Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201781 6.5 警告
Network
レッドハット - マルチテナント環境の Red Hat OpenShift Enterprise で使用される Kubernetes の API サーバにおける重要なプロジェクトおよびユーザ情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-5392 2016-08-9 12:39 2016-07-14 Show GitHub Exploit DB Packet Storm
201782 6.1 警告
Network
レッドハット - Red Hat Satellite の spacewalk-java におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-3097 2016-08-9 12:39 2016-07-26 Show GitHub Exploit DB Packet Storm
201783 6.1 警告
Network
レッドハット - Red Hat Satellite の spacewalk-java におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-3080 2016-08-9 12:39 2016-07-26 Show GitHub Exploit DB Packet Storm
201784 6.1 警告
Network
Django Software Foundation
Debian
- Django の contrib/admin/static/admin/js/admin/RelatedObjectLookups.js におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-6186 2016-08-9 12:21 2016-07-18 Show GitHub Exploit DB Packet Storm
201785 5.1 警告
Local
OpenShift - OpenShift Origin の openshift-node における秘密鍵情報を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2015-8945 2016-08-9 11:53 2015-07-30 Show GitHub Exploit DB Packet Storm
201786 6.5 警告
Adjacent
AmazonBasics
Lenovo
Logitech
デル
- 複数の Lenovo 製品で使用される Lenovo Ultraslim ドングルのファームウェアにおける暗号化されたキーボード入力をシステムに挿入される脆弱性 CWE-310
暗号の問題
CVE-2016-6257 2016-08-9 11:42 2016-07-27 Show GitHub Exploit DB Packet Storm
201787 5.5 警告
Local
Apache Software Foundation - Apache POI の XLSX2CSV の example における任意のファイルを読まれる脆弱性 CWE-Other
その他
CVE-2016-5000 2016-08-9 11:28 2016-07-23 Show GitHub Exploit DB Packet Storm
201788 7.8 重要
Local
Apache Software Foundation - Apache OpenOffice の Impress ツールにおけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-1513 2016-08-9 11:28 2016-07-21 Show GitHub Exploit DB Packet Storm
201789 5.4 警告
Network
フォーティネット - Fortinet FortiAnalyzer および FortiManager におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-3196 2016-08-9 11:27 2016-07-14 Show GitHub Exploit DB Packet Storm
201790 4.3 警告
Network
Mozilla Foundation - Mozilla Firefox におけるなりすまし攻撃を実行される脆弱性 CWE-Other
その他
CVE-2016-5268 2016-08-8 16:00 2016-08-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 16, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
346541 - jelsoft vbulletin SQL injection vulnerability in (1) ttlast.php and (2) last10.php in vBulletin 3.0.x allows remote attackers to execute arbitrary SQL statements via the fsel parameter, as demonstrated using last.php. NVD-CWE-Other
CVE-2004-1515 2016-10-18 11:55 2004-12-31 Show GitHub Exploit DB Packet Storm
346542 - new_media_generation hired_team_trial Hired Team: Trial 2.0 and earlier and 2.200 does not limit how game players can kick other players off the server, including the administrator. NVD-CWE-Other
CVE-2004-1526 2016-10-18 11:55 2004-12-31 Show GitHub Exploit DB Packet Storm
346543 - mediawiki mediawiki MediaWiki 1.3.8 and earlier, when used with Apache mod_mime, does not properly handle files with two file extensions, such as .php.rar, which allows remote attackers to upload and execute arbitrary c… NVD-CWE-Other
CVE-2004-1405 2016-10-18 11:54 2004-12-31 Show GitHub Exploit DB Packet Storm
346544 - singapore image_gallery_web_application Multiple cross-site scripting vulnerabilities in Image Gallery Web Application 0.9.10 allow remote attackers to inject arbitrary web script or HTML. NVD-CWE-Other
CVE-2004-1409 2016-10-18 11:54 2004-12-31 Show GitHub Exploit DB Packet Storm
346545 - gadu-gadu gadu-gadu_instant_messenger Cross-site scripting (XSS) vulnerability in Gadu-Gadu build 155 and earlier allows remote attackers to inject arbitrary web script via a URL, which is echoed in a popup window that displays a parsing… NVD-CWE-Other
CVE-2004-1410 2016-10-18 11:54 2004-12-31 Show GitHub Exploit DB Packet Storm
346546 - gadu-gadu gadu-gadu_instant_messenger Gadu-Gadu 6.1 build 156 allows remote attackers to cause a denial of service (application hang) via a message that contains many special strings that are converted to images. NVD-CWE-Other
CVE-2004-1414 2016-10-18 11:54 2004-12-31 Show GitHub Exploit DB Packet Storm
346547 - korweblog korweblog Directory traversal vulnerability in index.php in KorWeblog 1.6.2-cvs and earlier allows remote attackers to read arbitrary files and execute arbitrary PHP files via .. (dot dot) sequences in the lng… NVD-CWE-Other
CVE-2004-1426 2016-10-18 11:54 2004-12-31 Show GitHub Exploit DB Packet Storm
346548 - asante fm2008_managed_ethernet_switch The configuration backup in Asante FM2008 running firmware 1.06 stores the username and password in cleartext, which could allow remote attackers to gain unauthorized access. NVD-CWE-Other
CVE-2004-1321 2016-10-18 11:53 2004-12-15 Show GitHub Exploit DB Packet Storm
346549 - oracle application_server
collaboration_suite
e-business_suite
enterprise_manager
enterprise_manager_database_control
enterprise_manager_grid_control
oracle10g
oracle8i
oracle9i
Oracle 10g Database Server, when installed with a password that contains an exclamation point ("!") for the (1) DBSNMP or (2) SYSMAN user, generates an error that logs the password in the world-reada… CWE-200
Information Exposure
CVE-2004-1367 2016-10-18 11:53 2004-08-4 Show GitHub Exploit DB Packet Storm
346550 - gnu glibc The glibcbug script in glibc 2.3.4 and earlier allows local users to overwrite arbitrary files via a symlink attack on temporary files, a different vulnerability than CVE-2004-0968. NVD-CWE-Other
CVE-2004-1382 2016-10-18 11:53 2004-12-31 Show GitHub Exploit DB Packet Storm