Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 19, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241271 4 警告 Moodle - Moodle の Web サービスの実装におけるアクセス制限を回避される脆弱性 CWE-287
不適切な認証
CVE-2011-4590 2012-07-23 15:32 2011-12-6 Show GitHub Exploit DB Packet Storm
241272 5.5 警告 Moodle - Moodle の backup/moodle2/restore_stepslib.php における ID 番号を上書きされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-4589 2012-07-23 15:26 2011-12-6 Show GitHub Exploit DB Packet Storm
241273 5 警告 Moodle - Moodle の MNet 内の mnet/lib.php における IP アドレスの制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-4588 2012-07-23 15:23 2011-12-6 Show GitHub Exploit DB Packet Storm
241274 6.8 警告 Moodle - Moodle の lib/moodlelib.php におけるアクセス権を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2011-4587 2012-07-23 15:11 2011-12-6 Show GitHub Exploit DB Packet Storm
241275 5 警告 Moodle - Moodle の Calendar サブシステムにおける CRLF インジェクションの脆弱性 CWE-Other
その他
CVE-2011-4586 2012-07-23 14:59 2011-12-6 Show GitHub Exploit DB Packet Storm
241276 5 警告 Moodle - Moodle の login/change_password.php における資格情報を取得される脆弱性 CWE-16
環境設定
CVE-2011-4585 2012-07-23 14:49 2011-12-6 Show GitHub Exploit DB Packet Storm
241277 4 警告 Moodle - Moodle の MNET 認証機能における他のユーザーアカウントになりすまされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-4584 2012-07-23 14:47 2011-12-6 Show GitHub Exploit DB Packet Storm
241278 6.5 警告 Moodle - Moodle における脆弱性 CWE-noinfo
情報不足
CVE-2011-4583 2012-07-23 14:46 2011-12-6 Show GitHub Exploit DB Packet Storm
241279 4.9 警告 Moodle - Moodle のカレンダー設定ページにおけるオープンリダイレクトの脆弱性 CWE-20
不適切な入力確認
CVE-2011-4582 2012-07-23 14:39 2011-12-6 Show GitHub Exploit DB Packet Storm
241280 4 警告 Moodle - Moodle の mod/wiki/pagelib.php における wiki 作成者のユーザ名を知られる脆弱性 CWE-200
情報漏えい
CVE-2011-4581 2012-07-23 14:31 2011-12-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 19, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
266591 7.8 HIGH
Local
opensuse
debian
lhasa_project
leap
opensuse
debian_linux
lhasa
Integer underflow in the decode_level3_header function in lib/lha_file_header.c in Lhasa before 0.3.1 allows remote attackers to execute arbitrary code via a crafted archive. CWE-190
 Integer Overflow or Wraparound
CVE-2016-2347 2024-11-21 11:48 2017-04-22 Show GitHub Exploit DB Packet Storm
266592 3.3 LOW
Local
samsung galaxy_s6_firmware
galaxy_note_3_firmware
secfilter in the Samsung kernel for Android on SM-N9005 build N9005XXUGBOB6 (Note 3) and SM-G920F build G920FXXU2COH2 (Galaxy S6) devices allows attackers to bypass URL filtering by inserting an "exc… CWE-20
 Improper Input Validation 
CVE-2016-2567 2024-11-21 11:48 2017-04-14 Show GitHub Exploit DB Packet Storm
266593 9.8 CRITICAL
Network
samsung galaxy_s6_firmware Samsung SecEmailSync on SM-G920F build G920FXXU2COH2 (Galaxy S6) devices has SQL injection, aka SVE-2015-5081. CWE-89
SQL Injection
CVE-2016-2566 2024-11-21 11:48 2017-04-14 Show GitHub Exploit DB Packet Storm
266594 3.3 LOW
Local
samsung galaxy_s6_firmware Samsung SecEmailSync on SM-G920F build G920FXXU2COH2 (Galaxy S6) devices allows attackers to read sent e-mail messages, aka SVE-2015-5081. CWE-200
Information Exposure
CVE-2016-2565 2024-11-21 11:48 2017-04-14 Show GitHub Exploit DB Packet Storm
266595 9.8 CRITICAL
Network
atutor atutor SQL injection vulnerability in include/lib/mysql_connect.inc.php in ATutor 2.2.1 allows remote attackers to execute arbitrary SQL commands via the searchFriends function to friends.inc.php. CWE-89
SQL Injection
CVE-2016-2555 2024-11-21 11:48 2017-04-13 Show GitHub Exploit DB Packet Storm
266596 6.1 MEDIUM
Network
mozilla bugzilla Cross-site scripting (XSS) vulnerability in the dependency graphs in Bugzilla 2.16rc1 through 4.4.11, and 4.5.1 through 5.0.2 allows remote attackers to inject arbitrary web script or HTML. CWE-79
Cross-site Scripting
CVE-2016-2803 2024-11-21 11:48 2017-04-13 Show GitHub Exploit DB Packet Storm
266597 7.5 HIGH
Network
huawei s5700_firmware
s6700_firmware
s7700_firmware
s9700_firmware
s12700_firmware
acu2_firmware
Huawei switches S5700, S6700, S7700, S9700 with software V200R001C00SPC300, V200R002C00SPC100, V200R003C00SPC300, V200R005C00SPC500, V200R006C00; S12700 with software V200R005C00SPC500, V200R006C00; … CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2404 2024-11-21 11:48 2017-04-3 Show GitHub Exploit DB Packet Storm
266598 8.8 HIGH
Adjacent
pidgin mxit The Mxit protocol uses weak encryption when encrypting user passwords, which might allow attackers to (1) decrypt hashed passwords by leveraging knowledge of client registration codes or (2) gain log… CWE-326
Inadequate Encryption Strength
CVE-2016-2379 2024-11-21 11:48 2017-03-30 Show GitHub Exploit DB Packet Storm
266599 7.5 HIGH
Network
uclibc-ng_project uclibc-ng The __read_etc_hosts_r function in libc/inet/resolv.c in uClibc-ng before 1.0.12 allows remote DNS servers to cause a denial of service (infinite loop) via a crafted packet. CWE-400
 Uncontrolled Resource Consumption
CVE-2016-2225 2024-11-21 11:48 2017-03-25 Show GitHub Exploit DB Packet Storm
266600 7.5 HIGH
Network
uclibc-ng_project uclibc-ng The __decode_dotted function in libc/inet/resolv.c in uClibc-ng before 1.0.12 allows remote DNS servers to cause a denial of service (infinite loop) via vectors involving compressed items in a reply. CWE-400
 Uncontrolled Resource Consumption
CVE-2016-2224 2024-11-21 11:48 2017-03-25 Show GitHub Exploit DB Packet Storm