Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201981 4.4 警告
Local
ソフォス - Sophos UTM ファームウェアの Frontend コンポーネントにおける重要なパスワード情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-7397 2016-10-6 14:06 2016-09-30 Show GitHub Exploit DB Packet Storm
201982 6.5 警告
Network
LibGD project
openSUSE project
- GD Graphics ライブラリの gd_tga.c の read_image_tga 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-6905 2016-10-6 13:57 2016-08-31 Show GitHub Exploit DB Packet Storm
201983 5.5 警告
Local
ClamAV
Canonical
- ClamAV におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-1372 2016-10-6 13:56 2016-04-22 Show GitHub Exploit DB Packet Storm
201984 5.5 警告
Local
ClamAV
Canonical
- ClamAV におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-1371 2016-10-6 13:56 2016-04-22 Show GitHub Exploit DB Packet Storm
201985 8.8 重要
Network
Debian
unADF project
- unADF の extractTree 関数における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2016-1244 2016-10-6 13:41 2016-09-19 Show GitHub Exploit DB Packet Storm
201986 9.8 緊急
Network
Debian
unADF project
- unADF の extractTree 関数におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-1243 2016-10-6 13:41 2016-09-19 Show GitHub Exploit DB Packet Storm
201987 4.3 警告
Network
Drupal - Drupal の system.temporary ルートにおけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-7572 2016-10-6 12:29 2016-09-21 Show GitHub Exploit DB Packet Storm
201988 6.1 警告
Network
Drupal - Drupal におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-7571 2016-10-6 12:29 2016-09-21 Show GitHub Exploit DB Packet Storm
201989 4.3 警告
Network
Drupal - Drupal における任意のノードのコメントの可視性を設定される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-7570 2016-10-6 12:29 2016-09-21 Show GitHub Exploit DB Packet Storm
201990 9.8 緊急
Network
F5 Networks - F5 BIG-IP システムのバーチャルサーバにおけるシステム設定を変更される脆弱性 CWE-Other
その他
CVE-2016-5700 2016-10-6 12:23 2016-09-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
345761 - webcam_corp webcam_watchdog Buffer overflow in the web server of Webcam Watchdog 3.63 allows remote attackers to execute arbitrary code via a long HTTP GET request. NVD-CWE-Other
CVE-2004-1784 2017-07-11 10:31 2004-01-3 Show GitHub Exploit DB Packet Storm
345762 - iatek portalapp PortalApp places user credentials under the web root with insufficient access control, which allows remote attackers to gain access to sensitive information via a direct request to 8275.mdb. NVD-CWE-Other
CVE-2004-1786 2017-07-11 10:31 2004-01-4 Show GitHub Exploit DB Packet Storm
345763 - postnuke_software_foundation postcalendar SQL injection vulnerability in PostCalendar 4.0.0 allows remote attackers to execute arbitrary SQL commands via search queries. NVD-CWE-Other
CVE-2004-1787 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
345764 - zyxel zywall10 Cross-site scripting (XSS) vulnerability in the web management interface in ZyWALL 10 4.07 allows remote attackers to inject arbitrary web script or HTML via the rpAuth_1 page. NVD-CWE-Other
CVE-2004-1789 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
345765 - edimax full_rate_adsl_router Cross-site scripting (XSS) vulnerability in the web management interface in Edimax AR-6004 ADSL Routers allows remote attackers to inject arbitrary web script or HTML via the URL. NVD-CWE-Other
CVE-2004-1790 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
345766 - yatsoft switch_off swnet.dll in YaSoft Switch Off 2.3 and earlier allows remote attackers to cause a denial of service (infinite loop) via a long packet with two CRLF sequences to the service management port (TCP 8000). NVD-CWE-Other
CVE-2004-1792 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
345767 - yatsoft switch_off Stack-based buffer overflow in swnet.dll in YaSoft Switch Off 2.3 and earlier allows remote authenticated users to execute arbitrary code via a long message parameter in a SendMsg action to action.ht… NVD-CWE-Other
CVE-2004-1793 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
345768 - vcard4j vcard4j Cross-site scripting (XSS) vulnerability in the VCard4J Toolkit allows remote attackers to inject arbitrary web script or HTML via the NICKNAME tag in a vCard. NVD-CWE-Other
CVE-2004-1794 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
345769 - hotnews hotnews PHP remote file inclusion vulnerability in HotNews 0.7.2 and earlier allows remote attackers to execute arbitrary PHP code via the (1) config[header] parameter to hotnews-engine.inc.php3 or (2) confi… NVD-CWE-Other
CVE-2004-1796 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
345770 - - - Cross-site scripting (XSS) vulnerability in search.php for FreznoShop 1.3.0 RC1 and earlier allows remote attackers to inject arbitrary web script or HTML via the search parameter. NVD-CWE-Other
CVE-2004-1797 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm