Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 5, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201821 7.5 重要
Network
サムスン - Samsung Note デバイスの SystemUI における整数オーバーフローの脆弱性 CWE-Other
その他
CVE-2016-9277 2016-11-16 11:42 2016-08-16 Show GitHub Exploit DB Packet Storm
201822 9.8 緊急
Network
Exponent CMS project - Exponent CMS の framework/modules/navigation/controllers/navigationController.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2016-9288 2016-11-16 10:22 2016-11-3 Show GitHub Exploit DB Packet Storm
201823 5.3 警告
Network
Exponent CMS project - Exponent CMS の framework/modules/users/controllers/usersController.php におけるアドレス情報を読まれる脆弱性 CWE-200
情報漏えい
CVE-2016-9286 2016-11-16 10:22 2016-11-6 Show GitHub Exploit DB Packet Storm
201824 5.3 警告
Network
Exponent CMS project - Exponent CMS の framework/modules/addressbook/controllers/addressController.php におけるユーザ情報を読まれる脆弱性 CWE-200
情報漏えい
CVE-2016-9285 2016-11-16 10:22 2016-11-3 Show GitHub Exploit DB Packet Storm
201825 5.3 警告
Network
Exponent CMS project - Exponent CMS の framework/modules/users/controllers/usersController.php における SQL インジェクションの脆弱性 CWE-200
情報漏えい
CVE-2016-9284 2016-11-16 10:22 2016-11-3 Show GitHub Exploit DB Packet Storm
201826 7.5 重要
Network
Exponent CMS project - Exponent CMS の framework/core/subsystems/expRouter.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2016-9283 2016-11-16 10:22 2016-11-4 Show GitHub Exploit DB Packet Storm
201827 7.5 重要
Network
Exponent CMS project - Exponent CMS の framework/modules/search/controllers/searchController.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2016-9282 2016-11-16 10:22 2016-11-3 Show GitHub Exploit DB Packet Storm
201828 9.1 緊急
Network
Exponent CMS project - Exponent CMS におけるブラインド SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2016-9272 2016-11-16 10:22 2016-11-6 Show GitHub Exploit DB Packet Storm
201829 6.1 警告
Network
MoinMoin - MoinMoin における "JavaScript インジェクション" 攻撃を実行される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-7148 2016-11-15 17:56 2016-10-31 Show GitHub Exploit DB Packet Storm
201830 6.1 警告
Network
MoinMoin - MoinMoin における "JavaScript インジェクション" 攻撃を実行される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-7146 2016-11-15 17:56 2016-10-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 5, 2026, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291831 - ibm rational_requirements_composer
rational_quality_manager
rational_team_concert
Cross-site scripting (XSS) vulnerability in the search implementation in IBM Rational Quality Manager (RQM) 2.0 through 2.0.1.1, 3.x before 3.0.1.6 iFix 1, and 4.x before 4.0.5, as used in Rational T… CWE-79
Cross-site Scripting
CVE-2013-5404 2024-11-21 10:57 2013-12-11 Show GitHub Exploit DB Packet Storm
291832 - ibm forms_viewer Stack-based buffer overflow in IBM Forms Viewer 4.x before 4.0.0.3 and 8.x before 8.0.1.1 allows remote attackers to execute arbitrary code via an XFDL form with a long fontname value. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-5447 2024-11-21 10:57 2013-12-10 Show GitHub Exploit DB Packet Storm
291833 - sharetronix sharetronix Multiple cross-site request forgery (CSRF) vulnerabilities in Sharetronix 3.1.1 allow remote attackers to hijack the authentication of administrators for requests that (1) change configuration settin… CWE-352
 Origin Validation Error
CVE-2013-5355 2024-11-21 10:57 2013-12-10 Show GitHub Exploit DB Packet Storm
291834 - sharetronix sharetronix Multiple SQL injection vulnerabilities in Sharetronix 3.1.1 allow remote attackers to execute arbitrary SQL commands via the (1) fb_user_id or (2) tw_user_id parameter to signup. CWE-89
SQL Injection
CVE-2013-5354 2024-11-21 10:57 2013-12-10 Show GitHub Exploit DB Packet Storm
291835 - ibm smartcloud_provisioning IBM SmartCloud Provisioning 2.1 before FP3 IF0001 allows remote authenticated users to modify virtual-system deployment via deployer.virtualsystems CLI commands, as demonstrated by a deletion using a… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-5455 2024-11-21 10:57 2013-12-7 Show GitHub Exploit DB Packet Storm
291836 - rockmongo rockmongo Multiple cross-site scripting (XSS) vulnerabilities in the xn function in RockMongo 1.1.5 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) db parameter on the log… CWE-79
Cross-site Scripting
CVE-2013-5108 2024-11-21 10:57 2013-12-6 Show GitHub Exploit DB Packet Storm
291837 - ibm filenet_content_manager Cross-site scripting (XSS) vulnerability in workingSet.jsp in IBM Eclipse Help System (IEHS), as used in the installable InfoCenter component in IBM FileNet Content Manager 4.5.1, 5.0.0, 5.1.0, and 5… CWE-79
Cross-site Scripting
CVE-2013-5449 2024-11-21 10:57 2013-12-5 Show GitHub Exploit DB Packet Storm
291838 - checkpoint endpoint_security Unlock.exe in Media Encryption EPM Explorer in Check Point Endpoint Security through E80.50 does not associate password failures with a device ID, which makes it easier for physically proximate attac… CWE-255
Credentials Management
CVE-2013-5636 2024-11-21 10:57 2013-11-30 Show GitHub Exploit DB Packet Storm
291839 - checkpoint endpoint_security Media Encryption EPM Explorer in Check Point Endpoint Security through E80.50 does not properly maintain the state of password failures, which makes it easier for physically proximate attackers to by… CWE-255
Credentials Management
CVE-2013-5635 2024-11-21 10:57 2013-11-30 Show GitHub Exploit DB Packet Storm
291840 - ibm qradar_security_information_and_event_manager The WinCollect agent in IBM Security QRadar SIEM before 7.1.1.569824 allows remote attackers to bypass intended access restrictions by injecting a (1) DLL or (2) configuration file. CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-5463 2024-11-21 10:57 2013-11-30 Show GitHub Exploit DB Packet Storm