Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 3, 2026, 6:08 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
222411 4.3 警告 Schneider Electric - Schneider Electric ClearSCADA および SCADA Expert ClearSCADA の DNP3 ドライバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2013-6142 2014-01-20 11:12 2013-01-14 Show GitHub Exploit DB Packet Storm
222412 7.5 危険 cspmum - CSP MySQL User Manager における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-1466 2014-01-20 10:28 2013-01-8 Show GitHub Exploit DB Packet Storm
222413 7.5 危険 Open Web Analytics - Open Web Analytics のパスワードリセットのページにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-1206 2014-01-20 10:16 2014-01-9 Show GitHub Exploit DB Packet Storm
222414 10 危険 LOREX Technology - 複数の Lorex Edge 製品のファームウェアの INetViewX ActiveX コントロールにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-1201 2014-01-20 10:16 2014-01-9 Show GitHub Exploit DB Packet Storm
222415 7.5 危険 WellinTech - 複数の WellinTech 製品の ActiveX コントロールにおける任意の DLL コードをダウンロードされる脆弱性 CWE-94
コード・インジェクション
CVE-2013-2827 2014-01-20 10:15 2014-01-14 Show GitHub Exploit DB Packet Storm
222416 6.4 警告 WellinTech - 複数の WellinTech 製品におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-2826 2014-01-20 10:14 2014-01-14 Show GitHub Exploit DB Packet Storm
222417 3.5 注意 VASCO - VASCO IDENTIKEY Authentication Server に認証不備の脆弱性 CWE-287
CWE-Other
CVE-2013-7292 2014-01-17 18:20 2014-01-9 Show GitHub Exploit DB Packet Storm
222418 7.2 危険 サン・マイクロシステムズ
オラクル
- Sun Solaris の dbm_open() および dbminit() 関数におけるバッファオーバーフローの脆弱性 - CVE-2003-1067 2014-01-17 18:10 2003-06-19 Show GitHub Exploit DB Packet Storm
222419 9.3 危険 オラクル - Oracle Java SE における Hotspot に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-0408 2014-01-17 17:17 2014-01-14 Show GitHub Exploit DB Packet Storm
222420 9.3 危険 オラクル - Oracle Java SE における Install に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-0385 2014-01-17 17:17 2014-01-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 3, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
268361 9.8 CRITICAL
Network
haxx curl Curl before 7.49.1 in Apple OS X before macOS Sierra prior to 10.12 allows remote or local attackers to execute arbitrary code, gain sensitive information, cause denial-of-service conditions, bypass … NVD-CWE-noinfo
CVE-2016-4606 2024-11-21 11:52 2020-02-21 Show GitHub Exploit DB Packet Storm
268362 7.5 HIGH
Network
apple mac_os_x
safari
A Cross-origin vulnerability exists in WebKit in Apple Safari before 10.0.1 when processing location attributes, which could let a remote malicious user obtain sensitive information. CWE-200
Information Exposure
CVE-2016-4676 2024-11-21 11:52 2020-02-4 Show GitHub Exploit DB Packet Storm
268363 8.8 HIGH
Network
webkitgtk
canonical
webkitgtk\+
ubuntu_linux
WebKitGTK+ before 2.14.0: A use-after-free vulnerability can allow remote attackers to cause a DoS CWE-416
 Use After Free
CVE-2016-4761 2024-11-21 11:52 2020-01-23 Show GitHub Exploit DB Packet Storm
268364 8.8 HIGH
Network
cloudera cdh In Cloudera CDH before 5.7.1, Impala REVOKE ALL ON SERVER commands do not revoke all privileges. CWE-863
 Incorrect Authorization
CVE-2016-4572 2024-11-21 11:52 2019-11-26 Show GitHub Exploit DB Packet Storm
268365 9.8 CRITICAL
Network
arubanetworks clearpass Aruba ClearPass Policy Manager before 6.5.7 and 6.6.x before 6.6.2 allows attackers to obtain database credentials. CWE-522
 Insufficiently Protected Credentials
CVE-2016-4401 2024-11-21 11:52 2019-11-7 Show GitHub Exploit DB Packet Storm
268366 6.5 MEDIUM
Network
apple iphone_os
mac_os
apple_tv
In iOS before 9.3.3, tvOS before 9.2.2, and OS X El Capitan before v10.11.6 and Security Update 2016-004, a downgrade issue existed with HTTP authentication credentials saved in Keychain. This issue … CWE-200
Information Exposure
CVE-2016-4644 2024-11-21 11:52 2019-01-12 Show GitHub Exploit DB Packet Storm
268367 6.5 MEDIUM
Network
apple iphone_os
mac_os
apple_tv
In iOS before 9.3.3, tvOS before 9.2.2, and OS X El Capitan before v10.11.6 and Security Update 2016-004, a validation issue existed in the parsing of 407 responses. This issue was addressed through … CWE-200
Information Exposure
CVE-2016-4643 2024-11-21 11:52 2019-01-12 Show GitHub Exploit DB Packet Storm
268368 5.9 MEDIUM
Network
apple iphone_os
mac_os
apple_tv
In iOS before 9.3.3, tvOS before 9.2.2, and OS X El Capitan before v10.11.6 and Security Update 2016-004, proxy authentication incorrectly reported HTTP proxies received credentials securely. This is… CWE-254
 7PK - Security Features
CVE-2016-4642 2024-11-21 11:52 2019-01-12 Show GitHub Exploit DB Packet Storm
268369 6.1 MEDIUM
Network
hp integrated_lights-out_3_firmware
integrated_lights-out_4_firmware
A remote cross site scripting vulnerability was identified in HPE iLO 3 all version prior to v1.88 and HPE iLO 4 all versions prior to v2.44. CWE-79
Cross-site Scripting
CVE-2016-4406 2024-11-21 11:52 2018-08-7 Show GitHub Exploit DB Packet Storm
268370 8.8 HIGH
Network
hp business_service_management A remote code execution vulnerability was identified in HP Business Service Management (BSM) using Apache Commons Collection Java Deserialization versions v9.20-v9.26 CWE-502
 Deserialization of Untrusted Data
CVE-2016-4405 2024-11-21 11:52 2018-08-7 Show GitHub Exploit DB Packet Storm