Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
202621 9.8 緊急
Network
マイクロソフト
日立
- 複数の Microsoft Windows 製品の Web プロキシ自動検出プロトコルの実装におけるネットワークトラフィックをリダイレクトされる脆弱性 CWE-Other
その他
CVE-2016-3236 2016-06-28 16:58 2016-06-14 Show GitHub Exploit DB Packet Storm
202622 8.8 重要
Network
マイクロソフト
日立
- 複数の Microsoft Windows 製品の Web プロキシ自動検出プロトコルの実装における権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3213 2016-06-28 16:58 2016-06-14 Show GitHub Exploit DB Packet Storm
202623 7.8 重要
Local
Linux - Linux Kernel の drivers/hid/usbhid/hiddev.c の hiddev_ioctl_usage 関数におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-5829 2016-06-28 16:36 2016-06-23 Show GitHub Exploit DB Packet Storm
202624 7.8 重要
Local
Linux - PowerPC プラットフォーム上で稼動する Linux Kernel の arch/powerpc/kernel/process.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-5828 2016-06-28 16:36 2016-06-17 Show GitHub Exploit DB Packet Storm
202625 7.1 重要
Local
Linux - Linux Kernel の MIC VOP ドライバの drivers/misc/mic/vop/vop_vringh.c の vop_ioctl 関数における重要な情報を取得される脆弱性 CWE-119
バッファエラー
CVE-2016-5728 2016-06-28 16:36 2016-06-1 Show GitHub Exploit DB Packet Storm
202626 5.5 警告
Local
Linux - Linux Kernel の net/tipc/netlink_compat.c の tipc_nl_compat_link_dump 関数におけるカーネルスタックメモリから重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-5243 2016-06-28 16:36 2016-06-2 Show GitHub Exploit DB Packet Storm
202627 7.8 重要
Local
Linux - Linux Kernel の arch/x86/kvm/vmx.c におけるホスト OS 上で直接 APIC の MSR アクセス権を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-4440 2016-06-28 16:36 2016-05-18 Show GitHub Exploit DB Packet Storm
202628 7.1 重要
Local
Linux - Linux Kernel の arch/x86/kvm/mtrr.c の msr_mtrr_valid 関数における kvm_arch_vcpu のデータ構造を読み書きされる脆弱性 CWE-Other
その他
CVE-2016-3713 2016-06-28 16:36 2016-06-1 Show GitHub Exploit DB Packet Storm
202629 7.8 重要
Local
Linux - Linux Kernel の fs/ecryptfs/kthread.c の ecryptfs_privileged_open 関数における権限を取得される脆弱性 CWE-119
バッファエラー
CVE-2016-1583 2016-06-28 16:36 2016-06-24 Show GitHub Exploit DB Packet Storm
202630 7.8 重要
Local
Linux - Linux Kernel の ALSA サブシステムの sound/core/compress_offload.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2014-9904 2016-06-28 16:36 2014-07-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291091 9.8 CRITICAL
Network
cubecart cubecart The Cubecart::_basket method in classes/cubecart.class.php in CubeCart 5.0.0 through 5.2.0 allows remote attackers to unserialize arbitrary PHP objects via a crafted shipping parameter, as demonstrat… CWE-502
 Deserialization of Untrusted Data
CVE-2013-1465 2024-11-21 10:49 2013-02-9 Show GitHub Exploit DB Packet Storm
291092 - doryphores audio_player Cross-site scripting (XSS) vulnerability in assets/player.swf in the Audio Player plugin before 2.0.4.6 for Wordpress allows remote attackers to inject arbitrary web script or HTML via the playerID p… CWE-79
Cross-site Scripting
CVE-2013-1464 2024-11-21 10:49 2013-02-7 Show GitHub Exploit DB Packet Storm
291093 - wp-table_reloaded_project wp-table_reloaded Cross-site scripting (XSS) vulnerability in js/tabletools/zeroclipboard.swf in the WP-Table Reloaded module before 1.9.4 for Wordpress allows remote attackers to inject arbitrary web script or HTML v… CWE-79
Cross-site Scripting
CVE-2013-1463 2024-11-21 10:49 2013-02-7 Show GitHub Exploit DB Packet Storm
291094 - fortinet fortimail Multiple cross-site scripting (XSS) vulnerabilities in admin/FEAdmin.html in Fortinet FortiMail before 4.3.4 on FortiMail Identity-Based Encryption (IBE) appliances allow user-assisted remote attacke… CWE-79
Cross-site Scripting
CVE-2013-1471 2024-11-21 10:49 2013-02-5 Show GitHub Exploit DB Packet Storm
291095 - wireshark wireshark Buffer overflow in the NTLMSSP dissector in Wireshark 1.6.x before 1.6.13 and 1.8.x before 1.8.5 allows remote attackers to cause a denial of service (application crash) via a malformed packet. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-1590 2024-11-21 10:49 2013-02-3 Show GitHub Exploit DB Packet Storm
291096 - wireshark wireshark Double free vulnerability in epan/proto.c in the dissection engine in Wireshark 1.6.x before 1.6.13 and 1.8.x before 1.8.5 allows remote attackers to cause a denial of service (application crash) via… CWE-399
 Resource Management Errors
CVE-2013-1589 2024-11-21 10:49 2013-02-3 Show GitHub Exploit DB Packet Storm
291097 - wireshark wireshark Multiple buffer overflows in the dissect_pft_fec_detailed function in the DCP-ETSI dissector in epan/dissectors/packet-dcp-etsi.c in Wireshark 1.6.x before 1.6.13 and 1.8.x before 1.8.5 allow remote … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-1588 2024-11-21 10:49 2013-02-3 Show GitHub Exploit DB Packet Storm
291098 - wireshark wireshark The dissect_rohc_ir_packet function in epan/dissectors/packet-rohc.c in the ROHC dissector in Wireshark 1.8.x before 1.8.5 does not properly handle unknown profiles, which allows remote attackers to … NVD-CWE-noinfo
CVE-2013-1587 2024-11-21 10:49 2013-02-3 Show GitHub Exploit DB Packet Storm
291099 - wireshark wireshark The fragment_set_tot_len function in epan/reassemble.c in Wireshark 1.6.x before 1.6.13 and 1.8.x before 1.8.5 does not properly determine the length of a reassembled packet for the DTLS dissector, w… NVD-CWE-noinfo
CVE-2013-1586 2024-11-21 10:49 2013-02-3 Show GitHub Exploit DB Packet Storm
291100 - wireshark wireshark epan/tvbuff.c in Wireshark 1.6.x before 1.6.13 and 1.8.x before 1.8.5 does not properly validate certain length values for the MS-MMC dissector, which allows remote attackers to cause a denial of ser… CWE-20
 Improper Input Validation 
CVE-2013-1585 2024-11-21 10:49 2013-02-3 Show GitHub Exploit DB Packet Storm