Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240331 5 警告 hlstats - HLstats における重要な情報を取得される脆弱性 - CVE-2006-6781 2012-09-25 15:36 2006-12-27 Show GitHub Exploit DB Packet Storm
240332 9.4 危険 oftpd - oftpd におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-6767 2012-09-25 15:36 2007-01-16 Show GitHub Exploit DB Packet Storm
240333 7.5 危険 hlstats - HLstats のログインフォームにおける SQL インジェクションの脆弱性 - CVE-2006-6780 2012-09-25 15:36 2006-12-27 Show GitHub Exploit DB Packet Storm
240334 6.8 警告 vBulletin Solutions, Inc. - Jelsoft vBulletin におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-6779 2012-09-25 15:36 2006-12-27 Show GitHub Exploit DB Packet Storm
240335 6.8 警告 irokez - Irokez CMS における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6771 2012-09-25 15:36 2006-12-27 Show GitHub Exploit DB Packet Storm
240336 6.8 警告 jinzora - Jinzora Media Jukebox における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6770 2012-09-25 15:36 2006-12-27 Show GitHub Exploit DB Packet Storm
240337 6.8 警告 php live - PHP Live! におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-6769 2012-09-25 15:36 2006-12-27 Show GitHub Exploit DB Packet Storm
240338 6.8 警告 pagetool - Pagetool の src/admin/pt_upload.php における PHP ファイルインクルージョンの脆弱性 - CVE-2006-6765 2012-09-25 15:36 2006-12-26 Show GitHub Exploit DB Packet Storm
240339 6.8 警告 keep it simple guest book - KISGB の authenticate.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6764 2012-09-25 15:36 2006-12-26 Show GitHub Exploit DB Packet Storm
240340 7.5 危険 keep it simple guest book - KISGB における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6763 2012-09-25 15:36 2006-12-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
266801 7.5 HIGH
Network
ibm websphere_application_server IBM WebSphere Application Server (WAS) 7.0 before 7.0.0.43, 8.0 before 8.0.0.13, 8.5 before 8.5.5.11, 9.0 before 9.0.0.2, and Liberty before 16.0.0.4 allows remote authenticated users to execute arbi… CWE-284
Improper Access Control
CVE-2016-5983 2024-11-21 11:55 2016-10-5 Show GitHub Exploit DB Packet Storm
266802 5.4 MEDIUM
Network
ibm business_process_manager Cross-site scripting (XSS) vulnerability in a test page in IBM Business Process Manager Advanced 8.5.6.0 through 8.5.7.0 before cumulative fix 2016.09 allows remote authenticated users to inject arbi… CWE-79
Cross-site Scripting
CVE-2016-5901 2024-11-21 11:55 2016-10-5 Show GitHub Exploit DB Packet Storm
266803 5.4 MEDIUM
Network
ibm multi-enterprise_integration_gateway
b2b_advanced_communications
Cross-site scripting (XSS) vulnerability in IBM 10x, as used in Multi-Enterprise Integration Gateway 1.x through 1.0.0.1 and B2B Advanced Communications before 1.0.0.5_2, allows remote authenticated … CWE-79
Cross-site Scripting
CVE-2016-5892 2024-11-21 11:55 2016-10-5 Show GitHub Exploit DB Packet Storm
266804 7.5 HIGH
Network
canonical
gnome
opensuse
ubuntu_linux
gdk-pixbuf
leap
opensuse
The OneLine32 function in io-ico.c in gdk-pixbuf before 2.35.3 allows remote attackers to cause a denial of service (out-of-bounds write and crash) via crafted dimensions in an ICO file. CWE-787
 Out-of-bounds Write
CVE-2016-6352 2024-11-21 11:55 2016-10-4 Show GitHub Exploit DB Packet Storm
266805 7.3 HIGH
Local
ibm db2
db2_connect
Untrusted search path vulnerability in IBM DB2 9.7 through FP11, 10.1 through FP5, 10.5 before FP8, and 11.1 GA on Linux, AIX, and HP-UX allows local users to gain privileges via a Trojan horse libra… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-5995 2024-11-21 11:55 2016-10-1 Show GitHub Exploit DB Packet Storm
266806 7.5 HIGH
Network
ibm websphere_application_server IBM WebSphere Application Server (WAS) 7.x before 7.0.0.43, 8.0.x before 8.0.0.13, 8.5.x before 8.5.5.11, 9.0.x before 9.0.0.2, and Liberty before 16.0.0.3 mishandles responses, which allows remote a… CWE-200
Information Exposure
CVE-2016-5986 2024-11-21 11:55 2016-10-1 Show GitHub Exploit DB Packet Storm
266807 9.8 CRITICAL
Network
redhat jboss_operations_network The server in Red Hat JBoss Operations Network (JON), when SSL authentication is not configured for JON server / agent communication, allows remote attackers to execute arbitrary code via a crafted H… CWE-502
 Deserialization of Untrusted Data
CVE-2016-6330 2024-11-21 11:55 2016-09-28 Show GitHub Exploit DB Packet Storm
266808 5.3 MEDIUM
Network
sap trex The NameServer in SAP TREX 7.10 Revision 63 allows remote attackers to obtain sensitive TNS information via an unspecified query, aka SAP Security Note 2234226. CWE-200
Information Exposure
CVE-2016-6146 2024-11-21 11:55 2016-09-28 Show GitHub Exploit DB Packet Storm
266809 9.8 CRITICAL
Network
sap trex An unspecified function in SAP TREX 7.10 Revision 63 allows remote attackers to execute arbitrary OS commands via unknown vectors, aka SAP Security Note 2203591. NVD-CWE-noinfo
CVE-2016-6137 2024-11-21 11:55 2016-09-28 Show GitHub Exploit DB Packet Storm
266810 9.8 CRITICAL
Network
openssl openssl statem/statem.c in OpenSSL 1.1.0a does not consider memory-block movement after a realloc call, which allows remote attackers to cause a denial of service (use-after-free) or possibly execute arbitra… CWE-416
 Use After Free
CVE-2016-6309 2024-11-21 11:55 2016-09-27 Show GitHub Exploit DB Packet Storm