Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 6, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
202201 5.7 警告
Local
オラクル - Oracle Fusion Middleware の NetBeans における Project Import に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-5537 2016-10-28 14:08 2016-10-18 Show GitHub Exploit DB Packet Storm
202202 9.8 緊急
Network
オラクル - Oracle Fusion Middleware の Oracle WebLogic Server における脆弱性 CWE-noinfo
情報不足
CVE-2016-5535 2016-10-28 14:08 2016-10-18 Show GitHub Exploit DB Packet Storm
202203 5.3 警告
Network
オラクル - Oracle E-Business Suite の Oracle Shipping Execution における Workflow Events に関する脆弱性 CWE-Other
その他
CVE-2016-5532 2016-10-28 14:08 2016-10-18 Show GitHub Exploit DB Packet Storm
202204 6.1 警告
Network
オラクル - Oracle PeopleSoft Products の PeopleSoft Enterprise PeopleTools における Integration Broker に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-5530 2016-10-28 14:08 2016-10-18 Show GitHub Exploit DB Packet Storm
202205 5.4 警告
Network
オラクル - Oracle Primavera Products Suite の Primavera P6 Enterprise Project Portfolio Management における Team Member に関する脆弱性 CWE-Other
その他
CVE-2016-5533 2016-10-28 14:08 2016-10-18 Show GitHub Exploit DB Packet Storm
202206 6.5 警告
Network
オラクル - Oracle Siebel CRM の Siebel Apps - Customer Order Management における Customizable Prod/Configurator に関する脆弱性 CWE-Other
その他
CVE-2016-5534 2016-10-28 14:08 2016-10-18 Show GitHub Exploit DB Packet Storm
202207 6.7 警告
Local
オラクル - Oracle Virtualization の Oracle VM VirtualBox における Core に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-5538 2016-10-28 14:08 2016-10-18 Show GitHub Exploit DB Packet Storm
202208 7.5 重要
Network
オラクル - Oracle Fusion Middleware の Oracle Discoverer における EUL Code & Schema に関する脆弱性 CWE-200
CWE-Other
CVE-2016-5495 2016-10-28 14:01 2016-10-18 Show GitHub Exploit DB Packet Storm
202209 5.9 警告
Network
オラクル - Oracle Supply Chain Products Suite の Oracle Agile PLM における Security に関する脆弱性 CWE-Other
その他
CVE-2016-5527 2016-10-28 13:59 2016-10-18 Show GitHub Exploit DB Packet Storm
202210 6.4 警告
Local
オラクル - Oracle Database Server の RDBMS Security における脆弱性 CWE-Other
その他
CVE-2016-5497 2016-10-28 13:58 2016-10-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 7, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
345381 - phpmysite phpmysite Multiple cross-site scripting (XSS) vulnerabilities in contact.php in phpMySite allow remote attackers to inject arbitrary web script or HTML via the (1) name, (2) city, (3) email, (4) state, and (5)… CWE-79
Cross-site Scripting
CVE-2010-1091 2017-08-17 10:32 2010-03-25 Show GitHub Exploit DB Packet Storm
345382 - scriptsfeed business_directory_software Multiple SQL injection vulnerabilities in login.php in ScriptsFeed Business Directory Software allow remote attackers to execute arbitrary SQL commands via the (1) us and (2) ps parameters. CWE-89
SQL Injection
CVE-2010-1092 2017-08-17 10:32 2010-03-25 Show GitHub Exploit DB Packet Storm
345383 - miethner-scripting dz_erotik_auktionshaus_v4rgo SQL injection vulnerability in news.php in DZ EROTIK Auktionshaus V4rgo allows remote attackers to execute arbitrary SQL commands via the id parameter. CWE-89
SQL Injection
CVE-2010-1094 2017-08-17 10:32 2010-03-25 Show GitHub Exploit DB Packet Storm
345384 - zope zope Cross-site scripting (XSS) vulnerability in Zope 2.8.x before 2.8.12, 2.9.x before 2.9.12, 2.10.x before 2.10.11, 2.11.x before 2.11.6, and 2.12.x before 2.12.3 allows remote attackers to inject arbi… CWE-79
Cross-site Scripting
CVE-2010-1104 2017-08-17 10:32 2010-03-26 Show GitHub Exploit DB Packet Storm
345385 - advertisementmanager advertisementmanager Cross-site scripting (XSS) vulnerability in cgi/index.php in AdvertisementManager 3.1.0 and 3.6 allows remote attackers to inject arbitrary web script or HTML via the usr parameter. CWE-79
Cross-site Scripting
CVE-2010-1105 2017-08-17 10:32 2010-03-26 Show GitHub Exploit DB Packet Storm
345386 - advertisementmanager advertisementmanager PHP remote file inclusion vulnerability in cgi/index.php in AdvertisementManager 3.1.0 allows remote attackers to execute arbitrary PHP code via a URL in the req parameter. NOTE: this can also be le… CWE-94
Code Injection
CVE-2010-1106 2017-08-17 10:32 2010-03-26 Show GitHub Exploit DB Packet Storm
345387 - fourkitchens recent_comments Cross-site scripting (XSS) vulnerability in the Recent Comments module 5.x through 5.x-1.2 and 6.x through 6.x-1.0 for Drupal allows remote authenticated users to inject arbitrary web script or HTML … CWE-79
Cross-site Scripting
CVE-2010-1107 2017-08-17 10:32 2010-03-26 Show GitHub Exploit DB Packet Storm
345388 - hashmarkconsulting controlpanel Cross-site scripting (XSS) vulnerability in the Control Panel module 5.x through 5.x-1.5 and 6.x through 6.x-1.2 for Drupal allows remote authenticated users, with "administer blocks" privileges, to … CWE-79
Cross-site Scripting
CVE-2010-1108 2017-08-17 10:32 2010-03-26 Show GitHub Exploit DB Packet Storm
345389 - djayp phpmysport Multiple SQL injection vulnerabilities in index.php in phpMySport 1.4, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) v2 parameter in a member… CWE-89
SQL Injection
CVE-2010-1109 2017-08-17 10:32 2010-03-26 Show GitHub Exploit DB Packet Storm
345390 - djayp phpmysport Directory traversal vulnerability in index.php in phpMySport 1.4 allows remote attackers to list arbitrary directories via a .. (dot dot) in the current_folder parameter. CWE-22
Path Traversal
CVE-2010-1110 2017-08-17 10:32 2010-03-26 Show GitHub Exploit DB Packet Storm