Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
203721 5.6 警告
Network
Apache Software Foundation - Apache Struts において任意のコードを実行可能な脆弱性 CWE-20
不適切な入力確認
CVE-2016-4438 2016-08-3 16:11 2016-06-20 Show GitHub Exploit DB Packet Storm
203722 7.1 重要
Network
西日本電信電話株式会社
東日本電信電話株式会社
- 複数のひかり電話ルータおよびひかり電話対応機器におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2016-1228 2016-08-3 16:02 2016-06-27 Show GitHub Exploit DB Packet Storm
203723 6.8 警告
Adjacent
西日本電信電話株式会社
東日本電信電話株式会社
- 複数のひかり電話ルータおよびひかり電話対応機器における OS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2016-1227 2016-08-3 16:02 2016-06-27 Show GitHub Exploit DB Packet Storm
203724 4.7 警告
Network
日立 - Hitachi Tuning Manager におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
- 2016-08-3 15:25 2016-05-16 Show GitHub Exploit DB Packet Storm
203725 3.1
Network
日立 - Hitachi Command Suite 製品における情報漏えいに関する脆弱性 CWE-noinfo
情報不足
- 2016-08-3 15:20 2016-05-16 Show GitHub Exploit DB Packet Storm
203726 8.8 重要
Network
libbpg - libbpg にメモリ境界外への書き込みを行う脆弱性 CWE-119
CWE-Other
CVE-2016-5637 2016-08-3 15:06 2016-07-12 Show GitHub Exploit DB Packet Storm
203727 6.1 警告
Network
QNAP Systems - QNAP QTS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-5664 2016-08-3 14:54 2016-06-27 Show GitHub Exploit DB Packet Storm
203728 7.5 重要
Network
フォーティネット
Cavium
- Cavium Software Development Kit の RSA-CRT の実装における RSA 秘密鍵を取得される脆弱性 CWE-200
情報漏えい
CVE-2015-5738 2016-08-3 14:39 2015-12-14 Show GitHub Exploit DB Packet Storm
203729 9.8 緊急
Network
- 複数の OS 上で稼動する HPE Operations Manager の AdminUI における任意のコマンドを実行される脆弱性 CWE-Other
その他
CVE-2016-4373 2016-08-3 11:26 2016-07-25 Show GitHub Exploit DB Packet Storm
203730 5 警告 ヒューレット・パッカード
日本電気
Apache Software Foundation
- Apache Tomcat の HTTP Digest Access Authentication 実装における完全性保護の要求を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-5062 2016-08-2 17:34 2012-01-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 4, 2026, 4:17 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291511 - wireshark wireshark Unspecified vulnerability in the LDAP dissector in Wireshark 1.8.x before 1.8.10 and 1.10.x before 1.10.2 allows remote attackers to cause a denial of service (application crash) via a crafted packet. NVD-CWE-noinfo
CVE-2013-5722 2024-11-21 10:58 2013-09-16 Show GitHub Exploit DB Packet Storm
291512 - wireshark wireshark epan/dissectors/packet-assa_r3.c in the ASSA R3 dissector in Wireshark 1.8.x before 1.8.10 and 1.10.x before 1.10.2 allows remote attackers to cause a denial of service (infinite loop) via a crafted … CWE-399
 Resource Management Errors
CVE-2013-5719 2024-11-21 10:58 2013-09-16 Show GitHub Exploit DB Packet Storm
291513 - wireshark wireshark Buffer overflow in the RTPS dissector in Wireshark 1.8.x before 1.8.10 and 1.10.x before 1.10.2 allows remote attackers to cause a denial of service (application crash) via a crafted packet. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-5720 2024-11-21 10:58 2013-09-16 Show GitHub Exploit DB Packet Storm
291514 - wireshark wireshark The dissect_nbap_T_dCH_ID function in epan/dissectors/packet-nbap.c in the NBAP dissector in Wireshark 1.8.x before 1.8.10 and 1.10.x before 1.10.2 does not restrict the dch_id value, which allows re… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-5718 2024-11-21 10:58 2013-09-16 Show GitHub Exploit DB Packet Storm
291515 - wireshark wireshark The Bluetooth HCI ACL dissector in Wireshark 1.10.x before 1.10.2 does not properly maintain a certain free list, which allows remote attackers to cause a denial of service (application crash) via a … CWE-20
 Improper Input Validation 
CVE-2013-5717 2024-11-21 10:58 2013-09-16 Show GitHub Exploit DB Packet Storm
291516 - intel qs77_chipset
trusted_execution_technology_sinit_authenticated_code_module
q67_express_chipset
c206_chipset
qm77_chipset
mobile_intel_qs67_chipset
mobile_intel_qm67_chipset
c216_c…
Unspecified vulnerability in the Intel Trusted Execution Technology (TXT) SINIT Authenticated Code Modules (ACM) before 1.2, as used by the Intel QM77, QS77, Q77 Express, C216, Q67 Express, C202, C20… NVD-CWE-noinfo
CVE-2013-5740 2024-11-21 10:58 2013-09-13 Show GitHub Exploit DB Packet Storm
291517 - debian phpbb3 Phpbb3 before 3.0.11-4 for Debian GNU/Linux uses world-writable permissions for cache files, which allows local users to modify the file contents via standard filesystem write operations. CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-5724 2024-11-21 10:58 2013-09-12 Show GitHub Exploit DB Packet Storm
291518 - sap netweaver SQL injection vulnerability in SAP NetWeaver 7.30 allows remote attackers to execute arbitrary SQL commands via unspecified vectors, related to "ABAD0_DELETE_DERIVATION_TABLE." CWE-89
SQL Injection
CVE-2013-5723 2024-11-21 10:58 2013-09-12 Show GitHub Exploit DB Packet Storm
291519 - wordpress wordpress The default configuration of WordPress before 3.6.1 does not prevent uploads of .swf and .exe files, which might make it easier for remote authenticated users to conduct cross-site scripting (XSS) at… CWE-79
Cross-site Scripting
CVE-2013-5739 2024-11-21 10:58 2013-09-12 Show GitHub Exploit DB Packet Storm
291520 - wordpress wordpress The get_allowed_mime_types function in wp-includes/functions.php in WordPress before 3.6.1 does not require the unfiltered_html capability for uploads of .htm and .html files, which might make it eas… CWE-20
 Improper Input Validation 
CVE-2013-5738 2024-11-21 10:58 2013-09-12 Show GitHub Exploit DB Packet Storm