Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240431 5 警告 Invision Power Services, Inc - Invision Gallery におけるディレクトリトラバーサルの脆弱性 - CVE-2006-5205 2012-09-25 15:36 2006-10-10 Show GitHub Exploit DB Packet Storm
240432 2.1 注意 Invision Power Services, Inc - IPB の action_admin/member.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5204 2012-09-25 15:36 2006-10-5 Show GitHub Exploit DB Packet Storm
240433 5.1 警告 Invision Power Services, Inc - IPB における SQL コマンドを実行される脆弱性 - CVE-2006-5203 2012-09-25 15:36 2006-10-10 Show GitHub Exploit DB Packet Storm
240434 5 警告 シスコシステムズ (Linksys) - Linksys WRT54g における任意の設定を変更される脆弱性 - CVE-2006-5202 2012-09-25 15:36 2006-10-10 Show GitHub Exploit DB Packet Storm
240435 5 警告 pdshoppro - PDshopPro におけるデータベースをダウンロードされる脆弱性 - CVE-2006-5197 2012-09-25 15:36 2006-10-10 Show GitHub Exploit DB Packet Storm
240436 7.8 危険 Motorola Solutions, Inc - Motorola SURFboard SB4200 Cable Modem におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-5196 2012-09-25 15:36 2006-10-10 Show GitHub Exploit DB Packet Storm
240437 4.3 警告 net2ftp - net2ftp の index.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5194 2012-09-25 15:36 2006-10-10 Show GitHub Exploit DB Packet Storm
240438 4.3 警告 osCommerce - osCommerce Milestone におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5190 2012-09-25 15:36 2006-10-10 Show GitHub Exploit DB Packet Storm
240439 7.5 危険 klinza - klinza professional cms における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5189 2012-09-25 15:36 2006-10-10 Show GitHub Exploit DB Packet Storm
240440 7.5 危険 hamweather - HAMweather の Template.php における任意のコードを実行される脆弱性 - CVE-2006-5185 2012-09-25 15:36 2006-10-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
266791 9.8 CRITICAL
Network
medhost perioperative_information_management_system MEDHOST Perioperative Information Management System (aka PIMS or VPIMS) before 2015R1 has hardcoded credentials, which makes it easier for remote attackers to obtain sensitive information via direct … NVD-CWE-Other
CVE-2016-4328 2024-11-21 11:51 2016-06-10 Show GitHub Exploit DB Packet Storm
266792 9.8 CRITICAL
Network
chef chef_manage The Chef Manage (formerly opscode-manage) add-on before 1.12.0 for Chef allows remote attackers to execute arbitrary code via crafted serialized data in a cookie. NVD-CWE-Other
CVE-2016-4326 2024-11-21 11:51 2016-06-10 Show GitHub Exploit DB Packet Storm
266793 8.8 HIGH
Network
hpe project_and_portfolio_management_center HPE Project and Portfolio Management Center (PPM) 9.2x and 9.3x before 9.32.0002 allows remote authenticated users to execute arbitrary commands or obtain sensitive information via unspecified vector… NVD-CWE-noinfo
CVE-2016-4370 2024-11-21 11:51 2016-06-9 Show GitHub Exploit DB Packet Storm
266794 8.8 HIGH
Network
hp discovery_and_dependency_mapping_inventory HPE Discovery and Dependency Mapping Inventory (DDMi) 9.30, 9.31, 9.32, 9.32 update 1, 9.32 update 2, and 9.32 update 3 allows remote authenticated users to execute arbitrary commands via a crafted s… CWE-284
Improper Access Control
CVE-2016-4369 2024-11-21 11:51 2016-06-9 Show GitHub Exploit DB Packet Storm
266795 9.8 CRITICAL
Network
hp universal_cmbd_foundation
universal_cmbd_configuration_manager
universal_discovery
HPE Universal CMDB 10.0 through 10.21, Universal CMDB Configuration Manager 10.0 through 10.21, and Universal Discovery 10.0 through 10.21 allow remote attackers to execute arbitrary commands via a c… CWE-20
 Improper Input Validation 
CVE-2016-4368 2024-11-21 11:51 2016-06-8 Show GitHub Exploit DB Packet Storm
266796 7.5 HIGH
Network
hp universal_cmbd_foundation The Universal Discovery component in HPE Universal CMDB 10.0, 10.01, 10.10, 10.11, 10.20, and 10.21 allows remote attackers to obtain sensitive information via unspecified vectors. CWE-200
Information Exposure
CVE-2016-4367 2024-11-21 11:51 2016-06-8 Show GitHub Exploit DB Packet Storm
266797 9.8 CRITICAL
Network
hp systems_insight_manager HPE Systems Insight Manager (SIM) before 7.5.1 allows remote attackers to obtain sensitive information, modify data, or cause a denial of service via unspecified vectors. NVD-CWE-noinfo
CVE-2016-4366 2024-11-21 11:51 2016-06-8 Show GitHub Exploit DB Packet Storm
266798 7.5 HIGH
Network
hp insight_control_server_deployment HPE Insight Control server deployment allows remote attackers to obtain sensitive information via unspecified vectors. NVD-CWE-noinfo
CVE-2016-4365 2024-11-21 11:51 2016-06-8 Show GitHub Exploit DB Packet Storm
266799 8.4 HIGH
Local
hp insight_control_server_deployment HPE Insight Control server deployment allows local users to gain privileges via unspecified vectors. NVD-CWE-noinfo
CVE-2016-4364 2024-11-21 11:51 2016-06-8 Show GitHub Exploit DB Packet Storm
266800 6.1 MEDIUM
Network
hp insight_control_server_deployment HPE Insight Control server deployment allows remote attackers to modify data via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2016-4363 2024-11-21 11:51 2016-06-8 Show GitHub Exploit DB Packet Storm