Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 28, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241491 5 警告 Coppermine Photo Gallery - Coppermine Photo Gallery における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2012-1614 2012-09-6 11:29 2012-09-4 Show GitHub Exploit DB Packet Storm
241492 3.5 注意 Coppermine Photo Gallery - Coppermine Photo Gallery の edit_one_pic.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-1613 2012-09-6 11:28 2012-09-4 Show GitHub Exploit DB Packet Storm
241493 5 警告 TYPO3 Association - TYPO3 におけるクロスサイトスクリプティング保護メカニズムを回避される脆弱性 CWE-20
不適切な入力確認
CVE-2012-1608 2012-09-6 11:16 2012-03-28 Show GitHub Exploit DB Packet Storm
241494 5 警告 TYPO3 Association - TYPO3 の Command Line Interface スクリプトにおけるデータベース名を取得される脆弱性 CWE-200
情報漏えい
CVE-2012-1607 2012-09-6 11:15 2012-03-28 Show GitHub Exploit DB Packet Storm
241495 3.5 注意 TYPO3 Association - TYPO3 の Backend コンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-1606 2012-09-6 11:12 2012-03-28 Show GitHub Exploit DB Packet Storm
241496 5 警告 TYPO3 Association - TYPO3 の Extbase Framework における任意のオブジェクトのシリアル化を解除される脆弱性 CWE-DesignError
CVE-2012-1605 2012-09-6 11:10 2012-03-28 Show GitHub Exploit DB Packet Storm
241497 5 警告 Mozilla Foundation - Bugzilla におけるファイルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4747 2012-09-6 10:59 2012-08-30 Show GitHub Exploit DB Packet Storm
241498 5 警告 Mozilla Foundation - Bugzilla の Auth/Verify/LDAP.pm における LDAP ディレクトリにデータを挿入される脆弱性 CWE-255
証明書・パスワード管理
CVE-2012-3981 2012-09-6 10:46 2012-08-30 Show GitHub Exploit DB Packet Storm
241499 9.3 危険 International Color Consortium (ICC)
Argyll CMS
- Argyll CMS およびその他のプログラムで使用される icclib におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2012-1616 2012-09-5 18:34 2012-06-21 Show GitHub Exploit DB Packet Storm
241500 4.3 警告 The phpMyAdmin Project - phpMyAdmin のレプリケーションセットアップ機能におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-1190 2012-09-5 18:32 2012-02-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 29, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
269401 7.8 HIGH
Local
freebsd freebsd The Linux compatibility layer in the kernel in FreeBSD 9.3, 10.1, and 10.2 allows local users to read portions of kernel memory and potentially gain privilege via unspecified vectors, related to "han… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-1880 2024-11-21 11:47 2017-02-16 Show GitHub Exploit DB Packet Storm
269402 9.8 CRITICAL
Network
busybox
debian
canonical
busybox
debian_linux
ubuntu_linux
Heap-based buffer overflow in the DHCP client (udhcpc) in BusyBox before 1.25.0 allows remote attackers to have unspecified impact via vectors involving OPTION_6RD parsing. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-2148 2024-11-21 11:47 2017-02-10 Show GitHub Exploit DB Packet Storm
269403 7.5 HIGH
Network
busybox
debian
canonical
busybox
debian_linux
ubuntu_linux
Integer overflow in the DHCP client (udhcpc) in BusyBox before 1.25.0 allows remote attackers to cause a denial of service (crash) via a malformed RFC1035-encoded domain name, which triggers an out-o… CWE-190
 Integer Overflow or Wraparound
CVE-2016-2147 2024-11-21 11:47 2017-02-10 Show GitHub Exploit DB Packet Storm
269404 8.1 HIGH
Network
netapp oncommand_workflow_automation NetApp OnCommand Workflow Automation before 3.1P2 allows remote attackers to bypass authentication via unspecified vectors. CWE-284
Improper Access Control
CVE-2016-1894 2024-11-21 11:47 2017-02-8 Show GitHub Exploit DB Packet Storm
269405 6.5 MEDIUM
Network
libdwarf_project libdwarf The get_abbrev_array_info function in libdwarf-20151114 allows remote attackers to cause a denial of service (out-of-bounds write) via a crafted elf file. CWE-787
 Out-of-bounds Write
CVE-2016-2050 2024-11-21 11:47 2017-02-1 Show GitHub Exploit DB Packet Storm
269406 5.5 MEDIUM
Local
samsung knox Samsung KNOX 1.0.0 uses the shared certificate on Android, which allows local users to conduct man-in-the-middle attacks as demonstrated by installing a certificate and running a VPN service. CWE-284
Improper Access Control
CVE-2016-1920 2024-11-21 11:47 2017-01-28 Show GitHub Exploit DB Packet Storm
269407 4.7 MEDIUM
Local
samsung knox Samsung KNOX 1.0 uses a weak eCryptFS Key generation algorithm, which makes it easier for local users to obtain sensitive information by leveraging knowledge of the TIMA key and a brute-force attack. CWE-310
CWE-200
Cryptographic Issues
Information Exposure
CVE-2016-1919 2024-11-21 11:47 2017-01-28 Show GitHub Exploit DB Packet Storm
269408 9.8 CRITICAL
Network
lha_for_unix_project lha_for_unix Integer underflow in header.c in lha allows remote attackers to have unspecified impact via a large header size value for the (1) level0 or (2) level1 header in a lha archive, which triggers a buffer… CWE-191
 Integer Underflow (Wrap or Wraparound)
CVE-2016-1925 2024-11-21 11:47 2017-01-24 Show GitHub Exploit DB Packet Storm
269409 7.4 HIGH
Network
hexchat_project hexchat Directory traversal vulnerability in the client in HexChat 2.11.0 allows remote IRC servers to read or modify arbitrary files via a .. (dot dot) in the server name. CWE-22
Path Traversal
CVE-2016-2087 2024-11-21 11:47 2017-01-19 Show GitHub Exploit DB Packet Storm
269410 9.8 CRITICAL
Network
fedoraproject
freedesktop
debian
canonical
fedora
libbsd
debian_linux
ubuntu_linux
Off-by-one vulnerability in the fgetwln function in libbsd before 0.8.2 allows attackers to have unspecified impact via unknown vectors, which trigger a heap-based buffer overflow. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-2090 2024-11-21 11:47 2017-01-14 Show GitHub Exploit DB Packet Storm