Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 6, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201721 7.8 重要
Local
libarchive
レッドハット
- libarchive の archive_read_support_format_7zip.c の read_SubStreamsInfo 関数における整数オーバーフローの脆弱性 CWE-Other
その他
CVE-2016-4300 2016-11-17 17:21 2016-06-20 Show GitHub Exploit DB Packet Storm
201722 7.8 重要
Local
libarchive
レッドハット
- libarchive の archive_read_support_format_rar.c の parse_codes 関数におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-4302 2016-11-17 17:20 2015-06-20 Show GitHub Exploit DB Packet Storm
201723 9.8 緊急
Network
マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2016-4174 2016-11-17 17:03 2016-07-12 Show GitHub Exploit DB Packet Storm
201724 5.9 警告
Network
Debian
Wireshark
- Wireshark の H.225 ディセクタの epan/dissectors/packet-h225.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2016-7176 2016-11-17 16:58 2016-09-8 Show GitHub Exploit DB Packet Storm
201725 8.1 重要
Network
Squid-cache.org
Canonical
オラクル
- Squid におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-4054 2016-11-17 16:55 2016-04-20 Show GitHub Exploit DB Packet Storm
201726 3.7
Network
Squid-cache.org
Canonical
オラクル
- Squid における重要なスタックレイアウト情報を取得される脆弱性 CWE-119
バッファエラー
CVE-2016-4053 2016-11-17 16:55 2016-04-20 Show GitHub Exploit DB Packet Storm
201727 8.8 重要
Network
Squid-cache.org
Canonical
オラクル
- Squid の cachemgr.cgi におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-4051 2016-11-17 16:54 2016-04-20 Show GitHub Exploit DB Packet Storm
201728 7.5 重要
Network
レッドハット
libarchive
オラクル
- libarchive のサンドボックスコードにおける任意のファイルに書き込まれる脆弱性 CWE-20
CWE-Other
CVE-2016-5418 2016-11-17 16:51 2016-09-12 Show GitHub Exploit DB Packet Storm
201729 7.8 重要
Local
Linux
SUSE
Canonical
オラクル
- Linux Kernel の netfilter サブシステムの compat IPT_SO_SET_REPLACE setsockopt の実装における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-4997 2016-11-17 16:46 2016-06-24 Show GitHub Exploit DB Packet Storm
201730 5.9 警告
Network
Wireshark
オラクル
- Wireshark の NCP ディセクタの epan/dissectors/packet-ncp2222.inc におけるスタックベースのバッファオーバーフローの脆弱性 CWE-20
不適切な入力確認
CVE-2016-4085 2016-11-17 16:45 2016-04-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 6, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291701 - openttd openttd The HandleCrashedAircraft function in aircraft_cmd.cpp in OpenTTD 0.3.6 through 1.3.2 allows remote attackers to cause a denial of service (out-of-bounds read and crash) by crashing an aircraft outsi… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-6411 2024-11-21 10:59 2013-12-15 Show GitHub Exploit DB Packet Storm
291702 - openstack
canonical
redhat
keystone
ubuntu_linux
openstack
The ec2tokens API in OpenStack Identity (Keystone) before Havana 2013.2.1 and Icehouse before icehouse-2 does not return a trust-scoped token when one is received, which allows remote trust users to … CWE-269
 Improper Privilege Management
CVE-2013-6391 2024-11-21 10:59 2013-12-15 Show GitHub Exploit DB Packet Storm
291703 - philippe_jounin tftpd32 Format string vulnerability in the client in Tftpd32 before 4.50 allows remote servers to cause a denial of service (crash) or possibly execute arbitrary code via format string specifiers in the Remo… CWE-134
Use of Externally-Controlled Format String
CVE-2013-6809 2024-11-21 10:59 2013-12-14 Show GitHub Exploit DB Packet Storm
291704 - xen xen Xen 4.2.x and 4.3.x, when using Intel VT-d and a PCI device has been assigned, does not clear the flag that suppresses IOMMU TLB flushes when unspecified errors occur, which causes the TLB entries to… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-6400 2024-11-21 10:59 2013-12-14 Show GitHub Exploit DB Packet Storm
291705 - munin-monitoring munin Munin::Master::Node in Munin before 2.0.18 allows remote attackers to cause a denial of service (abort data collection for node) via a plugin that uses "multigraph" as a multigraph service name. CWE-20
 Improper Input Validation 
CVE-2013-6359 2024-11-21 10:59 2013-12-14 Show GitHub Exploit DB Packet Storm
291706 - percona
opensuse
xtrabackup
opensuse
Percona XtraBackup before 2.1.6 uses a constant string for the initialization vector (IV), which makes it easier for local users to defeat cryptographic protection mechanisms and conduct plaintext at… CWE-310
Cryptographic Issues
CVE-2013-6394 2024-11-21 10:59 2013-12-14 Show GitHub Exploit DB Packet Storm
291707 - instantsoft instantcms SQL injection vulnerability in InstantSoft InstantCMS 1.10.3 and earlier allows remote attackers to execute arbitrary SQL commands via the orderby parameter to catalog/[id]. CWE-89
SQL Injection
CVE-2013-6839 2024-11-21 10:59 2013-12-14 Show GitHub Exploit DB Packet Storm
291708 - projectsprouts sprout The unpack_zip function in archive_unpacker.rb in the sprout gem 0.7.246 for Ruby allows context-dependent attackers to execute arbitrary commands via shell metacharacters in a (1) filename or (2) pa… CWE-94
Code Injection
CVE-2013-6421 2024-11-21 10:59 2013-12-13 Show GitHub Exploit DB Packet Storm
291709 - emc connectrix_manager The server in Brocade Network Advisor before 12.1.0, as used in EMC Connectrix Manager Converged Network Edition (CMCNE), HP B-series SAN Network Advisor, and possibly other products, allows remote a… CWE-94
Code Injection
CVE-2013-6810 2024-11-21 10:59 2013-12-13 Show GitHub Exploit DB Packet Storm
291710 - suse
opensuse
mozilla
canonical
oracle
fedoraproject
linux_enterprise_desktop
linux_enterprise_server
opensuse
linux_enterprise_software_development_kit
firefox
seamonkey
ubuntu_linux
solaris
fedora
Mozilla Firefox before 26.0 and SeaMonkey before 2.23 on Linux allow user-assisted remote attackers to read clipboard data by leveraging certain middle-click paste operations. CWE-200
Information Exposure
CVE-2013-6672 2024-11-21 10:59 2013-12-12 Show GitHub Exploit DB Packet Storm