Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
222641 5.8 警告 IBM - IBM SPSS Collaboration and Deployment Services におけるオープンリダイレクトの脆弱性 CWE-20
不適切な入力確認
CVE-2013-4046 2013-12-24 20:50 2013-12-16 Show GitHub Exploit DB Packet Storm
222642 4.3 警告 IBM - IBM SPSS Collaboration and Deployment Services のポータルアプリケーションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4045 2013-12-24 20:50 2013-12-16 Show GitHub Exploit DB Packet Storm
222643 4 警告 IBM - IBM SPSS Collaboration and Deployment Services におけるアプリケーションログファイルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2013-4044 2013-12-24 20:49 2013-12-16 Show GitHub Exploit DB Packet Storm
222644 3.5 注意 eFront Learning - eFront の www/administrator.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-7194 2013-12-24 19:36 2013-12-12 Show GitHub Exploit DB Packet Storm
222645 9.3 危険 UPC - UPC Ireland Cisco EPC 2425 ルータにおけるアクセス権を取得される脆弱性 CWE-310
暗号の問題
CVE-2013-7136 2013-12-24 19:15 2013-12-11 Show GitHub Exploit DB Packet Storm
222646 7.5 危険 nCrafts - WordPress 用 FormCraft プラグインの form.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-7187 2013-12-24 19:15 2013-12-8 Show GitHub Exploit DB Packet Storm
222647 6.8 警告 シスコシステムズ - Cisco EPC3925 デバイスの goform/Quick_setup におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-6976 2013-12-24 19:14 2013-12-23 Show GitHub Exploit DB Packet Storm
222648 4.6 警告 シスコシステムズ - Cisco NX-OS の filesys におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-4135 2013-12-24 19:07 2013-12-19 Show GitHub Exploit DB Packet Storm
222649 4.6 警告 シスコシステムズ - Cisco NX-OS の tar におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-4131 2013-12-24 19:07 2013-12-23 Show GitHub Exploit DB Packet Storm
222650 7.5 危険 INNER ESTEEM SDN BHD - C2C Forward Auction Creator における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-7193 2013-12-24 18:58 2013-12-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
268151 10.0 CRITICAL
Network
ivanti
pulsesecure
connect_secure
pulse_connect_secure
Pulse Connect Secure (PCS) 8.2 before 8.2r1, 8.1 before 8.1r2, 8.0 before 8.0r10, and 7.4 before 7.4r13.4 allow remote attackers to read sensitive system authentication files in an unspecified direct… NVD-CWE-noinfo
CVE-2016-4787 2024-11-21 11:52 2016-05-26 Show GitHub Exploit DB Packet Storm
268152 7.5 HIGH
Network
pulsesecure
ivanti
pulse_connect_secure
connect_secure
Pulse Connect Secure (PCS) 8.2 before 8.2r1, 8.1 before 8.1r3, 8.0 before 8.0r11, and 7.4 before 7.4r13.4 allow remote attackers to cause a denial of service (CPU consumption) via unspecified vectors. NVD-CWE-noinfo
CVE-2016-4786 2024-11-21 11:52 2016-05-26 Show GitHub Exploit DB Packet Storm
268153 6.1 MEDIUM
Network
huawei ath_firmware
ath
rio_firmware
plk_firmware
cherryplus_firmware
cherryplus
Cross-site scripting (XSS) vulnerability in the email APP in Huawei PLK smartphones with software AL10C00 before AL10C00B211 and AL10C92 before AL10C92B211; ATH smartphones with software AL00C00 befo… CWE-79
Cross-site Scripting
CVE-2016-4575 2024-11-21 11:52 2016-05-26 Show GitHub Exploit DB Packet Storm
268154 6.1 MEDIUM
Network
lenovo shareit Cross-site scripting (XSS) vulnerability in Lenovo SHAREit before 3.5.98_ww on Android before 4.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka "Universa… CWE-79
Cross-site Scripting
CVE-2016-4783 2024-11-21 11:52 2016-05-24 Show GitHub Exploit DB Packet Storm
268155 8.8 HIGH
Network
lenovo shareit Lenovo SHAREit before 3.5.98_ww on Android before 4.2 allows remote attackers to have unspecified impact via a crafted intent: URL, aka an "intent scheme URL attack." CWE-20
 Improper Input Validation 
CVE-2016-4782 2024-11-21 11:52 2016-05-24 Show GitHub Exploit DB Packet Storm
268156 7.5 HIGH
Adjacent
huawei usg9500_firmware
ngfw_module_firmware
secospace_usg6300_firmware
secospace_usg6600_firmware
secospace_usg6500_firmware
Buffer overflow in the Smart DNS functionality in the Huawei NGFW Module and Secospace USG6300, USG6500, USG6600, and USG9500 firewalls with software before V500R001C20SPC100 allows remote attackers … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-4577 2024-11-21 11:52 2016-05-24 Show GitHub Exploit DB Packet Storm
268157 9.8 CRITICAL
Network
huawei nip6300_firmware
secospace_usg6500_firmware
secospace_antiddos8000_firmware
usg9500_firmware
secospace_usg6300_firmware
ngfw_module_firmware
secospace_usg6600_firmware
nip6600_fi…
Buffer overflow in the Application Specific Packet Filtering (ASPF) functionality in the Huawei IPS Module, NGFW Module, NIP6300, NIP6600, Secospace USG6300, USG6500, USG6600, USG9500, and AntiDDoS80… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-4576 2024-11-21 11:52 2016-05-24 Show GitHub Exploit DB Packet Storm
268158 7.8 HIGH
Local
linux
canonical
linux_kernel
ubuntu_linux
Use-after-free vulnerability in mm/percpu.c in the Linux kernel through 4.6 allows local users to cause a denial of service (BUG) or possibly have unspecified other impact via crafted use of the mmap… NVD-CWE-Other
CVE-2016-4794 2024-11-21 11:52 2016-05-23 Show GitHub Exploit DB Packet Storm
268159 5.5 MEDIUM
Local
canonical
linux
oracle
ubuntu_linux
linux_kernel
linux
fs/pnode.c in the Linux kernel before 4.5.4 does not properly traverse a mount propagation tree in a certain case involving a slave mount, which allows local users to cause a denial of service (NULL … NVD-CWE-Other
CVE-2016-4581 2024-11-21 11:52 2016-05-23 Show GitHub Exploit DB Packet Storm
268160 7.5 HIGH
Network
linux
canonical
linux_kernel
ubuntu_linux
The x25_negotiate_facilities function in net/x25/x25_facilities.c in the Linux kernel before 4.5.5 does not properly initialize a certain data structure, which allows attackers to obtain sensitive in… CWE-200
Information Exposure
CVE-2016-4580 2024-11-21 11:52 2016-05-23 Show GitHub Exploit DB Packet Storm