Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 7, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240021 10 危険 Zoho Corporation - ManageEngine PMP におけるデータベースへの管理アクセス権を取得される脆弱性 - CVE-2007-2429 2012-09-25 16:47 2007-05-1 Show GitHub Exploit DB Packet Storm
240022 5.8 警告 MoinMoin - MoinMoin の index.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-2423 2012-09-25 16:47 2007-05-1 Show GitHub Exploit DB Packet Storm
240023 7.5 危険 日立 - 携帯電話用の Hitachi Groupmax Mobile Option におけるバッファオーバーフローの脆弱性 - CVE-2007-2421 2012-09-25 16:47 2007-04-27 Show GitHub Exploit DB Packet Storm
240024 10 危険 macrovision - Macrovision FLEXnet の ActiveX コントロールにおけるバッファオーバーフローの脆弱性 - CVE-2007-2419 2012-09-25 16:47 2007-06-6 Show GitHub Exploit DB Packet Storm
240025 7.8 危険 myserver - MyServer におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-2414 2012-09-25 16:47 2007-05-1 Show GitHub Exploit DB Packet Storm
240026 5 警告 mad4milk - Moo.fx framework におけるデータを取得される脆弱性 - CVE-2007-2382 2012-09-25 16:47 2007-04-30 Show GitHub Exploit DB Packet Storm
240027 5 警告 mochikit - MochiKit フレームワークにおけるデータを取得される脆弱性 - CVE-2007-2381 2012-09-25 16:47 2007-04-30 Show GitHub Exploit DB Packet Storm
240028 5 警告 マイクロソフト - Microsoft Atlas framework におけるデータを取得される脆弱性 - CVE-2007-2380 2012-09-25 16:47 2007-04-30 Show GitHub Exploit DB Packet Storm
240029 5 警告 jQuery - jQuery フレームワークにおけるデータを取得される脆弱性 - CVE-2007-2379 2012-09-25 16:47 2007-04-30 Show GitHub Exploit DB Packet Storm
240030 5 警告 The PHP Group
webSPELL
- PHP の WebSPELL におけるディレクトリトラバーサルの脆弱性 - CVE-2007-2369 2012-09-25 16:47 2007-04-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 7, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
266841 5.4 MEDIUM
Network
glpi-project glpi Cross-site scripting (XSS) vulnerability in GLPI 0.90.4 allows remote authenticated attackers to inject arbitrary web script or HTML by attaching a crafted HTML file to a ticket. CWE-79
Cross-site Scripting
CVE-2016-7509 2024-11-21 11:58 2017-07-19 Show GitHub Exploit DB Packet Storm
266842 8.0 HIGH
Network
glpi-project glpi Cross-Site Request Forgery (CSRF) vulnerability in GLPI 0.90.4 allows remote authenticated attackers to submit a request that could lead to the creation of an admin account in the application. CWE-352
 Origin Validation Error
CVE-2016-7507 2024-11-21 11:58 2017-07-19 Show GitHub Exploit DB Packet Storm
266843 7.5 HIGH
Network
glpi-project glpi Multiple SQL injection vulnerabilities in GLPI 0.90.4 allow an authenticated remote attacker to execute arbitrary SQL commands by using a certain character when the database is configured to use Big5… CWE-89
SQL Injection
CVE-2016-7508 2024-11-21 11:58 2017-06-22 Show GitHub Exploit DB Packet Storm
266844 7.8 HIGH
Local
winsparkle winsparkle Untrusted search path vulnerability in WinSparkle versions prior to 0.5.3 allows remote attackers to execute arbitrary code via a specially crafted executable file in an unspecified directory. CWE-426
 Untrusted Search Path
CVE-2016-7838 2024-11-21 11:58 2017-06-10 Show GitHub Exploit DB Packet Storm
266845 7.8 HIGH
Local
bluez bluez Buffer overflow in BlueZ 5.41 and earlier allows an attacker to execute arbitrary code via the parse_line function used in some userland utilities. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-7837 2024-11-21 11:58 2017-06-10 Show GitHub Exploit DB Packet Storm
266846 9.1 CRITICAL
Network
h2o_project
dena
h2o Use-after-free vulnerability in H2O allows remote attackers to cause a denial-of-service (DoS) or obtain server certificate private keys and possibly other information. CWE-416
 Use After Free
CVE-2016-7835 2024-11-21 11:58 2017-06-10 Show GitHub Exploit DB Packet Storm
266847 7.5 HIGH
Network
cybozu dezie Cybozu Dezie 8.0.0 to 8.1.1 allows remote attackers to bypass access restrictions to delete an arbitrary DBM (Cybozu Dezie proprietary format) file via unspecified vectors. CWE-284
Improper Access Control
CVE-2016-7833 2024-11-21 11:58 2017-06-10 Show GitHub Exploit DB Packet Storm
266848 5.3 MEDIUM
Network
cybozu dezie Cybozu Dezie 8.0.0 to 8.1.1 allows remote attackers to bypass access restrictions to obtain an arbitrary DBM (Cybozu Dezie proprietary format) file via unspecified vectors. CWE-200
Information Exposure
CVE-2016-7832 2024-11-21 11:58 2017-06-10 Show GitHub Exploit DB Packet Storm
266849 6.1 MEDIUM
Network
fenrir-inc sleipnir Sleipnir 4 Black Edition for Mac 4.5.3 and earlier and Sleipnir 4 for Mac 4.5.3 and earlier (Mac App Store) may allow a remote attacker to spoof the URL display via a specially crafted webpage. CWE-601
Open Redirect
CVE-2016-7831 2024-11-21 11:58 2017-06-10 Show GitHub Exploit DB Packet Storm
266850 8.8 HIGH
Adjacent
sony pcs-xg100_firmware
pcs-xg77_firmware
pcs-xc1_firmware
Sony PCS-XG100, PCS-XG100S, PCS-XG100C, PCS-XG77, PCS-XG77S, PCS-XG77C devices with firmware versions prior to Ver.1.51 and PCS-XC1 devices with firmware version prior to Ver.1.22 allow an attacker o… CWE-306
Missing Authentication for Critical Function
CVE-2016-7830 2024-11-21 11:58 2017-06-10 Show GitHub Exploit DB Packet Storm