Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 14, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
202121 9.8 緊急
Network
aWebSupport - Joomla! 用 aWeb Cart Watching System for Virtuemart エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2016-10114 2017-01-16 10:26 2016-12-21 Show GitHub Exploit DB Packet Storm
202122 4.3 警告
Network
SAP - SAP Hybris の Hybris Management Console における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-6859 2017-01-16 10:14 2016-10-28 Show GitHub Exploit DB Packet Storm
202123 5.4 警告
Network
SAP - SAP Hybris の Hybris Management Console の Create Employee 機能におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-6858 2017-01-16 10:14 2016-10-28 Show GitHub Exploit DB Packet Storm
202124 5.4 警告
Network
SAP - SAP Hybris の Hybris Management Console の Create Catalogue 機能におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-6857 2017-01-16 10:14 2016-10-28 Show GitHub Exploit DB Packet Storm
202125 6.1 警告
Network
SAP - SAP Hybris の Hybris Management Console の Inbox Search 機能におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-6856 2017-01-16 10:14 2016-10-28 Show GitHub Exploit DB Packet Storm
202126 9.8 緊急
Network
LibVNC - LibVNCServer の LibVNCClient の ultra.c におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-9942 2017-01-13 17:51 2016-12-30 Show GitHub Exploit DB Packet Storm
202127 9.8 緊急
Network
LibVNC - LibVNCServer の LibVNCClient の rfbproto.c におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-9941 2017-01-13 17:51 2016-12-30 Show GitHub Exploit DB Packet Storm
202128 7.3 重要
Network
アドビシステムズ - Adobe Flash Player におけるセキュリティを回避される脆弱性 CWE-254
セキュリティ機能
CVE-2017-2938 2017-01-13 16:51 2017-01-10 Show GitHub Exploit DB Packet Storm
202129 9.8 緊急
Network
アドビシステムズ - Adobe Flash Player の ActionScript FileReference クラスにおける任意のコードを実行される脆弱性 CWE-416
解放済みメモリの使用
CVE-2017-2937 2017-01-13 16:51 2017-01-10 Show GitHub Exploit DB Packet Storm
202130 9.8 緊急
Network
アドビシステムズ - Adobe Flash Player の ActionScript FileReference クラスにおける任意のコードを実行される脆弱性 CWE-416
解放済みメモリの使用
CVE-2017-2936 2017-01-13 16:50 2017-01-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 14, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292351 - emc rsa_data_loss_prevention EMC RSA Data Loss Prevention (DLP) 9.x before 9.6-SP2 does not properly manage sessions, which allows remote authenticated users to gain privileges and bypass intended content-reading restrictions vi… NVD-CWE-noinfo
CVE-2014-0624 2024-11-21 11:02 2014-03-6 Show GitHub Exploit DB Packet Storm
292352 - ibm rational_doors_next_generation
rational_requirements_composer
Cross-site scripting (XSS) vulnerability in IBM Rational Requirements Composer 3.x before 3.0.1.6 iFix2 and 4.x before 4.0.6, and Rational DOORS Next Generation 4.x before 4.0.6, allows remote authen… CWE-79
Cross-site Scripting
CVE-2014-0846 2024-11-21 11:02 2014-03-5 Show GitHub Exploit DB Packet Storm
292353 - ibm rational_requirements_composer
rational_doors_next_generation
Open redirect vulnerability in IBM Rational Requirements Composer 3.x before 3.0.1.6 iFix2 and 4.x before 4.0.6, and Rational DOORS Next Generation 4.x before 4.0.6, allows remote authenticated users… CWE-20
 Improper Input Validation 
CVE-2014-0845 2024-11-21 11:02 2014-03-5 Show GitHub Exploit DB Packet Storm
292354 - ibm rational_requirements_composer
rational_doors_next_generation
Unspecified vulnerability in IBM Rational Requirements Composer 3.x before 3.0.1.6 iFix2 and 4.x before 4.0.6, and Rational DOORS Next Generation 4.x before 4.0.6, allows remote authenticated users t… NVD-CWE-noinfo
CVE-2014-0844 2024-11-21 11:02 2014-03-5 Show GitHub Exploit DB Packet Storm
292355 - ibm rational_collaborative_lifecycle_management Unspecified vulnerability in Jazz Team Server in IBM Rational Collaborative Lifecycle Management (CLM) 3.x before 3.0.1.6 iFix 2 and 4.x before 4.0.6 allows remote attackers to execute arbitrary code… NVD-CWE-noinfo
CVE-2014-0862 2024-11-21 11:02 2014-03-2 Show GitHub Exploit DB Packet Storm
292356 - ibm content_navigator Cross-site scripting (XSS) vulnerability in IBM Content Navigator 2.x before 2.0.2.2-ICN-FP002 allows remote authenticated users to inject arbitrary web script or HTML via an unspecified parameter. CWE-79
Cross-site Scripting
CVE-2014-0874 2024-11-21 11:02 2014-02-28 Show GitHub Exploit DB Packet Storm
292357 - schneider-electric ofs_test_client_tlxcdlfofs33
ofs_test_client_tlxcdsuofs33
ofs_test_client_tlxcdltofs33
ofs_test_client_tlxcdstofs33
ofs_test_client_tlxcdluofs33
opc_factory_server
Stack-based buffer overflow in the C++ sample client in Schneider Electric OPC Factory Server (OFS) TLXCDSUOFS33 - 3.35, TLXCDSTOFS33 - 3.35, TLXCDLUOFS33 - 3.35, TLXCDLTOFS33 - 3.35, and TLXCDLFOFS3… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-0774 2024-11-21 11:02 2014-02-28 Show GitHub Exploit DB Packet Storm
292358 - schneider-electric floating_license_manager Unquoted Windows search path vulnerability in Schneider Electric Floating License Manager 1.0.0 through 1.4.0 allows local users to gain privileges via a Trojan horse application with a name composed… NVD-CWE-Other
CVE-2014-0759 2024-11-21 11:02 2014-02-28 Show GitHub Exploit DB Packet Storm
292359 - ibm content_navigator IBM Content Navigator 2.x before 2.0.2.2-ICN-FP002 allows remote authenticated users to bypass intended access restrictions and conduct deleteAction attacks via a modified URL. CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0858 2024-11-21 11:02 2014-02-28 Show GitHub Exploit DB Packet Storm
292360 - cisco prime_infrastructure Cisco Prime Infrastructure 1.2 and 1.3 before 1.3.0.20-2, 1.4 before 1.4.0.45-2, and 2.0 before 2.0.0.0.294-2 allows remote authenticated users to execute arbitrary commands with root privileges via … CWE-20
 Improper Input Validation 
CVE-2014-0679 2024-11-21 11:02 2014-02-28 Show GitHub Exploit DB Packet Storm