Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
202951 7.5 重要
Network
NUUO INC.
ネットギア
- 複数の NUUO 製品および NETGEAR ReadyNAS Surveillance における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-5677 2016-09-1 16:07 2016-08-4 Show GitHub Exploit DB Packet Storm
202952 7.5 重要
Network
NUUO INC.
ネットギア
- 複数の NUUO 製品および NETGEAR ReadyNAS Surveillance の cgi-bin/cgi_system における管理者パスワードをリセットされる脆弱性 CWE-Other
その他
CVE-2016-5676 2016-09-1 16:07 2016-08-4 Show GitHub Exploit DB Packet Storm
202953 9.8 緊急
Network
NUUO INC.
ネットギア
- 複数の NUUO 製品および NETGEAR ReadyNAS Surveillance の handle_daylightsaving.php における任意の PHP コードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2016-5675 2016-09-1 16:07 2016-08-4 Show GitHub Exploit DB Packet Storm
202954 9.8 緊急
Network
NUUO INC.
ネットギア
- 複数の NUUO 製品および NETGEAR ReadyNAS Surveillance の __debugging_center_utils___.php における任意の PHP コードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2016-5674 2016-09-1 16:07 2016-08-4 Show GitHub Exploit DB Packet Storm
202955 9.8 緊急
Network
MAC-Telnet project - MAC-Telnet クライアントの mactelnet.c の handle_packet 関数におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-7115 2016-09-1 15:24 2016-08-30 Show GitHub Exploit DB Packet Storm
202956 9.8 緊急
Network
vBulletin Solutions, Inc. - vBulletin の forumrunner/includes/moderation.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2016-6195 2016-09-1 14:42 2016-06-16 Show GitHub Exploit DB Packet Storm
202957 9.8 緊急
Network
VMware - VMware vRealize Automation における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2016-5336 2016-09-1 13:44 2016-08-23 Show GitHub Exploit DB Packet Storm
202958 7.8 重要
Local
VMware - VMware Identity Manager および vRealize Automation における root アクセス権を取得される脆弱性 CWE-noinfo
情報不足
CVE-2016-5335 2016-09-1 13:44 2016-08-23 Show GitHub Exploit DB Packet Storm
202959 9.8 緊急
Network
VMware - VMware Photon OS OVA における SSH アクセス権を取得される脆弱性 CWE-Other
その他
CVE-2016-5333 2016-09-1 13:44 2016-08-15 Show GitHub Exploit DB Packet Storm
202960 5.3 警告
Network
VMware - VMware vRealize Log Insight におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2016-5332 2016-09-1 13:44 2016-08-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291761 - gnu
suse
glibc
linux_enterprise_debuginfo
linux_enterprise_server
Stack-based buffer overflow in the getaddrinfo function in sysdeps/posix/getaddrinfo.c in GNU C Library (aka glibc or libc6) 2.18 and earlier allows remote attackers to cause a denial of service (cra… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-4458 2024-11-21 10:55 2013-12-13 Show GitHub Exploit DB Packet Storm
291762 - samba samba Heap-based buffer overflow in the dcerpc_read_ncacn_packet_done function in librpc/rpc/dcerpc_util.c in winbindd in Samba 3.x before 3.6.22, 4.0.x before 4.0.13, and 4.1.x before 4.1.3 allows remote … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-4408 2024-11-21 10:55 2013-12-10 Show GitHub Exploit DB Packet Storm
291763 - linux linux_kernel The net_ctl_permissions function in net/sysctl_net.c in the Linux kernel before 3.11.5 does not properly determine uid and gid values, which allows local users to bypass intended /proc/sys/net restri… CWE-20
 Improper Input Validation 
CVE-2013-4270 2024-11-21 10:55 2013-12-10 Show GitHub Exploit DB Packet Storm
291764 - redhat libvirt virt-login-shell in libvirt 1.1.2 through 1.1.3 allows local users to overwrite arbitrary files and possibly gain privileges via unspecified environment variables or command-line arguments. CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-4400 2024-11-21 10:55 2013-12-10 Show GitHub Exploit DB Packet Storm
291765 - x2go x2go_server The setgid wrapper libx2go-server-db-sqlite3-wrapper.c in X2Go Server before 4.0.0.2 allows remote attackers to execute arbitrary code via unspecified vectors, related to the path to libx2go-server-d… CWE-94
Code Injection
CVE-2013-4376 2024-11-21 10:55 2013-12-10 Show GitHub Exploit DB Packet Storm
291766 - apache subversion
mod_dav_svn
The get_parent_resource function in repos.c in mod_dav_svn Apache HTTPD server module in Subversion 1.7.11 through 1.7.13 and 1.8.1 through 1.8.4, when built with assertions enabled and SVNAutoversio… CWE-20
 Improper Input Validation 
CVE-2013-4558 2024-11-21 10:55 2013-12-8 Show GitHub Exploit DB Packet Storm
291767 - apache mod_dontdothat
subversion
The is_this_legal function in mod_dontdothat for Apache Subversion 1.4.0 through 1.7.13 and 1.8.0 through 1.8.4 allows remote attackers to bypass intended access restrictions and possibly cause a den… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-4505 2024-11-21 10:55 2013-12-8 Show GitHub Exploit DB Packet Storm
291768 - supmua sup lib/sup/message_chunks.rb in Sup before 0.13.2.1 and 0.14.x before 0.14.1.1 allows remote attackers to execute arbitrary commands via shell metacharacters in the content_type of an email attachment. CWE-94
Code Injection
CVE-2013-4479 2024-11-21 10:55 2013-12-8 Show GitHub Exploit DB Packet Storm
291769 - supmua sup Sup before 0.13.2.1 and 0.14.x before 0.14.1.1 allows remote attackers to execute arbitrary commands via shell metacharacters in the filename of an email attachment. CWE-94
Code Injection
CVE-2013-4478 2024-11-21 10:55 2013-12-8 Show GitHub Exploit DB Packet Storm
291770 - steven_jones context The _json_decode function in plugins/context_reaction_block.inc in the Context module 6.x-2.x before 6.x-3.2 and 7.x-3.x before 7.x-3.0 for Drupal, when using a version of PHP that does not support t… CWE-94
Code Injection
CVE-2013-4446 2024-11-21 10:55 2013-12-8 Show GitHub Exploit DB Packet Storm