Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 11, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
205911 6.1 警告
Network
シトリックス・システムズ - Citrix NetScaler Gateway の vpn/js/gateway_login_form_view.js におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-4945 2016-06-3 14:16 2016-05-26 Show GitHub Exploit DB Packet Storm
205912 7.5 重要
Network
シトリックス・システムズ - Citrix XenDesktop および XenApp 用 Citrix Studio における XenDesktop Delivery Controller にアクセスポリシー規則を設定される脆弱性 CWE-Other
その他
CVE-2016-4810 2016-06-3 14:16 2016-05-31 Show GitHub Exploit DB Packet Storm
205913 7.8 重要
Local
Debian
GNOME Project
- gdk-pixbuf の pixops/pixops.c の pixops_composite_nearest などの関数における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2015-8875 2016-06-3 12:17 2015-10-6 Show GitHub Exploit DB Packet Storm
205914 6.5 警告
Network
IBM - IBM Security AppScan における任意のファイルを読まれる脆弱性 CWE-Other
その他
CVE-2016-0288 2016-06-3 11:41 2016-05-17 Show GitHub Exploit DB Packet Storm
205915 7 危険 サイボウズ - サイボウズ ガルーンにおける LDAP インジェクションの脆弱性 CWE-noinfo
情報不足
CVE-2015-5649 2016-06-2 19:12 2015-10-7 Show GitHub Exploit DB Packet Storm
205916 4.3 警告
Network
Apache Software Foundation - Apache Cordova におけるアクセス制限不備の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-5207 2016-06-2 17:49 2016-05-11 Show GitHub Exploit DB Packet Storm
205917 9.8 緊急
Network
Sixnet - Sixnet BT-5xxx および BT-6xxx M2M デバイスにおけるアクセス権を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-4521 2016-06-2 16:55 2016-05-26 Show GitHub Exploit DB Packet Storm
205918 5.8 警告
Network
Moxa Inc. - Moxa UC-7408 LX-Plus デバイスにおけるファームウェアに書き込まれる脆弱性 CWE-Other
その他
CVE-2016-4500 2016-06-2 15:00 2016-05-31 Show GitHub Exploit DB Packet Storm
205919 7.5 重要
Network
Moxa Inc. - 複数の Moxa MiiNePort デバイス製品のファームウェアにおける重要な平文情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-2295 2016-06-2 15:00 2016-05-24 Show GitHub Exploit DB Packet Storm
205920 7.5 重要
Network
Moxa Inc. - 複数の Moxa MiiNePort デバイス製品のファームウェアにおけるアクセス権を取得される脆弱性 CWE-287
不適切な認証
CVE-2016-2286 2016-06-2 15:00 2016-05-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 11, 2026, 5:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
357691 - qnx neutrino_rtos
photon_microgui
Photon microGUI in QNX Neutrino realtime operating system (RTOS) 6.1.0 and 6.2.0 allows attackers to read user clipboard information via a direct request to the 1.TEXT file in a directory whose name … CWE-200
Information Exposure
CVE-2002-2409 2008-09-6 05:33 2002-12-31 Show GitHub Exploit DB Packet Storm
357692 - open_webmail open_webmail openwebmail.pl in Open WebMail 1.7 and 1.71 reveals sensitive information in error messages and generates different responses whether a user exists or not, which allows remote attackers to identify v… CWE-200
Information Exposure
CVE-2002-2410 2008-09-6 05:33 2002-12-31 Show GitHub Exploit DB Packet Storm
357693 - nullsoft winamp Winamp 2.80 stores authentication credentials in plaintext in the (1) [HTTP-AUTH] and (2) [winamp] sections in winamp.ini, which allows local users to gain access to other accounts. CWE-255
Credentials Management
CVE-2002-2412 2008-09-6 05:33 2002-12-31 Show GitHub Exploit DB Packet Storm
357694 - deerfield website_pro WebSite Pro 3.1.11.0 on Windows allows remote attackers to read script source code for files with extensions greater than 3 characters via a URL request that uses the equivalent 8.3 file name. NVD-CWE-Other
CVE-2002-2413 2008-09-6 05:33 2002-12-31 Show GitHub Exploit DB Packet Storm
357695 - alliedtelesyn at-8024
rapier_24
Allied Telesyn AT-8024 1.3.1 and Rapier 24 switches allow remote authenticated users to cause a denial of service in the management interface via a stream of zero (null) bytes sent via UDP to a runni… CWE-20
 Improper Input Validation 
CVE-2002-2415 2008-09-6 05:33 2002-12-31 Show GitHub Exploit DB Packet Storm
357696 - zeroo http_server Directory traversal vulnerability in Zeroo web server 1.5 allows remote attackers to read arbitrary files via a .. (dot dot) in a URL GET request. CWE-22
Path Traversal
CVE-2002-2416 2008-09-6 05:33 2002-12-31 Show GitHub Exploit DB Packet Storm
357697 - acftp acftp acFTP 1.4 does not properly handle when an invalid password is provided by the user during authentication, which allows remote attackers to hide or misrepresent certain activity from log files and po… CWE-287
Improper Authentication
CVE-2002-2417 2008-09-6 05:33 2002-12-31 Show GitHub Exploit DB Packet Storm
357698 - acfp_project acfreeproxy Cross-site scripting (XSS) vulnerability in acFreeProxy (aka acFP) 1.33 beta 7 allows remote attackers to inject arbitrary web script or HTML via the URL, which is inserted into an error page. CWE-79
Cross-site Scripting
CVE-2002-2418 2008-09-6 05:33 2002-12-31 Show GitHub Exploit DB Packet Storm
357699 - dctc_project dctc Direct connect text client (DCTC) client 0.83.3 allows remote attackers to cause a denial of service (crash) via a string ending with a NULL byte character. CWE-189
Numeric Errors
CVE-2002-2419 2008-09-6 05:33 2002-12-31 Show GitHub Exploit DB Packet Storm
357700 - independent_solution simple_site_searcher
super_site_searcher
site_searcher.cgi in Super Site Searcher allows remote attackers to execute arbitrary commands via shell metacharacters in the page parameter. CWE-20
 Improper Input Validation 
CVE-2002-2420 2008-09-6 05:33 2002-12-31 Show GitHub Exploit DB Packet Storm