Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 6, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240781 4.3 警告 phpicalendar - Jim Hu and Chad Little PHP iCalendar におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2006-6824 2012-09-25 15:36 2006-12-29 Show GitHub Exploit DB Packet Storm
240782 6.3 警告 hosting controller - Hosting Controller の FolderManager/FolderManager.aspx におけるディレクトリトラバーサルの脆弱性 - CVE-2006-6814 2012-09-25 15:36 2006-12-29 Show GitHub Exploit DB Packet Storm
240783 7.5 危険 mxmania - Mxmania FUM の detail.asp における SQL インジェクションの脆弱性 - CVE-2006-6813 2012-09-25 15:36 2006-12-29 Show GitHub Exploit DB Packet Storm
240784 7.5 危険 myphpcalendar - myPHPCalendar における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6812 2012-09-25 15:36 2006-12-29 Show GitHub Exploit DB Packet Storm
240785 4.3 警告 KDE project - KsIRC におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-6811 2012-09-25 15:36 2006-12-29 Show GitHub Exploit DB Packet Storm
240786 6.8 警告 limbo cms - Limbo CMS の event モジュールにおける PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6800 2012-09-25 15:36 2006-12-28 Show GitHub Exploit DB Packet Storm
240787 6.8 警告 mtcms - MTCMS の admin/admin_settings.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6796 2012-09-25 15:36 2006-12-27 Show GitHub Exploit DB Packet Storm
240788 7.5 危険 myphpnuke - MPN の gallery/displayCategory.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6795 2012-09-25 15:36 2006-12-27 Show GitHub Exploit DB Packet Storm
240789 7.5 危険 okul merkezi - Okul Merkezi Portal の ataturk.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6793 2012-09-25 15:36 2006-12-27 Show GitHub Exploit DB Packet Storm
240790 7.5 危険 mxmania - Calendar MX BASIC の calendar_detail.asp における SQL インジェクションの脆弱性 - CVE-2006-6792 2012-09-25 15:36 2006-12-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 7, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
266011 7.8 HIGH
Local
corel coreldraw An out of bound write vulnerability exists in the EMF parsing functionality of CorelDRAW X8 (CdrGfx - Corel Graphics Engine (64-Bit) - 18.1.0.661). A specially crafted EMF file can cause a vulnerabil… CWE-787
 Out-of-bounds Write
CVE-2016-9043 2024-11-21 12:00 2018-04-25 Show GitHub Exploit DB Packet Storm
266012 7.8 HIGH
Local
sophos invincea-x An exploitable double fetch vulnerability exists in the SboxDrv.sys driver functionality of Invincea-X 6.1.3-24058. A specially crafted input buffer and race condition can result in kernel memory cor… CWE-362
Race Condition
CVE-2016-9038 2024-11-21 12:00 2018-04-25 Show GitHub Exploit DB Packet Storm
266013 7.8 HIGH
Local
symantec endpoint_protection Symantec Endpoint Protection clients place detected malware in quarantine as part of the intended product functionality. The quarantine logs can be exported for review by the user in a variety of for… CWE-20
 Improper Input Validation 
CVE-2016-9094 2024-11-21 12:00 2018-04-17 Show GitHub Exploit DB Packet Storm
266014 7.0 HIGH
Local
symantec endpoint_protection A version of the SymEvent Driver that shipped with Symantec Endpoint Protection 12.1 RU6 MP6 and earlier fails to properly sanitize logged-in user input. SEP 14.0 and later are not impacted by this i… CWE-20
 Improper Input Validation 
CVE-2016-9093 2024-11-21 12:00 2018-04-17 Show GitHub Exploit DB Packet Storm
266015 4.3 MEDIUM
Network
huawei s12700_firmware
s5700_firmware
s7700_firmware
s9700_firmware
Huawei S12700 V200R007C00, V200R008C00, S5700 V200R007C00, S7700 V200R002C00, V200R005C00, V200R006C00, V200R007C00, V200R008C00, S9700 V200R007C00 have an input validation vulnerability. Due to the … CWE-20
 Improper Input Validation 
CVE-2016-8785 2024-11-21 12:00 2018-03-10 Show GitHub Exploit DB Packet Storm
266016 4.3 MEDIUM
Adjacent
huawei cloudengine_12800_firmware Huawei CloudEngine 12800 V100R003C00, V100R003C10, V100R005C00, V100R005C10, V100R006C00 have a memory leak vulnerability. An unauthenticated attacker may send specific Label Distribution Protocol (L… CWE-399
 Resource Management Errors
CVE-2016-8784 2024-11-21 12:00 2018-03-10 Show GitHub Exploit DB Packet Storm
266017 7.8 HIGH
Local
huawei honor_6_firmware
p9_plus_firmware
Touchscreen drive in Huawei H60 (Honor 6) Versions earlier than H60-L02_6.12.16 and P9 Plus Versions earlier than VIE-AL10BC00B356 has a stack overflow vulnerabilities. An attacker tricks a user into… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-8783 2024-11-21 12:00 2018-03-10 Show GitHub Exploit DB Packet Storm
266018 5.3 MEDIUM
Network
huawei cloudengine_12800_firmware Huawei CloudEngine 12800 V100R003C00, V100R003C10, V100R005C00, V100R005C10, V100R006C00 have a memory leak vulnerability. An unauthenticated attacker may send specific Label Distribution Protocol (L… CWE-399
 Resource Management Errors
CVE-2016-8782 2024-11-21 12:00 2018-03-10 Show GitHub Exploit DB Packet Storm
266019 7.5 HIGH
Network
huawei s12700_firmware
s5700_firmware
s6700_firmware
s7700_firmware
s9700_firmware
Huawei S12700 V200R005C00, V200R006C00, V200R007C00, V200R008C00, S5700 V200R006C00, V200R007C00, V200R008C00, S6700 V200R008C00, S7700 V200R001C00, V200R002C00, V200R003C00, V200R005C00, V200R006C00… CWE-20
 Improper Input Validation 
CVE-2016-8786 2024-11-21 12:00 2018-03-10 Show GitHub Exploit DB Packet Storm
266020 4.7 MEDIUM
Network
wordpress wordpress WordPress through 4.8.2, when domain-based flashmediaelement.swf sandboxing is not used, allows remote attackers to conduct cross-domain Flash injection (XSF) attacks by leveraging code contained wit… CWE-20
 Improper Input Validation 
CVE-2016-9263 2024-11-21 12:00 2017-10-13 Show GitHub Exploit DB Packet Storm