Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 5, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
239931 4.3 警告 OpenBSD - OpenSSH における特定のユーザアカウントの存在を決定される脆弱性 - CVE-2007-2768 2012-09-25 16:47 2007-05-21 Show GitHub Exploit DB Packet Storm
239932 7.8 危険 opendap - Hydrax の BES におけるファイルシステムの内容を一覧にされる脆弱性 - CVE-2007-2767 2012-09-25 16:47 2007-05-21 Show GitHub Exploit DB Packet Storm
239933 7.8 危険 Linux - 特定の Sun-Brocade SilkWorm スイッチの Linux kernel におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2007-2764 2012-09-25 16:47 2007-05-18 Show GitHub Exploit DB Packet Storm
239934 7.5 危険 magiciso - MagicISO におけるスタックベースのバッファオーバーフローの脆弱性 - CVE-2007-2761 2012-09-25 16:47 2007-05-18 Show GitHub Exploit DB Packet Storm
239935 4.3 警告 The PHP Group - PHP の substr_count 関数における重要な情報を取得される脆弱性 - CVE-2007-2748 2012-09-25 16:47 2007-05-17 Show GitHub Exploit DB Packet Storm
239936 7.5 危険 labs.beffa.org - labs.beffa.org w2box における任意の PHP コードをアップロードされる脆弱性 - CVE-2007-2742 2012-09-25 16:47 2007-05-17 Show GitHub Exploit DB Packet Storm
239937 9.3 危険 Little CMS - Little CMS におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-2741 2012-09-25 16:47 2007-05-17 Show GitHub Exploit DB Packet Storm
239938 6 警告 jetbox - Jetbox CMS における任意のスクリプトをアップロードされる脆弱性 - CVE-2007-2733 2012-09-25 16:47 2007-05-16 Show GitHub Exploit DB Packet Storm
239939 6.8 警告 jetbox - Jetbox CMS におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-2732 2012-09-25 16:47 2007-05-16 Show GitHub Exploit DB Packet Storm
239940 4 警告 jetbox - Jetbox CMS の formmail.php における CRLF インジェクションの脆弱性 - CVE-2007-2731 2012-09-25 16:47 2007-05-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 5, 2026, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
267731 9.8 CRITICAL
Network
openssl openssl statem/statem.c in OpenSSL 1.1.0a does not consider memory-block movement after a realloc call, which allows remote attackers to cause a denial of service (use-after-free) or possibly execute arbitra… CWE-416
 Use After Free
CVE-2016-6309 2024-11-21 11:55 2016-09-27 Show GitHub Exploit DB Packet Storm
267732 5.9 MEDIUM
Network
openssl openssl statem/statem_dtls.c in the DTLS implementation in OpenSSL 1.1.0 before 1.1.0a allocates memory before checking for an excessive length, which might allow remote attackers to cause a denial of servic… CWE-399
 Resource Management Errors
CVE-2016-6308 2024-11-21 11:55 2016-09-27 Show GitHub Exploit DB Packet Storm
267733 5.9 MEDIUM
Network
openssl openssl The state-machine implementation in OpenSSL 1.1.0 before 1.1.0a allocates memory before checking for an excessive length, which might allow remote attackers to cause a denial of service (memory consu… CWE-400
 Uncontrolled Resource Consumption
CVE-2016-6307 2024-11-21 11:55 2016-09-27 Show GitHub Exploit DB Packet Storm
267734 5.9 MEDIUM
Network
openssl
hp
novell
nodejs
debian
canonical
openssl
icewall_sso
icewall_mcrp
icewall_sso_agent_option
icewall_federation_agent
suse_linux_enterprise_module_for_web_scripting
node.js
debian_linux
ubuntu_linux
The certificate parser in OpenSSL before 1.0.1u and 1.0.2 before 1.0.2i might allow remote attackers to cause a denial of service (out-of-bounds read) via crafted certificate operations, related to s… CWE-125
Out-of-bounds Read
CVE-2016-6306 2024-11-21 11:55 2016-09-27 Show GitHub Exploit DB Packet Storm
267735 7.5 HIGH
Network
openssl openssl The ssl3_read_bytes function in record/rec_layer_s3.c in OpenSSL 1.1.0 before 1.1.0a allows remote attackers to cause a denial of service (infinite loop) by triggering a zero-length record in an SSL_… CWE-20
 Improper Input Validation 
CVE-2016-6305 2024-11-21 11:55 2016-09-27 Show GitHub Exploit DB Packet Storm
267736 7.5 HIGH
Network
openssl
nodejs
novell
openssl
node.js
suse_linux_enterprise_module_for_web_scripting
Multiple memory leaks in t1_lib.c in OpenSSL before 1.0.1u, 1.0.2 before 1.0.2i, and 1.1.0 before 1.1.0a allow remote attackers to cause a denial of service (memory consumption) via large OCSP Status… CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2016-6304 2024-11-21 11:55 2016-09-27 Show GitHub Exploit DB Packet Storm
267737 6.5 MEDIUM
Network
ibm aix Directory traversal vulnerability in Eclipse Help in IBM Tivoli Lightweight Infrastructure (aka LWI), as used in AIX 5.3, 6.1, and 7.1, allows remote authenticated users to read arbitrary files via a… CWE-22
Path Traversal
CVE-2016-6038 2024-11-21 11:55 2016-09-27 Show GitHub Exploit DB Packet Storm
267738 6.8 MEDIUM
Network
opensuse
powerdns
leap
opensuse
authoritative_server
PowerDNS (aka pdns) Authoritative Server before 4.0.1 allows remote primary DNS servers to cause a denial of service (memory exhaustion and secondary DNS server crash) via a large (1) AXFR or (2) IXF… CWE-400
 Uncontrolled Resource Consumption
CVE-2016-6172 2024-11-21 11:55 2016-09-27 Show GitHub Exploit DB Packet Storm
267739 5.9 MEDIUM
Local
sqlite
fedoraproject
opensuse
sqlite
fedora
leap
os_unix.c in SQLite before 3.13.0 improperly implements the temporary directory search algorithm, which might allow local users to obtain sensitive information, cause a denial of service (application… CWE-20
 Improper Input Validation 
CVE-2016-6153 2024-11-21 11:55 2016-09-27 Show GitHub Exploit DB Packet Storm
267740 7.5 HIGH
Network
sap hana SAP HANA DB 1.00.73.00.389160 (NewDB100_REL) allows remote attackers to inject arbitrary audit trail fields into the SYSLOG via vectors related to the SQL protocol, aka SAP Security Note 2197459. NVD-CWE-Other
CVE-2016-6142 2024-11-21 11:55 2016-09-27 Show GitHub Exploit DB Packet Storm