Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 6, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
204221 7.3 重要
Network
IBM - IBM Security Identity Manager 仮想アプライアンスにおけるアクセス権を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2016-0330 2016-07-21 15:29 2016-06-20 Show GitHub Exploit DB Packet Storm
204222 5.4 警告
Network
IBM - IBM BigFix Platform におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-0269 2016-07-21 15:29 2016-07-8 Show GitHub Exploit DB Packet Storm
204223 7.5 重要
Network
IBM - IBM Tivoli Directory Server および IBM Security Directory Server の Web 管理ツールにおけるディレクトリトラバーサルの脆弱性 CWE-200
情報漏えい
CVE-2015-1977 2016-07-21 15:29 2015-02-19 Show GitHub Exploit DB Packet Storm
204224 8.8 重要
Network
Accela, Inc. - Accela Civic Platform Citizen Access portal における任意のコードを実行される脆弱性 CWE-Other
CWE-Other
CVE-2016-5661 2016-07-20 17:24 2016-07-13 Show GitHub Exploit DB Packet Storm
204225 6.1 警告
Network
Accela, Inc. - Accela Civic Platform Citizen Access portal の AttachmentsList.aspx におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-5660 2016-07-20 17:24 2016-07-13 Show GitHub Exploit DB Packet Storm
204226 9.8 緊急
Network
Debian
レッドハット
- libvirt における認証を回避される脆弱性 CWE-Other
その他
CVE-2016-5008 2016-07-20 16:52 2016-06-30 Show GitHub Exploit DB Packet Storm
204227 4.9 警告
Network
フォーティネット - Fortinet FortiWeb におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2016-5092 2016-07-20 15:56 2016-05-26 Show GitHub Exploit DB Packet Storm
204228 8.8 重要
Network
フォーティネット - Fortinet FortiWeb におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2016-4066 2016-07-20 15:56 2016-06-23 Show GitHub Exploit DB Packet Storm
204229 4.3 警告
Physics
シトリックス・システムズ - Citrix Worx Home for iOS および XenMobile MDX Toolkit for iOS におけるアプリケーション内の Apple Touch ID 認証を回避される脆弱性 CWE-Other
その他
CVE-2016-5109 2016-07-20 15:50 2016-06-22 Show GitHub Exploit DB Packet Storm
204230 8.4 重要
Local
KDE project
openSUSE project
- KDE Frameworks の kinit における他のユーザの X11 Cookie を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-3100 2016-07-20 15:42 2016-06-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 7, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
354061 - apple mac_os_x Mac OS X 10.3.9 and earlier allows users to install, create, and execute setuid/setgid scripts, contrary to the intended design, which may allow attackers to conduct unauthorized activities with esca… CWE-264
Permissions, Privileges, and Access Controls
CVE-2005-0970 2009-10-14 13:00 2005-05-2 Show GitHub Exploit DB Packet Storm
354062 - sips sips Unspecified vulnerability in Haakon Nilsen simple, integrated publishing system (SIPS) before 0.2.4 has an unknown impact and attack vectors, related to a "grave security fault." NVD-CWE-noinfo
CVE-2000-1241 2009-10-14 13:00 2000-12-31 Show GitHub Exploit DB Packet Storm
354063 - netgear fm114p NETGEAR FM114P allows remote attackers to bypass access restrictions for web sites via a URL that uses the IP address instead of the hostname. CWE-264
Permissions, Privileges, and Access Controls
CVE-2002-1877 2009-10-14 13:00 2002-12-31 Show GitHub Exploit DB Packet Storm
354064 - post_affiliate_pro post_affiliate_pro merchants/index.php in Post Affiliate Pro 2.0.4 and earlier, with magic_quotes_gpc disabled, allows remote attackers to include arbitrary local files via the md parameter, possibly due to a directory… NVD-CWE-Other
CVE-2005-3910 2009-10-9 13:33 2005-11-30 Show GitHub Exploit DB Packet Storm
354065 - babe_logger babe_logger SQL injection vulnerability in Babe Logger 2 allows remote attackers to execute arbitrary SQL commands via the (1) gal parameter to index.php or (2) id parameter to comments.php. NVD-CWE-Other
CVE-2005-3920 2009-10-9 13:33 2005-11-30 Show GitHub Exploit DB Packet Storm
354066 - socketkb socketkb PHP file include vulnerability in SocketKB 1.1.0 and earlier allows remote attackers to include arbitrary local files via the __f parameter. NVD-CWE-Other
CVE-2005-3936 2009-10-9 13:33 2005-12-1 Show GitHub Exploit DB Packet Storm
354067 - softbiz b2b_trading_marketplace_script SQL injection vulnerability in Softbiz B2B Trading Marketplace Script 1.1 and earler allows remote attackers to execute arbitrary SQL commands via the cid parameter in (1) selloffers.php, (2) buyoffe… NVD-CWE-Other
CVE-2005-3937 2009-10-9 13:33 2005-12-1 Show GitHub Exploit DB Packet Storm
354068 - sun java_plug-in The Java Plug-in 1.4.2_03 and 1.4.2_04 controls, and the 1.4.2_03 and 1.4.2_04 <applet> redirector controls, allow remote attackers to cause a denial of service (Internet Explorer crash) by creating … CWE-16
Configuration
CVE-2005-4845 2009-08-28 13:00 2005-12-31 Show GitHub Exploit DB Packet Storm
354069 - gnu mailman Cross-site scripting vulnerabilities in Mailman before 2.0.11 allow remote attackers to execute script via (1) the admin login page, or (2) the Pipermail index summaries. NVD-CWE-Other
CVE-2002-0388 2009-07-22 06:00 2002-06-18 Show GitHub Exploit DB Packet Storm
354070 - wowbb wowbb_web_forum Multiple SQL injection vulnerabilities in WowBB Forum 1.61 allow remote attackers to execute arbitrary SQL commands via the (1) sort_by or (2) page parameters to view_user.php, or the (3) forum_id pa… NVD-CWE-Other
CVE-2004-2181 2009-06-25 13:25 2004-12-31 Show GitHub Exploit DB Packet Storm