Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
204381 8.8 重要
Network
シスコシステムズ - Cisco Unified Contact Center Express で使用される Unified Intelligence Center におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2016-6427 2016-10-12 16:47 2016-10-5 Show GitHub Exploit DB Packet Storm
204382 6.1 警告
Network
シスコシステムズ - Cisco Unified Contact Center Express で使用される Unified Intelligence Center におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-6425 2016-10-12 16:47 2016-10-5 Show GitHub Exploit DB Packet Storm
204383 6.5 警告
Adjacent
シスコシステムズ - Cisco Adaptive Security Appliance ソフトウェアの DHCP リレーの実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2016-6424 2016-10-12 16:47 2016-10-5 Show GitHub Exploit DB Packet Storm
204384 7.5 重要
Network
シスコシステムズ - Cisco 7600 および Catalyst 6500 デバイスの Supervisor Engine 32 および 720 モジュール上で稼動する Cisco IOS におけるアクセス制限を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2016-6422 2016-10-12 16:47 2016-10-5 Show GitHub Exploit DB Packet Storm
204385 6.1 警告
Network
IBM - IBM Sterling Secure Proxy の構成マネージャにおける重要な情報を取得される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-6027 2016-10-12 15:03 2016-09-29 Show GitHub Exploit DB Packet Storm
204386 5.3 警告
Adjacent
IBM - IBM Sterling Secure Proxy の構成マネージャにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-6026 2016-10-12 15:03 2016-09-29 Show GitHub Exploit DB Packet Storm
204387 5.9 警告
Local
IBM - IBM Sterling Secure Proxy の構成マネージャにおけるアクセス権を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-6025 2016-10-12 15:03 2016-09-29 Show GitHub Exploit DB Packet Storm
204388 7.5 重要
Network
IBM - IBM Sterling Secure Proxy の構成マネージャにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2016-6023 2016-10-12 15:03 2016-09-29 Show GitHub Exploit DB Packet Storm
204389 9.8 緊急
Network
Katie Seaborn - Wordpress 用 Zotpress プラグインの zp_get_account() における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2016-1000217 2016-10-12 11:46 2016-09-9 Show GitHub Exploit DB Packet Storm
204390 9.1 緊急
Network
contus-video-comments project - WordPress 用 contus-video-comments プラグインにおける未認証のリモートの .jpg ファイルをアップロードされる脆弱性 CWE-22
パス・トラバーサル
CVE-2016-1000112 2016-10-12 11:46 2016-06-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
290081 7.5 HIGH
Network
wolfssl wolfssl wolfssl before 3.2.0 has a server certificate that is not properly authorized for server authentication. CWE-287
Improper Authentication
CVE-2014-2904 2024-11-21 11:07 2019-11-22 Show GitHub Exploit DB Packet Storm
290082 7.5 HIGH
Network
wolfssl wolfssl wolfssl before 3.2.0 does not properly authorize CA certificate for signing other certificates. CWE-295
Improper Certificate Validation 
CVE-2014-2902 2024-11-21 11:07 2019-11-22 Show GitHub Exploit DB Packet Storm
290083 7.5 HIGH
Network
wolfssl wolfssl wolfssl before 3.2.0 does not properly issue certificates for a server's hostname. CWE-295
Improper Certificate Validation 
CVE-2014-2901 2024-11-21 11:07 2019-11-22 Show GitHub Exploit DB Packet Storm
290084 9.1 CRITICAL
Network
linux
google
linux_kernel
chrome_os
In kernel/compat.c in the Linux kernel before 3.17, as used in Google Chrome OS and other products, there is a possible out-of-bounds read. restart_syscall uses uninitialized data when restarting com… CWE-125
Out-of-bounds Read
CVE-2014-3180 2024-11-21 11:07 2019-11-7 Show GitHub Exploit DB Packet Storm
290085 9.8 CRITICAL
Network
ezpz-one-click-backup_project ezpz-one-click-backup The EZPZ One Click Backup (ezpz-one-click-backup) plugin 12.03.10 and earlier for WordPress allows remote attackers to execute arbitrary commands via the cmd parameter to functions/ezpz-archive-cmd.p… CWE-77
Command Injection
CVE-2014-3114 2024-11-21 11:07 2018-04-11 Show GitHub Exploit DB Packet Storm
290086 7.1 HIGH
Local
truecrypt_project truecrypt Multiple integer overflows in TrueCrypt 7.1a allow local users to (1) obtain sensitive information via vectors involving a crafted item->OriginalLength value in the MainThreadProc function in Encrypt… CWE-200
CWE-190
CWE-400
Information Exposure
 Integer Overflow or Wraparound
 Uncontrolled Resource Consumption
CVE-2014-2885 2024-11-21 11:07 2018-03-20 Show GitHub Exploit DB Packet Storm
290087 3.3 LOW
Local
truecrypt_project truecrypt The ProcessVolumeDeviceControlIrp function in Ntdriver.c in TrueCrypt 7.1a allows local users to bypass access restrictions and obtain sensitive information about arbitrary files via a (1) TC_IOCTL_O… CWE-200
CWE-284
Information Exposure
Improper Access Control
CVE-2014-2884 2024-11-21 11:07 2018-03-20 Show GitHub Exploit DB Packet Storm
290088 9.8 CRITICAL
Network
seagate blackarmor_nas_220_firmware
blackarmor_nas_110_firmware
Seagate BlackArmor NAS allows remote attackers to execute arbitrary code via the session parameter to localhost/backupmgt/localJob.php or the auth_name parameter to localhost/backupmgmt/pre_connect_c… CWE-20
 Improper Input Validation 
CVE-2014-3206 2024-11-21 11:07 2018-02-24 Show GitHub Exploit DB Packet Storm
290089 9.8 CRITICAL
Network
seagate blackarmor_nas_220_firmware
blackarmor_nas_110_firmware
backupmgt/pre_connect_check.php in Seagate BlackArmor NAS contains a hard-coded password of '!~@##$$%FREDESWWSED' for a backdoor user. CWE-798
 Use of Hard-coded Credentials
CVE-2014-3205 2024-11-21 11:07 2018-02-24 Show GitHub Exploit DB Packet Storm
290090 7.8 HIGH
Local
fishshell
fedoraproject
fish
fedora
fish before 2.1.1 allows local users to write to arbitrary files via a symlink attack on (1) /tmp/fishd.log.%s, (2) /tmp/.pac-cache.$USER, (3) /tmp/.yum-cache.$USER, or (4) /tmp/.rpm-cache.$USER. CWE-59
Link Following
CVE-2014-3219 2024-11-21 11:07 2018-02-10 Show GitHub Exploit DB Packet Storm