Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":July 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
208711 9.8 緊急
Network
ヒューレット・パッカード・エンタープライズ - HPE Universal CMDB などの製品における任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2016-4368 2016-06-13 16:29 2016-06-6 Show GitHub Exploit DB Packet Storm
208712 7.5 重要
Network
ヒューレット・パッカード・エンタープライズ - HPE Universal CMDB の Universal Discovery コンポーネントにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-4367 2016-06-13 16:29 2016-06-6 Show GitHub Exploit DB Packet Storm
208713 7.5 重要
Network
- HPE LoadRunner および Performance Center におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2016-4361 2016-06-13 16:29 2016-05-31 Show GitHub Exploit DB Packet Storm
208714 9.1 緊急
Network
- HPE LoadRunner および Performance Center におけるデータを変更される脆弱性 CWE-noinfo
情報不足
CVE-2016-4360 2016-06-13 16:29 2016-05-31 Show GitHub Exploit DB Packet Storm
208715 9.1 緊急
Network
Trihedral Engineering Ltd. - Trihedral VTScada の WAP インターフェースにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2016-4532 2016-06-13 16:12 2016-06-6 Show GitHub Exploit DB Packet Storm
208716 9.1 緊急
Network
Trihedral Engineering Ltd. - Trihedral VTScada の WAP インターフェースにおける認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2016-4510 2016-06-13 16:12 2016-06-6 Show GitHub Exploit DB Packet Storm
208717 7.3 重要
Network
シマンテック - 複数の Symantec 製品における引数インジェクション攻撃を実行される脆弱性 CWE-Other
その他
CVE-2015-8800 2016-06-13 15:53 2016-06-7 Show GitHub Exploit DB Packet Storm
208718 7.6 重要
Adjacent
シマンテック - 複数の Symantec 製品の Management Server におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2015-8799 2016-06-13 15:53 2016-06-7 Show GitHub Exploit DB Packet Storm
208719 8 重要
Adjacent
シマンテック - 複数の Symantec 製品の Management Server におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2015-8798 2016-06-13 15:53 2016-06-7 Show GitHub Exploit DB Packet Storm
208720 8.8 重要
Network
シマンテック - 複数の Symantec 製品の Management Server における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2015-8157 2016-06-13 15:53 2015-11-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:July 1, 2026, 4:27 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
297891 - codeaurora
qualcomm
android-msm
quic_mobile_station_modem_kernel
Multiple stack-based buffer overflows in the MSM camera driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, allow a… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-4738 2024-11-21 10:56 2014-02-3 Show GitHub Exploit DB Packet Storm
297892 - ideamk eps_viewer Buffer overflow in the gldll32.dll module in EPS Viewer 3.2 and earlier allows remote attackers to execute arbitrary code via a crafted EPS file. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-4979 2024-11-21 10:56 2014-02-1 Show GitHub Exploit DB Packet Storm
297893 - algosec firewall_analyzer Cross-site scripting (XSS) vulnerability in afa/php/Login.php in AlgoSec Firewall Analyzer 6.1-b86 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO. CWE-79
Cross-site Scripting
CVE-2013-5092 2024-11-21 10:56 2014-01-30 Show GitHub Exploit DB Packet Storm
297894 - tripwire tripwire_enterprise Multiple cross-site scripting (XSS) vulnerabilities in ajaxRequest/methodCall.do in Tripwire Enterprise 8.2 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) m_tar… CWE-79
Cross-site Scripting
CVE-2013-5005 2024-11-21 10:56 2014-01-30 Show GitHub Exploit DB Packet Storm
297895 - webhive timeline Unrestricted file upload vulnerability in the user profile page feature in the Timeline Plugin 4.2.5p9 for SocialEngine allows remote authenticated users to execute arbitrary code by uploading a file… NVD-CWE-Other
CVE-2013-4898 2024-11-21 10:56 2014-01-30 Show GitHub Exploit DB Packet Storm
297896 - springsignage xibo Multiple cross-site request forgery (CSRF) vulnerabilities in index.php in Digital Signage Xibo 1.4.2 allow remote attackers to hijack the authentication of administrators for requests that (1) add a… CWE-352
 Origin Validation Error
CVE-2013-4889 2024-11-21 10:56 2014-01-30 Show GitHub Exploit DB Packet Storm
297897 - springsignage xibo Cross-site scripting (XSS) vulnerability in index.php in Digital Signage Xibo 1.4.2 allows remote attackers to inject arbitrary web script or HTML via the layout parameter in the layout page. CWE-79
Cross-site Scripting
CVE-2013-4888 2024-11-21 10:56 2014-01-30 Show GitHub Exploit DB Packet Storm
297898 - springsignage xibo SQL injection vulnerability in index.php in Digital Signage Xibo 1.4.2 allows remote attackers to execute arbitrary SQL commands via the displayid parameter. CWE-89
SQL Injection
CVE-2013-4887 2024-11-21 10:56 2014-01-30 Show GitHub Exploit DB Packet Storm
297899 - civicrm civicrm The Quick Search API in CiviCRM 4.2.0 through 4.2.9 and 4.3.0 through 4.3.3 allows remote authenticated users to bypass the validation layer and conduct SQL injection attacks via a direct request to … CWE-89
SQL Injection
CVE-2013-4662 2024-11-21 10:56 2014-01-30 Show GitHub Exploit DB Packet Storm
297900 - civicrm civicrm CiviCRM 2.0.0 through 4.2.9 and 4.3.0 through 4.3.3 does not properly enforce role-based access control (RBAC) restrictions for default custom searches, which allows remote authenticated users with t… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-4661 2024-11-21 10:56 2014-01-30 Show GitHub Exploit DB Packet Storm