Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 28, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
202501 9.8 緊急
Network
ヒューレット・パッカード・エンタープライズ - 複数の HPE Integrated Lights-Out 製品のファームウェアにおける重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2016-4375 2016-09-12 14:15 2016-08-12 Show GitHub Exploit DB Packet Storm
202502 7.5 重要
Network
Huawei - 複数の Huawei サーバのソフトウェアにおける暗号化されたデータを解読される脆弱性 CWE-200
CWE-310
CVE-2016-6838 2016-09-12 13:57 2016-08-17 Show GitHub Exploit DB Packet Storm
202503 7.5 重要
Network
GNU Project
openSUSE project
Canonical
- libidn の lib/idna.c の idna_to_ascii_4i 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-6261 2016-09-12 11:45 2016-07-20 Show GitHub Exploit DB Packet Storm
202504 7.5 重要
Network
GNU Project
openSUSE project
Canonical
- GNU libidn の idn における重要なメモリ情報を取得される脆弱性 CWE-Other
その他
CVE-2015-8948 2016-09-12 11:45 2015-08-10 Show GitHub Exploit DB Packet Storm
202505 7.5 重要
Network
GNU Project
openSUSE project
Canonical
- libidn の idn における重要なメモリ情報を取得される脆弱性 CWE-Other
その他
CVE-2016-6262 2016-09-12 11:45 2016-07-20 Show GitHub Exploit DB Packet Storm
202506 7.5 重要
Network
GNU Project
openSUSE project
Canonical
- libidn の lib/nfkc.c の stringprep_utf8_nfkc_normalize 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-6263 2016-09-12 11:45 2016-07-20 Show GitHub Exploit DB Packet Storm
202507 5.4 警告
Network
- HPE Operations Manager の AdminUI におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-4380 2016-09-12 11:11 2016-08-30 Show GitHub Exploit DB Packet Storm
202508 3.7
Network
ヒューレット・パッカード・エンタープライズ - HPE Integrated Lights-Out 3 ファームウェアの TLS の実装における重要な情報を取得される脆弱性 CWE-310
暗号の問題
CVE-2016-4379 2016-09-12 11:11 2016-08-30 Show GitHub Exploit DB Packet Storm
202509 6.5 警告
Network
Fedora Project
FreeIPA project
- FreeIPA の cert_revoke コマンドにおける任意の証明書を無効にされる脆弱性 CWE-Other
その他
CVE-2016-5404 2016-09-12 09:50 2016-08-22 Show GitHub Exploit DB Packet Storm
202510 7.5 重要
Network
Ruby on Rails project - Ruby on Rails の Action Record におけるデータベースクエリの制限を回避される脆弱性 CWE-Other
その他
CVE-2016-6317 2016-09-9 18:00 2016-08-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291771 - cisco unified_communications_manager Untrusted search path vulnerability in Cisco Unified Communications Manager (CUCM) 7.1(x) through 9.1(1a) allows local users to gain privileges by leveraging unspecified file-permission and environme… NVD-CWE-Other
CVE-2013-3433 2024-11-21 10:53 2013-07-18 Show GitHub Exploit DB Packet Storm
291772 - cisco unified_communications_manager SQL injection vulnerability in Cisco Unified Communications Manager (CUCM) 7.1(x) through 9.1(2) allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors, aka Bug I… CWE-89
SQL Injection
CVE-2013-3412 2024-11-21 10:53 2013-07-18 Show GitHub Exploit DB Packet Storm
291773 - cisco intrusion_prevention_system
idsm-2
The IDSM-2 drivers in Cisco Intrusion Prevention System (IPS) Software on Cisco Catalyst 6500 devices with an IDSM-2 module allow remote attackers to cause a denial of service (device hang) via malfo… NVD-CWE-noinfo
CVE-2013-3411 2024-11-21 10:53 2013-07-18 Show GitHub Exploit DB Packet Storm
291774 - cisco intrusion_prevention_system
ips_nme
Cisco Intrusion Prevention System (IPS) Software on IPS NME devices before 7.0(9)E4 allows remote attackers to cause a denial of service (device reload) via malformed IPv4 packets that trigger incorr… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-3410 2024-11-21 10:53 2013-07-18 Show GitHub Exploit DB Packet Storm
291775 - cisco unified_communications_manager SQL injection vulnerability in Cisco Unified Communications Manager (CUCM) 7.1(x) through 9.1(1a) allows remote attackers to execute arbitrary SQL commands via unspecified vectors, leading to discove… CWE-89
SQL Injection
CVE-2013-3404 2024-11-21 10:53 2013-07-18 Show GitHub Exploit DB Packet Storm
291776 - cisco unified_communications_manager Multiple untrusted search path vulnerabilities in Cisco Unified Communications Manager (CUCM) 7.1(x) through 9.1(1a) allow local users to gain privileges by leveraging unspecified file-permission and… NVD-CWE-Other
CVE-2013-3403 2024-11-21 10:53 2013-07-18 Show GitHub Exploit DB Packet Storm
291777 - cisco unified_communications_manager An unspecified function in Cisco Unified Communications Manager (CUCM) 7.1(x) through 9.1(2) allows remote authenticated users to execute arbitrary commands via unknown vectors, aka Bug ID CSCuh73440. CWE-94
Code Injection
CVE-2013-3402 2024-11-21 10:53 2013-07-18 Show GitHub Exploit DB Packet Storm
291778 - mdolon sharebar Multiple cross-site request forgery (CSRF) vulnerabilities in the Sharebar plugin 1.2.5 for WordPress allow remote attackers to hijack the authentication of administrators for requests that (1) add o… CWE-352
 Origin Validation Error
CVE-2013-3491 2024-11-21 10:53 2013-07-16 Show GitHub Exploit DB Packet Storm
291779 - wave embassy_remote_administration_server
embassy_remote_administration_server_help_desk
SQL injection vulnerability in the Help Desk application in Wave EMBASSY Remote Administration Server (ERAS) allows remote authenticated users to execute arbitrary SQL commands via the ct100$4MainCon… CWE-78
CWE-89
OS Command 
SQL Injection
CVE-2013-3578 2024-11-21 10:53 2013-07-16 Show GitHub Exploit DB Packet Storm
291780 - wave embassy_remote_administration_server
embassy_remote_administration_server_help_desk
SQL injection vulnerability in the Help Desk application in Wave EMBASSY Remote Administration Server (ERAS) allows remote attackers to execute arbitrary SQL commands via the ct100$4MainController$Te… CWE-89
SQL Injection
CVE-2013-3577 2024-11-21 10:53 2013-07-16 Show GitHub Exploit DB Packet Storm