Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
242011 7.5 危険 Activewebsoftwares - Active Test の start.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5959 2012-06-26 16:10 2009-01-23 Show GitHub Exploit DB Packet Storm
242012 7.5 危険 Activewebsoftwares - Active Test における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5958 2012-06-26 16:10 2009-01-23 Show GitHub Exploit DB Packet Storm
242013 5 警告 aspapps - ASP Template Creature におけるデータベースをダウンロードされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-5951 2012-06-26 16:10 2009-01-23 Show GitHub Exploit DB Packet Storm
242014 7.5 危険 aspapps - ASP Template Creature の media/media_level.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5950 2012-06-26 16:10 2009-01-23 Show GitHub Exploit DB Packet Storm
242015 7.5 危険 bncwi - BNCwi の index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-5948 2012-06-26 16:10 2009-01-23 Show GitHub Exploit DB Packet Storm
242016 5 警告 factosystem - Facto におけるパスワードを含むデータベースファイルをダウンロードされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-5935 2012-06-26 16:10 2009-01-21 Show GitHub Exploit DB Packet Storm
242017 7.5 危険 cmsisweb - CMS ISWEB の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5934 2012-06-26 16:10 2009-01-21 Show GitHub Exploit DB Packet Storm
242018 4.3 警告 cmsisweb - CMS ISWEB の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-5933 2012-06-26 16:10 2009-01-21 Show GitHub Exploit DB Packet Storm
242019 5 警告 codeavalanche - CodeAvalanche FreeForum における管理者パスワードを含むデータベースファイルをダウンロードされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-5932 2012-06-26 16:10 2009-01-21 Show GitHub Exploit DB Packet Storm
242020 7.5 危険 flds-script - FLDS の redir.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5928 2012-06-26 16:10 2009-01-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
267381 - oracle vm_virtualbox Unspecified vulnerability in the Oracle VM VirtualBox component in Oracle Virtualization VirtualBox before 5.0.14 allows local users to affect confidentiality, integrity, and availability via unknown… NVD-CWE-noinfo
CVE-2016-0602 2024-11-21 11:42 2016-01-21 Show GitHub Exploit DB Packet Storm
267382 - oracle mysql Unspecified vulnerability in Oracle MySQL 5.7.9 allows remote authenticated users to affect availability via unknown vectors related to Partition. NVD-CWE-noinfo
CVE-2016-0601 2024-11-21 11:42 2016-01-21 Show GitHub Exploit DB Packet Storm
267383 - redhat
debian
oracle
opensuse
canonical
mariadb
enterprise_linux
debian_linux
enterprise_linux_desktop
enterprise_linux_server_aus
enterprise_linux_workstation
enterprise_linux_server
enterprise_linux_hpc_node
enterprise_linux…
Unspecified vulnerability in Oracle MySQL 5.5.46 and earlier, 5.6.27 and earlier, and 5.7.9 and MariaDB before 5.5.47, 10.0.x before 10.0.23, and 10.1.x before 10.1.10 allows remote authenticated use… NVD-CWE-noinfo
CVE-2016-0600 2024-11-21 11:42 2016-01-21 Show GitHub Exploit DB Packet Storm
267384 - oracle mysql Unspecified vulnerability in Oracle MySQL 5.7.9 allows remote authenticated users to affect availability via unknown vectors related to Optimizer. NVD-CWE-noinfo
CVE-2016-0599 2024-11-21 11:42 2016-01-21 Show GitHub Exploit DB Packet Storm
267385 - redhat
oracle
debian
opensuse
canonical
mariadb
enterprise_linux_desktop
enterprise_linux_server_aus
enterprise_linux_workstation
enterprise_linux_server
enterprise_linux_hpc_node
enterprise_linux_server_eus
enterprise_linux_hpc_…
Unspecified vulnerability in Oracle MySQL 5.5.46 and earlier and 5.6.27 and earlier and MariaDB before 5.5.47, 10.0.x before 10.0.23, and 10.1.x before 10.1.10 allows remote authenticated users to af… NVD-CWE-noinfo
CVE-2016-0596 2024-11-21 11:42 2016-01-21 Show GitHub Exploit DB Packet Storm
267386 - redhat
oracle
canonical
opensuse
enterprise_linux
mysql
ubuntu_linux
leap
opensuse
Unspecified vulnerability in Oracle MySQL 5.6.27 and earlier allows remote authenticated users to affect availability via vectors related to DML. NVD-CWE-noinfo
CVE-2016-0595 2024-11-21 11:42 2016-01-21 Show GitHub Exploit DB Packet Storm
267387 - opensuse
oracle
redhat
debian
canonical
mariadb
leap
opensuse
linux
enterprise_linux
enterprise_linux_desktop
enterprise_linux_server_aus
enterprise_linux_workstation
enterprise_linux_server
enterprise_linux_hpc_node
ent…
Unspecified vulnerability in Oracle MySQL 5.5.46 and earlier, 5.6.27 and earlier, and 5.7.9 and MariaDB before 5.5.47, 10.0.x before 10.0.23, and 10.1.x before 10.1.10 allows remote authenticated use… NVD-CWE-noinfo
CVE-2016-0598 2024-11-21 11:42 2016-01-21 Show GitHub Exploit DB Packet Storm
267388 - redhat
oracle
opensuse
canonical
debian
mariadb
enterprise_linux
solaris
linux
leap
opensuse
ubuntu_linux
debian_linux
enterprise_linux_desktop
enterprise_linux_server_aus
enterprise_linux_workstation
enterprise_linux…
Unspecified vulnerability in Oracle MySQL 5.5.46 and earlier, 5.6.27 and earlier, and 5.7.9 and MariaDB before 5.5.47, 10.0.x before 10.0.23, and 10.1.x before 10.1.10 allows remote authenticated use… NVD-CWE-noinfo
CVE-2016-0597 2024-11-21 11:42 2016-01-21 Show GitHub Exploit DB Packet Storm
267389 7.5 HIGH
Network
advantech webaccess Buffer overflow in the BwpAlarm subsystem in Advantech WebAccess before 8.1 allows remote attackers to cause a denial of service via a crafted RPC request. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-0860 2024-11-21 11:42 2016-01-15 Show GitHub Exploit DB Packet Storm
267390 9.8 CRITICAL
Network
advantech webaccess Integer overflow in the Kernel service in Advantech WebAccess before 8.1 allows remote attackers to execute arbitrary code or cause a denial of service (stack-based buffer overflow) via a crafted RPC… CWE-189
Numeric Errors
CVE-2016-0859 2024-11-21 11:42 2016-01-15 Show GitHub Exploit DB Packet Storm