Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
223721 9.3 危険 マイクロソフト - 複数の Microsoft 製品の GDI+ における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2013-3906 2013-12-12 18:08 2013-11-5 Show GitHub Exploit DB Packet Storm
223722 5 警告 シスコシステムズ - Cisco Cloud Portal における不特定のタイプのファイルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-6708 2013-12-12 17:56 2013-12-9 Show GitHub Exploit DB Packet Storm
223723 6.8 警告 IBM - IBM Forms Viewer におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-5447 2013-12-12 17:41 2013-12-5 Show GitHub Exploit DB Packet Storm
223724 4.3 警告 マイクロソフト - Microsoft Exchange Server の Outlook Web Access におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-5072 2013-12-12 17:16 2013-12-10 Show GitHub Exploit DB Packet Storm
223725 4.3 警告 マイクロソフト - Microsoft Office 2013 および 2013 RT における認証トークンを取得される脆弱性 CWE-200
情報漏えい
CVE-2013-5054 2013-12-12 17:09 2013-12-10 Show GitHub Exploit DB Packet Storm
223726 4.3 警告 マイクロソフト - Microsoft ASP.NET SignalR および Visual Studio Team Foundation Server におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-5042 2013-12-12 17:07 2013-12-10 Show GitHub Exploit DB Packet Storm
223727 4.3 警告 マイクロソフト - Microsoft Office 2007 および 2010 の hxds.dll における任意のコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-5057 2013-12-12 17:03 2013-12-10 Show GitHub Exploit DB Packet Storm
223728 6.9 警告 マイクロソフト - Microsoft Windows XP および Windows Server 2003 の LRPC クライアントにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-3878 2013-12-12 16:59 2013-12-10 Show GitHub Exploit DB Packet Storm
223729 4.9 警告 マイクロソフト - 複数の Microsoft Windows 製品のカーネルモードドライバにおける整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2013-5058 2013-12-12 16:55 2013-12-10 Show GitHub Exploit DB Packet Storm
223730 7.2 危険 マイクロソフト - 複数の Microsoft Windows 製品のカーネルモードドライバの portcls.sys における権限昇格の脆弱性 CWE-119
バッファエラー
CVE-2013-3907 2013-12-12 16:53 2013-12-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 8, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
277301 6.9 MEDIUM
Network
progress whatsup_gold Multiple cross-site scripting (XSS) vulnerabilities in IPSwitch WhatsUp Gold before 16.4 allow remote attackers to inject arbitrary web script or HTML via (1) an SNMP OID object, (2) an SNMP trap mes… CWE-79
Cross-site Scripting
CVE-2015-6005 2024-11-21 11:34 2015-12-27 Show GitHub Exploit DB Packet Storm
277302 5.9 MEDIUM
Network
cisco jabber Cisco Jabber 10.6.x, 11.0.x, and 11.1.x on Windows allows man-in-the-middle attackers to conduct STARTTLS downgrade attacks and trigger cleartext XMPP sessions via unspecified vectors, aka Bug ID CSC… CWE-200
Information Exposure
CVE-2015-6409 2024-11-21 11:34 2015-12-27 Show GitHub Exploit DB Packet Storm
277303 6.5 MEDIUM
Adjacent
cisco ios_xe Cisco IOS XE 16.1.1 allows remote attackers to cause a denial of service (device reload) via a packet with the 00-00-00-00-00-00 source MAC address, aka Bug ID CSCux48405. CWE-399
 Resource Management Errors
CVE-2015-6431 2024-11-21 11:34 2015-12-23 Show GitHub Exploit DB Packet Storm
277304 - cisco ios
ios_xe
The IKEv1 state machine in Cisco IOS 15.4 through 15.6 and IOS XE 3.15 through 3.17 allows remote attackers to cause a denial of service (IPsec connection termination) via a crafted IKEv1 packet to a… CWE-19
 Data Processing Errors
CVE-2015-6429 2024-11-21 11:34 2015-12-19 Show GitHub Exploit DB Packet Storm
277305 - cisco dpq3925_8x4_docsis_3.0_wireless_residential_gateway_with_embedded_digital_voice_adapter Cisco DPQ3925 devices with EDVA r1 Base allow remote attackers to obtain sensitive information via a crafted HTTP request, aka Bug ID CSCuv03958. CWE-200
Information Exposure
CVE-2015-6428 2024-11-21 11:34 2015-12-18 Show GitHub Exploit DB Packet Storm
277306 - cisco firesight_system_software Cisco FireSIGHT Management Center allows remote attackers to bypass the HTTP attack detection feature and avoid triggering Snort IDS rules via an SSL session that is mishandled after decryption, aka … CWE-254
 7PK - Security Features
CVE-2015-6427 2024-11-21 11:34 2015-12-18 Show GitHub Exploit DB Packet Storm
277307 - cisco prime_network_services_controller Cisco Prime Network Services Controller 3.0 allows local users to bypass intended access restrictions and execute arbitrary commands via additional parameters to an unspecified command, aka Bug ID CS… CWE-20
 Improper Input Validation 
CVE-2015-6426 2024-11-21 11:34 2015-12-18 Show GitHub Exploit DB Packet Storm
277308 - cisco application_policy_infrastructure_controller The boot manager in Cisco Application Policy Infrastructure Controller (APIC) 1.1(0.920a) allows local users to bypass intended access restrictions and obtain single-user-mode root access via unspeci… CWE-255
Credentials Management
CVE-2015-6424 2024-11-21 11:34 2015-12-18 Show GitHub Exploit DB Packet Storm
277309 - cisco unified_communications_manager The WebApplications Identity Management subsystem in Cisco Unified Communications Manager 10.5(0.98000.88) allows remote attackers to cause a denial of service (subsystem outage) via invalid session … CWE-399
 Resource Management Errors
CVE-2015-6425 2024-11-21 11:34 2015-12-17 Show GitHub Exploit DB Packet Storm
277310 - apache commons_collections Serialized-object interfaces in certain Cisco Collaboration and Social Media; Endpoint Clients and Client Software; Network Application, Service, and Acceleration; Network and Content Security Device… CWE-502
 Deserialization of Untrusted Data
CVE-2015-6420 2024-11-21 11:34 2015-12-15 Show GitHub Exploit DB Packet Storm