Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 23, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
204921 5.3 警告
Local
Fabrice Bellard
Canonical
- QEMU の hw/scsi/megasas.c の megasas_dcmd_set_properties 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-5106 2016-10-28 16:28 2016-05-25 Show GitHub Exploit DB Packet Storm
204922 4.1 警告
Local
Fabrice Bellard
Canonical
- QEMU の hw/scsi/megasas.c の megasas_dcmd_cfg_read 関数におけるホストメモリを読まれる脆弱性 CWE-200
情報漏えい
CVE-2016-5105 2016-10-28 16:28 2016-05-25 Show GitHub Exploit DB Packet Storm
204923 5.3 警告
Local
Fabrice Bellard
Canonical
- QEMU におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-4952 2016-10-28 16:28 2016-05-23 Show GitHub Exploit DB Packet Storm
204924 5.5 警告
Local
Fabrice Bellard
Canonical
- QEMU の hw/scsi/esp.c の get_cmd 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2016-5238 2016-10-28 16:27 2016-05-31 Show GitHub Exploit DB Packet Storm
204925 5.5 警告
Local
Fabrice Bellard
Canonical
- QEMU の hw/scsi/megasas.c の megasas_ctrl_get_info 関数における重要なホストメモリ情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-5337 2016-10-28 16:27 2016-06-7 Show GitHub Exploit DB Packet Storm
204926 7.8 重要
Local
Fabrice Bellard
Canonical
- QEMU の hw/scsi/esp.c の esp_reg_read および esp_reg_write 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-5338 2016-10-28 16:27 2016-06-6 Show GitHub Exploit DB Packet Storm
204927 7.8 重要
Local
Fabrice Bellard
Canonical
オラクル
- QEMU の block/iscsi.c の iscsi_aio_ioctl 関数におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-5126 2016-10-28 16:26 2016-05-24 Show GitHub Exploit DB Packet Storm
204928 6 警告
Local
Fabrice Bellard
Canonical
- QEMU の hw/display/vmware_vga.c の vmsvga_fifo_read_raw 関数における重要なホストメモリ情報を取得される脆弱性 CWE-119
バッファエラー
CVE-2016-4454 2016-10-28 16:26 2016-05-30 Show GitHub Exploit DB Packet Storm
204929 4.4 警告
Local
Fabrice Bellard
Canonical
- QEMU の hw/display/vmware_vga.c の vmsvga_fifo_run 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2016-4453 2016-10-28 16:25 2016-05-30 Show GitHub Exploit DB Packet Storm
204930 6 警告
Local
Fabrice Bellard
Canonical
- QEMU の 53C9X Fast SCSI Controller サポートの hw/scsi/esp.c の get_cmd 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2016-4441 2016-10-28 16:25 2016-05-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 23, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
348961 - ibm websphere_application_server IBM WebSphere Application Server 6.0.2 before FixPack 3 allows remote attackers to bypass authentication for the Welcome Page via a request to the default context root. NVD-CWE-Other
CVE-2006-2342 2017-07-20 10:31 2006-05-13 Show GitHub Exploit DB Packet Storm
348962 - adventnet manageengine_opmanager Cross-site scripting (XSS) vulnerability in Search.do in ManageEngine OpManager 6.0 allows remote attackers to inject arbitrary web script or HTML via the searchTerm parameter. NOTE: the provenance … NVD-CWE-Other
CVE-2006-2343 2017-07-20 10:31 2006-05-13 Show GitHub Exploit DB Packet Storm
348963 - ajax_softwares alipager SQL injection vulnerability in inc/elementz.php in AliPAGER 1.5, with magic_quotes_gpc disabled, allows remote attackers to execute arbitrary SQL commands via the ubild parameter. NVD-CWE-Other
CVE-2006-2344 2017-07-20 10:31 2006-05-13 Show GitHub Exploit DB Packet Storm
348964 - roostercode_ajax_softwares alipager Cross-site scripting (XSS) vulnerability in inc/elementz.php in AliPAGER 1.5 allows remote attackers to inject arbitrary web script or HTML via the ubild parameter. NOTE: the provenance of this info… NVD-CWE-Other
CVE-2006-2345 2017-07-20 10:31 2006-05-13 Show GitHub Exploit DB Packet Storm
348965 - inter7 vpopmail_\(vchkpw\) vpopmail 5.4.14 and 5.4.15, with cleartext passwords enabled, allows remote attackers to authenticate to an account that does not have a cleartext password set by using a blank password to (1) SMTP A… NVD-CWE-Other
CVE-2006-2346 2017-07-20 10:31 2006-05-13 Show GitHub Exploit DB Packet Storm
348966 - ipswitch whatsup_professional Multiple cross-site scripting (XSS) vulnerabilities in IPswitch WhatsUp Professional 2006 and WhatsUp Professional 2006 Premium allow remote attackers to inject arbitrary web script or HTML via the (… CWE-79
Cross-site Scripting
CVE-2006-2351 2017-07-20 10:31 2006-05-15 Show GitHub Exploit DB Packet Storm
348967 - ipswitch whatsup_professional Multiple cross-site scripting (XSS) vulnerabilities in IPswitch WhatsUp Professional 2006 and WhatsUp Professional 2006 Premium allow remote attackers to inject arbitrary web script or HTML via unkno… NVD-CWE-Other
CVE-2006-2352 2017-07-20 10:31 2006-05-15 Show GitHub Exploit DB Packet Storm
348968 - ipswitch whatsup_professional NmConsole/DeviceSelection.asp in Ipswitch WhatsUp Professional 2006 and WhatsUp Professional 2006 Premium allows remote attackers to redirect users to other websites via the (1) sCancelURL and possib… CWE-264
Permissions, Privileges, and Access Controls
CVE-2006-2353 2017-07-20 10:31 2006-05-15 Show GitHub Exploit DB Packet Storm
348969 - ipswitch whatsup_professional NmConsole/Login.asp in Ipswitch WhatsUp Professional 2006 and Ipswitch WhatsUp Professional 2006 Premium generates different error messages in a way that allows remote attackers to enumerate valid us… NVD-CWE-Other
CVE-2006-2354 2017-07-20 10:31 2006-05-15 Show GitHub Exploit DB Packet Storm
348970 - ipswitch whatsup_professional Ipswitch WhatsUp Professional 2006 and Ipswitch WhatsUp Professional 2006 Premium allows remote attackers to obtain full path information via 404 error messages. NOTE: the provenance of this informa… NVD-CWE-Other
CVE-2006-2355 2017-07-20 10:31 2006-05-15 Show GitHub Exploit DB Packet Storm