Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 24, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
209211 7.1 危険 Digium - Asterisk Open Source および Certified Asterisk の chan_sip におけるサービス運用妨害 (DoS) の脆弱性 CWE-16
環境設定
CVE-2016-2316 2016-03-15 11:20 2016-02-3 Show GitHub Exploit DB Packet Storm
209212 5 警告 Moxa Inc. - Moxa ioLogik E2200 デバイスおよび ioAdmin Configuration Utility における関連する平文を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2016-2282 2016-03-15 10:59 2016-03-3 Show GitHub Exploit DB Packet Storm
209213 5 警告 Moxa Inc. - Moxa ioLogik E2200 デバイスおよび ioAdmin Configuration Utility における関連する平文を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2016-2283 2016-03-15 10:26 2016-03-3 Show GitHub Exploit DB Packet Storm
209214 5 警告 Ruby on Rails project - Ruby on Rails の Action Pack の actionpack/lib/action_dispatch/routing/route_set.rb におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2015-7581 2016-03-14 17:48 2015-08-21 Show GitHub Exploit DB Packet Storm
209215 5 警告 シスコシステムズ - Cisco Advanced Malware Protection のプロキシエンジンにおけるコンテンツの制限を回避される脆弱性 CWE-Other
その他
CVE-2016-1315 2016-03-14 15:53 2016-02-11 Show GitHub Exploit DB Packet Storm
209216 10 危険 アドバンテック株式会社 - Advantech/B+B SmartWorx VESP211-EU および VESP211-232 デバイスのファームウェアの Web インターフェースにおける管理アクションを実行される脆弱性 CWE-Other
その他
CVE-2016-2275 2016-03-14 15:10 2016-02-18 Show GitHub Exploit DB Packet Storm
209217 6.9 警告 シスコシステムズ - Cisco Nexus 2000 Fabric Extender デバイス上で稼動する Cisco NX-OS における権限を取得される脆弱性 CWE-255
CWE-264
CVE-2016-1341 2016-03-14 14:53 2016-02-23 Show GitHub Exploit DB Packet Storm
209218 5 警告 シスコシステムズ - Cisco Web セキュリティ アプライアンスデバイス上で稼動する AsyncOS の HTTPS プロキシ機能におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-1288 2016-03-14 14:53 2016-03-2 Show GitHub Exploit DB Packet Storm
209219 5 警告 ヒューレット・パッカード - 複数の HP プリンタ製品のファームウェアにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-2244 2016-03-14 14:45 2016-03-1 Show GitHub Exploit DB Packet Storm
209220 5 警告 Novell - Novell ZENworks Configuration Management の ChangePassword RPC メソッドにおける XPath インジェクション攻撃を実行される脆弱性 CWE-94
コード・インジェクション
CVE-2015-5970 2016-03-14 14:14 2015-09-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 24, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
298121 - redhat libvirt libvirt 1.0.2 and earlier sets the group owner to kvm for device files, which allows local users to write to these files via unspecified vectors. CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-1766 2024-11-21 10:50 2013-03-21 Show GitHub Exploit DB Packet Storm
298122 - redhat
rubyonrails
enterprise_linux
ruby_on_rails
rails
The sanitize helper in lib/action_controller/vendor/html-scanner/html/sanitizer.rb in the Action Pack component in Ruby on Rails before 2.3.18, 3.0.x and 3.1.x before 3.1.12, and 3.2.x before 3.2.13 … CWE-79
Cross-site Scripting
CVE-2013-1857 2024-11-21 10:50 2013-03-20 Show GitHub Exploit DB Packet Storm
298123 - rubyonrails ruby_on_rails
rails
The ActiveSupport::XmlMini_JDOM backend in lib/active_support/xml_mini/jdom.rb in the Active Support component in Ruby on Rails 3.0.x and 3.1.x before 3.1.12 and 3.2.x before 3.2.13, when JRuby is us… CWE-20
 Improper Input Validation 
CVE-2013-1856 2024-11-21 10:50 2013-03-20 Show GitHub Exploit DB Packet Storm
298124 - rubyonrails
redhat
rails
ruby_on_rails
enterprise_linux
The sanitize_css method in lib/action_controller/vendor/html-scanner/html/sanitizer.rb in the Action Pack component in Ruby on Rails before 2.3.18, 3.0.x and 3.1.x before 3.1.12, and 3.2.x before 3.2… CWE-79
Cross-site Scripting
CVE-2013-1855 2024-11-21 10:50 2013-03-20 Show GitHub Exploit DB Packet Storm
298125 - rubyonrails
redhat
ruby_on_rails
rails
enterprise_linux
The Active Record component in Ruby on Rails 2.3.x before 2.3.18, 3.1.x before 3.1.12, and 3.2.x before 3.2.13 processes certain queries by converting hash keys to symbols, which allows remote attack… CWE-20
 Improper Input Validation 
CVE-2013-1854 2024-11-21 10:50 2013-03-20 Show GitHub Exploit DB Packet Storm
298126 - samba samba Samba 4.x before 4.0.4, when configured as an Active Directory domain controller, uses world-writable permissions on non-default CIFS shares, which allows remote authenticated users to read, modify, … CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-1863 2024-11-21 10:50 2013-03-20 Show GitHub Exploit DB Packet Storm
298127 - openafs openafs Integer overflow in ptserver in OpenAFS before 1.6.2 allows remote attackers to cause a denial of service (crash) via a large list from the IdToName RPC, which triggers a heap-based buffer overflow. CWE-189
Numeric Errors
CVE-2013-1795 2024-11-21 10:50 2013-03-14 Show GitHub Exploit DB Packet Storm
298128 - openafs openafs Buffer overflow in certain client utilities in OpenAFS before 1.6.2 allows remote authenticated users to cause a denial of service (crash) and possibly execute arbitrary code via a long fileserver AC… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-1794 2024-11-21 10:50 2013-03-14 Show GitHub Exploit DB Packet Storm
298129 - perl perl The rehash mechanism in Perl 5.8.2 through 5.16.x allows context-dependent attackers to cause a denial of service (memory consumption and crash) via a crafted hash key. CWE-399
 Resource Management Errors
CVE-2013-1667 2024-11-21 10:50 2013-03-14 Show GitHub Exploit DB Packet Storm
298130 - apache rave The users/get program in the User RPC API in Apache Rave 0.11 through 0.20 allows remote authenticated users to obtain sensitive information about all user accounts via the offset parameter, as demon… CWE-200
Information Exposure
CVE-2013-1814 2024-11-21 10:50 2013-03-14 Show GitHub Exploit DB Packet Storm