Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 12:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241731 4.3 警告 Geeklog - Geeklog の admin/configuration.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-5159 2012-09-12 10:00 2011-01-2 Show GitHub Exploit DB Packet Storm
241732 4.3 警告 Geeklog - Geeklog の admin/configuration.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-4942 2012-09-12 09:58 2011-01-2 Show GitHub Exploit DB Packet Storm
241733 6.9 警告 RealFlex Technologies - 複数の RealFlex 製品における権限を取得される脆弱性 CWE-Other
その他
CVE-2012-3004 2012-09-12 09:38 2012-09-8 Show GitHub Exploit DB Packet Storm
241734 6.9 警告 VMware - 複数の VMware 製品の VMware Tools における権限を取得される脆弱性 CWE-Other
その他
CVE-2012-1666 2012-09-12 09:37 2012-09-8 Show GitHub Exploit DB Packet Storm
241735 7.5 危険 Ipswitch, Inc. - Ipswitch WhatsUp Gold の WrVMwareHostList.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-2601 2012-09-11 17:27 2012-08-15 Show GitHub Exploit DB Packet Storm
241736 6.9 警告 DATEV - DATEV Grundpaket Basis における権限を取得される脆弱性 CWE-Other
その他
CVE-2011-5158 2012-09-11 15:39 2012-09-7 Show GitHub Exploit DB Packet Storm
241737 6.9 警告 PKWARE - PKZIP における権限を取得される脆弱性 CWE-Other
その他
CVE-2010-5274 2012-09-11 15:38 2012-09-7 Show GitHub Exploit DB Packet Storm
241738 6.9 警告 Altova - Altova DiffDog における権限を取得される脆弱性 CWE-Other
その他
CVE-2010-5273 2012-09-11 15:38 2012-09-7 Show GitHub Exploit DB Packet Storm
241739 6.9 警告 Altova - Altova DatabaseSpy における権限を取得される脆弱性 CWE-Other
その他
CVE-2010-5272 2012-09-11 15:37 2012-09-7 Show GitHub Exploit DB Packet Storm
241740 6.9 警告 Altova - Altova MapForce における権限を取得される脆弱性 CWE-Other
その他
CVE-2010-5271 2012-09-11 15:37 2012-09-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 4, 2026, 4:17 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
265971 7.5 HIGH
Network
glpi-project glpi Multiple SQL injection vulnerabilities in GLPI 0.90.4 allow an authenticated remote attacker to execute arbitrary SQL commands by using a certain character when the database is configured to use Big5… CWE-89
SQL Injection
CVE-2016-7508 2024-11-21 11:58 2017-06-22 Show GitHub Exploit DB Packet Storm
265972 7.8 HIGH
Local
winsparkle winsparkle Untrusted search path vulnerability in WinSparkle versions prior to 0.5.3 allows remote attackers to execute arbitrary code via a specially crafted executable file in an unspecified directory. CWE-426
 Untrusted Search Path
CVE-2016-7838 2024-11-21 11:58 2017-06-10 Show GitHub Exploit DB Packet Storm
265973 7.8 HIGH
Local
bluez bluez Buffer overflow in BlueZ 5.41 and earlier allows an attacker to execute arbitrary code via the parse_line function used in some userland utilities. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-7837 2024-11-21 11:58 2017-06-10 Show GitHub Exploit DB Packet Storm
265974 9.1 CRITICAL
Network
h2o_project
dena
h2o Use-after-free vulnerability in H2O allows remote attackers to cause a denial-of-service (DoS) or obtain server certificate private keys and possibly other information. CWE-416
 Use After Free
CVE-2016-7835 2024-11-21 11:58 2017-06-10 Show GitHub Exploit DB Packet Storm
265975 7.5 HIGH
Network
cybozu dezie Cybozu Dezie 8.0.0 to 8.1.1 allows remote attackers to bypass access restrictions to delete an arbitrary DBM (Cybozu Dezie proprietary format) file via unspecified vectors. CWE-284
Improper Access Control
CVE-2016-7833 2024-11-21 11:58 2017-06-10 Show GitHub Exploit DB Packet Storm
265976 5.3 MEDIUM
Network
cybozu dezie Cybozu Dezie 8.0.0 to 8.1.1 allows remote attackers to bypass access restrictions to obtain an arbitrary DBM (Cybozu Dezie proprietary format) file via unspecified vectors. CWE-200
Information Exposure
CVE-2016-7832 2024-11-21 11:58 2017-06-10 Show GitHub Exploit DB Packet Storm
265977 6.1 MEDIUM
Network
fenrir-inc sleipnir Sleipnir 4 Black Edition for Mac 4.5.3 and earlier and Sleipnir 4 for Mac 4.5.3 and earlier (Mac App Store) may allow a remote attacker to spoof the URL display via a specially crafted webpage. CWE-601
Open Redirect
CVE-2016-7831 2024-11-21 11:58 2017-06-10 Show GitHub Exploit DB Packet Storm
265978 8.8 HIGH
Adjacent
sony pcs-xg100_firmware
pcs-xg77_firmware
pcs-xc1_firmware
Sony PCS-XG100, PCS-XG100S, PCS-XG100C, PCS-XG77, PCS-XG77S, PCS-XG77C devices with firmware versions prior to Ver.1.51 and PCS-XC1 devices with firmware version prior to Ver.1.22 allow an attacker o… CWE-306
Missing Authentication for Critical Function
CVE-2016-7830 2024-11-21 11:58 2017-06-10 Show GitHub Exploit DB Packet Storm
265979 6.5 MEDIUM
Network
buffalotech wnc01wh_firmware Directory traversal vulnerability in Buffalo WNC01WH devices with firmware version 1.0.0.8 and earlier allows authenticated attackers to read arbitrary files via specially crafted POST requests. CWE-22
Path Traversal
CVE-2016-7826 2024-11-21 11:58 2017-06-10 Show GitHub Exploit DB Packet Storm
265980 6.5 MEDIUM
Network
buffalotech wnc01wh_firmware Directory traversal vulnerability in Buffalo WNC01WH devices with firmware version 1.0.0.8 and earlier allows authenticated attackers to read arbitrary files via specially crafted commands. CWE-22
Path Traversal
CVE-2016-7825 2024-11-21 11:58 2017-06-10 Show GitHub Exploit DB Packet Storm