Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
205581 7.8 重要
Local
Huawei - Huawei Mobile Broadband HL Service における SYSTEM 権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-2855 2016-05-27 11:23 2016-05-12 Show GitHub Exploit DB Packet Storm
205582 4.4 警告
Local
Fabrice Bellard
Fedora Project
- QEMU の hw/usb/hcd-ehci.c の ehci_advance_state 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-4037 2016-05-27 10:08 2016-04-19 Show GitHub Exploit DB Packet Storm
205583 6.5 警告
Local
Fabrice Bellard - QEMU の hw/i386/kvmvapic.c の patch_instruction 関数におけるホストスタックメモリから重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-4020 2016-05-27 10:08 2016-05-23 Show GitHub Exploit DB Packet Storm
205584 5.9 警告
Network
Fabrice Bellard
Fedora Project
- QEMU の hw/net/stellaris_enet.c の stellaris_enet_receive 関数におけるバッファオーバーフローの脆弱性 CWE-20
不適切な入力確認
CVE-2016-4001 2016-05-27 10:08 2016-04-11 Show GitHub Exploit DB Packet Storm
205585 5.5 警告
Local
Fabrice Bellard - QEMU の hw/usb/hcd-ehci.c の ehci_process_itd 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2015-8558 2016-05-27 10:08 2015-12-15 Show GitHub Exploit DB Packet Storm
205586 8.1 重要
Network
Safemode project - Ruby 用 Safemode gem における重要な情報を取得される脆弱性 CWE-200
CWE-264
CVE-2016-3693 2016-05-27 09:54 2016-04-14 Show GitHub Exploit DB Packet Storm
205587 5.3 警告
Network
Moodle - Moodle における重要なe URL 情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-2190 2016-05-26 17:26 2016-03-21 Show GitHub Exploit DB Packet Storm
205588 4.3 警告
Network
Moodle - Moodle の mod/assign/externallib.php の save_submission 関数における提出期限の制限を回避される脆弱性 CWE-Other
その他
CVE-2016-2159 2016-05-26 17:26 2016-03-21 Show GitHub Exploit DB Packet Storm
205589 4.3 警告
Network
Moodle - Moodle の lib/ajax/getnavbranch.php におけるナビゲーションブランチから重要なカテゴリの詳細情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-2158 2016-05-26 17:26 2016-03-21 Show GitHub Exploit DB Packet Storm
205590 8.8 重要
Network
Moodle - Moodle の mod/assign/adminmanageplugins.php におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2016-2157 2016-05-26 17:25 2016-03-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
351701 - alexander_palmo simple_php_blog Cross-site scripting (XSS) vulnerability in search.php for Simple PHP Blog (sphpBlog) 0.4.0 allows remote attackers to inject arbitrary web script or HTML via the q parameter. NVD-CWE-Other
CVE-2005-1135 2016-10-18 12:17 2005-05-2 Show GitHub Exploit DB Packet Storm
351702 - sphpblog sphpblog Simple PHP Blog (sphpBlog) 0.4.0 stores the (1) password.txt and (2) config.txt files under the web document root, which allows remote attackers to obtain sensitive information and crack passwords vi… NVD-CWE-Other
CVE-2005-1136 2016-10-18 12:17 2005-04-14 Show GitHub Exploit DB Packet Storm
351703 - alexander_palmo simple_php_blog Simple PHP Blog (sphpBlog) 0.4.0 allows remote attackers to obtain sensitive information via a direct request to sb_functions.php, which leaks the full pathname in a PHP error message. NVD-CWE-Other
CVE-2005-1137 2016-10-18 12:17 2005-05-2 Show GitHub Exploit DB Packet Storm
351704 - gocr optical_character_recognition_utility Heap-based buffer overflow in the readpgm function in pnm.c for GOCR 0.40, when it is not using netpbm, allows remote attackers to execute arbitrary code via a P3 format PNM file with more data than … NVD-CWE-Other
CVE-2005-1142 2016-10-18 12:17 2005-04-15 Show GitHub Exploit DB Packet Storm
351705 - dameware_development dameware_nt_utilities
miniremote_control
The DNTUS26 process in Dameware NT Utilities and the DWRCS process in MiniRemote Control 4.9 and earlier stores the username and password in cleartext in memory, which could allow attackers to obtain… NVD-CWE-Other
CVE-2005-1166 2016-10-18 12:17 2005-05-2 Show GitHub Exploit DB Packet Storm
351706 - musicmatch jukebox Musicmatch 10.00.2047 and earlier store log files in the Program Files directory instead of the user profile, which may allow local users to obtain sensitive information. NVD-CWE-Other
CVE-2005-1167 2016-10-18 12:17 2005-05-2 Show GitHub Exploit DB Packet Storm
351707 - musicmatch jukebox DiagCollectionControl.dll in Musicmatch 10.00.2047 and earlier allows remote attackers to overwrite arbitrary files via the bstrSavePath argument. NVD-CWE-Other
CVE-2005-1168 2016-10-18 12:17 2005-05-2 Show GitHub Exploit DB Packet Storm
351708 - mafia mafia_blog Mafia Blog .4 BETA does not properly protect the admin directory, which allows remote attackers to execute arbitrary PHP code by using writeinfo.php to inject the code into info.php. NVD-CWE-Other
CVE-2005-1169 2016-10-18 12:17 2005-05-2 Show GitHub Exploit DB Packet Storm
351709 - datenbank_module datenbank_module SQL injection vulnerability in mod.php in the datenbank module for phpBB allows remote attackers to execute arbitrary SQL commands via the id parameter. NVD-CWE-Other
CVE-2005-1170 2016-10-18 12:17 2005-05-2 Show GitHub Exploit DB Packet Storm
351710 - coppermine coppermine_photo_gallery Cross-site scripting (XSS) vulnerability in init.inc.php in Coppermine Photo Gallery 1.3.x allows remote attackers to inject arbitrary web script or HTML via the X-Forwarded-For parameter. NVD-CWE-Other
CVE-2005-1172 2016-10-18 12:17 2005-05-2 Show GitHub Exploit DB Packet Storm