Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 7, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
222731 5 警告 Cynthia Fridsma - Horizon Quick Content Management System の lib/functions/d-load.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-7138 2014-01-14 17:41 2013-12-25 Show GitHub Exploit DB Packet Storm
222732 4.3 警告 Seagate Technology LLC - Seagate BlackArmor NAS 220 デバイスのファームウェアにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-6923 2014-01-14 17:41 2014-01-6 Show GitHub Exploit DB Packet Storm
222733 9.3 危険 Libreswan Project - libreswan の Red Hat Enterprise Linux および Fedora パッケージ用 libreswan.spec ファイルにおける脆弱性 CWE-362
競合状態
CVE-2013-7283 2014-01-14 17:40 2013-12-11 Show GitHub Exploit DB Packet Storm
222734 5 警告 Ecava - Ecava IntegraXor の SCADA サーバにおける任意のプロジェクトバックアップファイルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0752 2014-01-14 17:39 2014-01-8 Show GitHub Exploit DB Packet Storm
222735 7.8 危険 QNAP Systems - QNAP QTS にディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-7174 2014-01-14 17:18 2014-01-8 Show GitHub Exploit DB Packet Storm
222736 4.3 警告 シスコシステムズ - Cisco Secure Access Control System の Web インターフェースにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-6974 2014-01-14 16:57 2014-01-10 Show GitHub Exploit DB Packet Storm
222737 6.8 警告 シスコシステムズ - Cisco Unity Connection のサーバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2014-0664 2014-01-14 16:26 2014-01-10 Show GitHub Exploit DB Packet Storm
222738 4.3 警告 シスコシステムズ - Cisco Secure Access Control System の Web フレームワークにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0663 2014-01-14 16:25 2014-01-10 Show GitHub Exploit DB Packet Storm
222739 5.4 警告 シスコシステムズ - Cisco 9900 Unified IP phones におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-0658 2014-01-14 16:24 2014-01-10 Show GitHub Exploit DB Packet Storm
222740 2.1 注意 Matt Polito - Ruby 用 paratrooper-newrelic gem における X-Api-Key の値を取得される脆弱性 CWE-200
情報漏えい
CVE-2014-1234 2014-01-14 15:07 2014-01-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 7, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
268311 8.1 HIGH
Network
ibm infosphere_information_server
infosphere_datastage
infosphere_information_server_on_cloud
IBM InfoSphere Information Server is vulnerable to a denial of service, caused by an XML External Entity Injection (XXE) error when processing XML data. A remote attacker could exploit this vulnerabi… CWE-611
XXE
CVE-2016-6059 2024-11-21 11:55 2017-02-2 Show GitHub Exploit DB Packet Storm
268312 5.4 MEDIUM
Network
ibm jazz_reporting_service IBM Jazz Foundation is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leadin… CWE-79
Cross-site Scripting
CVE-2016-6054 2024-11-21 11:55 2017-02-2 Show GitHub Exploit DB Packet Storm
268313 5.4 MEDIUM
Network
ibm jazz_reporting_service IBM Jazz Reporting Service (JRS) is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality poten… CWE-79
Cross-site Scripting
CVE-2016-6047 2024-11-21 11:55 2017-02-2 Show GitHub Exploit DB Packet Storm
268314 5.4 MEDIUM
Network
ibm tivoli_storage_manager IBM Tivoli Storage Manager Operations Center is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functio… CWE-79
Cross-site Scripting
CVE-2016-6046 2024-11-21 11:55 2017-02-2 Show GitHub Exploit DB Packet Storm
268315 8.8 HIGH
Network
ibm tivoli_storage_manager IBM Tivoli Storage Manager Operations Center is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the w… CWE-352
 Origin Validation Error
CVE-2016-6045 2024-11-21 11:55 2017-02-2 Show GitHub Exploit DB Packet Storm
268316 4.3 MEDIUM
Network
ibm tivoli_storage_manager IBM Tivoli Storage Manager Operations Center could allow an authenticated attacker to enable or disable the application's REST API, which may let the attacker violate security policy. CWE-284
Improper Access Control
CVE-2016-6044 2024-11-21 11:55 2017-02-2 Show GitHub Exploit DB Packet Storm
268317 7.0 HIGH
Local
ibm tivoli_storage_manager Tivoli Storage Manager Operations Center could allow a local user to take over a previously logged in user due to session expiration not being enforced. CWE-384
 Session Fixation
CVE-2016-6043 2024-11-21 11:55 2017-02-2 Show GitHub Exploit DB Packet Storm
268318 7.3 HIGH
Local
ibm security_appscan IBM AppScan Enterprise Edition could allow a remote attacker to execute arbitrary code on the system, caused by improper handling of objects in memory. By persuading a victim to open specially-crafte… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-6042 2024-11-21 11:55 2017-02-2 Show GitHub Exploit DB Packet Storm
268319 5.0 MEDIUM
Network
ibm rational_collaborative_lifecycle_management IBM Jazz Foundation could allow an authenticated user to take over a previously logged in user due to session expiration not being enforced. CWE-384
 Session Fixation
CVE-2016-6040 2024-11-21 11:55 2017-02-2 Show GitHub Exploit DB Packet Storm
268320 5.4 MEDIUM
Network
ibm jazz_reporting_service IBM Jazz Reporting Service (JRS) is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality poten… CWE-79
Cross-site Scripting
CVE-2016-6039 2024-11-21 11:55 2017-02-2 Show GitHub Exploit DB Packet Storm