Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 2, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241411 6.8 警告 IBM - 複数の IBM 製品で使用される IBM Maximo Asset Management における Web セッションをハイジャックされる脆弱性 CWE-Other
その他
CVE-2012-2184 2012-09-12 16:18 2012-09-4 Show GitHub Exploit DB Packet Storm
241412 6.8 警告 IBM - 複数の IBM 製品で使用される IBM Maximo Asset Management における Web セッションをハイジャックされる脆弱性 CWE-Other
その他
CVE-2012-2183 2012-09-12 16:17 2012-09-4 Show GitHub Exploit DB Packet Storm
241413 6.5 警告 IBM - 複数の IBM 製品で使用される IBM Maximo Asset Management における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-0747 2012-09-12 16:16 2012-09-4 Show GitHub Exploit DB Packet Storm
241414 3.5 注意 IBM - 複数の IBM 製品で使用される IBM Maximo Asset Management におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-0746 2012-09-12 16:16 2012-09-4 Show GitHub Exploit DB Packet Storm
241415 6.5 警告 IBM - 複数の IBM 製品で使用される IBM Maximo Asset Management における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-0728 2012-09-12 16:15 2012-09-4 Show GitHub Exploit DB Packet Storm
241416 6.5 警告 IBM - 複数の IBM 製品で使用される IBM Maximo Asset Management における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-0727 2012-09-12 16:13 2012-09-4 Show GitHub Exploit DB Packet Storm
241417 6.8 警告 IBM - 複数の IBM 製品で使用される IBM Maximo Asset Management におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-0714 2012-09-12 16:12 2012-09-4 Show GitHub Exploit DB Packet Storm
241418 6.8 警告 OpenKM - OpenKM におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-2316 2012-09-12 14:20 2012-01-4 Show GitHub Exploit DB Packet Storm
241419 4 警告 OpenKM - OpenKM における任意のユーザに管理者権限を割り当てられる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2315 2012-09-12 14:19 2012-01-4 Show GitHub Exploit DB Packet Storm
241420 4.3 警告 chatelao - PHP Address Book の preferences.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-1912 2012-09-12 13:54 2012-09-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 2, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
265911 4.7 MEDIUM
Network
mantisbt mantisbt MantisBT before 1.3.1 and 2.x before 2.0.0-beta.2 uses a weak Content Security Policy when using the Gravatar plugin, which allows remote attackers to conduct cross-site scripting (XSS) attacks via u… CWE-79
Cross-site Scripting
CVE-2016-7111 2024-11-21 11:57 2017-02-18 Show GitHub Exploit DB Packet Storm
265912 5.5 MEDIUM
Local
libav libav Stack-based buffer overflow in the aac_sync function in aac_parser.c in Libav before 11.5 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted file. CWE-125
Out-of-bounds Read
CVE-2016-7393 2024-11-21 11:57 2017-02-16 Show GitHub Exploit DB Packet Storm
265913 5.5 MEDIUM
Local
autotrace_project autotrace Heap-based buffer overflow in the pstoedit_suffix_table_init function in output-pstoedit.c in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (out-of-bounds write) via a crafted… CWE-787
 Out-of-bounds Write
CVE-2016-7392 2024-11-21 11:57 2017-02-16 Show GitHub Exploit DB Packet Storm
265914 9.8 CRITICAL
Network
exponentcms exponent_cms Multiple SQL injection vulnerabilities in Exponent CMS before 2.4.0 allow remote attackers to execute arbitrary SQL commands via the (1) id parameter in an activate_address address controller action,… CWE-89
SQL Injection
CVE-2016-7400 2024-11-21 11:57 2017-02-8 Show GitHub Exploit DB Packet Storm
265915 7.5 HIGH
Network
libtorrent libtorrent The construct function in puff.cpp in Libtorrent 1.1.0 allows remote torrent trackers to cause a denial of service (segmentation fault and crash) via a crafted GZIP response. CWE-20
 Improper Input Validation 
CVE-2016-7164 2024-11-21 11:57 2017-02-8 Show GitHub Exploit DB Packet Storm
265916 6.1 MEDIUM
Network
plone plone Cross-site scripting (XSS) vulnerability in the manage_findResult component in the search feature in Zope ZMI in Plone before 4.3.12 and 5.x before 5.0.7 allows remote attackers to inject arbitrary w… CWE-79
Cross-site Scripting
CVE-2016-7147 2024-11-21 11:57 2017-02-4 Show GitHub Exploit DB Packet Storm
265917 9.8 CRITICAL
Network
libgd libgd Double free vulnerability in the gdImageWebPtr function in the GD Graphics Library (aka libgd) before 2.2.4 allows remote attackers to have unspecified impact via large width and height values. CWE-415
 Double Free
CVE-2016-6912 2024-11-21 11:57 2017-01-27 Show GitHub Exploit DB Packet Storm
265918 5.5 MEDIUM
Local
libgd libgd The dynamicGetbuf function in the GD Graphics Library (aka libgd) before 2.2.4 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted TIFF image. CWE-125
Out-of-bounds Read
CVE-2016-6911 2024-11-21 11:57 2017-01-27 Show GitHub Exploit DB Packet Storm
265919 5.5 MEDIUM
Local
libdwarf_project libdwarf The _dwarf_read_loc_section function in dwarf_loc.c in libdwarf 20160613 allows attackers to cause a denial of service (buffer over-read) via a crafted file. CWE-125
Out-of-bounds Read
CVE-2016-7410 2024-11-21 11:57 2017-01-24 Show GitHub Exploit DB Packet Storm
265920 8.4 HIGH
Local
owncloud owncloud_desktop_client ownCloud Desktop before 2.2.3 allows local users to execute arbitrary code and possibly gain privileges via a Trojan library in a "special path" in the C: drive. CWE-94
Code Injection
CVE-2016-7102 2024-11-21 11:57 2017-01-24 Show GitHub Exploit DB Packet Storm