Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
203851 7.8 重要
Local
マイクロソフト - 複数の Microsoft Windows 製品のカーネルモードドライバにおける権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3376 2016-10-18 16:56 2016-10-11 Show GitHub Exploit DB Packet Storm
203852 7.8 重要
Local
マイクロソフト - 複数の Microsoft Windows 製品のトランザクションマネージャのカーネルモードドライバにおける権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3341 2016-10-18 16:56 2016-10-11 Show GitHub Exploit DB Packet Storm
203853 7.8 重要
Local
マイクロソフト - 複数の Microsoft Windows 製品のカーネルモードドライバにおける権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3266 2016-10-18 16:56 2016-10-11 Show GitHub Exploit DB Packet Storm
203854 7.5 重要
Network
マイクロソフト - Microsoft Edge の Chakra JavaScript エンジンにおける任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-7194 2016-10-18 15:26 2016-10-11 Show GitHub Exploit DB Packet Storm
203855 7.5 重要
Network
マイクロソフト - Microsoft Edge の Chakra JavaScript エンジンにおける任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-7190 2016-10-18 15:26 2016-10-11 Show GitHub Exploit DB Packet Storm
203856 7.5 重要
Network
マイクロソフト - Microsoft Edge の Chakra JavaScript エンジンにおける任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-7189 2016-10-18 15:26 2016-10-11 Show GitHub Exploit DB Packet Storm
203857 5.3 警告
Network
マイクロソフト - Microsoft Edge の Edge Content Security Policy 機能におけるアクセス制限を回避される脆弱性 CWE-Other
その他
CVE-2016-3392 2016-10-18 15:26 2016-10-11 Show GitHub Exploit DB Packet Storm
203858 7.5 重要
Network
マイクロソフト - Microsoft Edge の Chakra JavaScript エンジンにおける任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-3389 2016-10-18 15:26 2016-10-11 Show GitHub Exploit DB Packet Storm
203859 7.5 重要
Network
マイクロソフト - Microsoft Edge の Chakra JavaScript エンジンにおける任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-3386 2016-10-18 15:26 2016-10-11 Show GitHub Exploit DB Packet Storm
203860 9.8 緊急
Network
アドビシステムズ - Adobe Flash Player における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2016-6992 2016-10-18 11:11 2016-10-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 12, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
290421 - mcafee asset_manager SQL injection vulnerability in jsp/reports/ReportsAudit.jsp in McAfee Asset Manager 6.6 allows remote authenticated users to execute arbitrary SQL commands via the username of an audit report (aka us… CWE-89
SQL Injection
CVE-2014-2587 2024-11-21 11:06 2014-03-25 Show GitHub Exploit DB Packet Storm
290422 - mcafee cloud_single_sign_on Cross-site scripting (XSS) vulnerability in the login audit form in McAfee Cloud Single Sign On (SSO) allows remote attackers to inject arbitrary web script or HTML via a crafted password. CWE-79
Cross-site Scripting
CVE-2014-2586 2024-11-21 11:06 2014-03-25 Show GitHub Exploit DB Packet Storm
290423 - owncloud owncloud ownCloud before 5.0.15 and 6.x before 6.0.2, when the file_external app is enabled, allows remote authenticated users to mount the local filesystem in the user's ownCloud via the mount configuration. CWE-20
 Improper Input Validation 
CVE-2014-2585 2024-11-21 11:06 2014-03-25 Show GitHub Exploit DB Packet Storm
290424 - moodle moodle mod/assign/externallib.php in Moodle 2.6.x before 2.6.2 does not properly handle assignment web-service parameters, which might allow remote authenticated users to modify grade metadata via unspecifi… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-2572 2024-11-21 11:06 2014-03-24 Show GitHub Exploit DB Packet Storm
290425 - moodle moodle Cross-site scripting (XSS) vulnerability in the quiz_question_tostring function in mod/quiz/editlib.php in Moodle through 2.3.11, 2.4.x before 2.4.9, 2.5.x before 2.5.5, and 2.6.x before 2.6.2 allows… CWE-79
Cross-site Scripting
CVE-2014-2571 2024-11-21 11:06 2014-03-24 Show GitHub Exploit DB Packet Storm
290426 - php
canonical
suse
redhat
debian
oracle
php
ubuntu_linux
linux_enterprise_server
linux_enterprise_software_development_kit
enterprise_linux_desktop
enterprise_linux_workstation
enterprise_linux_server
enterprise_linux_…
The gdImageCreateFromXpm function in gdxpm.c in libgd, as used in PHP 5.4.26 and earlier, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a c… CWE-476
 NULL Pointer Dereference
CVE-2014-2497 2024-11-21 11:06 2014-03-21 Show GitHub Exploit DB Packet Storm
290427 - trojita_project trojita The OpenConnectionTask::handleStateHelper function in Imap/Tasks/OpenConnectionTask.cpp in Trojita before 0.4.1 allows man-in-the-middle attackers to trigger use of cleartext for saving a message int… CWE-200
Information Exposure
CVE-2014-2567 2024-11-21 11:06 2014-03-21 Show GitHub Exploit DB Packet Storm
290428 - sir gnuboard Multiple SQL injection vulnerabilities in bbs/ajax.autosave.php in GNUboard 5.x and possibly earlier allow remote authenticated users to execute arbitrary SQL commands via the (1) subject or (2) cont… CWE-89
SQL Injection
CVE-2014-2339 2024-11-21 11:06 2014-03-19 Show GitHub Exploit DB Packet Storm
290429 - sophos unified_threat_management_software
unified_threat_management
Memory leak in the TCP stack in the kernel in Sophos UTM before 9.109 allows remote attackers to cause a denial of service (memory consumption) via unspecified vectors. CWE-399
 Resource Management Errors
CVE-2014-2537 2024-11-21 11:06 2014-03-19 Show GitHub Exploit DB Packet Storm
290430 - intel
mcafee
expressway_cloud_access_360
cloud_identity_manager
cloud_single_sign_on
Directory traversal vulnerability in McAfee Cloud Identity Manager 3.0, 3.1, and 3.5.1, McAfee Cloud Single Sign On (MCSSO) before 4.0.1, and Intel Expressway Cloud Access 360-SSO 2.1 and 2.5 allows … CWE-22
Path Traversal
CVE-2014-2536 2024-11-21 11:06 2014-03-19 Show GitHub Exploit DB Packet Storm