Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228471 7.2 危険 ヒューレット・パッカード - HP Storage Data Protector における権限を取得される脆弱性 CWE-noinfo
情報不足
CVE-2012-5220 2013-04-30 18:24 2013-04-24 Show GitHub Exploit DB Packet Storm
228472 4 警告 The phpMyAdmin Project - phpMyAdmin の export.php における値を挿入される脆弱性 CWE-noinfo
情報不足
CVE-2013-3241 2013-04-30 18:23 2013-04-24 Show GitHub Exploit DB Packet Storm
228473 6.5 警告 The phpMyAdmin Project - phpMyAdmin のエクスポート機能におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-3240 2013-04-30 18:21 2013-04-24 Show GitHub Exploit DB Packet Storm
228474 6.8 警告 Crunchify - WordPress 用 FourSquare Checkins プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-2709 2013-04-30 17:54 2013-04-22 Show GitHub Exploit DB Packet Storm
228475 6.8 警告 Crunchify - WordPress 用 All in One Webmaster プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-2696 2013-04-30 17:52 2013-04-22 Show GitHub Exploit DB Packet Storm
228476 5 警告 Blink Web Effects - WordPress 用 Social Media Widget プラグインにおける任意のファイルのアップロードを強制される脆弱性 CWE-noinfo
情報不足
CVE-2013-1949 2013-04-30 17:51 2013-04-9 Show GitHub Exploit DB Packet Storm
228477 10 危険 Rob Westgeest - Ruby 用 md2pdf gem の converter.rb における任意のコマンドを実行される脆弱性 CWE-noinfo
情報不足
CVE-2013-1948 2013-04-30 17:51 2013-04-10 Show GitHub Exploit DB Packet Storm
228478 9.3 危険 Kelly D. Redding - Ruby 用 kelredd-pruview gem における任意のコマンドを実行される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2013-1947 2013-04-30 17:50 2013-04-4 Show GitHub Exploit DB Packet Storm
228479 9.3 危険 karteek-docsplit - Ruby 用 Karteek Docsplit gem における任意のコマンドを実行される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2013-1933 2013-04-30 17:49 2013-04-1 Show GitHub Exploit DB Packet Storm
228480 6.8 警告 Novell
plataformatec
- Ruby 用 Devise gem における不正な結果が返される脆弱性 CWE-399
リソース管理の問題
CVE-2013-0233 2013-04-30 17:48 2013-01-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 18, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
275751 9.8 CRITICAL
Network
google android In all Qualcomm products with Android releases from CAF using the Linux kernel, the UE can send unprotected MeasurementReports revealing UE location. CWE-1
Location
CVE-2016-10380 2024-11-21 11:43 2017-08-19 Show GitHub Exploit DB Packet Storm
275752 9.8 CRITICAL
Network
google android In all Qualcomm products with Android releases from CAF using the Linux kernel, an argument to a hypervisor function is not properly validated. CWE-20
 Improper Input Validation 
CVE-2016-10347 2024-11-21 11:43 2017-08-19 Show GitHub Exploit DB Packet Storm
275753 9.8 CRITICAL
Network
google android In all Qualcomm products with Android releases from CAF using the Linux kernel, an integer overflow vulnerability exists in the hypervisor. CWE-190
 Integer Overflow or Wraparound
CVE-2016-10346 2024-11-21 11:43 2017-08-19 Show GitHub Exploit DB Packet Storm
275754 9.8 CRITICAL
Network
google android In all Qualcomm products with Android releases from CAF using the Linux kernel, the use of an out-of-range pointer offset is potentially possible in LTE. CWE-476
 NULL Pointer Dereference
CVE-2016-10344 2024-11-21 11:43 2017-08-19 Show GitHub Exploit DB Packet Storm
275755 9.8 CRITICAL
Network
google android In all Qualcomm products with Android releases from CAF using the Linux kernel, sSL handshake failure with ClientHello rejection results in memory leak. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-10343 2024-11-21 11:43 2017-08-19 Show GitHub Exploit DB Packet Storm
275756 6.1 MEDIUM
Network
liferay liferay_portal XSS exists in Liferay Portal before 7.0 CE GA4 via a crafted redirect field to modules/apps/foundation/frontend-js/frontend-js-spa-web/src/main/resources/META-INF/resources/init.jsp. CWE-79
Cross-site Scripting
CVE-2016-10404 2024-11-21 11:43 2017-08-8 Show GitHub Exploit DB Packet Storm
275757 7.5 HIGH
Network
sendio sendio Sendio versions before 8.2.1 were affected by a Local File Inclusion vulnerability that allowed an unauthenticated, remote attacker to read potentially sensitive system files via a specially crafted … CWE-538
 File and Directory Information Exposure
CVE-2016-10399 2024-11-21 11:43 2017-07-28 Show GitHub Exploit DB Packet Storm
275758 7.8 HIGH
Local
avira antivirus Avira Antivirus engine versions before 8.3.36.60 allow remote code execution as NT AUTHORITY\SYSTEM via a section header with a very large relative virtual address in a PE file, causing an integer ov… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-10402 2024-11-21 11:43 2017-07-27 Show GitHub Exploit DB Packet Storm
275759 8.8 HIGH
Network
zyxel pk5001z_firmware ZyXEL PK5001Z devices have zyad5001 as the su password, which makes it easier for remote attackers to obtain root access if a non-root account password is known (or a non-root default account exists … CWE-255
Credentials Management
CVE-2016-10401 2024-11-21 11:43 2017-07-26 Show GitHub Exploit DB Packet Storm
275760 7.5 HIGH
Network
atutor atutor Directory Traversal exists in ATutor before 2.2.2 via the icon parameter to /mods/_core/courses/users/create_course.php. The attacker can read an arbitrary file by visiting get_course_icon.php?id= af… CWE-22
Path Traversal
CVE-2016-10400 2024-11-21 11:43 2017-07-23 Show GitHub Exploit DB Packet Storm