Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 24, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
208941 4.7 警告 マイクロソフト - 複数の Microsoft 製品の Client/Server Run-time Subsystem における権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-0030 2016-04-6 16:48 2011-02-8 Show GitHub Exploit DB Packet Storm
208942 7.5 重要
Network
オートデスク株式会社 - Autodesk Backburner にスタックバッファオーバーフローの脆弱性 CWE-119
CWE-Other
CVE-2016-2344 2016-04-6 11:35 2016-03-28 Show GitHub Exploit DB Packet Storm
208943 10 危険 Zhuhai RaySharp Technology Co., Ltd. - Zhuhai RaySharp のファームウェアにおけるアクセス権を取得される脆弱性 CWE-Other
CWE-Other
CVE-2015-8286 2016-04-5 12:25 2016-02-17 Show GitHub Exploit DB Packet Storm
208944 9.8 緊急
Network
Patterson Dental Supply, Inc. - Eaglesoft (Patterson Dental) でパスワードがハードコードされている問題 CWE-Other
その他
CVE-2016-2343 2016-04-5 12:24 2016-03-30 Show GitHub Exploit DB Packet Storm
208945 7.5 重要
Network
レッドハット - Windows 上で稼動する WildFly のサーブレットフィルタ制限のメカニズムにおける重要なファイルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2016-0793 2016-04-5 11:58 2016-02-9 Show GitHub Exploit DB Packet Storm
208946 7.5 重要
Network
ICONICS, Inc. - ICONICS WebHMI におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2016-2289 2016-04-5 10:44 2016-03-31 Show GitHub Exploit DB Packet Storm
208947 7.5 重要
Network
シスコシステムズ - Cisco FireSIGHT システム ソフトウェアおよび ASA with FirePOWER Services におけるマルウェア保護を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2016-1345 2016-04-4 11:47 2016-03-30 Show GitHub Exploit DB Packet Storm
208948 5 警告 サン・マイクロシステムズ
日立
オラクル
- 複数の Oracle Java 製品 における JAXP に関する脆弱性 CWE-noinfo
情報不足
CVE-2015-4803 2016-04-1 12:05 2015-10-20 Show GitHub Exploit DB Packet Storm
208949 8.8 重要
Network
Google - Google Chrome で使用される V8 におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2016-3679 2016-04-1 11:00 2016-03-24 Show GitHub Exploit DB Packet Storm
208950 5 警告 Huawei - Huawei E5151 および Huawei E5186 に不十分なランダム値を使用している問題 CWE-20
CWE-Other
CVE-2015-8265 2016-03-31 17:51 2016-02-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 24, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
296841 - gwos groundwork_monitor GroundWork Monitor Enterprise 6.7.0 performs authentication on the basis of the HTTP Referer header, which allows remote attackers to obtain administrative privileges or access files via a crafted he… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-3499 2024-11-21 10:53 2013-05-8 Show GitHub Exploit DB Packet Storm
296842 - joomla joomla\! Cross-site scripting (XSS) vulnerability in the highlighter plugin in Joomla! 2.5.x before 2.5.10 and 3.0.x before 3.0.4 allows remote attackers to inject arbitrary web script or HTML via unspecified… CWE-79
Cross-site Scripting
CVE-2013-3267 2024-11-21 10:53 2013-05-3 Show GitHub Exploit DB Packet Storm
296843 - joomla joomla\! plugins/system/remember/remember.php in Joomla! 2.5.x before 2.5.10 and 3.0.x before 3.0.4 does not properly handle an object obtained by unserializing a cookie, which allows remote authenticated use… CWE-20
 Improper Input Validation 
CVE-2013-3242 2024-11-21 10:53 2013-05-3 Show GitHub Exploit DB Packet Storm
296844 - freebsd freebsd The nfsrvd_readdir function in sys/fs/nfsserver/nfs_nfsdport.c in the new NFS server in FreeBSD 8.0 through 9.1-RELEASE-p3 does not verify that a READDIR request is for a directory node, which allows… CWE-20
 Improper Input Validation 
CVE-2013-3266 2024-11-21 10:53 2013-05-2 Show GitHub Exploit DB Packet Storm
296845 - vmware vcenter_server_appliance VMware vCenter Server 5.1 before Update 1, when anonymous LDAP binding for Active Directory is enabled, allows remote attackers to bypass authentication by providing a valid username in conjunction w… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-3107 2024-11-21 10:53 2013-05-1 Show GitHub Exploit DB Packet Storm
296846 - linux linux_kernel Race condition in the smb_send_rqst function in fs/cifs/transport.c in the Linux kernel before 3.7.2 allows local users to cause a denial of service (NULL pointer dereference and OOPS) or possibly ha… CWE-362
Race Condition
CVE-2013-3302 2024-11-21 10:53 2013-04-29 Show GitHub Exploit DB Packet Storm
296847 - linux
redhat
suse
linux_kernel
enterprise_linux
enterprise_mrg
linux_enterprise_desktop
linux_enterprise_server
linux_enterprise_high_availability_extension
The ftrace implementation in the Linux kernel before 3.8.8 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact by lev… NVD-CWE-Other
CVE-2013-3301 2024-11-21 10:53 2013-04-29 Show GitHub Exploit DB Packet Storm
296848 - phpmyadmin phpmyadmin export.php (aka the export script) in phpMyAdmin 4.x before 4.0.0-rc3 overwrites global variables on the basis of the contents of the POST superglobal array, which allows remote authenticated users t… NVD-CWE-noinfo
CVE-2013-3241 2024-11-21 10:53 2013-04-26 Show GitHub Exploit DB Packet Storm
296849 - phpmyadmin phpmyadmin Directory traversal vulnerability in the Export feature in phpMyAdmin 4.x before 4.0.0-rc3 allows remote authenticated users to read arbitrary files or possibly have unspecified other impact via a pa… CWE-22
Path Traversal
CVE-2013-3240 2024-11-21 10:53 2013-04-26 Show GitHub Exploit DB Packet Storm
296850 - phpmyadmin phpmyadmin phpMyAdmin 3.5.x before 3.5.8 and 4.x before 4.0.0-rc3, when a SaveDir directory is configured, allows remote authenticated users to execute arbitrary code by using a double extension in the filename… CWE-94
Code Injection
CVE-2013-3239 2024-11-21 10:53 2013-04-26 Show GitHub Exploit DB Packet Storm