Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
202621 9.8 緊急
Network
マイクロソフト
日立
- 複数の Microsoft Windows 製品の Web プロキシ自動検出プロトコルの実装におけるネットワークトラフィックをリダイレクトされる脆弱性 CWE-Other
その他
CVE-2016-3236 2016-06-28 16:58 2016-06-14 Show GitHub Exploit DB Packet Storm
202622 8.8 重要
Network
マイクロソフト
日立
- 複数の Microsoft Windows 製品の Web プロキシ自動検出プロトコルの実装における権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3213 2016-06-28 16:58 2016-06-14 Show GitHub Exploit DB Packet Storm
202623 7.8 重要
Local
Linux - Linux Kernel の drivers/hid/usbhid/hiddev.c の hiddev_ioctl_usage 関数におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-5829 2016-06-28 16:36 2016-06-23 Show GitHub Exploit DB Packet Storm
202624 7.8 重要
Local
Linux - PowerPC プラットフォーム上で稼動する Linux Kernel の arch/powerpc/kernel/process.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-5828 2016-06-28 16:36 2016-06-17 Show GitHub Exploit DB Packet Storm
202625 7.1 重要
Local
Linux - Linux Kernel の MIC VOP ドライバの drivers/misc/mic/vop/vop_vringh.c の vop_ioctl 関数における重要な情報を取得される脆弱性 CWE-119
バッファエラー
CVE-2016-5728 2016-06-28 16:36 2016-06-1 Show GitHub Exploit DB Packet Storm
202626 5.5 警告
Local
Linux - Linux Kernel の net/tipc/netlink_compat.c の tipc_nl_compat_link_dump 関数におけるカーネルスタックメモリから重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-5243 2016-06-28 16:36 2016-06-2 Show GitHub Exploit DB Packet Storm
202627 7.8 重要
Local
Linux - Linux Kernel の arch/x86/kvm/vmx.c におけるホスト OS 上で直接 APIC の MSR アクセス権を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-4440 2016-06-28 16:36 2016-05-18 Show GitHub Exploit DB Packet Storm
202628 7.1 重要
Local
Linux - Linux Kernel の arch/x86/kvm/mtrr.c の msr_mtrr_valid 関数における kvm_arch_vcpu のデータ構造を読み書きされる脆弱性 CWE-Other
その他
CVE-2016-3713 2016-06-28 16:36 2016-06-1 Show GitHub Exploit DB Packet Storm
202629 7.8 重要
Local
Linux - Linux Kernel の fs/ecryptfs/kthread.c の ecryptfs_privileged_open 関数における権限を取得される脆弱性 CWE-119
バッファエラー
CVE-2016-1583 2016-06-28 16:36 2016-06-24 Show GitHub Exploit DB Packet Storm
202630 7.8 重要
Local
Linux - Linux Kernel の ALSA サブシステムの sound/core/compress_offload.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2014-9904 2016-06-28 16:36 2014-07-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
290361 - owncloud owncloud The contacts application in ownCloud before 4.5.10 and 5.x before 5.0.5 does not properly check the ownership of contacts, which allows remote authenticated users to download arbitrary contacts via u… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-1963 2024-11-21 10:50 2014-03-15 Show GitHub Exploit DB Packet Storm
290362 - fruux
owncloud
sabredav
owncloud
The HTML\Browser plugin in SabreDAV before 1.6.9, 1.7.x before 1.7.7, and 1.8.x before 1.8.5, as used in ownCloud, when running on Windows, does not properly check path separators in the base path, w… CWE-20
 Improper Input Validation 
CVE-2013-1939 2024-11-21 10:50 2014-03-15 Show GitHub Exploit DB Packet Storm
290363 - owncloud owncloud Incomplete blacklist vulnerability in lib/migrate.php in ownCloud before 4.0.13 and 4.5.x before 4.5.8, when the user_migrate application is enabled, allows remote authenticated users to import arbit… NVD-CWE-Other
CVE-2013-1851 2024-11-21 10:50 2014-03-15 Show GitHub Exploit DB Packet Storm
290364 - owncloud owncloud Multiple incomplete blacklist vulnerabilities in (1) import.php and (2) ajax/uploadimport.php in apps/contacts/ in ownCloud before 4.0.13 and 4.5.x before 4.5.8 allow remote authenticated users to ex… CWE-94
Code Injection
CVE-2013-1850 2024-11-21 10:50 2014-03-15 Show GitHub Exploit DB Packet Storm
290365 - owncloud owncloud Multiple cross-site scripting (XSS) vulnerabilities in ownCloud 4.5.x before 4.5.8 allow remote authenticated users with administrator privileges to inject arbitrary web script or HTML via the (1) qu… CWE-79
Cross-site Scripting
CVE-2013-1822 2024-11-21 10:50 2014-03-15 Show GitHub Exploit DB Packet Storm
290366 - opensource_technologies responsive_logo_slideshow Cross-site scripting (XSS) vulnerability in the Responsive Logo Slideshow plugin for WordPress allows remote attackers to inject arbitrary web script or HTML via the "URL and Image" field. CWE-79
Cross-site Scripting
CVE-2013-1759 2024-11-21 10:50 2014-03-14 Show GitHub Exploit DB Packet Storm
290367 - marekkis watermark Cross-site scripting (XSS) vulnerability in the Marekkis Watermark plugin 0.9.2 for WordPress allows remote attackers to inject arbitrary web script or HTML via the pfad parameter to wp-admin/options… CWE-79
Cross-site Scripting
CVE-2013-1758 2024-11-21 10:50 2014-03-14 Show GitHub Exploit DB Packet Storm
290368 - blair_williams
joobi
civicrm
pretty_link_lite
com_jnews
civicrm
Cross-site scripting (XSS) vulnerability in open-flash-chart.swf in Open Flash Chart (aka Open-Flash Chart), as used in the Pretty Link Lite plugin before 1.6.3 for WordPress, JNews (com_jnews) compo… CWE-79
Cross-site Scripting
CVE-2013-1636 2024-11-21 10:50 2014-03-12 Show GitHub Exploit DB Packet Storm
290369 - owncloud owncloud SQL injection vulnerability in lib/bookmarks.php in ownCloud Server 4.5.x before 4.5.11 and 5.x before 5.0.6 allows remote authenticated users to execute arbitrary SQL commands via unspecified vector… CWE-89
SQL Injection
CVE-2013-2046 2024-11-21 10:50 2014-03-9 Show GitHub Exploit DB Packet Storm
290370 - owncloud owncloud SQL injection vulnerability in lib/db.php in ownCloud Server 5.0.x before 5.0.6 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors. CWE-89
SQL Injection
CVE-2013-2045 2024-11-21 10:50 2014-03-9 Show GitHub Exploit DB Packet Storm