Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 22, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
209231 7.2 危険 マイクロソフト - 複数の Microsoft Windows 製品のリモートデスクトッププロトコルの実装における任意のコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-0036 2016-02-17 11:16 2016-02-9 Show GitHub Exploit DB Packet Storm
209232 5 警告 マイクロソフト - Microsoft .NET Framework におけるサービス運用妨害 (DoS) の脆弱性 CWE-94
コード・インジェクション
CVE-2016-0033 2016-02-17 11:16 2016-02-9 Show GitHub Exploit DB Packet Storm
209233 4.3 警告 マイクロソフト - Microsoft SharePoint Foundation 2013 の SharePoint Server におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-0039 2016-02-17 11:10 2016-02-9 Show GitHub Exploit DB Packet Storm
209234 9.3 危険 マイクロソフト - 複数の Microsoft Office 製品におけるクロスサイトスクリプティングの脆弱性 CWE-119
バッファエラー
CVE-2016-0022 2016-02-17 11:04 2016-02-9 Show GitHub Exploit DB Packet Storm
209235 7.2 危険 マイクロソフト - 複数の Microsoft 製品における権限昇格の脆弱性 CWE-Other
その他
CVE-2016-0041 2016-02-17 10:57 2016-02-9 Show GitHub Exploit DB Packet Storm
209236 5 警告 マイクロソフト - Microsoft Windows Server 2008 および 2012 のネットワーク ポリシー サーバーにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-0050 2016-02-17 10:39 2016-02-9 Show GitHub Exploit DB Packet Storm
209237 5 警告 マイクロソフト - Microsoft Windows Server 2012 の Active Directory フェデレーションサービスのフォームベース認証の実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-0037 2016-02-17 10:38 2016-02-9 Show GitHub Exploit DB Packet Storm
209238 4 警告 MySQL AB
オラクル
- MySQL におけるサービス運用妨害 (mysqld のクラッシュ) の脆弱性 CWE-399
リソース管理の問題
CVE-2012-2749 2016-02-16 18:08 2012-08-17 Show GitHub Exploit DB Packet Storm
209239 10 危険 オラクル - Oracle Java SE における任意のコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3174 2016-02-16 18:07 2013-01-14 Show GitHub Exploit DB Packet Storm
209240 3.5 注意 MySQL AB
オラクル
- Oracle MySQL における Server Types の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-1548 2016-02-16 17:56 2013-04-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 22, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
297191 - ibm sterling_connect The file-copying functionality in IBM Sterling Connect:Direct 3.8.00, 4.0.00, and 4.1.0 for UNIX on AIX 6.1 through 7.1 uses incorrect privileges, which allows local users to bypass filesystem read p… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-2989 2024-11-21 10:52 2013-05-29 Show GitHub Exploit DB Packet Storm
297192 - ibm infosphere_optim_data_growth_for_oracle_e-business_suite The Console in IBM InfoSphere Optim Data Growth for Oracle E-Business Suite 6.x, 7.x, and 9.x before 9.1.0.3 does not provide an encrypted session for transmitting login credentials, which allows rem… CWE-255
Credentials Management
CVE-2013-2959 2024-11-21 10:52 2013-05-27 Show GitHub Exploit DB Packet Storm
297193 - ibm infosphere_optim_data_growth_for_oracle_e-business_suite Cross-site scripting (XSS) vulnerability in IBM InfoSphere Optim Data Growth for Oracle E-Business Suite 6.x, 7.x, and 9.x before 9.1.0.3 allows remote authenticated users to inject arbitrary web scr… CWE-79
Cross-site Scripting
CVE-2013-2957 2024-11-21 10:52 2013-05-27 Show GitHub Exploit DB Packet Storm
297194 - ibm infosphere_optim_data_growth_for_oracle_e-business_suite SQL injection vulnerability in the Console in IBM InfoSphere Optim Data Growth for Oracle E-Business Suite 6.x, 7.x, and 9.x before 9.1.0.3 allows remote attackers to execute arbitrary SQL commands v… CWE-89
SQL Injection
CVE-2013-2956 2024-11-21 10:52 2013-05-27 Show GitHub Exploit DB Packet Storm
297195 - ibm infosphere_optim_data_growth_for_oracle_e-business_suite Cross-site scripting (XSS) vulnerability in IBM InfoSphere Optim Data Growth for Oracle E-Business Suite 6.x, 7.x, and 9.x before 9.1.0.3 allows remote authenticated users to inject arbitrary web scr… CWE-79
Cross-site Scripting
CVE-2013-2955 2024-11-21 10:52 2013-05-27 Show GitHub Exploit DB Packet Storm
297196 - ibm infosphere_optim_data_growth_for_oracle_e-business_suite The login page in the Console in IBM InfoSphere Optim Data Growth for Oracle E-Business Suite 6.x, 7.x, and 9.x before 9.1.0.3 does not limit the number of incorrect authentication attempts, which ma… CWE-287
Improper Authentication
CVE-2013-2954 2024-11-21 10:52 2013-05-27 Show GitHub Exploit DB Packet Storm
297197 - ibm infosphere_optim_data_growth_for_oracle_e-business_suite IBM InfoSphere Optim Data Growth for Oracle E-Business Suite 6.x, 7.x, and 9.x before 9.1.0.3 relies on the MD5 algorithm for signatures in X.509 certificates, which makes it easier for man-in-the-mi… CWE-310
Cryptographic Issues
CVE-2013-2953 2024-11-21 10:52 2013-05-27 Show GitHub Exploit DB Packet Storm
297198 - 3s-software codesys_gateway-server Use-after-free vulnerability in the server application in 3S CODESYS Gateway 2.3.9.27 allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via unspec… CWE-399
 Resource Management Errors
CVE-2013-2781 2024-11-21 10:52 2013-05-23 Show GitHub Exploit DB Packet Storm
297199 - google chrome Multiple cross-site scripting (XSS) vulnerabilities in Google Chrome before 27.0.1453.93 allow user-assisted remote attackers to inject arbitrary web script or HTML via vectors involving a (1) drag-a… CWE-79
Cross-site Scripting
CVE-2013-2849 2024-11-21 10:52 2013-05-22 Show GitHub Exploit DB Packet Storm
297200 - google chrome The XSS Auditor in Google Chrome before 27.0.1453.93 might allow remote attackers to obtain sensitive information via unspecified vectors. CWE-200
Information Exposure
CVE-2013-2848 2024-11-21 10:52 2013-05-22 Show GitHub Exploit DB Packet Storm