Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 30, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
202231 6.1 警告
Network
シスコシステムズ - Cisco ASA Web VPN で使用される Host Scan パッケージの Cisco HostScan エンジンにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-6436 2016-10-12 16:47 2016-10-5 Show GitHub Exploit DB Packet Storm
202232 6.5 警告
Network
シスコシステムズ - Cisco Firepower Management Center の Web コンソールにおける任意のファイルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2016-6435 2016-10-12 16:47 2016-10-5 Show GitHub Exploit DB Packet Storm
202233 7.8 重要
Local
シスコシステムズ - Cisco Firepower Management Center における重要な情報を取得される脆弱性 CWE-287
不適切な認証
CVE-2016-6434 2016-10-12 16:47 2016-10-5 Show GitHub Exploit DB Packet Storm
202234 8.8 重要
Network
シスコシステムズ - Cisco Firepower Management Center の Threat Management Console における任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2016-6433 2016-10-12 16:47 2016-10-5 Show GitHub Exploit DB Packet Storm
202235 7.8 重要
Local
シスコシステムズ - Cisco IOS XR における root 権限で任意の OS コマンドを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-6428 2016-10-12 16:47 2016-10-5 Show GitHub Exploit DB Packet Storm
202236 8.8 重要
Network
シスコシステムズ - Cisco Unified Contact Center Express で使用される Unified Intelligence Center におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2016-6427 2016-10-12 16:47 2016-10-5 Show GitHub Exploit DB Packet Storm
202237 6.1 警告
Network
シスコシステムズ - Cisco Unified Contact Center Express で使用される Unified Intelligence Center におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-6425 2016-10-12 16:47 2016-10-5 Show GitHub Exploit DB Packet Storm
202238 6.5 警告
Adjacent
シスコシステムズ - Cisco Adaptive Security Appliance ソフトウェアの DHCP リレーの実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2016-6424 2016-10-12 16:47 2016-10-5 Show GitHub Exploit DB Packet Storm
202239 7.5 重要
Network
シスコシステムズ - Cisco 7600 および Catalyst 6500 デバイスの Supervisor Engine 32 および 720 モジュール上で稼動する Cisco IOS におけるアクセス制限を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2016-6422 2016-10-12 16:47 2016-10-5 Show GitHub Exploit DB Packet Storm
202240 6.1 警告
Network
IBM - IBM Sterling Secure Proxy の構成マネージャにおける重要な情報を取得される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-6027 2016-10-12 15:03 2016-09-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 30, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
289761 - gnu libmicrohttpd The MHD_http_unescape function in libmicrohttpd before 0.9.32 might allow remote attackers to obtain sensitive information or cause a denial of service (crash) via unspecified vectors that trigger an… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-7038 2024-11-21 11:00 2013-12-14 Show GitHub Exploit DB Packet Storm
289762 - mcafee email_gateway Multiple SQL injection vulnerabilities in /admin/cgi-bin/rpc/doReport/18 in McAfee Email Gateway 7.6 allow remote authenticated users to execute arbitrary SQL commands via the (1) events_col, (2) eve… CWE-89
SQL Injection
CVE-2013-7092 2024-11-21 11:00 2013-12-14 Show GitHub Exploit DB Packet Storm
289763 - synacor zimbra_collaboration_suite Directory traversal vulnerability in /res/I18nMsg,AjxMsg,ZMsg,ZmMsg,AjxKeys,ZmKeys,ZdMsg,Ajx%20TemplateMsg.js.zgz in Zimbra 7.2.2 and 8.0.2 allows remote attackers to read arbitrary files via a .. (… CWE-22
Path Traversal
CVE-2013-7091 2024-11-21 11:00 2013-12-14 Show GitHub Exploit DB Packet Storm
289764 - devscripts_devel_team devscripts The get_main_source_dir function in scripts/uscan.pl in devscripts before 2.13.8, when using USCAN_EXCLUSION, allows remote attackers to execute arbitrary commands via shell metacharacters in a direc… CWE-94
Code Injection
CVE-2013-7050 2024-11-21 11:00 2013-12-14 Show GitHub Exploit DB Packet Storm
289765 - juniper screenos
netscreen-5200
netscreen-5400
Juniper NetScreen Firewall running ScreenOS 5.4, 6.2, or 6.3, when the Ping of Death screen is disabled, allows remote attackers to cause a denial of service via a crafted packet. NVD-CWE-noinfo
CVE-2013-6958 2024-11-21 11:00 2013-12-14 Show GitHub Exploit DB Packet Storm
289766 - juniper idp250
idp8200
idp800
idp75
Cross-site scripting (XSS) vulnerability in the web administrative component in Juniper IDP allows remote attackers to inject arbitrary web script or HTML via unspecified vectors to the ACM web serve… CWE-79
Cross-site Scripting
CVE-2013-6957 2024-11-21 11:00 2013-12-14 Show GitHub Exploit DB Packet Storm
289767 - juniper ive_os Cross-site scripting (XSS) vulnerability in the Secure Access Service Web rewriting feature in Juniper Junos Pulse Secure Access Service (aka SSL VPN) with IVE OS before 7.1r17, 7.3 before 7.3r8, 7.4… CWE-79
Cross-site Scripting
CVE-2013-6956 2024-11-21 11:00 2013-12-14 Show GitHub Exploit DB Packet Storm
289768 - cisco unified_communications_manager The TFTP service in Cisco Unified Communications Manager (aka CUCM or Unified CM) allows remote attackers to obtain sensitive information from a phone via an RRQ operation, as demonstrated by discove… CWE-310
Cryptographic Issues
CVE-2013-7030 2024-11-21 11:00 2013-12-13 Show GitHub Exploit DB Packet Storm
289769 - zippyyum subway_ordering_for_california The ZippyYum Subway CA Kiosk app 3.4 for iOS uses cleartext storage in SQLite cache databases, which allows attackers to obtain sensitive information by reading data elements, as demonstrated by pass… CWE-310
Cryptographic Issues
CVE-2013-6986 2024-11-21 11:00 2013-12-13 Show GitHub Exploit DB Packet Storm
289770 - cisco scientific_atlanta__dpr\/epr2320_firmware
scientific_atlanta__dpr\/epr2320
scientific_atlanta__dpr2325_firmware
scientific_atlanta__dpr2325
Multiple cross-site request forgery (CSRF) vulnerabilities on Cisco Scientific Atlanta DPR2320R2 routers with software 2.0.2r1262-090417 allow remote attackers to hijack the authentication of adminis… CWE-352
 Origin Validation Error
CVE-2013-7043 2024-11-21 11:00 2013-12-11 Show GitHub Exploit DB Packet Storm