Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 28, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
202261 6.5 警告
Network
Huawei - 複数の Huawei AR ルータおよび NetEngine 16EX ルータのソフトウェアにおけるフォーマットストリングの脆弱性 CWE-20
不適切な入力確認
CVE-2016-6901 2016-10-4 16:54 2016-08-24 Show GitHub Exploit DB Packet Storm
202262 6.1 警告
Network
Huawei - Huawei OceanStor ISM の管理インターフェースにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-6840 2016-10-4 16:54 2016-08-18 Show GitHub Exploit DB Packet Storm
202263 6.5 警告
Network
Huawei - Huawei FusionCompute における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-6827 2016-10-4 16:54 2016-08-15 Show GitHub Exploit DB Packet Storm
202264 6.5 警告
Network
Huawei - Huawei AnyMail におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-6826 2016-10-4 16:54 2016-08-15 Show GitHub Exploit DB Packet Storm
202265 7.5 重要
Network
Huawei - 複数の Huawei デバイスにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2016-6518 2016-10-4 16:54 2016-09-14 Show GitHub Exploit DB Packet Storm
202266 5.4 警告
Network
Huawei - Huawei Policy Center におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-4058 2016-10-4 16:54 2016-04-19 Show GitHub Exploit DB Packet Storm
202267 5.3 警告
Network
SAP - SAP TREX のネームサーバにおける重要な TNS 情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-6146 2016-10-4 16:53 2016-07-20 Show GitHub Exploit DB Packet Storm
202268 9.8 緊急
Network
SAP - SAP TREX の不特定の関数における任意の OS コマンドを実行される脆弱性 CWE-noinfo
情報不足
CVE-2016-6137 2016-10-4 16:53 2016-07-20 Show GitHub Exploit DB Packet Storm
202269 9.8 緊急
Network
アドビシステムズ - Adobe Digital Editions における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2016-6980 2016-10-4 16:47 2016-09-13 Show GitHub Exploit DB Packet Storm
202270 7.5 重要
Network
SAP - SAP HANA DB における SYSLOG へ任意の監査証跡フィールドを挿入される脆弱性 CWE-Other
その他
CVE-2016-6142 2016-10-4 16:31 2016-07-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
289791 - citrix netscaler_application_delivery_controller_firmware
netscaler_application_delivery_controller
Citrix NetScaler Application Delivery Controller (ADC) 10.0 before 10.0-76.7 allows remote attackers to cause a denial of service (nsconfigd crash and appliance reboot) via a crafted request. CWE-20
 Improper Input Validation 
CVE-2013-6011 2024-11-21 10:58 2013-10-5 Show GitHub Exploit DB Packet Storm
289792 - polarssl polarssl The RSA-CRT implementation in PolarSSL before 1.2.9 does not properly perform Montgomery multiplication, which might allow remote attackers to conduct a timing side-channel attack and retrieve RSA pr… CWE-310
Cryptographic Issues
CVE-2013-5915 2024-11-21 10:58 2013-10-5 Show GitHub Exploit DB Packet Storm
289793 - wearegumball comment-attachment Cross-site scripting (XSS) vulnerability in the Comment Attachment plugin 1.0 for WordPress allows remote attackers to inject arbitrary web script or HTML via the "Attachment field title." CWE-79
Cross-site Scripting
CVE-2013-6010 2024-11-21 10:58 2013-10-4 Show GitHub Exploit DB Packet Storm
289794 - open-xchange open-xchange_appsuite CRLF injection vulnerability in Open-Xchange AppSuite before 7.2.2, when using AJP in certain conditions, allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting … CWE-94
Code Injection
CVE-2013-6009 2024-11-21 10:58 2013-10-4 Show GitHub Exploit DB Packet Storm
289795 - siemens scalance_x-200_series_firmware
scalance_x-200
scalance_x-200irt
The integrated web server on Siemens SCALANCE X-200 switches with firmware before 4.5.0 and X-200IRT switches with firmware before 5.1.0 does not properly enforce authentication requirements, which a… CWE-287
Improper Authentication
CVE-2013-5944 2024-11-21 10:58 2013-10-3 Show GitHub Exploit DB Packet Storm
289796 - springsignage xibo Directory traversal vulnerability in Spring Signage Xibo 1.2.x before 1.2.3 and 1.4.x before 1.4.2 allows remote attackers to read arbitrary files via a .. (dot dot) in the p parameter to index.php. CWE-22
Path Traversal
CVE-2013-5979 2024-11-21 10:58 2013-10-3 Show GitHub Exploit DB Packet Storm
289797 - f5 big-ip_access_policy_manager Cross-site scripting (XSS) vulnerability in the access policy logout page (logout.inc) in F5 BIG-IP APM 10.1.0 through 10.2.4 and 11.1.0 through 11.3.0 allows remote attackers to inject arbitrary web… CWE-79
Cross-site Scripting
CVE-2013-5976 2024-11-21 10:58 2013-10-2 Show GitHub Exploit DB Packet Storm
289798 - f5 big-ip_access_policy_manager The access policy logon page (logon.inc) in F5 BIG-IP APM 11.1.0 through 11.2.1 allows remote attackers to conduct clickjacking attacks via unspecified vectors. CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-5975 2024-11-21 10:58 2013-10-2 Show GitHub Exploit DB Packet Storm
289799 - david_king
canonical
vino
ubuntu_linux
The vino_server_client_data_pending function in vino-server.c in GNOME Vino 2.26.1, 2.32.1, 3.7.3, and earlier, and 3.8 when encryption is disabled, does not properly clear client data when an error … CWE-20
 Improper Input Validation 
CVE-2013-5745 2024-11-21 10:58 2013-10-2 Show GitHub Exploit DB Packet Storm
289800 - metaclassy byword The Metaclassy Byword app 2.x before 2.1 for iOS does not require confirmation of Replace file actions, which allows remote attackers to overwrite arbitrary files via the name and text parameters in … CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-5725 2024-11-21 10:58 2013-10-1 Show GitHub Exploit DB Packet Storm