Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 17, 2026, 4:10 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
222071 4.3 警告 MantisBT Group - MantisBT の core/filter_api.php 内の filter_draw_selection_area2 関数におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0197 2014-05-19 14:15 2013-01-18 Show GitHub Exploit DB Packet Storm
222072 6.4 警告 XiaoWen Huang - iOS 用 YingZhi Python Programming Language の FTP サーバにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-5655 2014-05-19 13:45 2013-08-28 Show GitHub Exploit DB Packet Storm
222073 4.3 警告 Phpcms - PHPCMS 用 Guestbook モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-5939 2014-05-19 12:10 2013-10-23 Show GitHub Exploit DB Packet Storm
222074 5 警告 OpenStack - OpenStack Dashboard の Identity v3 API におけるユーザのパスワードを変更される脆弱性 CWE-255
証明書・パスワード管理
CVE-2013-4471 2014-05-19 12:03 2013-11-22 Show GitHub Exploit DB Packet Storm
222075 6.5 警告 VICIDIAL Group - VICIDIAL ダイヤラーにおける任意のコマンドを実行される脆弱性 CWE-Other
その他
CVE-2013-4468 2014-05-19 11:53 2013-10-23 Show GitHub Exploit DB Packet Storm
222076 4.3 警告 InterSect Alliance International Pty - System iNtrusion Analysis and Reporting Environment for Linux エージェントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-5249 2014-05-19 11:42 2011-08-9 Show GitHub Exploit DB Packet Storm
222077 4.3 警告 VideoLAN - VideoLAN VLC media player の codec\libpng_plugin.dll におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2014-3441 2014-05-19 09:55 2014-05-9 Show GitHub Exploit DB Packet Storm
222078 5.8 警告 DELL EMC (旧 EMC Corporation)
日立
- EMC RSA BSAFE Micro Edition Suite における SSL サーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-0636 2014-05-16 18:39 2014-04-11 Show GitHub Exploit DB Packet Storm
222079 5 警告 DELL EMC (旧 EMC Corporation)
日立
- EMC RSA BSAFE Micro Edition Suite のサーバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-0628 2014-05-16 18:38 2014-03-24 Show GitHub Exploit DB Packet Storm
222080 7.8 危険 Ignite Realtime - Ignite Realtime Openfire におけるサービス運用妨害 (DoS) の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-2741 2014-05-16 18:32 2014-04-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 17, 2026, 4:19 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
268521 8.1 HIGH
Network
ibm license_metric_tool
bigfix_inventory
IBM BigFix Inventory v9 is vulnerable to a denial of service, caused by an XML External Entity Injection (XXE) error when processing XML data. A remote attacker could exploit this vulnerability to ex… CWE-611
XXE
CVE-2016-8980 2024-11-21 12:00 2017-02-2 Show GitHub Exploit DB Packet Storm
268522 5.9 MEDIUM
Network
ibm license_metric_tool
bigfix_inventory
IBM BigFix Inventory v9 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security. An attacker could exploit this vulnerab… CWE-200
Information Exposure
CVE-2016-8966 2024-11-21 12:00 2017-02-2 Show GitHub Exploit DB Packet Storm
268523 6.1 MEDIUM
Network
ibm license_metric_tool
bigfix_inventory
IBM BigFix Inventory v9 could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to visit a specially-crafted Web site, a remote attacker could… CWE-601
Open Redirect
CVE-2016-8961 2024-11-21 12:00 2017-02-2 Show GitHub Exploit DB Packet Storm
268524 5.4 MEDIUM
Network
ibm spectrum_control
tivoli_storage_productivity_center
IBM Tivoli Storage Productivity Center is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality… CWE-79
Cross-site Scripting
CVE-2016-8943 2024-11-21 12:00 2017-02-2 Show GitHub Exploit DB Packet Storm
268525 3.1 LOW
Network
ibm spectrum_control
tivoli_storage_productivity_center
IBM Tivoli Storage Productivity Center could allow an authenticated user with intimate knowledge of the system to edit a limited set of properties on the server. CWE-284
Improper Access Control
CVE-2016-8942 2024-11-21 12:00 2017-02-2 Show GitHub Exploit DB Packet Storm
268526 8.8 HIGH
Network
ibm spectrum_control
tivoli_storage_productivity_center
IBM Tivoli Storage Productivity Center is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website… CWE-352
 Origin Validation Error
CVE-2016-8941 2024-11-21 12:00 2017-02-2 Show GitHub Exploit DB Packet Storm
268527 6.1 MEDIUM
Network
ibm social_rendering_templates_for_digital_data_connector IBM Social Rendering Templates for Digital Data Connector is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the int… CWE-79
Cross-site Scripting
CVE-2016-8936 2024-11-21 12:00 2017-02-2 Show GitHub Exploit DB Packet Storm
268528 5.4 MEDIUM
Network
ibm websphere_application_server IBM WebSphere Application Server is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality poten… CWE-79
Cross-site Scripting
CVE-2016-8934 2024-11-21 12:00 2017-02-2 Show GitHub Exploit DB Packet Storm
268529 6.1 MEDIUM
Network
ibm web_content_manager_production_analytics
websphere_portal
Exphox WebRadar is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to… CWE-79
Cross-site Scripting
CVE-2016-8922 2024-11-21 12:00 2017-02-2 Show GitHub Exploit DB Packet Storm
268530 8.8 HIGH
Network
ibm filenet_workplace_xt IBM FileNet WorkPlace XT could allow a remote attacker to upload arbitrary files, which could allow the attacker to execute arbitrary code on the vulnerable server. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2016-8921 2024-11-21 12:00 2017-02-2 Show GitHub Exploit DB Packet Storm