Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201841 7.8 重要
Local
Xen プロジェクト - Xen における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-10013 2017-02-9 17:46 2016-12-19 Show GitHub Exploit DB Packet Storm
201842 5.5 警告
Local
LibGD project - GD Graphics Library の gdImageCreate 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-9317 2017-02-9 17:23 2016-11-12 Show GitHub Exploit DB Packet Storm
201843 5.5 警告
Local
LibGD project - GD Graphics Library の dynamicGetbuf 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-125
境界外読み取り
CVE-2016-6911 2017-02-9 17:23 2016-08-2 Show GitHub Exploit DB Packet Storm
201844 7.5 重要
Network
B.A.S - B.A.S C2Box におけるビジネスロジックを破損される脆弱性 CWE-189
数値処理の問題
CVE-2015-4626 2017-02-9 16:58 2015-06-10 Show GitHub Exploit DB Packet Storm
201845 4.3 警告
Adjacent
シスコシステムズ - Cisco Mobility Express 2800 および 3800 シリーズ Access Points におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2016-9221 2017-02-9 16:45 2016-11-6 Show GitHub Exploit DB Packet Storm
201846 4.3 警告
Adjacent
シスコシステムズ - Cisco Mobility Express 2800 および 3800 シリーズ Access Points におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2016-9220 2017-02-9 16:45 2016-11-6 Show GitHub Exploit DB Packet Storm
201847 8.8 重要
Network
シスコシステムズ - Cisco Hybrid Meeting Server におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2016-9218 2017-02-9 16:45 2016-11-6 Show GitHub Exploit DB Packet Storm
201848 5.3 警告
Network
シスコシステムズ - Cisco ASR 5000 ソフトウェアの ipsecmgr プロセスにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2016-9216 2017-02-9 16:45 2016-11-6 Show GitHub Exploit DB Packet Storm
201849 8.1 重要
Network
Zabbix - Zabbix のエージェントの MySQL ユーザパラメータ設定スクリプトにおける任意のコードを実行される脆弱性 CWE-89
SQLインジェクション
CVE-2016-4338 2017-02-9 15:33 2016-05-11 Show GitHub Exploit DB Packet Storm
201850 9.8 緊急
Network
アバイア - Avaya Fabric Connect の Virtual Services Platform Operating System Software における非認証のアクセス権を取得される脆弱性 CWE-19
データ処理
CVE-2016-2783 2017-02-9 15:33 2016-07-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 17, 2026, 4:19 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292611 - apple quicktime Buffer overflow in Apple QuickTime before 7.7.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted ldat atom in a movie file. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-1248 2024-11-21 11:03 2014-02-27 Show GitHub Exploit DB Packet Storm
292612 - apple quicktime Apple QuickTime before 7.7.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted dref atom in a movie file. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-1247 2024-11-21 11:03 2014-02-27 Show GitHub Exploit DB Packet Storm
292613 - apple quicktime Buffer overflow in Apple QuickTime before 7.7.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted ftab atom in a movie file. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-1246 2024-11-21 11:03 2014-02-27 Show GitHub Exploit DB Packet Storm
292614 - apple quicktime Integer signedness error in Apple QuickTime before 7.7.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted stsz atom in a movie file. CWE-189
Numeric Errors
CVE-2014-1245 2024-11-21 11:03 2014-02-27 Show GitHub Exploit DB Packet Storm
292615 - apple quicktime Buffer overflow in Apple QuickTime before 7.7.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file with H.264 encoding. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-1244 2024-11-21 11:03 2014-02-27 Show GitHub Exploit DB Packet Storm
292616 - apple quicktime Apple QuickTime before 7.7.5 does not initialize an unspecified pointer, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted track l… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-1243 2024-11-21 11:03 2014-02-27 Show GitHub Exploit DB Packet Storm
292617 7.4 HIGH
Network
apple mac_os_x
tvos
iphone_os
The SSLVerifySignedServerKeyExchange function in libsecurity_ssl/lib/sslKeyExchange.c in the Secure Transport feature in the Data Security component in Apple iOS 6.x before 6.1.6 and 7.x before 7.0.6… CWE-295
Improper Certificate Validation 
CVE-2014-1266 2024-11-21 11:03 2014-02-23 Show GitHub Exploit DB Packet Storm
292618 - apple boot_camp AppleMNT.sys in Apple Boot Camp 5 before 5.1 allows local users to cause a denial of service (kernel memory corruption) or possibly have unspecified other impact via a malformed header in a Portable … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-1253 2024-11-21 11:03 2014-02-14 Show GitHub Exploit DB Packet Storm
292619 - broadcom 2e_web_option CA 2E Web Option r8.1.2 accepts a predictable substring of a W2E_SSNID session token in place of the entire token, which allows remote attackers to hijack sessions by changing characters at the end o… CWE-20
 Improper Input Validation 
CVE-2014-1219 2024-11-21 11:03 2014-02-14 Show GitHub Exploit DB Packet Storm
292620 - i-doit i-doit Cross-site scripting (XSS) vulnerability in synetics i-doit pro before 1.2.4 allows remote attackers to inject arbitrary web script or HTML via the call parameter. CWE-79
Cross-site Scripting
CVE-2014-1237 2024-11-21 11:03 2014-02-12 Show GitHub Exploit DB Packet Storm