Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 23, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
205451 5.9 警告
Local
IBM - IBM Sterling Secure Proxy の構成マネージャにおけるアクセス権を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-6025 2016-10-12 15:03 2016-09-29 Show GitHub Exploit DB Packet Storm
205452 7.5 重要
Network
IBM - IBM Sterling Secure Proxy の構成マネージャにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2016-6023 2016-10-12 15:03 2016-09-29 Show GitHub Exploit DB Packet Storm
205453 9.8 緊急
Network
Katie Seaborn - Wordpress 用 Zotpress プラグインの zp_get_account() における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2016-1000217 2016-10-12 11:46 2016-09-9 Show GitHub Exploit DB Packet Storm
205454 9.1 緊急
Network
contus-video-comments project - WordPress 用 contus-video-comments プラグインにおける未認証のリモートの .jpg ファイルをアップロードされる脆弱性 CWE-22
パス・トラバーサル
CVE-2016-1000112 2016-10-12 11:46 2016-06-15 Show GitHub Exploit DB Packet Storm
205455 8.8 重要
Network
Ipswitch, Inc. - Ipswitch WhatsUp Gold の WrFreeFormText.asp の sUniqueID Parameter におけるブラインド SQLインジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2016-1000000 2016-10-12 11:46 2016-05-17 Show GitHub Exploit DB Packet Storm
205456 7.8 重要
Local
csv2wpec-coupon project - WordPress 用 csv2wpec-coupon プラグインにおけるリモートファイルをアップロードされる脆弱性 CWE-Other
その他
CVE-2015-1000013 2016-10-12 11:46 2015-09-11 Show GitHub Exploit DB Packet Storm
205457 7.5 重要
Network
mypixs project - WordPress 用 mypixs プラグインにおけるローカルファイルインクルードの脆弱性 CWE-200
情報漏えい
CVE-2015-1000012 2016-10-12 11:46 2015-09-15 Show GitHub Exploit DB Packet Storm
205458 9.8 緊急
Physics
DukaPress - WordPress 用 DukaPress プラグインにおけるブラインド SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2015-1000011 2016-10-12 11:46 2015-08-4 Show GitHub Exploit DB Packet Storm
205459 7.5 重要
Network
simple-image-manipulator project - WordPress 用 simple-image-manipulator プラグインにおけるファイルをダウンロードされる脆弱性 CWE-Other
その他
CVE-2015-1000010 2016-10-12 11:46 2015-07-16 Show GitHub Exploit DB Packet Storm
205460 7.5 重要
Network
wptf-image-gallery project - WordPress 用 wptf-image-gallery プラグインにおけるファイルをダウンロードされる脆弱性 CWE-200
CWE-Other
CVE-2015-1000007 2016-10-12 11:46 2015-07-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 24, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
359911 - netopia timbuktu_mac Preview version of Timbuktu for Mac OS X allows local users to modify System Preferences without logging in via the About Timbuktu menu. NVD-CWE-Other
CVE-2001-0438 2008-09-6 05:24 2001-07-2 Show GitHub Exploit DB Packet Storm
359912 - david_harris mercury_nlm Buffer overflow in Mercury MTA POP3 server for NetWare 1.48 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long APOP command. NVD-CWE-Other
CVE-2001-0442 2008-09-6 05:24 2001-06-27 Show GitHub Exploit DB Packet Storm
359913 - software602 602pro_lan_suite Web configuration server in 602Pro LAN SUITE allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long HTTP request containing "%2e" (dot dot) characte… NVD-CWE-Other
CVE-2001-0447 2008-09-6 05:24 2001-06-18 Show GitHub Exploit DB Packet Storm
359914 - software602 602pro_lan_suite Web configuration server in 602Pro LAN SUITE allows remote attackers to cause a denial of service via an HTTP GET HTTP request to the aux directory, and possibly other directories with legacy DOS dev… NVD-CWE-Other
CVE-2001-0448 2008-09-6 05:24 2001-06-18 Show GitHub Exploit DB Packet Storm
359915 - brs webweaver BRS WebWeaver FTP server before 0.64 Beta allows remote attackers to obtain the real pathname of the server via a "CD *" command followed by an ls command. NVD-CWE-Other
CVE-2001-0452 2008-09-6 05:24 2001-06-27 Show GitHub Exploit DB Packet Storm
359916 - brs webweaver Directory traversal vulnerability in BRS WebWeaver HTTP server allows remote attackers to read arbitrary files via a .. (dot dot) attack in the (1) syshelp, (2) sysimages, or (3) scripts directories. NVD-CWE-Other
CVE-2001-0453 2008-09-6 05:24 2001-06-27 Show GitHub Exploit DB Packet Storm
359917 - ssh ssh SSH daemon version 1 (aka SSHD-1 or SSH-1) 1.2.30 and earlier does not log repeated login attempts, which could allow remote attackers to compromise accounts without detection via a brute force attac… NVD-CWE-Other
CVE-2001-0471 2008-09-6 05:24 2001-06-27 Show GitHub Exploit DB Packet Storm
359918 - webcalendar webcalendar Vulnerability in WebCalendar 0.9.26 allows remote command execution. NVD-CWE-Other
CVE-2001-0477 2008-09-6 05:24 2001-06-27 Show GitHub Exploit DB Packet Storm
359919 - phpmyadmin phpmyadmin Directory traversal vulnerability in phpMyAdmin 2.2.0 and earlier versions allows remote attackers to execute arbitrary code via a .. (dot dot) in an argument to the sql.php script. NVD-CWE-Other
CVE-2001-0478 2008-09-6 05:24 2001-06-27 Show GitHub Exploit DB Packet Storm
359920 - alex_linde alexs_ftp_server Directory traversal vulnerability in Alex's FTP Server 0.7 allows remote attackers to read arbitrary files via a ... (modified dot dot) in the (1) GET or (2) CD commands. NVD-CWE-Other
CVE-2001-0480 2008-09-6 05:24 2001-06-27 Show GitHub Exploit DB Packet Storm