Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 16, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241811 7.5 危険 dvbbs - DVBBS の boardrule.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4470 2012-06-26 16:18 2009-12-30 Show GitHub Exploit DB Packet Storm
241812 4.3 警告 giombetti - phpPowerCards の pagenumber.inc.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4469 2012-06-26 16:18 2009-12-30 Show GitHub Exploit DB Packet Storm
241813 4.3 警告 deluxebb - DeluxeBB の misc.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4468 2012-06-26 16:18 2009-12-30 Show GitHub Exploit DB Packet Storm
241814 4 警告 deluxebb - DeluxeBB の misc.php におけるアカウント登録される脆弱性 CWE-20
不適切な入力確認
CVE-2009-4467 2012-06-26 16:18 2009-12-30 Show GitHub Exploit DB Packet Storm
241815 5 警告 deluxebb - DeluxeBB における重要な情報を取得される取得される脆弱性 CWE-200
情報漏えい
CVE-2009-4466 2012-06-26 16:18 2009-12-30 Show GitHub Exploit DB Packet Storm
241816 7.5 危険 deluxebb - DeluxeBB における管理アクセス権を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-4465 2012-06-26 16:18 2009-12-30 Show GitHub Exploit DB Packet Storm
241817 4.3 警告 Activewebsoftwares - Active Business Directory の searchadvance.asp におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4464 2012-06-26 16:18 2009-12-30 Show GitHub Exploit DB Packet Storm
241818 4.3 警告 FlatPress - FlatPress におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4461 2012-06-26 16:18 2009-12-30 Show GitHub Exploit DB Packet Storm
241819 4.3 警告 FreePBX - FreePBX におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4458 2012-06-26 16:18 2009-12-29 Show GitHub Exploit DB Packet Storm
241820 7.5 危険 greendesktiny - Green Desktiny の news_detail.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4456 2012-06-26 16:18 2009-12-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 16, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
266771 8.1 HIGH
Network
hp system_management_homepage HPE System Management Homepage before 7.5.4 allows remote authenticated users to obtain sensitive information or modify data via unspecified vectors. NVD-CWE-noinfo
CVE-2016-1993 2024-11-21 11:47 2016-03-18 Show GitHub Exploit DB Packet Storm
266772 6.5 MEDIUM
Network
hp enterprise_security_manager_express
enterprise_security_manager
HPE ArcSight ESM before 6.8c, and ArcSight ESM Express before 6.9.1, allows remote authenticated users to obtain sensitive information via unspecified vectors. CWE-200
Information Exposure
CVE-2016-1992 2024-11-21 11:47 2016-03-17 Show GitHub Exploit DB Packet Storm
266773 5.4 MEDIUM
Network
vmware vrealize_business_advanced_and_enterprise Cross-site scripting (XSS) vulnerability in VMware vRealize Business Advanced and Enterprise 8.x before 8.2.5 on Linux allows remote authenticated users to inject arbitrary web script or HTML via uns… CWE-79
Cross-site Scripting
CVE-2016-2075 2024-11-21 11:47 2016-03-16 Show GitHub Exploit DB Packet Storm
266774 8.0 HIGH
Network
microfocus arcsight_enterprise_security_manager HPE ArcSight ESM 5.x before 5.6, 6.0, 6.5.x before 6.5C SP1 Patch 2, and 6.8c before P1, and ArcSight ESM Express before 6.9.1, allows remote authenticated users to conduct unspecified "file download… NVD-CWE-noinfo
CVE-2016-1991 2024-11-21 11:47 2016-03-16 Show GitHub Exploit DB Packet Storm
266775 7.8 HIGH
Local
microfocus arcsight_enterprise_security_manager HPE ArcSight ESM 5.x before 5.6, 6.0, 6.5.x before 6.5C SP1 Patch 2, and 6.8c before P1, and ArcSight ESM Express before 6.9.1, allows local users to gain privileges for command execution via unspeci… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-1990 2024-11-21 11:47 2016-03-16 Show GitHub Exploit DB Packet Storm
266776 9.8 CRITICAL
Network
hp network_automation HPE Network Automation 9.22 through 9.22.02 and 10.x before 10.00.02 allows remote attackers to execute arbitrary code or obtain sensitive information via unspecified vectors, a different vulnerabili… NVD-CWE-noinfo
CVE-2016-1989 2024-11-21 11:47 2016-03-15 Show GitHub Exploit DB Packet Storm
266777 9.8 CRITICAL
Network
hp network_automation HPE Network Automation 9.22 through 9.22.02 and 10.x before 10.00.02 allows remote attackers to execute arbitrary code or obtain sensitive information via unspecified vectors, a different vulnerabili… NVD-CWE-noinfo
CVE-2016-1988 2024-11-21 11:47 2016-03-15 Show GitHub Exploit DB Packet Storm
266778 8.8 HIGH
Network
mozilla firefox
network_security_services
Use-after-free vulnerability in the PK11_ImportDERPrivateKeyInfoAndReturnKey function in Mozilla Network Security Services (NSS) before 3.21.1, as used in Mozilla Firefox before 45.0, allows remote a… NVD-CWE-Other
CVE-2016-1979 2024-11-21 11:47 2016-03-14 Show GitHub Exploit DB Packet Storm
266779 7.3 HIGH
Network
mozilla firefox
network_security_services
Use-after-free vulnerability in the ssl3_HandleECDHServerKeyExchange function in Mozilla Network Security Services (NSS) before 3.21, as used in Mozilla Firefox before 44.0, allows remote attackers t… NVD-CWE-Other
CVE-2016-1978 2024-11-21 11:47 2016-03-14 Show GitHub Exploit DB Packet Storm
266780 8.8 HIGH
Network
suse
opensuse
oracle
sil
mozilla
linux_enterprise
leap
opensuse
linux
graphite2
firefox
The Machine::Code::decoder::analysis::set_ref function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7, allows remote attackers to execute arbitrar… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-1977 2024-11-21 11:47 2016-03-14 Show GitHub Exploit DB Packet Storm