Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 22, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
209221 6.9 警告 アップル - Apple OS X の IOAcceleratorFamily の IOAcceleratorFamily2 インターフェースにおける権限を取得される脆弱性 CWE-119
バッファエラー
CVE-2016-1718 2016-02-17 13:59 2016-01-19 Show GitHub Exploit DB Packet Storm
209222 7.2 危険 アップル - Apple OS X の AppleGraphicsPowerManagement における権限を取得される脆弱性 CWE-119
バッファエラー
CVE-2016-1716 2016-02-17 13:59 2016-01-19 Show GitHub Exploit DB Packet Storm
209223 2.1 注意 マイクロソフト - 複数の Microsoft Windows 製品の Kerberos における認証を回避される脆弱性 CWE-255
証明書・パスワード管理
CVE-2016-0049 2016-02-17 13:57 2016-02-9 Show GitHub Exploit DB Packet Storm
209224 5 警告 マイクロソフト - 複数の Microsoft Windows 製品の Sync Framework におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-0044 2016-02-17 13:57 2016-02-9 Show GitHub Exploit DB Packet Storm
209225 7.2 危険 マイクロソフト - 複数の Microsoft Windows 製品における権限昇格の脆弱性 CWE-Other
その他
CVE-2016-0042 2016-02-17 13:57 2016-02-9 Show GitHub Exploit DB Packet Storm
209226 9.3 危険 マイクロソフト - 複数の Microsoft Windows 製品の Windows Journal における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-0038 2016-02-17 12:10 2016-02-9 Show GitHub Exploit DB Packet Storm
209227 7.2 危険 マイクロソフト - 複数の Microsoft Windows 製品のカーネルにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-0040 2016-02-17 12:10 2016-02-9 Show GitHub Exploit DB Packet Storm
209228 7.2 危険 マイクロソフト - 複数の Microsoft Windows 製品のカーネルモードドライバにおける権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-0048 2016-02-17 11:16 2016-02-9 Show GitHub Exploit DB Packet Storm
209229 7.2 危険 マイクロソフト - 複数の Microsoft Windows 製品のリモートデスクトッププロトコルの実装における任意のコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-0036 2016-02-17 11:16 2016-02-9 Show GitHub Exploit DB Packet Storm
209230 5 警告 マイクロソフト - Microsoft .NET Framework におけるサービス運用妨害 (DoS) の脆弱性 CWE-94
コード・インジェクション
CVE-2016-0033 2016-02-17 11:16 2016-02-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 22, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
297191 - ibm sterling_connect The file-copying functionality in IBM Sterling Connect:Direct 3.8.00, 4.0.00, and 4.1.0 for UNIX on AIX 6.1 through 7.1 uses incorrect privileges, which allows local users to bypass filesystem read p… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-2989 2024-11-21 10:52 2013-05-29 Show GitHub Exploit DB Packet Storm
297192 - ibm infosphere_optim_data_growth_for_oracle_e-business_suite The Console in IBM InfoSphere Optim Data Growth for Oracle E-Business Suite 6.x, 7.x, and 9.x before 9.1.0.3 does not provide an encrypted session for transmitting login credentials, which allows rem… CWE-255
Credentials Management
CVE-2013-2959 2024-11-21 10:52 2013-05-27 Show GitHub Exploit DB Packet Storm
297193 - ibm infosphere_optim_data_growth_for_oracle_e-business_suite Cross-site scripting (XSS) vulnerability in IBM InfoSphere Optim Data Growth for Oracle E-Business Suite 6.x, 7.x, and 9.x before 9.1.0.3 allows remote authenticated users to inject arbitrary web scr… CWE-79
Cross-site Scripting
CVE-2013-2957 2024-11-21 10:52 2013-05-27 Show GitHub Exploit DB Packet Storm
297194 - ibm infosphere_optim_data_growth_for_oracle_e-business_suite SQL injection vulnerability in the Console in IBM InfoSphere Optim Data Growth for Oracle E-Business Suite 6.x, 7.x, and 9.x before 9.1.0.3 allows remote attackers to execute arbitrary SQL commands v… CWE-89
SQL Injection
CVE-2013-2956 2024-11-21 10:52 2013-05-27 Show GitHub Exploit DB Packet Storm
297195 - ibm infosphere_optim_data_growth_for_oracle_e-business_suite Cross-site scripting (XSS) vulnerability in IBM InfoSphere Optim Data Growth for Oracle E-Business Suite 6.x, 7.x, and 9.x before 9.1.0.3 allows remote authenticated users to inject arbitrary web scr… CWE-79
Cross-site Scripting
CVE-2013-2955 2024-11-21 10:52 2013-05-27 Show GitHub Exploit DB Packet Storm
297196 - ibm infosphere_optim_data_growth_for_oracle_e-business_suite The login page in the Console in IBM InfoSphere Optim Data Growth for Oracle E-Business Suite 6.x, 7.x, and 9.x before 9.1.0.3 does not limit the number of incorrect authentication attempts, which ma… CWE-287
Improper Authentication
CVE-2013-2954 2024-11-21 10:52 2013-05-27 Show GitHub Exploit DB Packet Storm
297197 - ibm infosphere_optim_data_growth_for_oracle_e-business_suite IBM InfoSphere Optim Data Growth for Oracle E-Business Suite 6.x, 7.x, and 9.x before 9.1.0.3 relies on the MD5 algorithm for signatures in X.509 certificates, which makes it easier for man-in-the-mi… CWE-310
Cryptographic Issues
CVE-2013-2953 2024-11-21 10:52 2013-05-27 Show GitHub Exploit DB Packet Storm
297198 - 3s-software codesys_gateway-server Use-after-free vulnerability in the server application in 3S CODESYS Gateway 2.3.9.27 allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via unspec… CWE-399
 Resource Management Errors
CVE-2013-2781 2024-11-21 10:52 2013-05-23 Show GitHub Exploit DB Packet Storm
297199 - google chrome Multiple cross-site scripting (XSS) vulnerabilities in Google Chrome before 27.0.1453.93 allow user-assisted remote attackers to inject arbitrary web script or HTML via vectors involving a (1) drag-a… CWE-79
Cross-site Scripting
CVE-2013-2849 2024-11-21 10:52 2013-05-22 Show GitHub Exploit DB Packet Storm
297200 - google chrome The XSS Auditor in Google Chrome before 27.0.1453.93 might allow remote attackers to obtain sensitive information via unspecified vectors. CWE-200
Information Exposure
CVE-2013-2848 2024-11-21 10:52 2013-05-22 Show GitHub Exploit DB Packet Storm