Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201641 6.5 警告
Network
OpenJPEG project - OpenJPEG の convert.c(jp2):942 の imagetotga におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2016-9115 2016-11-2 15:26 2016-10-29 Show GitHub Exploit DB Packet Storm
201642 7.5 重要
Network
OpenJPEG project - OpenJPEG の convert.c:1943(jp2) の imagetopnm におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-9114 2016-11-2 15:26 2016-10-29 Show GitHub Exploit DB Packet Storm
201643 7.5 重要
Network
OpenJPEG project - OpenJPEG の convertbmp.c:980 の imagetobmp におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-9113 2016-11-2 15:26 2016-10-29 Show GitHub Exploit DB Packet Storm
201644 7.5 重要
Network
OpenJPEG project - OpenJPEG の openjp2/pi.c:523 の opj_pi_next_cprl 関数における浮動小数点例外の脆弱性 CWE-Other
その他
CVE-2016-9112 2016-11-2 15:26 2016-10-27 Show GitHub Exploit DB Packet Storm
201645 7.8 重要
Local
OpenJPEG project - OpenJPEG ライブラリの JPEG2000 画像ファイル形式パーサにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-8332 2016-11-2 15:26 2016-09-29 Show GitHub Exploit DB Packet Storm
201646 6.1 警告
Network
AlienVault - AlienVault OSSIM および USM の脆弱性検査スケジューラの複数の GET パラメータにおける反射型クロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-8583 2016-11-2 15:06 2016-10-3 Show GitHub Exploit DB Packet Storm
201647 9.8 緊急
Network
AlienVault - AlienVault OSSIM および USM の gauge.php における任意の SQL クエリを実行される脆弱性 CWE-89
SQLインジェクション
CVE-2016-8582 2016-11-2 15:06 2016-10-3 Show GitHub Exploit DB Packet Storm
201648 6.1 警告
Network
AlienVault - AlienVault OSSIM および USM のログインプロセスの User-Agent ヘッダにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-8581 2016-11-2 15:06 2016-10-3 Show GitHub Exploit DB Packet Storm
201649 9.8 緊急
Network
AlienVault - AlienVault OSSIM および USM の複数のウィジェットファイルにおける PHP オブジェクトインジェクション攻撃を実行される脆弱性 CWE-Other
その他
CVE-2016-8580 2016-11-2 15:06 2016-10-3 Show GitHub Exploit DB Packet Storm
201650 7.5 重要
Network
シスコシステムズ - Cisco ASA ソフトウェアのローカル認証局機能におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-6431 2016-11-1 16:58 2016-10-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 2, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
290011 - mybb mybb Cross-site scripting (XSS) vulnerability in misc.php in MyBB (aka MyBulletinBoard) before 1.6.12 allows remote attackers to inject arbitrary web script or HTML via the editor parameter in a smilie li… CWE-79
Cross-site Scripting
CVE-2013-7275 2024-11-21 11:00 2014-01-9 Show GitHub Exploit DB Packet Storm
290012 - wallpaperscript wallpaperscript Cross-site scripting (XSS) vulnerability in Wallpaper Script 3.5.0082 allows remote authenticated users to inject arbitrary web script or HTML via the title field in a wallpaper file upload. CWE-79
Cross-site Scripting
CVE-2013-7274 2024-11-21 11:00 2014-01-9 Show GitHub Exploit DB Packet Storm
290013 - 7mediaws edutrac Directory traversal vulnerability in 7 Media Web Solutions eduTrac before 1.1.2 allows remote attackers to read arbitrary files via a .. (dot dot) in the showmask parameter to installer/overview.php. CWE-22
Path Traversal
CVE-2013-7097 2024-11-21 11:00 2014-01-9 Show GitHub Exploit DB Packet Storm
290014 - linux linux_kernel The x25_recvmsg function in net/x25/af_x25.c in the Linux kernel before 3.12.4 updates a certain length value without ensuring that an associated data structure has been initialized, which allows loc… CWE-20
 Improper Input Validation 
CVE-2013-7271 2024-11-21 11:00 2014-01-7 Show GitHub Exploit DB Packet Storm
290015 - linux linux_kernel The packet_recvmsg function in net/packet/af_packet.c in the Linux kernel before 3.12.4 updates a certain length value before ensuring that an associated data structure has been initialized, which al… CWE-20
 Improper Input Validation 
CVE-2013-7270 2024-11-21 11:00 2014-01-7 Show GitHub Exploit DB Packet Storm
290016 - linux linux_kernel The nr_recvmsg function in net/netrom/af_netrom.c in the Linux kernel before 3.12.4 updates a certain length value without ensuring that an associated data structure has been initialized, which allow… CWE-20
 Improper Input Validation 
CVE-2013-7269 2024-11-21 11:00 2014-01-7 Show GitHub Exploit DB Packet Storm
290017 - linux linux_kernel The ipx_recvmsg function in net/ipx/af_ipx.c in the Linux kernel before 3.12.4 updates a certain length value without ensuring that an associated data structure has been initialized, which allows loc… CWE-20
 Improper Input Validation 
CVE-2013-7268 2024-11-21 11:00 2014-01-7 Show GitHub Exploit DB Packet Storm
290018 - linux linux_kernel The atalk_recvmsg function in net/appletalk/ddp.c in the Linux kernel before 3.12.4 updates a certain length value without ensuring that an associated data structure has been initialized, which allow… CWE-20
 Improper Input Validation 
CVE-2013-7267 2024-11-21 11:00 2014-01-7 Show GitHub Exploit DB Packet Storm
290019 - linux linux_kernel The mISDN_sock_recvmsg function in drivers/isdn/mISDN/socket.c in the Linux kernel before 3.12.4 does not ensure that a certain length value is consistent with the size of an associated data structur… CWE-20
 Improper Input Validation 
CVE-2013-7266 2024-11-21 11:00 2014-01-7 Show GitHub Exploit DB Packet Storm
290020 - linux linux_kernel The pn_recvmsg function in net/phonet/datagram.c in the Linux kernel before 3.12.4 updates a certain length value before ensuring that an associated data structure has been initialized, which allows … CWE-20
 Improper Input Validation 
CVE-2013-7265 2024-11-21 11:00 2014-01-7 Show GitHub Exploit DB Packet Storm