Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240341 7.5 危険 otscms - OTSCMS の OTSCMS/OTSCMS.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5547 2012-09-25 15:36 2006-10-26 Show GitHub Exploit DB Packet Storm
240342 5.1 警告 otscms - OTSCMS の OTSCMS/OTSCMS.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5546 2012-09-25 15:36 2006-10-26 Show GitHub Exploit DB Packet Storm
240343 6.4 警告 マイクロソフト - Microsoft Internet Explorer 7 におけるフィッシング攻撃を実行される脆弱性 - CVE-2006-5544 2012-09-25 15:36 2006-10-26 Show GitHub Exploit DB Packet Storm
240344 5.1 警告 pgosd - PGOSD の PHP Generator における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5543 2012-09-25 15:36 2006-10-26 Show GitHub Exploit DB Packet Storm
240345 7.5 危険 intelimen - Intelimen InteliEditor における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5527 2012-09-25 15:36 2006-10-26 Show GitHub Exploit DB Packet Storm
240346 7.5 危険 johannes erdfelt - Johannes Erdfelt Kawf における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5522 2012-09-25 15:36 2006-10-26 Show GitHub Exploit DB Packet Storm
240347 7.5 危険 net-dns.org - Net_DNS の DNS/RR.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5521 2012-09-25 15:36 2006-10-26 Show GitHub Exploit DB Packet Storm
240348 6.8 警告 mambweather - Mambo 用の MambWeather コンポーネントにおける PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2006-5519 2012-09-25 15:36 2006-10-26 Show GitHub Exploit DB Packet Storm
240349 4.3 警告 phpadsnew
phppgads
- phpAdsNew などの製品で使用される lib-history.inc.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5515 2012-09-25 15:36 2006-10-26 Show GitHub Exploit DB Packet Storm
240350 2.6 注意 jaxultrabb - JUBB の delete.php における任意の Web スクリプトなどを挿入される脆弱性 - CVE-2006-5511 2012-09-25 15:36 2006-10-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
267521 9.8 CRITICAL
Network
ibm bigfix_remote_control IBM BigFix Remote Control before 9.1.3 does not properly restrict failed login attempts, which makes it easier for remote attackers to obtain access via a brute-force approach. CWE-287
Improper Authentication
CVE-2016-2944 2024-11-21 11:49 2016-11-30 Show GitHub Exploit DB Packet Storm
267522 1.9 LOW
Local
ibm bigfix_remote_control IBM BigFix Remote Control before 9.1.3 allows local users to obtain sensitive information by leveraging unspecified privileges to read a log file. CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2016-2943 2024-11-21 11:49 2016-11-30 Show GitHub Exploit DB Packet Storm
267523 5.3 MEDIUM
Network
ibm bigfix_remote_control Multiple unspecified vulnerabilities in IBM BigFix Remote Control before 9.1.3 allow remote attackers to obtain sensitive information via unknown vectors. CWE-200
Information Exposure
CVE-2016-2940 2024-11-21 11:49 2016-11-30 Show GitHub Exploit DB Packet Storm
267524 6.5 MEDIUM
Network
ibm bigfix_remote_control IBM BigFix Remote Control before 9.1.3 allows remote attackers to obtain sensitive information or spoof e-mail transmission via a crafted POST request, related to an "untrusted information vulnerabil… CWE-200
CWE-20
Information Exposure
 Improper Input Validation 
CVE-2016-2937 2024-11-21 11:49 2016-11-30 Show GitHub Exploit DB Packet Storm
267525 7.3 HIGH
Network
ibm bigfix_remote_control IBM BigFix Remote Control before 9.1.3 uses cleartext storage for unspecified passwords, which allows local users to obtain sensitive information via unknown vectors. CWE-255
Credentials Management
CVE-2016-2936 2024-11-21 11:49 2016-11-30 Show GitHub Exploit DB Packet Storm
267526 5.3 MEDIUM
Network
ibm bigfix_remote_control The broker application in IBM BigFix Remote Control before 9.1.3 allows remote attackers to cause a denial of service via an invalid HTTP request. CWE-20
 Improper Input Validation 
CVE-2016-2935 2024-11-21 11:49 2016-11-30 Show GitHub Exploit DB Packet Storm
267527 6.1 MEDIUM
Network
ibm bigfix_remote_control Cross-site scripting (XSS) vulnerability in IBM BigFix Remote Control before 9.1.3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2016-2934 2024-11-21 11:49 2016-11-30 Show GitHub Exploit DB Packet Storm
267528 6.8 MEDIUM
Network
ibm bigfix_remote_control Directory traversal vulnerability in IBM BigFix Remote Control before 9.1.3 allows remote authenticated administrators to read arbitrary files via a crafted request. CWE-22
Path Traversal
CVE-2016-2933 2024-11-21 11:49 2016-11-30 Show GitHub Exploit DB Packet Storm
267529 5.3 MEDIUM
Network
ibm bigfix_remote_control IBM BigFix Remote Control before 9.1.3 allows remote attackers to conduct XML injection attacks via unspecified vectors. CWE-91
Blind XPath Injection
CVE-2016-2932 2024-11-21 11:49 2016-11-30 Show GitHub Exploit DB Packet Storm
267530 5.3 MEDIUM
Network
ibm bigfix_remote_control IBM BigFix Remote Control before 9.1.3 allows remote attackers to obtain sensitive cleartext information by sniffing the network. CWE-200
Information Exposure
CVE-2016-2931 2024-11-21 11:49 2016-11-30 Show GitHub Exploit DB Packet Storm