Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 26, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241441 6.8 警告 Munin - Munin の cgi-bin/munin-cgi-graph における任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2012-2104 2012-08-29 10:56 2012-08-26 Show GitHub Exploit DB Packet Storm
241442 9.3 危険 Sitecom - Sitecom WLM-2501 におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-1921 2012-08-29 10:28 2012-08-26 Show GitHub Exploit DB Packet Storm
241443 4.3 警告 Elefant CMS - Elefant CMS の apps/admin/handlers/preview.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-1296 2012-08-29 10:26 2012-08-26 Show GitHub Exploit DB Packet Storm
241444 6.8 警告 GNU Project - GNU Gnash の libbase/GnashImage.h における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2012-1175 2012-08-28 16:58 2012-08-26 Show GitHub Exploit DB Packet Storm
241445 4.3 警告 PluXml - PluXml におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4675 2012-08-28 16:47 2012-04-16 Show GitHub Exploit DB Packet Storm
241446 5 警告 PluXml - PluXml におけるインストールパスを取得される脆弱性性 CWE-200
情報漏えい
CVE-2012-4674 2012-08-28 16:46 2012-04-16 Show GitHub Exploit DB Packet Storm
241447 7.5 危険 PluXml - PluXml の update/index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-2227 2012-08-28 16:44 2012-04-16 Show GitHub Exploit DB Packet Storm
241448 7.5 危険 Thomas Hunter - NeoInvoice の application/controllers/invoice.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-4673 2012-08-28 16:43 2012-08-26 Show GitHub Exploit DB Packet Storm
241449 7.5 危険 Thomas Hunter - NeoInvoice の signup_check.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-3477 2012-08-28 16:40 2012-08-26 Show GitHub Exploit DB Packet Storm
241450 7.5 危険 DELL EMC (旧 EMC Corporation) - EMC ApplicationXtender Desktop および ApplicationXtender Web Access .NET におけるファイルをアップロードされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2289 2012-08-28 16:40 2012-08-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 26, 2026, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
266201 8.8 HIGH
Network
hp discovery_and_dependency_mapping_inventory HPE Discovery and Dependency Mapping Inventory (DDMi) 9.30, 9.31, 9.32, 9.32 update 1, 9.32 update 2, and 9.32 update 3 allows remote authenticated users to execute arbitrary commands via a crafted s… CWE-284
Improper Access Control
CVE-2016-4369 2024-11-21 11:51 2016-06-9 Show GitHub Exploit DB Packet Storm
266202 9.8 CRITICAL
Network
hp universal_cmbd_foundation
universal_cmbd_configuration_manager
universal_discovery
HPE Universal CMDB 10.0 through 10.21, Universal CMDB Configuration Manager 10.0 through 10.21, and Universal Discovery 10.0 through 10.21 allow remote attackers to execute arbitrary commands via a c… CWE-20
 Improper Input Validation 
CVE-2016-4368 2024-11-21 11:51 2016-06-8 Show GitHub Exploit DB Packet Storm
266203 7.5 HIGH
Network
hp universal_cmbd_foundation The Universal Discovery component in HPE Universal CMDB 10.0, 10.01, 10.10, 10.11, 10.20, and 10.21 allows remote attackers to obtain sensitive information via unspecified vectors. CWE-200
Information Exposure
CVE-2016-4367 2024-11-21 11:51 2016-06-8 Show GitHub Exploit DB Packet Storm
266204 9.8 CRITICAL
Network
hp systems_insight_manager HPE Systems Insight Manager (SIM) before 7.5.1 allows remote attackers to obtain sensitive information, modify data, or cause a denial of service via unspecified vectors. NVD-CWE-noinfo
CVE-2016-4366 2024-11-21 11:51 2016-06-8 Show GitHub Exploit DB Packet Storm
266205 7.5 HIGH
Network
hp insight_control_server_deployment HPE Insight Control server deployment allows remote attackers to obtain sensitive information via unspecified vectors. NVD-CWE-noinfo
CVE-2016-4365 2024-11-21 11:51 2016-06-8 Show GitHub Exploit DB Packet Storm
266206 8.4 HIGH
Local
hp insight_control_server_deployment HPE Insight Control server deployment allows local users to gain privileges via unspecified vectors. NVD-CWE-noinfo
CVE-2016-4364 2024-11-21 11:51 2016-06-8 Show GitHub Exploit DB Packet Storm
266207 6.1 MEDIUM
Network
hp insight_control_server_deployment HPE Insight Control server deployment allows remote attackers to modify data via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2016-4363 2024-11-21 11:51 2016-06-8 Show GitHub Exploit DB Packet Storm
266208 8.1 HIGH
Network
hp insight_control_server_deployment HPE Insight Control server deployment allows remote authenticated users to obtain sensitive information or modify data via unspecified vectors. NVD-CWE-noinfo
CVE-2016-4362 2024-11-21 11:51 2016-06-8 Show GitHub Exploit DB Packet Storm
266209 7.5 HIGH
Network
hp performance_center
loadrunner
HPE LoadRunner 11.52 through patch 3, 12.00 through patch 1, 12.01 through patch 3, 12.02 through patch 2, and 12.50 through patch 3 and Performance Center 11.52 through patch 3, 12.00 through patch … NVD-CWE-noinfo
CVE-2016-4361 2024-11-21 11:51 2016-06-8 Show GitHub Exploit DB Packet Storm
266210 9.1 CRITICAL
Network
hp loadrunner
performance_center
web/admin/data.js in the Performance Center Virtual Table Server (VTS) component in HPE LoadRunner 11.52 through patch 3, 12.00 through patch 1, 12.01 through patch 3, 12.02 through patch 2, and 12.5… NVD-CWE-noinfo
CVE-2016-4360 2024-11-21 11:51 2016-06-8 Show GitHub Exploit DB Packet Storm