitrary web script or HTML … CWE-79
Cross-site Scripting
CVE-2013-3652 2024-11-21 10:54 2013-07-1 Show GitHub Exploit DB Packet Storm
290725 - lockon ec-cube Directory traversal vulnerability in LOCKON EC-CUBE 2.12.0 through 2.12.4 allows remote attackers to read arbitrary image files via vectors related to data/class/SC_CheckError.php and data/class/SC_F… CWE-22
Path Traversal
CVE-2013-3654 2024-11-21 10:54 2013-07-1 Show GitHub Exploit DB Packet Storm
290726 - lockon ec-cube LOCKON EC-CUBE 2.11.2 through 2.12.4 allows remote attackers to conduct unspecified PHP code-injection attacks via a crafted string, related to data/class/SC_CheckError.php and data/class/SC_FormPara… CWE-94
Code Injection
CVE-2013-3651 2024-11-21 10:54 2013-07-1 Show GitHub Exploit DB Packet Storm
290727 - lockon ec-cube Directory traversal vulnerability in the lfCheckFileName function in data/class/pages/LC_Page_ResizeImage.php in LOCKON EC-CUBE before 2.12.5 allows remote attackers to read arbitrary image files via… CWE-22
Path Traversal
CVE-2013-3650 2024-11-21 10:54 2013-07-1 Show GitHub Exploit DB Packet Storm
290728 - ds3 authentication_server ServerAdmin/ErrorViewer.jsp in DS3 Authentication Server allow remote attackers to inject arbitrary error-page text via the message parameter. CWE-20
 Improper Input Validation 
CVE-2013-4098 2024-11-21 10:54 2013-06-29 Show GitHub Exploit DB Packet Storm
290729 - ds3 authentication_server ServerAdmin/TestDRConnection.jsp in DS3 Authentication Server allows remote attackers to obtain sensitive information via a direct request, which reveals the installation path in a -REG-E-OPEN error … CWE-22
Path Traversal
CVE-2013-4097 2024-11-21 10:54 2013-06-29 Show GitHub Exploit DB Packet Storm
290730 - ds3 authentication_server ServerAdmin/TestTelnetConnection.jsp in DS3 Authentication Server allows remote authenticated users to execute arbitrary commands via shell metacharacters in the HOST_NAME field. CWE-20
 Improper Input Validation 
CVE-2013-4096 2024-11-21 10:54 2013-06-29 Show GitHub Exploit DB Packet Storm