Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240301 6.8 警告 matteolucarelli - Matteo Lucarelli 3editor CMS の index.php におけるディレクトリトラバーサルの脆弱性 - CVE-2006-6877 2012-09-25 15:36 2006-12-31 Show GitHub Exploit DB Packet Storm
240302 7.5 危険 openser - OpenSER の SMS handling モジュールにおけるバッファオーバーフローの脆弱性 - CVE-2006-6876 2012-09-25 15:36 2006-12-31 Show GitHub Exploit DB Packet Storm
240303 7.5 危険 openser - OpenSER の OSP モジュールにおけるバッファオーバーフローの脆弱性 - CVE-2006-6875 2012-09-25 15:36 2006-12-31 Show GitHub Exploit DB Packet Storm
240304 9.3 危険 MAXDev - MAXdev MDForum におけるディレクトリトラバーサルの脆弱性 - CVE-2006-6869 2012-09-25 15:36 2006-12-31 Show GitHub Exploit DB Packet Storm
240305 6.8 警告 outfront - Outfront Spooky Login におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-6862 2012-09-25 15:36 2006-12-31 Show GitHub Exploit DB Packet Storm
240306 10 危険 outfront - Outfront Spooky Login における SQL インジェクションの脆弱性 - CVE-2006-6861 2012-09-25 15:36 2006-12-31 Show GitHub Exploit DB Packet Storm
240307 10 危険 mythcontrol - MythControl の MythControlServer.c の sendToMythTV 関数におけるバッファオーバーフローの脆弱性 - CVE-2006-6860 2012-09-25 15:36 2006-12-31 Show GitHub Exploit DB Packet Storm
240308 6.8 警告 miredo - Miredo における任意の Teredo クライアントになりすまされる脆弱性 - CVE-2006-6858 2012-09-25 15:36 2006-12-31 Show GitHub Exploit DB Packet Storm
240309 10 危険 Mozilla Foundation - Durian Web Application Server フリーウェアにおけるバッファオーバーフローの脆弱性 - CVE-2006-6853 2012-09-25 15:36 2006-12-31 Show GitHub Exploit DB Packet Storm
240310 6.8 警告 mobilelib - ac4p Mobilelib gold の contact_us.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-6851 2012-09-25 15:36 2006-12-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
266811 5.9 MEDIUM
Network
openssl openssl statem/statem_dtls.c in the DTLS implementation in OpenSSL 1.1.0 before 1.1.0a allocates memory before checking for an excessive length, which might allow remote attackers to cause a denial of servic… CWE-399
 Resource Management Errors
CVE-2016-6308 2024-11-21 11:55 2016-09-27 Show GitHub Exploit DB Packet Storm
266812 5.9 MEDIUM
Network
openssl openssl The state-machine implementation in OpenSSL 1.1.0 before 1.1.0a allocates memory before checking for an excessive length, which might allow remote attackers to cause a denial of service (memory consu… CWE-400
 Uncontrolled Resource Consumption
CVE-2016-6307 2024-11-21 11:55 2016-09-27 Show GitHub Exploit DB Packet Storm
266813 5.9 MEDIUM
Network
openssl
hp
novell
nodejs
debian
canonical
openssl
icewall_sso
icewall_mcrp
icewall_sso_agent_option
icewall_federation_agent
suse_linux_enterprise_module_for_web_scripting
node.js
debian_linux
ubuntu_linux
The certificate parser in OpenSSL before 1.0.1u and 1.0.2 before 1.0.2i might allow remote attackers to cause a denial of service (out-of-bounds read) via crafted certificate operations, related to s… CWE-125
Out-of-bounds Read
CVE-2016-6306 2024-11-21 11:55 2016-09-27 Show GitHub Exploit DB Packet Storm
266814 7.5 HIGH
Network
openssl openssl The ssl3_read_bytes function in record/rec_layer_s3.c in OpenSSL 1.1.0 before 1.1.0a allows remote attackers to cause a denial of service (infinite loop) by triggering a zero-length record in an SSL_… CWE-20
 Improper Input Validation 
CVE-2016-6305 2024-11-21 11:55 2016-09-27 Show GitHub Exploit DB Packet Storm
266815 7.5 HIGH
Network
openssl
nodejs
novell
openssl
node.js
suse_linux_enterprise_module_for_web_scripting
Multiple memory leaks in t1_lib.c in OpenSSL before 1.0.1u, 1.0.2 before 1.0.2i, and 1.1.0 before 1.1.0a allow remote attackers to cause a denial of service (memory consumption) via large OCSP Status… CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2016-6304 2024-11-21 11:55 2016-09-27 Show GitHub Exploit DB Packet Storm
266816 6.5 MEDIUM
Network
ibm aix Directory traversal vulnerability in Eclipse Help in IBM Tivoli Lightweight Infrastructure (aka LWI), as used in AIX 5.3, 6.1, and 7.1, allows remote authenticated users to read arbitrary files via a… CWE-22
Path Traversal
CVE-2016-6038 2024-11-21 11:55 2016-09-27 Show GitHub Exploit DB Packet Storm
266817 6.8 MEDIUM
Network
opensuse
powerdns
leap
opensuse
authoritative_server
PowerDNS (aka pdns) Authoritative Server before 4.0.1 allows remote primary DNS servers to cause a denial of service (memory exhaustion and secondary DNS server crash) via a large (1) AXFR or (2) IXF… CWE-400
 Uncontrolled Resource Consumption
CVE-2016-6172 2024-11-21 11:55 2016-09-27 Show GitHub Exploit DB Packet Storm
266818 5.9 MEDIUM
Local
sqlite
fedoraproject
opensuse
sqlite
fedora
leap
os_unix.c in SQLite before 3.13.0 improperly implements the temporary directory search algorithm, which might allow local users to obtain sensitive information, cause a denial of service (application… CWE-20
 Improper Input Validation 
CVE-2016-6153 2024-11-21 11:55 2016-09-27 Show GitHub Exploit DB Packet Storm
266819 7.5 HIGH
Network
sap hana SAP HANA DB 1.00.73.00.389160 (NewDB100_REL) allows remote attackers to inject arbitrary audit trail fields into the SYSLOG via vectors related to the SQL protocol, aka SAP Security Note 2197459. NVD-CWE-Other
CVE-2016-6142 2024-11-21 11:55 2016-09-27 Show GitHub Exploit DB Packet Storm
266820 7.8 HIGH
Local
citrix linux_virtual_delivery_agent Citrix Linux Virtual Delivery Agent (aka VDA, formerly Linux Virtual Desktop) before 1.4.0 allows local users to gain root privileges via unspecified vectors. CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-6276 2024-11-21 11:55 2016-09-26 Show GitHub Exploit DB Packet Storm