Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241911 3.5 注意 IBM - IBM Lotus Protector for Mail Security および IBM ISS Proventia Network Mail Security System におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-2202 2012-07-30 15:59 2012-07-27 Show GitHub Exploit DB Packet Storm
241912 2.6 注意 マイクロソフト
Mozilla Foundation
- 複数のウェブブラウザにおける Transfer-Encoding ヘッダの処理に関する脆弱性 CWE-DesignError
- 2012-07-30 14:00 2012-07-30 Show GitHub Exploit DB Packet Storm
241913 6.8 警告 Novell - Novell ZENworks Configuration Management の AdminStudio におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-3174 2012-07-30 13:53 2011-10-14 Show GitHub Exploit DB Packet Storm
241914 6.8 警告 Novell - Novell ZENworks Configuration Management の AdminStudio における任意のコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-2658 2012-07-30 13:51 2011-10-14 Show GitHub Exploit DB Packet Storm
241915 6.8 警告 Novell - Novell ZENworks Configuration Management の AdminStudio におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2011-2657 2012-07-30 13:49 2011-10-14 Show GitHub Exploit DB Packet Storm
241916 5 警告 FreeBSD
NetBSD
- FreeBSD および NetBSD 向けの libc の jemalloc におけるメモリ関連の脆弱性 CWE-189
数値処理の問題
CVE-2007-6754 2012-07-30 13:44 2012-07-25 Show GitHub Exploit DB Packet Storm
241917 5 警告 FreeBSD
NetBSD
- FreeBSD および NetBSD 向けの libc の jemalloc における整数オーバーフロー脆弱性 CWE-189
数値処理の問題
CVE-2006-7252 2012-07-30 13:41 2012-07-25 Show GitHub Exploit DB Packet Storm
241918 5 警告 gperftools - gperftools の TCMalloc における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2005-4895 2012-07-30 11:51 2012-07-25 Show GitHub Exploit DB Packet Storm
241919 6.9 警告 シーメンス - Siemens SIMATIC PCS7 で使用される SIMATIC STEP7 における権限を取得される脆弱性 CWE-Other
その他
CVE-2012-3015 2012-07-30 11:32 2012-07-23 Show GitHub Exploit DB Packet Storm
241920 6.9 警告 Invensys - Invensys Wonderware InTouch における権限を取得される脆弱性 CWE-Other
その他
CVE-2012-3005 2012-07-30 11:30 2012-07-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
266261 6.5 MEDIUM
Network
apple itunes
safari
iphone_os
WebKit in Apple iOS before 10, iTunes before 12.5.1 on Windows, and Safari before 10 allows remote attackers to conduct DNS rebinding attacks against non-HTTP Safari sessions by leveraging HTTP/0.9 s… CWE-284
Improper Access Control
CVE-2016-4760 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
266262 8.8 HIGH
Network
apple tvos
iphone_os
safari
itunes
WebKit in Apple iOS before 10, tvOS before 10, iTunes before 12.5.1 on Windows, and Safari before 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption)… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-4759 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
266263 6.5 MEDIUM
Network
apple safari
iphone_os
itunes
WebKit in Apple iOS before 10, iTunes before 12.5.1 on Windows, and Safari before 10 does not properly restrict access to the location variable, which allows remote attackers to obtain sensitive info… CWE-200
Information Exposure
CVE-2016-4758 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
266264 5.5 MEDIUM
Local
apple mac_os_x Terminal in Apple OS X before 10.12 uses weak permissions for the .bash_history and .bash_session files, which allows local users to obtain sensitive information via unspecified vectors. CWE-200
Information Exposure
CVE-2016-4755 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
266265 7.5 HIGH
Network
apple os_x_server ServerDocs Server in Apple OS X Server before 5.2 supports the RC4 cipher, which might allow remote attackers to defeat cryptographic protection mechanisms via unspecified vectors. CWE-310
Cryptographic Issues
CVE-2016-4754 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
266266 7.8 HIGH
Local
apple watchos
tvos
iphone_os
mac_os_x
Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3 mishandle signed disk images, which allows attackers to execute arbitrary code in a privileged context via a crafted app. CWE-20
 Improper Input Validation 
CVE-2016-4753 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
266267 5.5 MEDIUM
Local
apple mac_os_x The SecKeyDeriveFromPassword function in Apple OS X before 10.12 does not use the CF_RETURNS_RETAINED keyword, which allows attackers to obtain sensitive information from process memory by triggering… CWE-200
Information Exposure
CVE-2016-4752 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
266268 3.5 LOW
Network
apple safari The Safari Tabs component in Apple Safari before 10 allows remote attackers to spoof the address bar of a tab via a crafted web site. CWE-254
 7PK - Security Features
CVE-2016-4751 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
266269 7.8 HIGH
Local
apple iphone_os
mac_os_x
S2 Camera in Apple iOS before 10 and OS X before 10.12 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-4750 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
266270 5.3 MEDIUM
Local
apple mac_os_x Perl in Apple OS X before 10.12 allows local users to bypass the taint-mode protection mechanism via a crafted environment variable. CWE-254
 7PK - Security Features
CVE-2016-4748 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm