Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
204081 7.8 重要
Local
Linux
SUSE
Canonical
- Linux Kernel の arch/x86/mm/mmap.c の arch_pick_mmap_layout 関数における ADDR_NO_RANDOMIZE フラグの制限を無効にされる脆弱性 CWE-Other
その他
CVE-2016-3672 2016-10-28 16:59 2016-03-11 Show GitHub Exploit DB Packet Storm
204082 4.6 警告
Physics
SUSE
Linux
- Linux Kernel の drivers/input/tablet/wacom_sys.c の wacom_probe 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-3139 2016-10-28 16:59 2016-03-11 Show GitHub Exploit DB Packet Storm
204083 4.6 警告
Physics
Linux
SUSE
Canonical
- Linux Kernel の drivers/usb/serial/digi_acceleport.c の digi_port_init 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-3140 2016-10-28 16:59 2016-04-12 Show GitHub Exploit DB Packet Storm
204084 4.6 警告
Physics
Linux
SUSE
Canonical
- Linux Kernel の drivers/usb/serial/cypress_m8.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-3137 2016-10-28 16:59 2016-04-12 Show GitHub Exploit DB Packet Storm
204085 4.6 警告
Physics
Linux
SUSE
Canonical
- Linux Kernel の drivers/usb/serial/mct_u232.c の mct_u232_msr_to_state 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-3136 2016-10-28 16:59 2016-04-12 Show GitHub Exploit DB Packet Storm
204086 6.2 警告
Local
SUSE
Linux
- Linux Kernel の fs/pipe.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2016-2847 2016-10-28 16:59 2016-01-19 Show GitHub Exploit DB Packet Storm
204087 4.7 警告
Local
レッドハット
openSUSE project
オラクル
- Oracle MySQL の MySQL Server における Server: Federated に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-0642 2016-10-28 16:50 2016-04-19 Show GitHub Exploit DB Packet Storm
204088 2.1 注意 レッドハット
openSUSE project
オラクル
- Oracle MySQL の MySQL Server における Server: General に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-0605 2016-10-28 16:50 2016-01-19 Show GitHub Exploit DB Packet Storm
204089 5.3 警告
Local
Fabrice Bellard
Canonical
- QEMU の megasas_lookup_frame 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-5107 2016-10-28 16:29 2016-05-25 Show GitHub Exploit DB Packet Storm
204090 5.3 警告
Local
Fabrice Bellard
Canonical
- QEMU の hw/scsi/megasas.c の megasas_dcmd_set_properties 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-5106 2016-10-28 16:28 2016-05-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 18, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291671 - cisco ios_xr Cisco IOS XR does not properly throttle ICMPv6 redirect packets, which allows remote attackers to cause a denial of service (IPv4 and IPv6 transit outage) via crafted redirect messages, aka Bug ID CS… CWE-20
 Improper Input Validation 
CVE-2014-2144 2024-11-21 11:05 2014-04-5 Show GitHub Exploit DB Packet Storm
291672 - ca erwin_web_portal Multiple directory traversal vulnerabilities in CA ERwin Web Portal 9.5 allow remote attackers to obtain sensitive information, bypass intended access restrictions, cause a denial of service, or poss… CWE-22
Path Traversal
CVE-2014-2210 2024-11-21 11:05 2014-04-5 Show GitHub Exploit DB Packet Storm
291673 - cisco ios
ios_xe
The IKE implementation in Cisco IOS 15.4(1)T and earlier and IOS XE allows remote attackers to cause a denial of service (security-association drop) via crafted Main Mode packets, aka Bug ID CSCun310… NVD-CWE-noinfo
CVE-2014-2143 2024-11-21 11:05 2014-04-5 Show GitHub Exploit DB Packet Storm
291674 - cisco emergency_responder Multiple open redirect vulnerabilities in Cisco Emergency Responder (ER) 8.6 and earlier allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified p… CWE-20
 Improper Input Validation 
CVE-2014-2117 2024-11-21 11:05 2014-04-5 Show GitHub Exploit DB Packet Storm
291675 - cisco emergency_responder Cisco Emergency Responder (ER) 8.6 and earlier allows remote attackers to inject web pages and modify dynamic content via unspecified parameters, aka Bug ID CSCun37882. CWE-20
 Improper Input Validation 
CVE-2014-2116 2024-11-21 11:05 2014-04-5 Show GitHub Exploit DB Packet Storm
291676 - cisco emergency_responder Multiple cross-site request forgery (CSRF) vulnerabilities in CERUserServlet pages in Cisco Emergency Responder (ER) 8.6 and earlier allow remote attackers to hijack the authentication of arbitrary u… CWE-352
 Origin Validation Error
CVE-2014-2115 2024-11-21 11:05 2014-04-5 Show GitHub Exploit DB Packet Storm
291677 - cisco emergency_responder Cross-site scripting (XSS) vulnerability in UserServlet in Cisco Emergency Responder (ER) 8.6 and earlier allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter, … CWE-79
Cross-site Scripting
CVE-2014-2114 2024-11-21 11:05 2014-04-5 Show GitHub Exploit DB Packet Storm
291678 - cisco security_manager CRLF injection vulnerability in the web framework in Cisco Security Manager 4.2 and earlier allows remote attackers to inject arbitrary HTTP headers and conduct redirection attacks via a crafted URL,… CWE-20
 Improper Input Validation 
CVE-2014-2138 2024-11-21 11:05 2014-04-2 Show GitHub Exploit DB Packet Storm
291679 - cisco web_security_appliance
web_security_virtual_appliance
CRLF injection vulnerability in the web framework in Cisco Web Security Appliance (WSA) 7.7 and earlier allows remote attackers to inject arbitrary HTTP headers and conduct redirection attacks via a … CWE-20
 Improper Input Validation 
CVE-2014-2137 2024-11-21 11:05 2014-04-2 Show GitHub Exploit DB Packet Storm
291680 - cisco unity_connection Cross-site scripting (XSS) vulnerability in the Web Inbox in Cisco Unity Connection 8.6(2a)SU3 and earlier allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter,… CWE-79
Cross-site Scripting
CVE-2014-2125 2024-11-21 11:05 2014-04-2 Show GitHub Exploit DB Packet Storm