Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 23, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241981 4.3 警告 Sayak Banerjee - Sticky Notes の admin/login.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-3999 2012-07-17 16:43 2012-07-12 Show GitHub Exploit DB Packet Storm
241982 7.5 危険 Sayak Banerjee - Sticky Notes における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-3998 2012-07-17 16:43 2012-07-12 Show GitHub Exploit DB Packet Storm
241983 4.3 警告 Sayak Banerjee - Sticky Notes におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-3997 2012-07-17 16:42 2012-07-12 Show GitHub Exploit DB Packet Storm
241984 6.8 警告 VideoLAN - VideoLAN VLC media player の OGG demuxer におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-3377 2012-07-17 16:36 2012-05-2 Show GitHub Exploit DB Packet Storm
241985 6.8 警告 Wafer - Webmatic の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-3350 2012-07-17 16:35 2012-07-12 Show GitHub Exploit DB Packet Storm
241986 9.3 危険 Esri - ESRI ArcMap および ArcGI における任意の VBA コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2012-1661 2012-07-17 16:29 2012-07-12 Show GitHub Exploit DB Packet Storm
241987 6.8 警告 eXtplorer - eXtplorer におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-3362 2012-07-17 16:27 2012-07-12 Show GitHub Exploit DB Packet Storm
241988 10 危険 Lawrence Berkeley National Laboratory - arpwatch における root 権限を取得される脆弱性 CWE-DesignError
CVE-2012-2653 2012-07-17 16:26 2012-07-12 Show GitHub Exploit DB Packet Storm
241989 5 警告 Mahara - Mahara の auth/saml プラグインのデフォルト設定におけるユーザになりすまされる脆弱性 CWE-16
環境設定
CVE-2012-2351 2012-07-17 16:21 2012-03-6 Show GitHub Exploit DB Packet Storm
241990 6.8 警告 NiH - libzip の zip_open.c における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2012-1163 2012-07-17 16:19 2012-03-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 23, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
269061 6.5 MEDIUM
Network
cpanel cpanel cPanel before 60.0.25 allows arbitrary file-chown operations via reassign_post_terminate_cruft (SEC-173). CWE-20
 Improper Input Validation 
CVE-2016-10775 2024-11-21 11:44 2019-08-5 Show GitHub Exploit DB Packet Storm
269062 5.4 MEDIUM
Network
cpanel cpanel cPanel before 60.0.25 allows self XSS in the tail_ea4_migration.cgi interface (SEC-172). CWE-79
Cross-site Scripting
CVE-2016-10774 2024-11-21 11:44 2019-08-5 Show GitHub Exploit DB Packet Storm
269063 8.8 HIGH
Network
cpanel cpanel cPanel before 60.0.25 allows format-string injection in exception-message handling (SEC-171). CWE-134
Use of Externally-Controlled Format String
CVE-2016-10773 2024-11-21 11:44 2019-08-5 Show GitHub Exploit DB Packet Storm
269064 3.3 LOW
Local
cpanel cpanel cPanel before 60.0.25 does not enforce feature-list restrictions when calling the multilang adminbin (SEC-168). CWE-254
 7PK - Security Features
CVE-2016-10772 2024-11-21 11:44 2019-08-5 Show GitHub Exploit DB Packet Storm
269065 8.1 HIGH
Network
cpanel cpanel cPanel before 60.0.25 allows file-create and file-chmod operations during ModSecurity Audit logfile processing (SEC-165). CWE-20
 Improper Input Validation 
CVE-2016-10771 2024-11-21 11:44 2019-08-5 Show GitHub Exploit DB Packet Storm
269066 6.5 MEDIUM
Network
cpanel cpanel cPanel before 60.0.25 allows arbitrary file-overwrite operations during a Roundcube update (SEC-164). CWE-20
 Improper Input Validation 
CVE-2016-10770 2024-11-21 11:44 2019-08-5 Show GitHub Exploit DB Packet Storm
269067 6.1 MEDIUM
Network
cpanel cpanel cPanel before 60.0.25 allows an open redirect via /cgi-sys/FormMail-clone.cgi (SEC-162). CWE-601
Open Redirect
CVE-2016-10769 2024-11-21 11:44 2019-08-5 Show GitHub Exploit DB Packet Storm
269068 6.5 MEDIUM
Network
cpanel cpanel cPanel before 60.0.25 allows file-overwrite operations during preparation for MySQL upgrades (SEC-161). CWE-20
 Improper Input Validation 
CVE-2016-10768 2024-11-21 11:44 2019-08-5 Show GitHub Exploit DB Packet Storm
269069 5.4 MEDIUM
Network
cpanel cpanel cPanel before 60.0.25 allows stored XSS in the WHM Repair Mailbox Permissions interface (SEC-159). CWE-79
Cross-site Scripting
CVE-2016-10767 2024-11-21 11:44 2019-08-5 Show GitHub Exploit DB Packet Storm
269070 8.8 HIGH
Network
cpanel cpanel cPanel before 55.9999.141 allows attackers to bypass Two Factor Authentication via DNS clustering requests (SEC-93). CWE-287
Improper Authentication
CVE-2016-10826 2024-11-21 11:44 2019-08-2 Show GitHub Exploit DB Packet Storm