Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 6, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
204031 8.8 重要
Network
オラクル - Oracle Retail Applications の Oracle Retail Service Backbone における RSB Kernel に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-5474 2016-07-28 10:41 2016-07-19 Show GitHub Exploit DB Packet Storm
204032 7.6 重要
Network
オラクル - Oracle Retail Applications の Oracle Retail Service Backbone における Install に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-5475 2016-07-28 10:38 2016-07-19 Show GitHub Exploit DB Packet Storm
204033 8.8 重要
Network
オラクル - Oracle Sun Systems Products Suite の ILOM における LUMAIN に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-5457 2016-07-28 10:07 2016-07-19 Show GitHub Exploit DB Packet Storm
204034 3.1
Network
オラクル - Oracle Supply Chain Products Suite の Oracle Agile PLM における File Folders / Attachment に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-5473 2016-07-28 10:03 2016-07-19 Show GitHub Exploit DB Packet Storm
204035 9.8 緊急
Network
Mozilla Foundation
オラクル
- Mozilla Firefox などの製品で使用される Network Security Services におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2015-7182 2016-07-27 16:58 2015-11-3 Show GitHub Exploit DB Packet Storm
204036 5 警告 アップル
日立
Apache Software Foundation
オラクル
- Apache HTTP Server のチャンク形式転送コーディングの実装における HTTP リクエストスマグリング攻撃を実行される脆弱性 CWE-20
CWE-Other
CVE-2015-3183 2016-07-27 16:38 2015-07-15 Show GitHub Exploit DB Packet Storm
204037 8.5 危険 アップル
日立
オラクル
OpenBSD
- Openssh の sshd の auth2-chall.c 内の kbdint_next_device 関数における総当り攻撃を実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-5600 2016-07-27 16:30 2015-07-18 Show GitHub Exploit DB Packet Storm
204038 5 警告 アップル
Apache Software Foundation
オラクル
- Apache HTTP Server の mod_lua モジュールにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2015-0228 2016-07-27 16:25 2015-02-4 Show GitHub Exploit DB Packet Storm
204039 4.6 警告 GNU Project
オラクル
- GNU Bash の lib/sh/eaccess.c におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-3410 2016-07-27 16:16 2012-07-9 Show GitHub Exploit DB Packet Storm
204040 4.7 警告 Xen プロジェクト
Linux
オラクル
- Linux Kernel の KVM サブシステムおよび Xen におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2015-8104 2016-07-27 16:14 2015-11-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 6, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
290871 - igniterealtime smack The ServerTrustManager component in the Ignite Realtime Smack XMPP API before 4.0.0-rc1 does not verify basicConstraints and nameConstraints in X.509 certificate chains from SSL servers, which allows… CWE-295
Improper Certificate Validation 
CVE-2014-0363 2024-11-21 11:01 2014-04-30 Show GitHub Exploit DB Packet Storm
290872 - apache commons_beanutils
struts
Apache Commons BeanUtils, as distributed in lib/commons-beanutils-1.8.0.jar in Apache Struts 1.x through 1.3.10 and in other products requiring commons-beanutils through 1.9.2, does not suppress the … CWE-20
 Improper Input Validation 
CVE-2014-0114 2024-11-21 11:01 2014-04-30 Show GitHub Exploit DB Packet Storm
290873 - f5 nginx The SPDY implementation in the ngx_http_spdy_module module in nginx 1.5.10 before 1.5.11, when running on a 32-bit platform, allows remote attackers to execute arbitrary code via a crafted request. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-0088 2024-11-21 11:01 2014-04-29 Show GitHub Exploit DB Packet Storm
290874 - apache struts CookieInterceptor in Apache Struts before 2.3.20, when a wildcard cookiesName value is used, does not properly restrict access to the getClass method, which allows remote attackers to "manipulate" th… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0113 2024-11-21 11:01 2014-04-29 Show GitHub Exploit DB Packet Storm
290875 - apache struts ParametersInterceptor in Apache Struts before 2.3.20 does not properly restrict access to the getClass method, which allows remote attackers to "manipulate" the ClassLoader and execute arbitrary code… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0112 2024-11-21 11:01 2014-04-29 Show GitHub Exploit DB Packet Storm
290876 - openstack
canonical
opensuse
neutron
ubuntu_linux
opensuse
The openvswitch-agent process in OpenStack Neutron 2013.1 before 2013.2.4 and 2014.1 before 2014.1.1 allows remote authenticated users to bypass security group restrictions via an invalid CIDR in a s… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0187 2024-11-21 11:01 2014-04-28 Show GitHub Exploit DB Packet Storm
290877 - zarafa zarafa The ValidateUserLogon function in provider/libserver/ECSession.cpp in Zarafa 7.1.8, 6.20.0, and earlier, when using certain build conditions, allows remote attackers to cause a denial of service (cra… CWE-20
 Improper Input Validation 
CVE-2014-0079 2024-11-21 11:01 2014-04-28 Show GitHub Exploit DB Packet Storm
290878 - zarafa zarafa The ValidateUserLogon function in provider/libserver/ECSession.cpp in Zarafa 5.00 before 7.1.8 beta2 allows remote attackers to cause a denial of service (crash) via vectors related to "a NULL pointe… CWE-20
 Improper Input Validation 
CVE-2014-0037 2024-11-21 11:01 2014-04-28 Show GitHub Exploit DB Packet Storm
290879 - openstack image_registry_and_delivery_service_\(glance\)
icehouse
The Sheepdog backend in OpenStack Image Registry and Delivery Service (Glance) 2013.2 before 2013.2.4 and icehouse before icehouse-rc2 allows remote authenticated users with permission to insert or m… CWE-20
 Improper Input Validation 
CVE-2014-0162 2024-11-21 11:01 2014-04-28 Show GitHub Exploit DB Packet Storm
290880 - linux
redhat
suse
opensuse
linux_kernel
enterprise_linux_server
linux_enterprise_server
evergreen
linux_enterprise_real_time_extension
enterprise_linux_desktop
suse_linux_enterprise_server
The Netlink implementation in the Linux kernel through 3.14.1 does not provide a mechanism for authorizing socket operations based on the opener of a socket, which allows local users to bypass intend… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0181 2024-11-21 11:01 2014-04-27 Show GitHub Exploit DB Packet Storm