Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201741 5.4 警告
Network
Dotclear - Dotclear の admin/media.php および admin/media_item.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-9891 2017-01-11 14:10 2016-12-28 Show GitHub Exploit DB Packet Storm
201742 9.1 緊急
Network
VMware - VMware vCenter Server および vRealize Automation の Single Sign-On 機能における任意のファイルを読まれる脆弱性 CWE-611
XML 外部エンティティ参照の不適切な制限
CVE-2016-7460 2017-01-10 18:10 2016-11-22 Show GitHub Exploit DB Packet Storm
201743 7.7 重要
Network
VMware - VMware vCenter Server における任意のファイルを読まれる脆弱性 CWE-611
XML 外部エンティティ参照の不適切な制限
CVE-2016-7459 2017-01-10 18:10 2016-11-22 Show GitHub Exploit DB Packet Storm
201744 5.3 警告
Network
VMware - VMware Horizon View の Connection Server におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2016-7087 2017-01-10 18:04 2016-10-6 Show GitHub Exploit DB Packet Storm
201745 8.5 重要
Network
VMware - VMware vRealize Operations の Suite REST API におけるファイルに任意のコンテンツを書き込まれる脆弱性 CWE-264
CWE-749
CVE-2016-7462 2017-01-10 18:02 2016-11-15 Show GitHub Exploit DB Packet Storm
201746 10 緊急
Network
VMware - VMware vRealize Operations における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-7457 2017-01-10 18:02 2016-10-11 Show GitHub Exploit DB Packet Storm
201747 5.3 警告
Network
VMware - VMware Identity Manager および vRealize Automation における /SAAS/WEB-INF および /SAAS/META-INF ファイルを読まれる脆弱性 CWE-284
不適切なアクセス制御
CVE-2016-5334 2017-01-10 18:02 2016-11-22 Show GitHub Exploit DB Packet Storm
201748 5.5 警告
Local
VMware - Mac OS X 上で稼動する VMware Fusion におけるカーネルメモリのアドレスを特定される脆弱性 CWE-200
情報漏えい
CVE-2016-5329 2017-01-10 18:02 2016-10-25 Show GitHub Exploit DB Packet Storm
201749 8.8 重要
Local
VMware - 複数の VMware 製品のドラッグ&ドロップ機能における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-7461 2017-01-10 17:49 2016-11-13 Show GitHub Exploit DB Packet Storm
201750 7.8 重要
Local
VMware - Windows 上で稼動する VMware Workstation Pro および Workstation Player のインストーラにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-7086 2017-01-10 17:49 2016-09-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 11, 2026, 5:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
344961 - x.org
xfree86_project
gentoo
x11r6
xdm
linux
XDM in XFree86 opens a chooserFd TCP socket even when DisplayManager.requestPort is 0, which could allow remote attackers to connect to the port, in violation of the intended restrictions. NVD-CWE-Other
CVE-2004-0419 2017-10-11 10:29 2004-08-18 Show GitHub Exploit DB Packet Storm
344962 - andrew_tridgell rsync rsync before 2.6.1 does not properly sanitize paths when running a read/write daemon without using chroot, which allows remote attackers to write files outside of the module's path. NVD-CWE-Other
CVE-2004-0426 2017-10-11 10:29 2004-07-7 Show GitHub Exploit DB Packet Storm
344963 - linux linux_kernel Unknown vulnerability in Linux before 2.4.26 for IA64 allows local users to cause a denial of service, with unknown impact. NOTE: due to a typo, this issue was accidentally assigned CVE-2004-0477. … NVD-CWE-Other
CVE-2004-0447 2017-10-11 10:29 2004-08-6 Show GitHub Exploit DB Packet Storm
344964 - larry_wall perl Race condition in the rmtree function in the File::Path module in Perl 5.6.1 and 5.8.4 sets read/write permissions for the world, which allows local users to delete arbitrary files and directories, a… NVD-CWE-Other
CVE-2004-0452 2017-10-11 10:29 2004-12-21 Show GitHub Exploit DB Packet Storm
344965 - redhat enterprise_linux The linux-2.4.21-mlock.patch in Red Hat Enterprise Linux 3 does not properly maintain the mlock page count when one process unlocks pages that belong to another process, which allows local users to m… NVD-CWE-Other
CVE-2004-0491 2017-10-11 10:29 2004-12-31 Show GitHub Exploit DB Packet Storm
344966 - avaya
redhat
cvlan
enterprise_linux
enterprise_linux_desktop
linux_advanced_workstation
Multiple extfs backend scripts for GNOME virtual file system (VFS) before 1.0.1 may allow remote attackers to perform certain unauthorized actions via a gnome-vfs URI. NVD-CWE-Other
CVE-2004-0494 2017-10-11 10:29 2004-11-23 Show GitHub Exploit DB Packet Storm
344967 - avaya
gentoo
linux
redhat
suse
conectiva
converged_communications_server
modular_messaging_message_storage_server
linux
linux_kernel
enterprise_linux
suse_linux
intuity_audix
suse_email_server
suse_linux_admin-cd_for…
Multiple unknown vulnerabilities in Linux kernel 2.4 and 2.6 allow local users to gain privileges or access kernel memory, as found by the Sparse source code checking tool. NVD-CWE-Other
CVE-2004-0495 2017-10-11 10:29 2004-08-6 Show GitHub Exploit DB Packet Storm
344968 - mandrakesoft
conectiva
gentoo
linux
redhat
suse
trustix
mandrake_multi_network_firewall
linux
linux_kernel
mandrake_linux
mandrake_linux_corporate_server
enterprise_linux
suse_linux
secure_linux
Unknown vulnerability in Linux kernel 2.x may allow local users to modify the group ID of files, such as NFS exported files in kernel 2.4. NVD-CWE-Other
CVE-2004-0497 2017-10-11 10:29 2004-12-6 Show GitHub Exploit DB Packet Storm
344969 - rob_flynn
gentoo
mandrakesoft
gaim
linux
mandrake_linux
Buffer overflow in the MSN protocol plugins (1) object.c and (2) slp.c for Gaim before 0.82 allows remote attackers to cause a denial of service and possibly execute arbitrary code via MSNSLP protoco… NVD-CWE-Other
CVE-2004-0500 2017-10-11 10:29 2004-09-28 Show GitHub Exploit DB Packet Storm
344970 - sgi
squirrelmail
propack
squirrelmail
Multiple cross-site scripting (XSS) vulnerabilities in SquirrelMail 1.4.2 allow remote attackers to execute arbitrary script as other users and possibly steal authentication information via multiple … NVD-CWE-Other
CVE-2004-0519 2017-10-11 10:29 2004-08-18 Show GitHub Exploit DB Packet Storm