Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 30, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
222471 10 危険 Super Micro Computer - 複数の Supermicro デバイス製品の IPMI における任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2013-3608 2013-12-26 18:03 2013-08-30 Show GitHub Exploit DB Packet Storm
222472 10 危険 Super Micro Computer - 複数の Supermicro デバイス製品の IPMI におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-3607 2013-12-26 18:03 2013-08-30 Show GitHub Exploit DB Packet Storm
222473 7.2 危険 polkit project
Novell
Canonical
レッドハット
- PolicyKit における PolicyKit 制限を回避される脆弱性 CWE-362
競合状態
CVE-2013-4288 2013-12-26 17:51 2013-09-18 Show GitHub Exploit DB Packet Storm
222474 5 警告 Spice Project
レッドハット
- SPICE の server/reds.c におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-4282 2013-12-26 17:44 2013-10-29 Show GitHub Exploit DB Packet Storm
222475 6.8 警告 GNU Project - GNU C Library の sysdeps/posix/readdir_r.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2013-4237 2013-12-26 17:43 2013-08-13 Show GitHub Exploit DB Packet Storm
222476 2.6 注意 GNU Project
Fedora Project
- GNU C Library の pt_chown におけるファイルの権限を変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-2207 2013-12-26 17:42 2013-06-20 Show GitHub Exploit DB Packet Storm
222477 5.1 警告 GNU Project - GNU C Library および Embedded GLIBC の PTR_MANGLE の実装における実行フローを制御される脆弱性 CWE-20
不適切な入力確認
CVE-2013-4788 2013-12-26 17:42 2013-07-15 Show GitHub Exploit DB Packet Storm
222478 5 警告 Mozilla Foundation - Bugzilla におけるプライベートプロダクト名を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-0786 2013-12-26 17:41 2013-02-17 Show GitHub Exploit DB Packet Storm
222479 4.3 警告 Mozilla Foundation - Bugzilla の show_bug.cgi におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0785 2013-12-26 17:41 2013-02-17 Show GitHub Exploit DB Packet Storm
222480 6.5 警告 OpenStack - 複数の OpenStack 製品におけるアクセスを保持される脆弱性 CWE-255
証明書・パスワード管理
CVE-2013-4222 2013-12-26 17:37 2013-06-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 30, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
268031 8.6 HIGH
Network
oracle
squid-cache
canonical
linux
squid
ubuntu_linux
mime_header.cc in Squid before 3.5.18 allows remote attackers to bypass intended same-origin restrictions and possibly conduct cache-poisoning attacks via a crafted HTTP Host header, aka a "header sm… CWE-345
 Insufficient Verification of Data Authenticity
CVE-2016-4554 2024-11-21 11:52 2016-05-11 Show GitHub Exploit DB Packet Storm
268032 8.6 HIGH
Network
canonical
squid-cache
oracle
ubuntu_linux
squid
linux
client_side.cc in Squid before 3.5.18 and 4.x before 4.0.10 does not properly ignore the Host header when absolute-URI is provided, which allows remote attackers to conduct cache-poisoning attacks vi… CWE-345
 Insufficient Verification of Data Authenticity
CVE-2016-4553 2024-11-21 11:52 2016-05-11 Show GitHub Exploit DB Packet Storm
268033 7.8 HIGH
Local
google android wpa_supplicant 0.4.0 through 2.5 does not reject \n and \r characters in passphrase parameters, which allows local users to trigger arbitrary library loading and consequently gain privileges, or caus… CWE-19
 Data Processing Errors
CVE-2016-4477 2024-11-21 11:52 2016-05-9 Show GitHub Exploit DB Packet Storm
268034 7.5 HIGH
Network
w1.fi
canonical
wpa_supplicant
hostapd
ubuntu_linux
hostapd 0.6.7 through 2.5 and wpa_supplicant 0.6.7 through 2.5 do not reject \n and \r characters in passphrase parameters, which allows remote attackers to cause a denial of service (daemon outage) … CWE-20
 Improper Input Validation 
CVE-2016-4476 2024-11-21 11:52 2016-05-9 Show GitHub Exploit DB Packet Storm
268035 9.8 CRITICAL
Network
libpam-sshauth_project
debian
libpam-sshauth
debian_linux
The pam_sm_authenticate function in pam_sshauth.c in libpam-sshauth might allow context-dependent attackers to bypass authentication or gain privileges via a system user account. CWE-287
Improper Authentication
CVE-2016-4422 2024-11-21 11:52 2016-05-7 Show GitHub Exploit DB Packet Storm
268036 7.5 HIGH
Network
mcafee livesafe Integer signedness error in the AV engine before DAT 8145, as used in McAfee LiveSafe 14.0, allows remote attackers to cause a denial of service (memory corruption and crash) via a crafted packed exe… CWE-20
 Improper Input Validation 
CVE-2016-4535 2024-11-21 11:52 2016-05-6 Show GitHub Exploit DB Packet Storm
268037 3.0 LOW
Local
mcafee
microsoft
virusscan_enterprise
windows
The McAfee VirusScan Console (mcconsol.exe) in McAfee VirusScan Enterprise 8.8.0 before Hotfix 1123565 (8.8.0.1546) on Windows allows local administrators to bypass intended self-protection rules and… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-4534 2024-11-21 11:52 2016-05-6 Show GitHub Exploit DB Packet Storm
268038 5.9 MEDIUM
Network
wireshark wireshark epan/dissectors/packet-ber.c in the ASN.1 BER dissector in Wireshark 1.12.x before 1.12.10 and 2.x before 2.0.2 allows remote attackers to cause a denial of service (deep recursion, stack consumption… CWE-20
 Improper Input Validation 
CVE-2016-4421 2024-11-21 11:52 2016-05-1 Show GitHub Exploit DB Packet Storm
268039 5.9 MEDIUM
Network
wireshark wireshark The NFS dissector in Wireshark 2.x before 2.0.2 allows remote attackers to cause a denial of service (application crash) via a crafted packet. CWE-20
 Improper Input Validation 
CVE-2016-4420 2024-11-21 11:52 2016-05-1 Show GitHub Exploit DB Packet Storm
268040 5.9 MEDIUM
Network
wireshark wireshark epan/dissectors/packet-spice.c in the SPICE dissector in Wireshark 2.x before 2.0.2 mishandles capability data, which allows remote attackers to cause a denial of service (large loop) via a crafted p… CWE-399
 Resource Management Errors
CVE-2016-4419 2024-11-21 11:52 2016-05-1 Show GitHub Exploit DB Packet Storm