Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240301 6.8 警告 matteolucarelli - Matteo Lucarelli 3editor CMS の index.php におけるディレクトリトラバーサルの脆弱性 - CVE-2006-6877 2012-09-25 15:36 2006-12-31 Show GitHub Exploit DB Packet Storm
240302 7.5 危険 openser - OpenSER の SMS handling モジュールにおけるバッファオーバーフローの脆弱性 - CVE-2006-6876 2012-09-25 15:36 2006-12-31 Show GitHub Exploit DB Packet Storm
240303 7.5 危険 openser - OpenSER の OSP モジュールにおけるバッファオーバーフローの脆弱性 - CVE-2006-6875 2012-09-25 15:36 2006-12-31 Show GitHub Exploit DB Packet Storm
240304 9.3 危険 MAXDev - MAXdev MDForum におけるディレクトリトラバーサルの脆弱性 - CVE-2006-6869 2012-09-25 15:36 2006-12-31 Show GitHub Exploit DB Packet Storm
240305 6.8 警告 outfront - Outfront Spooky Login におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-6862 2012-09-25 15:36 2006-12-31 Show GitHub Exploit DB Packet Storm
240306 10 危険 outfront - Outfront Spooky Login における SQL インジェクションの脆弱性 - CVE-2006-6861 2012-09-25 15:36 2006-12-31 Show GitHub Exploit DB Packet Storm
240307 10 危険 mythcontrol - MythControl の MythControlServer.c の sendToMythTV 関数におけるバッファオーバーフローの脆弱性 - CVE-2006-6860 2012-09-25 15:36 2006-12-31 Show GitHub Exploit DB Packet Storm
240308 6.8 警告 miredo - Miredo における任意の Teredo クライアントになりすまされる脆弱性 - CVE-2006-6858 2012-09-25 15:36 2006-12-31 Show GitHub Exploit DB Packet Storm
240309 10 危険 Mozilla Foundation - Durian Web Application Server フリーウェアにおけるバッファオーバーフローの脆弱性 - CVE-2006-6853 2012-09-25 15:36 2006-12-31 Show GitHub Exploit DB Packet Storm
240310 6.8 警告 mobilelib - ac4p Mobilelib gold の contact_us.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-6851 2012-09-25 15:36 2006-12-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
266801 7.5 HIGH
Network
ibm websphere_application_server IBM WebSphere Application Server (WAS) 7.0 before 7.0.0.43, 8.0 before 8.0.0.13, 8.5 before 8.5.5.11, 9.0 before 9.0.0.2, and Liberty before 16.0.0.4 allows remote authenticated users to execute arbi… CWE-284
Improper Access Control
CVE-2016-5983 2024-11-21 11:55 2016-10-5 Show GitHub Exploit DB Packet Storm
266802 5.4 MEDIUM
Network
ibm business_process_manager Cross-site scripting (XSS) vulnerability in a test page in IBM Business Process Manager Advanced 8.5.6.0 through 8.5.7.0 before cumulative fix 2016.09 allows remote authenticated users to inject arbi… CWE-79
Cross-site Scripting
CVE-2016-5901 2024-11-21 11:55 2016-10-5 Show GitHub Exploit DB Packet Storm
266803 5.4 MEDIUM
Network
ibm multi-enterprise_integration_gateway
b2b_advanced_communications
Cross-site scripting (XSS) vulnerability in IBM 10x, as used in Multi-Enterprise Integration Gateway 1.x through 1.0.0.1 and B2B Advanced Communications before 1.0.0.5_2, allows remote authenticated … CWE-79
Cross-site Scripting
CVE-2016-5892 2024-11-21 11:55 2016-10-5 Show GitHub Exploit DB Packet Storm
266804 7.5 HIGH
Network
canonical
gnome
opensuse
ubuntu_linux
gdk-pixbuf
leap
opensuse
The OneLine32 function in io-ico.c in gdk-pixbuf before 2.35.3 allows remote attackers to cause a denial of service (out-of-bounds write and crash) via crafted dimensions in an ICO file. CWE-787
 Out-of-bounds Write
CVE-2016-6352 2024-11-21 11:55 2016-10-4 Show GitHub Exploit DB Packet Storm
266805 7.3 HIGH
Local
ibm db2
db2_connect
Untrusted search path vulnerability in IBM DB2 9.7 through FP11, 10.1 through FP5, 10.5 before FP8, and 11.1 GA on Linux, AIX, and HP-UX allows local users to gain privileges via a Trojan horse libra… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-5995 2024-11-21 11:55 2016-10-1 Show GitHub Exploit DB Packet Storm
266806 7.5 HIGH
Network
ibm websphere_application_server IBM WebSphere Application Server (WAS) 7.x before 7.0.0.43, 8.0.x before 8.0.0.13, 8.5.x before 8.5.5.11, 9.0.x before 9.0.0.2, and Liberty before 16.0.0.3 mishandles responses, which allows remote a… CWE-200
Information Exposure
CVE-2016-5986 2024-11-21 11:55 2016-10-1 Show GitHub Exploit DB Packet Storm
266807 9.8 CRITICAL
Network
redhat jboss_operations_network The server in Red Hat JBoss Operations Network (JON), when SSL authentication is not configured for JON server / agent communication, allows remote attackers to execute arbitrary code via a crafted H… CWE-502
 Deserialization of Untrusted Data
CVE-2016-6330 2024-11-21 11:55 2016-09-28 Show GitHub Exploit DB Packet Storm
266808 5.3 MEDIUM
Network
sap trex The NameServer in SAP TREX 7.10 Revision 63 allows remote attackers to obtain sensitive TNS information via an unspecified query, aka SAP Security Note 2234226. CWE-200
Information Exposure
CVE-2016-6146 2024-11-21 11:55 2016-09-28 Show GitHub Exploit DB Packet Storm
266809 9.8 CRITICAL
Network
sap trex An unspecified function in SAP TREX 7.10 Revision 63 allows remote attackers to execute arbitrary OS commands via unknown vectors, aka SAP Security Note 2203591. NVD-CWE-noinfo
CVE-2016-6137 2024-11-21 11:55 2016-09-28 Show GitHub Exploit DB Packet Storm
266810 9.8 CRITICAL
Network
openssl openssl statem/statem.c in OpenSSL 1.1.0a does not consider memory-block movement after a realloc call, which allows remote attackers to cause a denial of service (use-after-free) or possibly execute arbitra… CWE-416
 Use After Free
CVE-2016-6309 2024-11-21 11:55 2016-09-27 Show GitHub Exploit DB Packet Storm