Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 2, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240221 5 警告 php upload tool - Upload Tool の upload/bin/download.php におけるディレクトリトラバーサルの脆弱性 - CVE-2006-7133 2012-09-25 15:36 2007-03-5 Show GitHub Exploit DB Packet Storm
240222 4.3 警告 オラクル - Oracle APEX におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-7158 2012-09-25 15:36 2006-10-17 Show GitHub Exploit DB Packet Storm
240223 6 警告 オラクル - WWV_FLOW_UTILITIES パッケージの wwv_flow_utilities.gen_popup_list における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2006-7138 2012-09-25 15:36 2006-10-17 Show GitHub Exploit DB Packet Storm
240224 10 危険 jinzora - Jinzora の extras/mt.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-7131 2012-09-25 15:36 2007-03-5 Show GitHub Exploit DB Packet Storm
240225 7.5 危険 jinzora - Jinzora における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2006-7130 2012-09-25 15:36 2007-03-5 Show GitHub Exploit DB Packet Storm
240226 2.1 注意 インターネット セキュリティ システムズ - ISS BlackICE PC Protection におけるスキーム保護を回避される脆弱性 - CVE-2006-7129 2012-09-25 15:36 2007-03-5 Show GitHub Exploit DB Packet Storm
240227 6.8 警告 Joomla! - Joomla BSQ Sitestats における SQL インジェクションの脆弱性 - CVE-2006-7126 2012-09-25 15:36 2007-03-5 Show GitHub Exploit DB Packet Storm
240228 6.8 警告 Joomla! - Joomla BSQ Sitestats におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-7125 2012-09-25 15:36 2007-03-5 Show GitHub Exploit DB Packet Storm
240229 7.5 危険 Joomla! - BSQ Sitestats の external/rssfeeds.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-7124 2012-09-25 15:36 2007-03-5 Show GitHub Exploit DB Packet Storm
240230 7.5 危険 Joomla! - BSQ Sitestats における SQL インジェクションの脆弱性 - CVE-2006-7123 2012-09-25 15:36 2007-03-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 2, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
266921 5.9 MEDIUM
Network
ibm security_privileged_identity_manager IBM Security Privileged Identity Manager Virtual Appliance could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security. An a… CWE-200
Information Exposure
CVE-2016-5966 2024-11-21 11:55 2017-02-2 Show GitHub Exploit DB Packet Storm
266922 9.8 CRITICAL
Network
ibm security_privileged_identity_manager IBM Security Privileged Identity Manager Virtual Appliance version 2.0.2 uses an inadequate account lockout setting that could allow a remote attacker to brute force account credentials. CWE-284
Improper Access Control
CVE-2016-5964 2024-11-21 11:55 2017-02-2 Show GitHub Exploit DB Packet Storm
266923 7.5 HIGH
Network
ibm security_privileged_identity_manager IBM Security Privileged Identity Manager could allow a remote attacker to obtain sensitive information, caused by the failure to set the secure flag for the session cookie in SSL mode. By interceptin… CWE-200
Information Exposure
CVE-2016-5958 2024-11-21 11:55 2017-02-2 Show GitHub Exploit DB Packet Storm
266924 8.8 HIGH
Network
ibm kenexa_lcms_premier IBM Kenexa LCMS Premier on Cloud is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete informati… CWE-89
SQL Injection
CVE-2016-5952 2024-11-21 11:55 2017-02-2 Show GitHub Exploit DB Packet Storm
266925 5.4 MEDIUM
Network
ibm kenexa_lcms_premier IBM Kenexa LCMS Premier on Cloud is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality poten… CWE-79
Cross-site Scripting
CVE-2016-5951 2024-11-21 11:55 2017-02-2 Show GitHub Exploit DB Packet Storm
266926 6.5 MEDIUM
Network
ibm kenexa_lcms_premier IBM Kenexa LCMS Premier on Cloud stores user credentials in plain in clear text which can be read by an authenticated user. CWE-255
Credentials Management
CVE-2016-5950 2024-11-21 11:55 2017-02-2 Show GitHub Exploit DB Packet Storm
266927 4.3 MEDIUM
Network
ibm kenexa_lcms_premier IBM Kenexa LCMS Premier on Cloud could allow an authenticated user to obtain sensitive user data with a specially crafted HTTP request. CWE-254
 7PK - Security Features
CVE-2016-5949 2024-11-21 11:55 2017-02-2 Show GitHub Exploit DB Packet Storm
266928 5.4 MEDIUM
Network
ibm kenexa_lcms_premier IBM Kenexa LCMS Premier on Cloud is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality poten… CWE-79
Cross-site Scripting
CVE-2016-5948 2024-11-21 11:55 2017-02-2 Show GitHub Exploit DB Packet Storm
266929 6.3 MEDIUM
Network
ibm kenexa_lms_on_cloud IBM Kenexa LMS on Cloud is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the… CWE-89
SQL Injection
CVE-2016-5939 2024-11-21 11:55 2017-02-2 Show GitHub Exploit DB Packet Storm
266930 8.8 HIGH
Network
ibm kenexa_lcms_premier IBM Kenexa LCMS Premier on Cloud is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trust… CWE-352
 Origin Validation Error
CVE-2016-5937 2024-11-21 11:55 2017-02-2 Show GitHub Exploit DB Packet Storm