Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
202701 6.1 警告
Network
レッドハット - Red Hat JBoss Enterprise Application Platform で使用される WildFly の Undertow Web サーバにおける CRLF インジェクションの脆弱性 CWE-Other
その他
CVE-2016-4993 2016-10-3 16:59 2016-09-8 Show GitHub Exploit DB Packet Storm
202702 7.5 重要
Network
レッドハット - Red Hat JBoss Web Server で使用される mod_cluster におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-3110 2016-10-3 16:59 2016-08-22 Show GitHub Exploit DB Packet Storm
202703 5.4 警告
Network
IBM - IBM Security Privileged Identity Manager 仮想アプライアンスの Web UI におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-5974 2016-10-3 16:56 2016-08-19 Show GitHub Exploit DB Packet Storm
202704 6.8 警告
Network
IBM - IBM Security Privileged Identity Manager 仮想アプライアンスにおける重要な情報を取得される脆弱性 CWE-200
CWE-Other
CVE-2016-5972 2016-10-3 16:56 2016-08-19 Show GitHub Exploit DB Packet Storm
202705 7.1 重要
Network
IBM - IBM Security Privileged Identity Manager 仮想アプライアンスにおける任意のファイルを読まれる脆弱性 CWE-200
CWE-Other
CVE-2016-5971 2016-10-3 16:56 2016-08-19 Show GitHub Exploit DB Packet Storm
202706 6.5 警告
Network
IBM - IBM Security Privileged Identity Manager 仮想アプライアンスにおけるディレクトリトラバーサルの脆弱性 CWE-200
CWE-22
CVE-2016-5970 2016-10-3 16:56 2016-08-19 Show GitHub Exploit DB Packet Storm
202707 8.8 重要
Network
IBM - IBM Security Privileged Identity Manager 仮想アプライアンスにおける任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2016-5963 2016-10-3 16:56 2016-08-19 Show GitHub Exploit DB Packet Storm
202708 7.5 重要
Network
IBM - IBM Security Privileged Identity Manager 仮想アプライアンスにおける暗号保護メカニズムを破られる脆弱性 CWE-310
暗号の問題
CVE-2016-5957 2016-10-3 16:56 2016-08-19 Show GitHub Exploit DB Packet Storm
202709 6.8 警告
Network
IBM - IBM Security Privileged Identity Manager 仮想アプライアンスで使用される WAS Liberty におけるユーザを任意の Web サイトにリダイレクトされる脆弱性 CWE-Other
その他
CVE-2016-3040 2016-10-3 16:56 2016-08-19 Show GitHub Exploit DB Packet Storm
202710 5.7 警告
Network
IBM - IBM Spectrum Control におけるクリックジャッキング攻撃を実行される脆弱性 CWE-20
不適切な入力確認
CVE-2016-5947 2016-10-3 16:37 2016-09-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 5, 2026, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
345981 - bea weblogic_server The HTTP handlers in BEA WebLogic Server 9.0, 8.1 up to SP5, 7.0 up to SP6, and 6.1 up to SP7 stores the username and password in cleartext in the WebLogic Server log when access to a web application… NVD-CWE-Other
CVE-2006-2469 2017-07-20 10:31 2006-05-19 Show GitHub Exploit DB Packet Storm
345982 - bea weblogic_server Unspecified vulnerability in the WebLogic Server Administration Console for BEA WebLogic Server 9.0 prevents the console from setting custom JDBC security policies correctly, which could allow attack… NVD-CWE-Other
CVE-2006-2470 2017-07-20 10:31 2006-05-19 Show GitHub Exploit DB Packet Storm
345983 - bea weblogic_server Multiple vulnerabilities in BEA WebLogic Server 8.1 through SP4, 7.0 through SP6, and 6.1 through SP7 leak sensitive information to remote attackers, including (1) DNS and IP addresses to address to … NVD-CWE-Other
CVE-2006-2471 2017-07-20 10:31 2006-05-19 Show GitHub Exploit DB Packet Storm
345984 - bea weblogic_server This vulnerability is addressed in the following product releases: BEA Systems, Weblogic Server, 8.1 SP 5 BEA Systems, Weblogic Express, 8.1 SP 5 BEA Systems, Weblogic Server, 7.0 SP 7 BEA System… NVD-CWE-Other
CVE-2006-2471 2017-07-20 10:31 2006-05-19 Show GitHub Exploit DB Packet Storm
345985 - bea weblogic_server Unspecified vulnerability in BEA WebLogic Server 9.1 and 9.0, 8.1 through SP5, 7.0 through SP6, and 6.1 through SP7 allows untrusted applications to obtain private server keys. NVD-CWE-Other
CVE-2006-2472 2017-07-20 10:31 2006-05-19 Show GitHub Exploit DB Packet Storm
345986 - bea weblogic_server Hyperlink #907650 has patches for the following products: WebLogic Server 9.1 WebLogic Server 9.0 This vulnerability is addressed in the following product releases: BEA Systems, Weblogic Server, … NVD-CWE-Other
CVE-2006-2472 2017-07-20 10:31 2006-05-19 Show GitHub Exploit DB Packet Storm
345987 - microchip_data_systems
pentaware
ziptv_for_c\+\+_builder
ziptv_for_delphi_7
pentasuite-pro
pentazip
Heap-based buffer overflow in the TZipTV component in (1) ZipTV for Delphi 7 2006.1.26 and for C++ Builder 2006-1.16, (2) PentaZip 8.5.1.190 and PentaSuite-PRO 8.5.1.221, and possibly other products,… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2006-2482 2017-07-20 10:31 2006-09-9 Show GitHub Exploit DB Packet Storm
345988 - spymac spymac_web_os Multiple cross-site scripting (XSS) vulnerabilities in Spymac WebOS (WOS) 5.0 allow remote attackers to inject arbitrary web script or HTML via the (1) del_folder, (2) nick, or (3) action parameters … NVD-CWE-Other
CVE-2006-2488 2017-07-20 10:31 2006-05-20 Show GitHub Exploit DB Packet Storm
345989 - invision_power_services invision_power_board Invision Power Board (IPB) before 2.1.6 allows remote attackers to execute arbitrary PHP script via attack vectors involving (1) the post_icon variable in classes/post/class_post.php and (2) the df v… NVD-CWE-Other
CVE-2006-2498 2017-07-20 10:31 2006-05-20 Show GitHub Exploit DB Packet Storm
345990 - sun java_system_application_server
java_system_web_server
one_application_server
one_web_server
Cross-site scripting (XSS) vulnerability in Sun ONE Web Server 6.0 SP9 and earlier, Java System Web Server 6.1 SP4 and earlier, Sun ONE Application Server 7 Platform and Standard Edition Update 6 and… NVD-CWE-Other
CVE-2006-2501 2017-07-20 10:31 2006-05-20 Show GitHub Exploit DB Packet Storm