Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 25, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
202011 7.5 重要
Network
openSUSE project
LibTIFF
- LibTIFF の rgb2ycbcr ツールにおけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-3623 2016-10-5 14:01 2016-08-15 Show GitHub Exploit DB Packet Storm
202012 6.5 警告
Network
LibTIFF - LibTIFF の tiff2rgba ツールの tif_predict.c の fpAcc 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-3622 2016-10-5 14:01 2016-04-7 Show GitHub Exploit DB Packet Storm
202013 8.8 重要
Network
LibTIFF - LibTIFF の bmp2tiff ツールの tif_lzw.c の LZWEncode 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-3621 2016-10-5 14:01 2016-06-27 Show GitHub Exploit DB Packet Storm
202014 7.5 重要
Network
LibTIFF - LibTIFF の bmp2tiff ツールの tif_zip.c の ZIPEncode 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-3620 2016-10-5 14:01 2016-07-12 Show GitHub Exploit DB Packet Storm
202015 6.5 警告
Network
LibTIFF - LibTIFF の bmp2tiff ツールの tif_dumpmode.c の DumpModeEncode 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-3619 2016-10-5 14:01 2016-06-27 Show GitHub Exploit DB Packet Storm
202016 7.8 重要
Local
Apache Software Foundation - Debian jessie および Ubuntu 上で稼動する tomcat パッケージの Tomcat init スクリプトにおける root 権限を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2016-1240 2016-10-5 13:48 2016-09-15 Show GitHub Exploit DB Packet Storm
202017 5.5 警告
Local
オラクル - Oracle Linux の kernel-uek における脆弱性 CWE-noinfo
情報不足
CVE-2016-0617 2016-10-5 11:36 2016-04-19 Show GitHub Exploit DB Packet Storm
202018 5.4 警告
Network
DELL EMC (旧 EMC Corporation) - EMC ViPR SRM におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-6647 2016-10-5 11:04 2016-09-27 Show GitHub Exploit DB Packet Storm
202019 9.8 緊急
Network
Aternity, Inc. - Aternity の Web サーバにおける任意の Java コードを実行される脆弱性 CWE-Other
CWE-Other
CVE-2016-5062 2016-10-5 10:28 2016-09-28 Show GitHub Exploit DB Packet Storm
202020 6.1 警告
Network
Aternity, Inc. - Aternity の Web サーバにおけるクロスサイトスクリプティングの脆弱性 CWE-79
CWE-Other
CVE-2016-5061 2016-10-5 10:28 2016-09-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 25, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
290141 - imperva securesphere The SecureSphere Operations Manager (SOM) Management Server in Imperva SecureSphere 9.0.0.5 allows context-dependent attackers to obtain sensitive information by leveraging the presence of (1) a sess… CWE-255
Credentials Management
CVE-2013-4092 2024-11-21 10:54 2013-06-29 Show GitHub Exploit DB Packet Storm
290142 - imperva securesphere The SecureSphere Operations Manager (SOM) Management Server in Imperva SecureSphere 9.0.0.5 does not have an off autocomplete attribute for the password (aka j_password) field on the secsphLogin.jsp … CWE-255
Credentials Management
CVE-2013-4091 2024-11-21 10:54 2013-06-29 Show GitHub Exploit DB Packet Storm
290143 - kent-web clip-mail Cross-site scripting (XSS) vulnerability in KENT-WEB CLIP-MAIL before 3.4, when Internet Explorer 7 or earlier is used, allows remote attackers to inject arbitrary web script or HTML via an unspecifi… CWE-79
Cross-site Scripting
CVE-2013-3649 2024-11-21 10:54 2013-06-29 Show GitHub Exploit DB Packet Storm
290144 - kent-web post-mail Cross-site scripting (XSS) vulnerability in KENT-WEB POST-MAIL before 6.7, when Internet Explorer 7 or earlier is used, allows remote attackers to inject arbitrary web script or HTML via an unspecifi… CWE-79
Cross-site Scripting
CVE-2013-3648 2024-11-21 10:54 2013-06-29 Show GitHub Exploit DB Packet Storm
290145 - oracle jre
jdk
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 21 and earlier allows remote attackers to affect integrity via unknown vectors related to Deployme… NVD-CWE-noinfo
CVE-2013-3744 2024-11-21 10:54 2013-06-19 Show GitHub Exploit DB Packet Storm
290146 - sun
oracle
jre
jdk
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 6 Update 45 and earlier and 5.0 Update 45 and earlier allows remote attackers to affect confidentiality, in… NVD-CWE-noinfo
CVE-2013-3743 2024-11-21 10:54 2013-06-19 Show GitHub Exploit DB Packet Storm
290147 - siemens comos Unspecified vulnerability in the client library in Siemens COMOS 9.2 before 9.2.0.6.10 and 10.0 before 10.0.3.0.4 allows local users to obtain unintended write access to the database by leveraging re… NVD-CWE-noinfo
CVE-2013-3927 2024-11-21 10:54 2013-06-19 Show GitHub Exploit DB Packet Storm
290148 - cybozu cybozu_live The WebView class in the Cybozu Live application before 2.0.1 for Android allows attackers to execute arbitrary JavaScript code, and obtain sensitive information, via a crafted application that place… CWE-200
Information Exposure
CVE-2013-3647 2024-11-21 10:54 2013-06-19 Show GitHub Exploit DB Packet Storm
290149 - cybozu cybozu_live The Cybozu Live application before 2.0.1 for Android allows remote attackers to execute arbitrary Java methods, and obtain sensitive information or execute arbitrary commands, via a crafted web site.… CWE-17
Code
CVE-2013-3646 2024-11-21 10:54 2013-06-19 Show GitHub Exploit DB Packet Storm
290150 - justsystems ichitaro_just_school
ichitaro
ichitaro_portable
ichitaro_viewer
Unspecified vulnerability in JustSystems Ichitaro 2006 through 2013; Ichitaro Pro through 2; Ichitaro Government 6, 7, and 2006 through 2010; Ichitaro Portable with oreplug; Ichitaro Viewer; and Ichi… NVD-CWE-noinfo
CVE-2013-3644 2024-11-21 10:54 2013-06-19 Show GitHub Exploit DB Packet Storm