Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 21, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240901 6.4 警告 joovili - Joovili の include/images.inc.php におけるディレクトリトラバーサルの脆弱性の脆弱性 CWE-22
パス・トラバーサル
CVE-2007-6620 2012-09-25 16:59 2008-01-3 Show GitHub Exploit DB Packet Storm
240902 5 警告 Novell - Novell IDM 用の Fan-Out Driver Platform Services におけるサービス運用妨害 (DoS) の脆弱性 CWE-134
書式文字列の問題
CVE-2007-6625 2012-09-25 16:59 2007-12-21 Show GitHub Exploit DB Packet Storm
240903 4.3 警告 Mantis - Mantis におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-6611 2012-09-25 16:59 2007-12-19 Show GitHub Exploit DB Packet Storm
240904 4.3 警告 openbiblio - OpenBiblio におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-6608 2012-09-25 16:59 2007-12-31 Show GitHub Exploit DB Packet Storm
240905 5 警告 openbiblio - OpenBiblio における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2007-6607 2012-09-25 16:59 2007-12-31 Show GitHub Exploit DB Packet Storm
240906 5 警告 openbiblio - OpenBiblio における設定情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2007-6606 2012-09-25 16:59 2007-12-31 Show GitHub Exploit DB Packet Storm
240907 5 警告 hotscripts - Hot or Not Clone における管理者ユーザ名およびパスワードを取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-6603 2012-09-25 16:59 2007-12-31 Show GitHub Exploit DB Packet Storm
240908 7.5 危険 noserub - NoseRub の app/models/identity.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-6602 2012-09-25 16:59 2007-12-31 Show GitHub Exploit DB Packet Storm
240909 4.3 警告 OpenAFS - OpenAFS の fileserver におけるサービス運用妨害 (DoS) の脆弱性 CWE-362
競合状態
CVE-2007-6599 2012-09-25 16:59 2007-12-20 Show GitHub Exploit DB Packet Storm
240910 4.3 警告 iportalx - IPortalX におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-6597 2012-09-25 16:59 2007-12-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 22, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
268511 10.0 CRITICAL
Network
ibm urbancode_deploy IBM UrbanCode Deploy could allow a user to execute code using a specially crafted file upload that would replace code on the server. This code could be executed on the UCD agent machines that host cu… CWE-284
Improper Access Control
CVE-2016-8938 2024-11-21 12:00 2017-02-2 Show GitHub Exploit DB Packet Storm
268512 6.5 MEDIUM
Network
ibm kenexa_lms IBM Kenexa LMS on Cloud could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted URL request containing dot dot sequences (/../) to view arbitra… CWE-22
Path Traversal
CVE-2016-8933 2024-11-21 12:00 2017-02-2 Show GitHub Exploit DB Packet Storm
268513 8.8 HIGH
Network
ibm kenexa_lms IBM Kenexa LMS on Cloud could allow a remote attacker to upload arbitrary files, which could allow the attacker to execute arbitrary code on the vulnerable server. CWE-284
Improper Access Control
CVE-2016-8932 2024-11-21 12:00 2017-02-2 Show GitHub Exploit DB Packet Storm
268514 8.8 HIGH
Network
ibm kenexa_lms IBM Kenexa LMS on Cloud could allow a remote attacker to upload arbitrary files, which could allow the attacker to execute arbitrary code on the vulnerable server. CWE-284
Improper Access Control
CVE-2016-8931 2024-11-21 12:00 2017-02-2 Show GitHub Exploit DB Packet Storm
268515 7.6 HIGH
Network
ibm kenexa_lms IBM Kenexa LMS on Cloud is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the… CWE-89
SQL Injection
CVE-2016-8930 2024-11-21 12:00 2017-02-2 Show GitHub Exploit DB Packet Storm
268516 5.4 MEDIUM
Network
ibm kenexa_lms IBM Kenexa LMS on Cloud is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the… CWE-89
SQL Injection
CVE-2016-8929 2024-11-21 12:00 2017-02-2 Show GitHub Exploit DB Packet Storm
268517 7.6 HIGH
Network
ibm kenexa_lms IBM Kenexa LMS on Cloud is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the… CWE-89
SQL Injection
CVE-2016-8928 2024-11-21 12:00 2017-02-2 Show GitHub Exploit DB Packet Storm
268518 7.5 HIGH
Network
ibm websphere_application_server IBM WebSphere Application Server may be vulnerable to a denial of service, caused by allowing serialized objects from untrusted sources to run and cause the consumption of resources. CWE-399
 Resource Management Errors
CVE-2016-8919 2024-11-21 12:00 2017-02-2 Show GitHub Exploit DB Packet Storm
268519 5.5 MEDIUM
Local
ibm license_metric_tool
bigfix_inventory
IBM BigFix Inventory v9 9.2 stores user credentials in plain in clear text which can be read by a local user. CWE-255
Credentials Management
CVE-2016-8967 2024-11-21 12:00 2017-02-2 Show GitHub Exploit DB Packet Storm
268520 5.5 MEDIUM
Local
ibm license_metric_tool
bigfix_inventory
IBM BigFix Inventory v9 allows web pages to be stored locally which can be read by another user on the system. CWE-200
Information Exposure
CVE-2016-8981 2024-11-21 12:00 2017-02-2 Show GitHub Exploit DB Packet Storm