Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 11, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
204281 7.8 重要
Local
Linux - Linux Kernel の net/socket.c における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-2686 2016-09-1 17:17 2015-03-26 Show GitHub Exploit DB Packet Storm
204282 7.8 重要
Local
Debian
Canonical
OpenBSD
- OpenSSH の sshd の session.c 内の do_setup_env 関数における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-8325 2016-09-1 17:10 2015-11-24 Show GitHub Exploit DB Packet Storm
204283 5.4 警告
Network
DNN - DotNetNuke のユーザプロフィールの経歴セクションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-7119 2016-09-1 16:10 2016-03-16 Show GitHub Exploit DB Packet Storm
204284 8.8 重要
Network
NUUO INC.
ネットギア
- NUUO NVRmini 2 および NETGEAR ReadyNAS Surveillance の cgi-bin/cgi_main におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-5680 2016-09-1 16:07 2016-08-4 Show GitHub Exploit DB Packet Storm
204285 8.8 重要
Network
NUUO INC.
ネットギア
- NUUO NVRmini 2 および NETGEAR ReadyNAS Surveillance の cgi-bin/cgi_main における任意のコマンドを実行される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2016-5679 2016-09-1 16:07 2016-08-4 Show GitHub Exploit DB Packet Storm
204286 9.8 緊急
Network
NUUO INC. - NUUO NVRmini 2 および NVRsolo における管理アクセス権を取得される脆弱性 CWE-Other
その他
CVE-2016-5678 2016-09-1 16:07 2016-08-4 Show GitHub Exploit DB Packet Storm
204287 7.5 重要
Network
NUUO INC.
ネットギア
- 複数の NUUO 製品および NETGEAR ReadyNAS Surveillance における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-5677 2016-09-1 16:07 2016-08-4 Show GitHub Exploit DB Packet Storm
204288 7.5 重要
Network
NUUO INC.
ネットギア
- 複数の NUUO 製品および NETGEAR ReadyNAS Surveillance の cgi-bin/cgi_system における管理者パスワードをリセットされる脆弱性 CWE-Other
その他
CVE-2016-5676 2016-09-1 16:07 2016-08-4 Show GitHub Exploit DB Packet Storm
204289 9.8 緊急
Network
NUUO INC.
ネットギア
- 複数の NUUO 製品および NETGEAR ReadyNAS Surveillance の handle_daylightsaving.php における任意の PHP コードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2016-5675 2016-09-1 16:07 2016-08-4 Show GitHub Exploit DB Packet Storm
204290 9.8 緊急
Network
NUUO INC.
ネットギア
- 複数の NUUO 製品および NETGEAR ReadyNAS Surveillance の __debugging_center_utils___.php における任意の PHP コードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2016-5674 2016-09-1 16:07 2016-08-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 11, 2026, 5:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
290321 - cisco prime_infrastructure Multiple cross-site scripting (XSS) vulnerabilities in INSERT pages in Cisco Prime Infrastructure allow remote attackers to inject arbitrary web script or HTML via unspecified parameters, aka Bug ID … CWE-79
Cross-site Scripting
CVE-2014-2153 2024-11-21 11:05 2015-02-12 Show GitHub Exploit DB Packet Storm
290322 - cisco prime_infrastructure Cross-site request forgery (CSRF) vulnerability in the INSERT page in Cisco Prime Infrastructure (PI) allows remote attackers to hijack the authentication of arbitrary users, aka Bug ID CSCun21868. CWE-352
 Origin Validation Error
CVE-2014-2152 2024-11-21 11:05 2015-02-12 Show GitHub Exploit DB Packet Storm
290323 - cisco prime_infrastructure The web interface in Cisco Prime Infrastructure 2.1 and earlier does not properly restrict use of IFRAME elements, which makes it easier for remote attackers to conduct clickjacking attacks and unspe… CWE-20
 Improper Input Validation 
CVE-2014-2147 2024-11-21 11:05 2015-02-12 Show GitHub Exploit DB Packet Storm
290324 - linuxmint
gnome
canonical
linux_mint
gtk
ubuntu
GTK+ 3.10.9 and earlier, as used in cinnamon-screensaver, gnome-screensaver, and other applications, allows physically proximate attackers to bypass the lock screen by pressing the menu button. CWE-284
Improper Access Control
CVE-2014-1949 2024-11-21 11:05 2015-01-17 Show GitHub Exploit DB Packet Storm
290325 - plogger plogger Plogger 1.0 RC1 and earlier, when the Lucid theme is used, does not assign new values for certain codes, which makes it easier for remote attackers to bypass the CAPTCHA protection mechanism via a se… CWE-254
 7PK - Security Features
CVE-2014-2224 2024-11-21 11:05 2014-12-30 Show GitHub Exploit DB Packet Storm
290326 - videowhisper videowhisper_live_streaming_integration The error-handling feature in (1) bp.php, (2) videowhisper_streaming.php, and (3) ls/rtmp.inc.php in the VideoWhisper Live Streaming Integration plugin before 4.29.5 for WordPress allows remote attac… CWE-200
Information Exposure
CVE-2014-1908 2024-11-21 11:05 2014-12-30 Show GitHub Exploit DB Packet Storm
290327 - videowhisper videowhisper_live_streaming_integration Unrestricted file upload vulnerability in ls/vw_snapshots.php in the VideoWhisper Live Streaming Integration plugin before 4.29.5 for WordPress allows remote attackers to execute arbitrary PHP code b… CWE-77
Command Injection
CVE-2014-1905 2024-11-21 11:05 2014-12-30 Show GitHub Exploit DB Packet Storm
290328 - facebook hiphop_virtual_machine Facebook HipHop Virtual Machine (HHVM) before 3.1.0 does not drop supplemental group memberships within hphp/util/capability.cpp and hphp/util/light-process.cpp, which allows remote attackers to bypa… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-2209 2024-11-21 11:05 2014-12-29 Show GitHub Exploit DB Packet Storm
290329 - facebook hiphop_virtual_machine CRLF injection vulnerability in the LightProcess protocol implementation in hphp/util/light-process.cpp in Facebook HipHop Virtual Machine (HHVM) before 2.4.2 allows remote attackers to execute arbit… CWE-94
Code Injection
CVE-2014-2208 2024-11-21 11:05 2014-12-29 Show GitHub Exploit DB Packet Storm
290330 - telerik ui_for_asp.net_ajax Absolute path traversal vulnerability in the RadAsyncUpload control in the RadControls in Telerik UI for ASP.NET AJAX before Q3 2012 SP2 allows remote attackers to write to arbitrary files, and conse… CWE-22
Path Traversal
CVE-2014-2217 2024-11-21 11:05 2014-12-26 Show GitHub Exploit DB Packet Storm