Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 19, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201661 8.8 重要
Network
IBM - IBM Kenexa LMS on Cloud における任意のファイルをアップロードされる脆弱性 CWE-434
危険なタイプのファイルの無制限アップロード
CVE-2016-6124 2017-02-15 16:07 2016-11-11 Show GitHub Exploit DB Packet Storm
201662 9.8 緊急
Network
IBM - IBM WebSphere Commerce におけるユーザのパーソナルデータを公開される脆弱性 CWE-noinfo
情報不足
CVE-2016-6090 2017-02-15 16:07 2016-10-24 Show GitHub Exploit DB Packet Storm
201663 6.5 警告
Adjacent
IBM - IBM BigFix Platform における BES サーバをクラッシュさせられる脆弱性 CWE-20
不適切な入力確認
CVE-2016-6084 2017-02-15 16:07 2016-12-20 Show GitHub Exploit DB Packet Storm
201664 5.3 警告
Network
IBM - IBM WebSphere Message Broker 用 WebAdmin コンテキストにおけるディレクトリをリスト化される脆弱性 CWE-200
情報漏えい
CVE-2016-6080 2017-02-15 16:07 2016-12-1 Show GitHub Exploit DB Packet Storm
201665 5.4 警告
Network
Apache Software Foundation - Apache Brooklyn におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2017-3165 2017-02-15 14:04 2017-02-15 Show GitHub Exploit DB Packet Storm
201666 7.5 重要
Network
D-Link Systems, Inc. - D-Link DWR-932B ルータにおける /var/miniupnpd.conf に no deny ルールが存在する脆弱性 CWE-399
リソース管理の問題
CVE-2016-10186 2017-02-15 13:31 2016-09-28 Show GitHub Exploit DB Packet Storm
201667 7.5 重要
Network
D-Link Systems, Inc. - D-Link DWR-932B ルータにおける /var/miniupnpd.conf に secure_mode=no 行が存在する脆弱性 CWE-254
セキュリティ機能
CVE-2016-10185 2017-02-15 13:31 2016-09-28 Show GitHub Exploit DB Packet Storm
201668 7.5 重要
Network
D-Link Systems, Inc. - D-Link DWR-932B ルータの qmiweb における ..%2f トラバーサルでファイルを読まれる脆弱性 CWE-22
パス・トラバーサル
CVE-2016-10184 2017-02-15 13:31 2016-09-28 Show GitHub Exploit DB Packet Storm
201669 7.5 重要
Network
D-Link Systems, Inc. - D-Link DWR-932B ルータの qmiweb における ../ トラバーサルでディレクトリリスティングをされる脆弱性 CWE-22
パス・トラバーサル
CVE-2016-10183 2017-02-15 13:31 2016-09-28 Show GitHub Exploit DB Packet Storm
201670 9.8 緊急
Network
D-Link Systems, Inc. - D-Link DWR-932B ルータの qmiweb におけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2016-10182 2017-02-15 13:31 2016-09-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 20, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292701 - adobe adobe_air
flash_player
adobe_air_sdk
Adobe Flash Player before 13.0.0.244 and 14.x and 15.x before 15.0.0.152 on Windows and OS X and before 11.2.202.406 on Linux, Adobe AIR before 15.0.0.249 on Windows and OS X and before 15.0.0.252 on… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-0549 2024-11-21 11:02 2014-09-10 Show GitHub Exploit DB Packet Storm
292702 - adobe adobe_air
adobe_air_sdk
flash_player
Adobe Flash Player before 13.0.0.244 and 14.x and 15.x before 15.0.0.152 on Windows and OS X and before 11.2.202.406 on Linux, Adobe AIR before 15.0.0.249 on Windows and OS X and before 15.0.0.252 on… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0548 2024-11-21 11:02 2014-09-10 Show GitHub Exploit DB Packet Storm
292703 - adobe flash_player
adobe_air
adobe_air_sdk
Adobe Flash Player before 13.0.0.244 and 14.x and 15.x before 15.0.0.152 on Windows and OS X and before 11.2.202.406 on Linux, Adobe AIR before 15.0.0.249 on Windows and OS X and before 15.0.0.252 on… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-0547 2024-11-21 11:02 2014-09-10 Show GitHub Exploit DB Packet Storm
292704 - ibm cognos_tm1 IBM Cognos TM1 10.2.0.2 before IF1 and 10.2.2.0 before IF1 allows remote attackers to bypass intended access restrictions by visiting the Rights page and then following a generated link. CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0877 2024-11-21 11:02 2014-09-6 Show GitHub Exploit DB Packet Storm
292705 - ibm cognos_tm1 The client in IBM Cognos TM1 9.5.2.3 before IF5, 10.1.1.2 before IF1, 10.2.0.2 before IF1, and 10.2.2.0 before IF1 stores obfuscated passwords in memory, which allows remote authenticated users to ob… CWE-255
Credentials Management
CVE-2014-0863 2024-11-21 11:02 2014-09-5 Show GitHub Exploit DB Packet Storm
292706 - novell groupwise The client in Novell GroupWise before 8.0.3 HP4, 2012 before SP3, and 2014 before SP1 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (invalid pointer derefe… NVD-CWE-Other
CVE-2014-0610 2024-11-21 11:02 2014-09-5 Show GitHub Exploit DB Packet Storm
292707 - s3ql_project s3ql S3QL 1.18.1 and earlier uses the pickle Python module unsafely, which allows remote attackers to execute arbitrary code via a crafted serialized object in (1) common.py or (2) local.py in backends/. CWE-94
Code Injection
CVE-2014-0485 2024-11-21 11:02 2014-09-2 Show GitHub Exploit DB Packet Storm
292708 - ibm worklight
mobile_foundation
IBM Worklight Foundation 5.x and 6.x before 6.2.0.0, as used in Worklight and Mobile Foundation, allows remote authenticated users to bypass the application-authenticity feature via unspecified vecto… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0888 2024-11-21 11:02 2014-08-29 Show GitHub Exploit DB Packet Storm
292709 - novell groupwise FileUploadServlet in the Administration service in Novell GroupWise 2014 before SP1 allows remote attackers to read or write to arbitrary files via the poLibMaintenanceFileSave parameter, aka ZDI-CAN… CWE-200
Information Exposure
CVE-2014-0600 2024-11-21 11:02 2014-08-29 Show GitHub Exploit DB Packet Storm
292710 - qeiinc epaq-9410_substation_gateway The DNP3 driver in CG Automation ePAQ-9410 Substation Gateway allows physically proximate attackers to cause a denial of service (infinite loop or process crash) via crafted input over a serial line. CWE-20
 Improper Input Validation 
CVE-2014-0762 2024-11-21 11:02 2014-08-28 Show GitHub Exploit DB Packet Storm