Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
239931 9.3 危険 Opera Software ASA - Opera における任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2007-5541 2012-09-25 16:59 2007-10-17 Show GitHub Exploit DB Packet Storm
239932 7.5 危険 Opera Software ASA - Opera における同一生成元のポリシーを回避される脆弱性 CWE-20
不適切な入力確認
CVE-2007-5540 2012-09-25 16:59 2007-10-17 Show GitHub Exploit DB Packet Storm
239933 9 危険 オラクル - Oracle PeopleSoft Enterprise などの製品の HCM コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2007-5534 2012-09-25 16:59 2007-10-16 Show GitHub Exploit DB Packet Storm
239934 6.5 警告 オラクル - Oracle PeopleSoft Enterprise などの製品の People Tools コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2007-5533 2012-09-25 16:59 2007-10-16 Show GitHub Exploit DB Packet Storm
239935 7.5 危険 オラクル - Oracle PeopleSoft Enterprise などの製品の People Tools コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2007-5532 2012-09-25 16:59 2007-10-16 Show GitHub Exploit DB Packet Storm
239936 7.5 危険 オラクル - Oracle E-Business Suite の Oracle Self-Service Web Applications コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2007-5529 2012-09-25 16:59 2007-10-16 Show GitHub Exploit DB Packet Storm
239937 10 危険 オラクル - Oracle E-Business Suite における脆弱性 CWE-noinfo
情報不足
CVE-2007-5528 2012-09-25 16:59 2007-10-16 Show GitHub Exploit DB Packet Storm
239938 7.5 危険 オラクル - Oracle E-Business Suite における脆弱性 CWE-noinfo
情報不足
CVE-2007-5527 2012-09-25 16:59 2007-10-16 Show GitHub Exploit DB Packet Storm
239939 6.5 警告 オラクル - Oracle Database 用の Workspace Manager における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-5511 2012-09-25 16:59 2007-10-17 Show GitHub Exploit DB Packet Storm
239940 6.4 警告 OpenSSL Project - OpenSSL FIPS Object Module の PRNG 実装におけるランダム性に依存する保護メカニズムを回避される脆弱性 CWE-310
暗号の問題
CVE-2007-5502 2012-09-25 16:59 2007-11-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
268261 7.5 HIGH
Network
cisco ios
ios_xe
Cisco IOS 15.2 through 15.6 and IOS XE 3.6 through 3.17 and 16.1 allow remote attackers to cause a denial of service (device restart) via a malformed IPv6 Protocol Independent Multicast (PIM) registe… CWE-399
 Resource Management Errors
CVE-2016-6382 2024-11-21 11:56 2016-10-6 Show GitHub Exploit DB Packet Storm
268262 7.5 HIGH
Network
cisco ios
ios_xe
ios_xe_3.3sg
ios_xe_3.4sg
ios_xe_16.1
ios_xe_3.3xo
Cisco IOS 12.4 and 15.0 through 15.6 and IOS XE 3.1 through 3.18 and 16.1 allow remote attackers to cause a denial of service (memory consumption or device reload) via fragmented IKEv1 packets, aka B… CWE-399
 Resource Management Errors
CVE-2016-6381 2024-11-21 11:56 2016-10-6 Show GitHub Exploit DB Packet Storm
268263 5.6 MEDIUM
Network
pivotal_software spring_data_jpa SQL injection vulnerability in Pivotal Spring Data JPA before 1.9.6 (Gosling SR6) and 1.10.x before 1.10.4 (Hopper SR4), when used with a repository that defines a String query using the @Query annot… CWE-89
SQL Injection
CVE-2016-6652 2024-11-21 11:56 2016-10-6 Show GitHub Exploit DB Packet Storm
268264 6.5 MEDIUM
Network
cisco firesight_system_software Cisco FireSIGHT System Software 4.10.3 through 5.4.0 in Firepower Management Center allows remote authenticated users to bypass authorization checks and gain privileges via a crafted HTTP request, ak… CWE-264
CWE-200
Permissions, Privileges, and Access Controls
Information Exposure
CVE-2016-6420 2024-11-21 11:56 2016-10-5 Show GitHub Exploit DB Packet Storm
268265 7.5 HIGH
Network
cisco firepower_management_center SQL injection vulnerability in Cisco Firepower Management Center 4.10.3 through 5.4.0 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors, aka Bug ID CSCur2548… CWE-89
SQL Injection
CVE-2016-6419 2024-11-21 11:56 2016-10-5 Show GitHub Exploit DB Packet Storm
268266 9.8 CRITICAL
Network
emc
dell
unisphere
solutions_enabler
emc_unisphere
The vApp Managers web application in EMC Unisphere for VMAX Virtual Appliance 8.x before 8.3.0 and Solutions Enabler Virtual Appliance 8.x before 8.3.0 allows remote attackers to execute arbitrary co… CWE-20
 Improper Input Validation 
CVE-2016-6646 2024-11-21 11:56 2016-10-5 Show GitHub Exploit DB Packet Storm
268267 8.8 HIGH
Network
emc
dell
unisphere
solutions_enabler
emc_unisphere
The vApp Managers web application in EMC Unisphere for VMAX Virtual Appliance 8.x before 8.3.0 and Solutions Enabler Virtual Appliance 8.x before 8.3.0 allows remote authenticated users to execute ar… CWE-20
 Improper Input Validation 
CVE-2016-6645 2024-11-21 11:56 2016-10-5 Show GitHub Exploit DB Packet Storm
268268 5.4 MEDIUM
Adjacent
bb\&t the_u The U by BB&T app 1.5.4 and earlier for iOS does not properly verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information vi… CWE-310
Cryptographic Issues
CVE-2016-6550 2024-11-21 11:56 2016-10-5 Show GitHub Exploit DB Packet Storm
268269 5.5 MEDIUM
Local
mongodb
fedoraproject
mongodb
fedora
The client in MongoDB uses world-readable permissions on .dbshell history files, which might allow local users to obtain sensitive information by reading these files. CWE-200
Information Exposure
CVE-2016-6494 2024-11-21 11:56 2016-10-4 Show GitHub Exploit DB Packet Storm
268270 5.4 MEDIUM
Network
emc vipr_srm Cross-site scripting (XSS) vulnerability in EMC ViPR SRM before 4.0.1 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2016-6647 2024-11-21 11:56 2016-09-30 Show GitHub Exploit DB Packet Storm