Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240221 5 警告 php upload tool - Upload Tool の upload/bin/download.php におけるディレクトリトラバーサルの脆弱性 - CVE-2006-7133 2012-09-25 15:36 2007-03-5 Show GitHub Exploit DB Packet Storm
240222 4.3 警告 オラクル - Oracle APEX におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-7158 2012-09-25 15:36 2006-10-17 Show GitHub Exploit DB Packet Storm
240223 6 警告 オラクル - WWV_FLOW_UTILITIES パッケージの wwv_flow_utilities.gen_popup_list における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2006-7138 2012-09-25 15:36 2006-10-17 Show GitHub Exploit DB Packet Storm
240224 10 危険 jinzora - Jinzora の extras/mt.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-7131 2012-09-25 15:36 2007-03-5 Show GitHub Exploit DB Packet Storm
240225 7.5 危険 jinzora - Jinzora における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2006-7130 2012-09-25 15:36 2007-03-5 Show GitHub Exploit DB Packet Storm
240226 2.1 注意 インターネット セキュリティ システムズ - ISS BlackICE PC Protection におけるスキーム保護を回避される脆弱性 - CVE-2006-7129 2012-09-25 15:36 2007-03-5 Show GitHub Exploit DB Packet Storm
240227 6.8 警告 Joomla! - Joomla BSQ Sitestats における SQL インジェクションの脆弱性 - CVE-2006-7126 2012-09-25 15:36 2007-03-5 Show GitHub Exploit DB Packet Storm
240228 6.8 警告 Joomla! - Joomla BSQ Sitestats におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-7125 2012-09-25 15:36 2007-03-5 Show GitHub Exploit DB Packet Storm
240229 7.5 危険 Joomla! - BSQ Sitestats の external/rssfeeds.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-7124 2012-09-25 15:36 2007-03-5 Show GitHub Exploit DB Packet Storm
240230 7.5 危険 Joomla! - BSQ Sitestats における SQL インジェクションの脆弱性 - CVE-2006-7123 2012-09-25 15:36 2007-03-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
267021 7.5 HIGH
Network
netiq access_manager Presence of a .htaccess file could leak information in NetIQ Access Manager 4.1 before 4.1.2 Hot Fix 1 and 4.2 before SP2. CWE-200
Information Exposure
CVE-2016-5754 2024-11-21 11:54 2017-03-23 Show GitHub Exploit DB Packet Storm
267022 7.5 HIGH
Network
netiq access_manager The SAML2 implementation in Identity Server in NetIQ Access Manager 4.1 before 4.1.2 HF1 and 4.2 before 4.2.2 was handling unsigned SAML requests incorrectly, leaking results to a potentially malicio… CWE-200
Information Exposure
CVE-2016-5752 2024-11-21 11:54 2017-03-23 Show GitHub Exploit DB Packet Storm
267023 6.1 MEDIUM
Network
netiq access_manager An unfiltered finalizer target URL in the SAML processing feature in Identity Server in NetIQ Access Manager 4.1 before 4.1.2 HF1 and 4.2 before 4.2.2 could be used to trigger XSS and leak authentica… CWE-79
Cross-site Scripting
CVE-2016-5751 2024-11-21 11:54 2017-03-23 Show GitHub Exploit DB Packet Storm
267024 8.8 HIGH
Network
netiq access_manager The certificate upload feature in iManager in NetIQ Access Manager 4.1 before 4.1.2 Hot Fix 1 and 4.2 before 4.2.2 could be used to upload JSP pages that would be executed as the iManager user, allow… CWE-284
Improper Access Control
CVE-2016-5750 2024-11-21 11:54 2017-03-23 Show GitHub Exploit DB Packet Storm
267025 5.5 MEDIUM
Local
netiq access_manager NetIQ Access Manager 4.1 before 4.1.2 HF 1 and 4.2 before 4.2.2 was parsing incoming SAML requests with external entity resolution enabled, which could lead to local file disclosure via an XML Extern… CWE-611
XXE
CVE-2016-5749 2024-11-21 11:54 2017-03-23 Show GitHub Exploit DB Packet Storm
267026 5.5 MEDIUM
Local
netiq access_manager External Entity Processing (XXE) vulnerability in the "risk score" application of NetIQ Access Manager 4.1 before 4.1.2 Hot Fix 1 and 4.2 before 4.2.2 could be used to disclose the content of local f… CWE-611
XXE
CVE-2016-5748 2024-11-21 11:54 2017-03-23 Show GitHub Exploit DB Packet Storm
267027 7.5 HIGH
Network
novell edirectory A security vulnerability in cookie handling in the http stack implementation in NDSD in Novell eDirectory before 9.0.1 allows remote attackers to bypass intended access restrictions by leveraging pre… CWE-284
Improper Access Control
CVE-2016-5747 2024-11-21 11:54 2017-03-23 Show GitHub Exploit DB Packet Storm
267028 5.5 MEDIUM
Local
libtiff
debian
libtiff
debian_linux
The setByteArray function in tif_dir.c in libtiff 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted tiff image. CWE-125
Out-of-bounds Read
CVE-2016-5315 2024-11-21 11:54 2017-03-8 Show GitHub Exploit DB Packet Storm
267029 8.8 HIGH
Network
netapp data_ontap NetApp Data ONTAP 9.0 and 9.1 before 9.1P1 allows remote authenticated users that own SMB-hosted data to bypass intended sharing restrictions by leveraging improper handling of the owner_rights ACL e… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-5374 2024-11-21 11:54 2017-03-2 Show GitHub Exploit DB Packet Storm
267030 6.1 MEDIUM
Network
mantisbt mantisbt Cross-site scripting (XSS) vulnerability in manage_custom_field_edit_page.php in MantisBT 1.2.19 and earlier allows remote attackers to inject arbitrary web script or HTML via the return parameter. CWE-79
Cross-site Scripting
CVE-2016-5364 2024-11-21 11:54 2017-02-18 Show GitHub Exploit DB Packet Storm