Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":July 1, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
202811 7.5 重要
Network
IBM - IBM Security Access Manager における重要な情報を解読される脆弱性 CWE-326
不適切な暗号強度
CVE-2016-5919 2017-03-9 16:56 2016-06-29 Show GitHub Exploit DB Packet Storm
202812 7.8 重要
Local
Debian
GraphicsMagick
- GraphicsMagick の MagickCore/memory.c の AcquireMagickMemory 関数における脆弱性 CWE-119
バッファエラー
CVE-2016-8862 2017-03-9 16:51 2016-09-14 Show GitHub Exploit DB Packet Storm
202813 5.5 警告
Local
ImageMagick - ImageMagick の MagickCore/pixel-accessor.h の IsPixelMonochrome 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-125
境界外読み取り
CVE-2016-8678 2017-03-9 16:51 2016-09-14 Show GitHub Exploit DB Packet Storm
202814 7.8 重要
Local
openSUSE project
Debian
ImageMagick
- ImageMagick の MagickCore/quantum.c の AcquireQuantumPixels 関数における脆弱性 CWE-119
バッファエラー
CVE-2016-8677 2017-03-9 16:51 2016-09-16 Show GitHub Exploit DB Packet Storm
202815 9.8 緊急
Network
Aerospike, Inc. - Aerospike Database Server の RW ファブリックメッセージのパーティクルタイプにおける境界外インデックスに関する脆弱性 CWE-129
配列インデックスの不適切な検証
CVE-2016-9053 2017-03-9 16:49 2016-10-26 Show GitHub Exploit DB Packet Storm
202816 9.8 緊急
Network
Aerospike, Inc. - Aerospike Database Server のバッチ処理フィールドの構文解析機能における境界外書き込みの脆弱性 CWE-787
境界外書き込み
CVE-2016-9051 2017-03-9 16:49 2016-10-26 Show GitHub Exploit DB Packet Storm
202817 7.5 重要
Network
Aerospike, Inc. - Aerospike Database Server の Fabric_Worker コンポーネントにおけるサービス運用妨害 (DoS) の脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2016-9049 2017-03-9 16:49 2016-10-26 Show GitHub Exploit DB Packet Storm
202818 7.8 重要
Local
JasPer Project
openSUSE project
Fedora Project
- JasPer の jas_stream.c の mem_close 関数におけるメモリ二重解放の脆弱性 CWE-415
二重解放
CVE-2016-8693 2017-03-9 16:03 2016-10-20 Show GitHub Exploit DB Packet Storm
202819 5.5 警告
Local
Debian
JasPer Project
Fedora Project
- JasPer の libjasper/jpc/jpc_dec.c の jpc_dec_process_siz 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-369
ゼロ除算
CVE-2016-8692 2017-03-9 16:03 2016-10-16 Show GitHub Exploit DB Packet Storm
202820 5.5 警告
Local
Debian
JasPer Project
Fedora Project
- JasPer の libjasper/jpc/jpc_dec.c の jpc_dec_process_siz 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-369
ゼロ除算
CVE-2016-8691 2017-03-9 16:03 2016-10-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:July 1, 2026, 4:27 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292341 7.5 HIGH
Network
microsoft internet_explorer Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vuln… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-4112 2024-11-21 11:09 2018-02-9 Show GitHub Exploit DB Packet Storm
292342 7.5 HIGH
Network
microsoft internet_explorer Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vuln… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-4066 2024-11-21 11:09 2018-02-9 Show GitHub Exploit DB Packet Storm
292343 8.8 HIGH
Network
cacti cacti Cacti before 1.0.0 allows remote authenticated users to conduct PHP object injection attacks and execute arbitrary PHP code via a crafted serialized object, related to calling unserialize(stripslashe… CWE-94
Code Injection
CVE-2014-4000 2024-11-21 11:09 2017-11-16 Show GitHub Exploit DB Packet Storm
292344 5.4 MEDIUM
Network
iodata rockdisk_firmware Cross-site scripting (XSS) vulnerability in I-O DATA DEVICE RockDisk with firmware before 1.05e1-2.0.5 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors… CWE-79
Cross-site Scripting
CVE-2014-3887 2024-11-21 11:09 2017-04-14 Show GitHub Exploit DB Packet Storm
292345 7.5 HIGH
Network
lg_project lg lg.pl in Cistron-LG 1.01 stores sensitive information under the web root with insufficient access controls, which allows remote attackers to obtain IP addresses and other unspecified router credentia… CWE-284
Improper Access Control
CVE-2014-3930 2024-11-21 11:09 2017-04-4 Show GitHub Exploit DB Packet Storm
292346 7.5 HIGH
Network
lg_project lg The default configuration for Cougar-LG stores sensitive information under the web root with insufficient access control, which might allow remote attackers to obtain private ssh keys. CWE-284
Improper Access Control
CVE-2014-3929 2024-11-21 11:09 2017-04-4 Show GitHub Exploit DB Packet Storm
292347 9.8 CRITICAL
Network
lg_project lg Cougar-LG stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain credentials. CWE-284
Improper Access Control
CVE-2014-3928 2024-11-21 11:09 2017-04-4 Show GitHub Exploit DB Packet Storm
292348 9.8 CRITICAL
Network
mrlg4php_project mrlg4php mrlg-lib.php in mrlg4php before 1.0.8 allows remote attackers to execute arbitrary shell code. CWE-94
Code Injection
CVE-2014-3927 2024-11-21 11:09 2017-04-4 Show GitHub Exploit DB Packet Storm
292349 6.1 MEDIUM
Network
lg_project lg Cross-site scripting (XSS) vulnerability in lg.cgi in Cougar LG 1.9 allows remote attackers to inject arbitrary web script or HTML via the "addr" parameter. CWE-79
Cross-site Scripting
CVE-2014-3926 2024-11-21 11:09 2017-03-14 Show GitHub Exploit DB Packet Storm
292350 - oracle peoplesoft_products Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.53 allows remote authenticated users to affect integrity via vectors related to PIA Core T… NVD-CWE-noinfo
CVE-2014-4279 2024-11-21 11:09 2015-01-21 Show GitHub Exploit DB Packet Storm