Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 24, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201661 5.9 警告
Network
OpenNTPD - OpenNTPD における中間者攻撃の軽減を回避される脆弱性 CWE-254
セキュリティ機能
CVE-2016-5117 2017-03-14 16:10 2016-05-21 Show GitHub Exploit DB Packet Storm
201662 7.5 重要
Network
Debian
FlightGear
Fedora Project
- FlightGear のルートマネージャにおける任意のファイルに書き込まれる脆弱性 CWE-284
不適切なアクセス制御
CVE-2016-9956 2017-03-14 16:10 2016-12-28 Show GitHub Exploit DB Packet Storm
201663 6.8 警告
Network
シスコシステムズ - Cisco Industrial Ethernet 2000 シリーズスイッチの CIP 機能の実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2017-3812 2017-03-14 16:02 2017-02-1 Show GitHub Exploit DB Packet Storm
201664 7.5 重要
Network
Artifex Software - Artifex Software, Inc MuPDF の pdf-op-run.c の pdf_run_xobject 関数における NULL ポインタデリファレンスを引き起こされる脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2017-5991 2017-03-14 15:47 2017-02-10 Show GitHub Exploit DB Packet Storm
201665 8.8 重要
Network
トレンドマイクロ - Trend Micro Interscan Web Security Virtual Appliance の com.trend.iwss.gui.servlet.updateaccountadministration における権限を昇格される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-9315 2017-03-14 15:41 2016-11-14 Show GitHub Exploit DB Packet Storm
201666 6.6 警告
Network
Puppet - Puppet 用 mcollective-puppet-agent プラグインにおける任意のコードを実行される脆弱性 CWE-254
セキュリティ機能
CVE-2015-7331 2017-03-14 15:39 2015-09-23 Show GitHub Exploit DB Packet Storm
201667 9.8 緊急
Network
NetApp - NetApp OnCommand Unified Manager for Clustered Data ONTAP における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2016-6667 2017-03-14 15:18 2016-10-17 Show GitHub Exploit DB Packet Storm
201668 5.9 警告
Network
NetApp - NetApp Data ONTAP における HTTP アクセス用に構成されたボリュームに関する情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-6495 2017-03-14 15:18 2016-09-29 Show GitHub Exploit DB Packet Storm
201669 9.8 緊急
Network
NetApp - NetApp Virtual Storage Console for VMware vSphere における中間者攻撃を実行される脆弱性 CWE-noinfo
情報不足
CVE-2016-5711 2017-03-14 15:18 2016-11-8 Show GitHub Exploit DB Packet Storm
201670 7.5 重要
Network
NetApp - NetApp Clustered Data ONTAP における SMB 共有情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-4341 2017-03-14 15:18 2016-10-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 24, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
288991 - debian
cacti
opensuse
debian_linux
cacti
opensuse
Multiple cross-site scripting (XSS) vulnerabilities in Cacti 0.8.8b allow remote authenticated users with console access to inject arbitrary web script or HTML via a (1) Graph Tree Title in a delete … CWE-79
Cross-site Scripting
CVE-2014-5026 2024-11-21 11:11 2014-10-21 Show GitHub Exploit DB Packet Storm
288992 - debian
opensuse
cacti
debian_linux
opensuse
cacti
Cross-site scripting (XSS) vulnerability in data_sources.php in Cacti 0.8.8b allows remote authenticated users with console access to inject arbitrary web script or HTML via the name_cache parameter … CWE-79
Cross-site Scripting
CVE-2014-5025 2024-11-21 11:11 2014-10-21 Show GitHub Exploit DB Packet Storm
288993 - pro_chat_rooms text_chat_rooms Multiple cross-site scripting (XSS) vulnerabilities in Pro Chat Rooms Text Chat Rooms 8.2.0 allow remote authenticated users to inject arbitrary web script or HTML via (1) an uploaded profile picture… CWE-79
Cross-site Scripting
CVE-2014-5276 2024-11-21 11:11 2014-10-21 Show GitHub Exploit DB Packet Storm
288994 - prochatrooms text_chat_rooms Multiple SQL injection vulnerabilities in includes/functions.php in Pro Chat Rooms Text Chat Rooms 8.2.0 allow remote authenticated users to execute arbitrary SQL commands via the (1) password, (2) e… CWE-89
SQL Injection
CVE-2014-5275 2024-11-21 11:11 2014-10-21 Show GitHub Exploit DB Packet Storm
288995 - jamroom search_module Cross-site scripting (XSS) vulnerability in the Search module before 1.2.2 in Jamroom allows remote attackers to inject arbitrary web script or HTML via the query string to search/results/. CWE-79
Cross-site Scripting
CVE-2014-5098 2024-11-21 11:11 2014-10-21 Show GitHub Exploit DB Packet Storm
288996 - status2k status2k Status2k allows remote attackers to obtain configuration information via a phpinfo action in a request to status/index.php, which calls the phpinfo function. CWE-200
Information Exposure
CVE-2014-5094 2024-11-21 11:11 2014-10-21 Show GitHub Exploit DB Packet Storm
288997 - aptana aflax Cross-site scripting (XSS) vulnerability in Aflax allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2014-5331 2024-11-21 11:11 2014-10-19 Show GitHub Exploit DB Packet Storm
288998 - birdblog birdblog Cross-site scripting (XSS) vulnerability in BirdBlog allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2014-5330 2024-11-21 11:11 2014-10-19 Show GitHub Exploit DB Packet Storm
288999 - partytrack_library_project partytrack_library The PartyTrack library for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certif… CWE-310
Cryptographic Issues
CVE-2014-4881 2024-11-21 11:11 2014-10-17 Show GitHub Exploit DB Packet Storm
289000 - huawei e5332_firmware
e5332
Buffer overflow in the Webserver component on the Huawei E5332 router before 21.344.27.00.1080 allows remote authenticated users to cause a denial of service (reboot) via a long parameter in an API s… CWE-399
 Resource Management Errors
CVE-2014-5328 2024-11-21 11:11 2014-10-12 Show GitHub Exploit DB Packet Storm