Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 31, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
222501 5.1 警告 eSyndiCat - eSyndicat Directory の admin/cron.php における任意のファイルをインクルードされる脆弱性 - CVE-2006-2578 2013-12-26 15:44 2006-05-24 Show GitHub Exploit DB Packet Storm
222502 5 警告 AlstraSoft - Alstrasoft Article Manager Pro における重要な情報を取得される脆弱性 - CVE-2006-2566 2013-12-26 15:44 2006-05-24 Show GitHub Exploit DB Packet Storm
222503 5 警告 Snitz - Snitz Forums 用 Avatar MOD の avatar_upload.asp におけるファイルタイプのチェックを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2006-2530 2013-12-26 15:44 2006-05-22 Show GitHub Exploit DB Packet Storm
222504 7.5 危険 smartisoft - phpBazar の Admin/admin.php における認証を回避される脆弱性 - CVE-2006-2527 2013-12-26 15:44 2006-05-22 Show GitHub Exploit DB Packet Storm
222505 5 警告 Bitrix - Bitrix Site Manager におけるユーザを他の Web サイトへリダイレクトされる脆弱性 - CVE-2006-2478 2013-12-26 15:44 2006-05-19 Show GitHub Exploit DB Packet Storm
222506 5 警告 Bitrix - Bitrix Site Manager における重要な情報を取得される脆弱性 - CVE-2006-2476 2013-12-26 15:44 2006-05-19 Show GitHub Exploit DB Packet Storm
222507 6.4 警告 duware - DUware DUbanner の add.asp における任意のコードを実行される脆弱性 - CVE-2006-2428 2013-12-26 15:44 2006-05-17 Show GitHub Exploit DB Packet Storm
222508 5 警告 angelinecms - AngelineCMS における重要な情報を取得される脆弱性 - CVE-2006-2329 2013-12-26 15:44 2006-05-12 Show GitHub Exploit DB Packet Storm
222509 10 危険 180solutions - 180solutions Zango における任意のコードを実行される脆弱性 - CVE-2006-2324 2013-12-26 15:44 2006-05-12 Show GitHub Exploit DB Packet Storm
222510 2.6 注意 Skype Technologies S.A. - Windows 用 Skype の URI ハンドラにおける任意のファイルをダウンロードされる脆弱性 CWE-94
コード・インジェクション
CVE-2006-2312 2013-12-26 15:44 2006-05-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
268001 7.8 HIGH
Local
apple iphone_os
mac_os_x
AppleMobileFileIntegrity in Apple iOS before 10 and OS X before 10.12 mishandles process entitlement and Team ID values in the task port inheritance policy, which allows attackers to execute arbitrar… CWE-20
 Improper Input Validation 
CVE-2016-4698 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
268002 7.8 HIGH
Local
apple mac_os_x Apple HSSPI Support in Apple OS X before 10.12 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-4697 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
268003 7.8 HIGH
Local
apple mac_os_x AppleEFIRuntime in Apple OS X before 10.12 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (NULL pointer dereference) via a crafted app. CWE-476
 NULL Pointer Dereference
CVE-2016-4696 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
268004 9.1 CRITICAL
Network
apple mac_os_x
os_x_server
The Apache HTTP Server in Apple OS X before 10.12 and OS X Server before 5.2 follows RFC 3875 section 4.1.18 and therefore does not protect applications from the presence of untrusted CGI client data… CWE-284
Improper Access Control
CVE-2016-4694 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
268005 9.8 CRITICAL
Network
apple
xmlsoft
watchos
tvos
iphone_os
mac_os_x
libxml2
xpointer.c in libxml2 before 2.9.5 (as used in Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3, and other products) does not forbid namespace nodes in XPointer ranges, wh… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-4658 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
268006 6.1 MEDIUM
Network
apple safari
iphone_os
Cross-site scripting (XSS) vulnerability in Safari Reader in Apple iOS before 10 and Safari before 10 allows remote attackers to inject arbitrary web script or HTML via a crafted web site, aka "Unive… CWE-79
Cross-site Scripting
CVE-2016-4618 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
268007 8.8 HIGH
Network
apple tvos
iphone_os
safari
WebKit in Apple iOS before 10, Safari before 10, and tvOS before 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, a differ… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-4611 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
268008 9.8 CRITICAL
Network
apache cxf_fediz The application plugins in Apache CXF Fediz 1.2.x before 1.2.3 and 1.3.x before 1.3.1 do not match SAML AudienceRestriction values against configured audience URIs, which might allow remote attackers… CWE-284
Improper Access Control
CVE-2016-4464 2024-11-21 11:52 2016-09-22 Show GitHub Exploit DB Packet Storm
268009 8.6 HIGH
Network
hp performance_center
loadrunner
HPE Performance Center before 12.50 and LoadRunner before 12.50 allow remote attackers to cause a denial of service via unspecified vectors. NVD-CWE-noinfo
CVE-2016-4384 2024-11-21 11:52 2016-09-21 Show GitHub Exploit DB Packet Storm
268010 7.5 HIGH
Local
trane tracer_sc ABB DataManagerPro 1.x before 1.7.1 allows local users to gain privileges by replacing a DLL file in the package directory. CWE-427
 Uncontrolled Search Path Element
CVE-2016-4526 2024-11-21 11:52 2016-09-19 Show GitHub Exploit DB Packet Storm