Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 7, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
204221 7.3 重要
Network
IBM - IBM Security Identity Manager 仮想アプライアンスにおけるアクセス権を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2016-0330 2016-07-21 15:29 2016-06-20 Show GitHub Exploit DB Packet Storm
204222 5.4 警告
Network
IBM - IBM BigFix Platform におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-0269 2016-07-21 15:29 2016-07-8 Show GitHub Exploit DB Packet Storm
204223 7.5 重要
Network
IBM - IBM Tivoli Directory Server および IBM Security Directory Server の Web 管理ツールにおけるディレクトリトラバーサルの脆弱性 CWE-200
情報漏えい
CVE-2015-1977 2016-07-21 15:29 2015-02-19 Show GitHub Exploit DB Packet Storm
204224 8.8 重要
Network
Accela, Inc. - Accela Civic Platform Citizen Access portal における任意のコードを実行される脆弱性 CWE-Other
CWE-Other
CVE-2016-5661 2016-07-20 17:24 2016-07-13 Show GitHub Exploit DB Packet Storm
204225 6.1 警告
Network
Accela, Inc. - Accela Civic Platform Citizen Access portal の AttachmentsList.aspx におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-5660 2016-07-20 17:24 2016-07-13 Show GitHub Exploit DB Packet Storm
204226 9.8 緊急
Network
Debian
レッドハット
- libvirt における認証を回避される脆弱性 CWE-Other
その他
CVE-2016-5008 2016-07-20 16:52 2016-06-30 Show GitHub Exploit DB Packet Storm
204227 4.9 警告
Network
フォーティネット - Fortinet FortiWeb におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2016-5092 2016-07-20 15:56 2016-05-26 Show GitHub Exploit DB Packet Storm
204228 8.8 重要
Network
フォーティネット - Fortinet FortiWeb におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2016-4066 2016-07-20 15:56 2016-06-23 Show GitHub Exploit DB Packet Storm
204229 4.3 警告
Physics
シトリックス・システムズ - Citrix Worx Home for iOS および XenMobile MDX Toolkit for iOS におけるアプリケーション内の Apple Touch ID 認証を回避される脆弱性 CWE-Other
その他
CVE-2016-5109 2016-07-20 15:50 2016-06-22 Show GitHub Exploit DB Packet Storm
204230 8.4 重要
Local
KDE project
openSUSE project
- KDE Frameworks の kinit における他のユーザの X11 Cookie を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-3100 2016-07-20 15:42 2016-06-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 7, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
354051 - oracle database_server Unspecified vulnerability in the Oracle OLAP component in Oracle Database Server 10.1.0.4 (10g) allows remote authenticated attackers to affect availability via unknown vectors, aka DB02. NVD-CWE-noinfo
CVE-2005-4884 2010-01-26 14:00 2010-01-26 Show GitHub Exploit DB Packet Storm
354052 - jce-tech php_calendars_script install.php in JCE-Tech PHP Calendars, downloaded 20100121, allows remote attackers to bypass intended access restrictions and modify application settings via a direct request. NOTE: this is only a … CWE-16
CWE-264
Configuration
Permissions, Privileges, and Access Controls
CVE-2010-0380 2010-01-25 14:00 2010-01-23 Show GitHub Exploit DB Packet Storm
354053 - phpmyspace phpmyspace SQL injection vulnerability in modules/arcade/index.php in PHP MySpace Gold Edition 8.0 and 8.10 allows remote attackers to execute arbitrary SQL commands via the gid parameter in a show_stats action… CWE-89
SQL Injection
CVE-2010-0381 2010-01-25 14:00 2010-01-23 Show GitHub Exploit DB Packet Storm
354054 - phpmyspace phpmyspace SQL injection vulnerability in modules/arcade/index.php in PHP MySpace Gold Edition 8.0 and 8.10 allows remote attackers to execute arbitrary SQL commands via the gid parameter in a play_game action.… CWE-89
SQL Injection
CVE-2010-0377 2010-01-23 03:30 2010-01-22 Show GitHub Exploit DB Packet Storm
354055 - sambar sambar_server search.dll Sambar ISAPI Search utility in Sambar Server 4.4 Beta 3 allows remote attackers to read arbitrary directories by specifying the directory in the query parameter. NVD-CWE-Other
CVE-2000-0835 2010-01-16 14:00 2000-11-14 Show GitHub Exploit DB Packet Storm
354056 - webtrends reporting_center WebTrends Reporting Center 4.0d allows remote attackers to determine the real path of the web server via a GET request to get_od_toc.pl with an empty Profile parameter, which leaks the pathname in an… CWE-200
Information Exposure
CVE-2002-0596 2010-01-16 14:00 2002-06-18 Show GitHub Exploit DB Packet Storm
354057 - tftpd32 tftpd32 tftpd32 2.50 and 2.50.2 allows remote attackers to read or write arbitrary files via a full pathname in GET and PUT requests. CWE-264
Permissions, Privileges, and Access Controls
CVE-2002-2353 2009-11-24 14:15 2002-12-31 Show GitHub Exploit DB Packet Storm
354058 - jean-jacques_sarton mtink Buffer overflow in MTink in the printer-filters-utils package allows local users to execute arbitrary code via a long HOME environment variable. NVD-CWE-Other
CVE-2005-4604 2009-11-12 14:51 2005-12-31 Show GitHub Exploit DB Packet Storm
354059 - openoffice openoffice OpenOffice.org 2.0 and earlier, when hyperlinks has been disabled, does not prevent the user from clicking the WWW-browser button in the Hyperlink dialog, which makes it easier for attackers to trick… NVD-CWE-Other
CVE-2005-4636 2009-11-12 14:51 2005-12-31 Show GitHub Exploit DB Packet Storm
354060 - dec dec_openvms Vulnerability in Monitor utility (SYS$SHARE:SPISHR.EXE) in VMS 5.0 through 5.4-2 allows local users to gain privileges. NVD-CWE-Other
CVE-1999-1395 2009-10-31 13:02 1992-11-17 Show GitHub Exploit DB Packet Storm