Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 31, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240111 9.3 危険 ROXIO
intervideo
interactual technologies
- InterActual Player などの IASystemInfo.dll ActiveX コントロールにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-0348 2012-09-25 16:47 2007-03-21 Show GitHub Exploit DB Packet Storm
240112 5 警告 OpenBSD - OpenBSD におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-0343 2012-09-25 16:47 2007-01-16 Show GitHub Exploit DB Packet Storm
240113 7.5 危険 KGB - KGB の sesskglogadmin.php におけるディレクトリトラバーサルの脆弱性 - CVE-2007-0337 2012-09-25 16:47 2007-01-17 Show GitHub Exploit DB Packet Storm
240114 6.8 警告 jax scripts - Jax Petition Book におけるディレクトリトラバーサルの脆弱性 - CVE-2007-0335 2012-09-25 16:47 2007-01-17 Show GitHub Exploit DB Packet Storm
240115 7.5 危険 ingate - Ingate Firewall などの SIP モジュールにおける認証メカニズム上で再生攻撃を実行される脆弱性 - CVE-2007-0334 2012-09-25 16:47 2007-01-17 Show GitHub Exploit DB Packet Storm
240116 7.5 危険 Ipswitch, Inc. - Ipswitch WS_FTP 2007 Professional の wsftpurl.exe におけるバッファオーバーフローの脆弱性 - CVE-2007-0330 2012-09-25 16:47 2007-01-17 Show GitHub Exploit DB Packet Storm
240117 5 警告 joonas viljanen - Joonas Viljanen JV2 Folder Gallery の download.php における重要なファイルを読み取られる脆弱性 - CVE-2007-0329 2012-09-25 16:47 2007-01-17 Show GitHub Exploit DB Packet Storm
240118 9.3 危険 macrovision - Macrovision FLEXnet Connect などの agent における任意のコマンドを実行される脆弱性 CWE-DesignError
CVE-2007-0328 2012-09-25 16:47 2007-05-31 Show GitHub Exploit DB Packet Storm
240119 9.3 危険 photochannel - PhotoChannel Networks PNI Digital Media Photo Upload プラグイン ActiveX コントロールにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-0326 2012-09-25 16:47 2007-09-18 Show GitHub Exploit DB Packet Storm
240120 7.5 危険 lizardtech - LizardTech DjVu Browser プラグインにおけるバッファオーバーフローの脆弱性 - CVE-2007-0324 2012-09-25 16:47 2007-02-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 31, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
267911 6.5 MEDIUM
Network
apple safari
iphone_os
itunes
WebKit in Apple iOS before 10, iTunes before 12.5.1 on Windows, and Safari before 10 does not properly restrict access to the location variable, which allows remote attackers to obtain sensitive info… CWE-200
Information Exposure
CVE-2016-4758 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
267912 5.5 MEDIUM
Local
apple mac_os_x Terminal in Apple OS X before 10.12 uses weak permissions for the .bash_history and .bash_session files, which allows local users to obtain sensitive information via unspecified vectors. CWE-200
Information Exposure
CVE-2016-4755 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
267913 7.5 HIGH
Network
apple os_x_server ServerDocs Server in Apple OS X Server before 5.2 supports the RC4 cipher, which might allow remote attackers to defeat cryptographic protection mechanisms via unspecified vectors. CWE-310
Cryptographic Issues
CVE-2016-4754 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
267914 7.8 HIGH
Local
apple watchos
tvos
iphone_os
mac_os_x
Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3 mishandle signed disk images, which allows attackers to execute arbitrary code in a privileged context via a crafted app. CWE-20
 Improper Input Validation 
CVE-2016-4753 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
267915 5.5 MEDIUM
Local
apple mac_os_x The SecKeyDeriveFromPassword function in Apple OS X before 10.12 does not use the CF_RETURNS_RETAINED keyword, which allows attackers to obtain sensitive information from process memory by triggering… CWE-200
Information Exposure
CVE-2016-4752 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
267916 3.5 LOW
Network
apple safari The Safari Tabs component in Apple Safari before 10 allows remote attackers to spoof the address bar of a tab via a crafted web site. CWE-254
 7PK - Security Features
CVE-2016-4751 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
267917 7.8 HIGH
Local
apple iphone_os
mac_os_x
S2 Camera in Apple iOS before 10 and OS X before 10.12 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-4750 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
267918 5.3 MEDIUM
Local
apple mac_os_x Perl in Apple OS X before 10.12 allows local users to bypass the taint-mode protection mechanism via a crafted environment variable. CWE-254
 7PK - Security Features
CVE-2016-4748 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
267919 5.3 MEDIUM
Network
apple mac_os_x The Kerberos 5 (aka krb5) PAM module in Apple OS X before 10.12 does not use constant-time operations for determining username validity, which makes it easier for remote attackers to enumerate user a… CWE-200
Information Exposure
CVE-2016-4745 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
267920 5.5 MEDIUM
Local
apple mac_os_x NSSecureTextField in Apple OS X before 10.12 does not enable Secure Input, which allows attackers to discover credentials via a crafted app. CWE-200
Information Exposure
CVE-2016-4742 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm