Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228731 6.8 警告 ヒューレット・パッカード - HP ArcSight Connector Appliance および ArcSight Logger における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2012-5199 2013-02-19 16:42 2013-02-14 Show GitHub Exploit DB Packet Storm
228732 5 警告 ヒューレット・パッカード - HP ArcSight Connector Appliance および ArcSight Logger における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2012-5198 2013-02-19 16:41 2013-02-14 Show GitHub Exploit DB Packet Storm
228733 6.5 警告 ヒューレット・パッカード - HP ArcSight Connector Appliance および ArcSight Logger における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2012-3286 2013-02-19 16:41 2013-02-14 Show GitHub Exploit DB Packet Storm
228734 6.8 警告 シスコシステムズ - Cisco Unity Express におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-1120 2013-02-18 17:18 2013-02-1 Show GitHub Exploit DB Packet Storm
228735 4.3 警告 libssh - libssh の publickey_from_privatekey 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2013-0176 2013-02-18 17:15 2013-01-13 Show GitHub Exploit DB Packet Storm
228736 10 危険 VMware - 複数の VMware 製品における任意のコードを実行される脆弱性 CWE-287
不適切な認証
CVE-2013-1405 2013-02-18 16:11 2013-01-31 Show GitHub Exploit DB Packet Storm
228737 4.3 警告 シスコシステムズ - Cisco Unified MeetingPlace のサーバにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1123 2013-02-18 16:09 2013-02-7 Show GitHub Exploit DB Packet Storm
228738 10 危険 Schneider Electric - Schneider Electric Accutech Manager におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-0658 2013-02-18 16:09 2013-02-12 Show GitHub Exploit DB Packet Storm
228739 5 警告 Moxa Inc. - Moxa EDR-G903 シリーズルータにおける不特定のデバイスへのアクセス権を取得される脆弱性 CWE-200
情報漏えい
CVE-2012-4712 2013-02-18 16:08 2012-12-17 Show GitHub Exploit DB Packet Storm
228740 10 危険 WellinTech - WellinTech KingView の kingMess.exe におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-4711 2013-02-18 16:07 2013-02-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 12, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
274421 5.3 MEDIUM
Local
gnu
opensuse
glibc
leap
In the GNU C Library (aka glibc or libc6) through 2.28, the getaddrinfo function would successfully parse a string that contained an IPv4 address followed by whitespace and arbitrary characters, whic… CWE-20
 Improper Input Validation 
CVE-2016-10739 2024-11-21 11:44 2019-01-22 Show GitHub Exploit DB Packet Storm
274422 8.8 HIGH
Network
castlamp zenbership Zenbership v107 has CSRF via admin/cp-functions/event-add.php. CWE-352
 Origin Validation Error
CVE-2016-10738 2024-11-21 11:44 2019-01-16 Show GitHub Exploit DB Packet Storm
274423 5.4 MEDIUM
Network
s9y serendipity Serendipity 2.0.4 has XSS via the serendipity_admin.php serendipity[body] parameter. CWE-79
Cross-site Scripting
CVE-2016-10737 2024-11-21 11:44 2019-01-16 Show GitHub Exploit DB Packet Storm
274424 6.1 MEDIUM
Network
devpups social_pug The "Social Pug - Easy Social Share Buttons" plugin before 1.2.6 for WordPress allows XSS via the wp-admin/admin.php?page=dpsp-toolkit dpsp_message_class parameter. CWE-79
Cross-site Scripting
CVE-2016-10736 2024-11-21 11:44 2019-01-10 Show GitHub Exploit DB Packet Storm
274425 6.1 MEDIUM
Network
getbootstrap bootstrap In Bootstrap 3.x before 3.4.0 and 4.x-beta before 4.0.0-beta.2, XSS is possible in the data-target attribute, a different vulnerability than CVE-2018-14041. CWE-79
Cross-site Scripting
CVE-2016-10735 2024-11-21 11:44 2019-01-9 Show GitHub Exploit DB Packet Storm
274426 9.8 CRITICAL
Network
qualcomm mdm9206_firmware
mdm9607_firmware
mdm9650_firmware
sd_210_firmware
sd_212_firmware
sd_205_firmware
sd_835_firmware
sda660_firmware
While generating trusted application id, An integer overflow can occur giving the trusted application an invalid identity in Snapdragon Mobile and Snapdragon Wear in versions MDM9206, MDM9607, MDM965… CWE-190
 Integer Overflow or Wraparound
CVE-2016-10502 2024-11-21 11:44 2018-12-10 Show GitHub Exploit DB Packet Storm
274427 9.8 CRITICAL
Network
projectsend projectsend ProjectSend (formerly cFTP) r582 allows Insecure Direct Object Reference via includes/actions.log.export.php. CWE-285
Improper Authorization
CVE-2016-10734 2024-11-21 11:44 2018-10-29 Show GitHub Exploit DB Packet Storm
274428 9.8 CRITICAL
Network
projectsend projectsend ProjectSend (formerly cFTP) r582 allows directory traversal via file=../ in the process-zip-download.php query string. CWE-22
Path Traversal
CVE-2016-10733 2024-11-21 11:44 2018-10-29 Show GitHub Exploit DB Packet Storm
274429 9.8 CRITICAL
Network
projectsend projectsend ProjectSend (formerly cFTP) r582 allows authentication bypass via a direct request for users.php, home.php, edit-file.php?file_id=1, or process-zip-download.php, or add_user_form_* parameters to user… CWE-287
Improper Authentication
CVE-2016-10732 2024-11-21 11:44 2018-10-29 Show GitHub Exploit DB Packet Storm
274430 9.8 CRITICAL
Network
projectsend projectsend ProjectSend (formerly cFTP) r582 allows SQL injection via manage-files.php with the request parameter status, manage-files.php with the request parameter files, clients.php with the request parameter… CWE-89
SQL Injection
CVE-2016-10731 2024-11-21 11:44 2018-10-29 Show GitHub Exploit DB Packet Storm