Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 25, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
242151 5 警告 Tridium - Tridium Niagara AX Framework におけるディレクトリトラバーサルの脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4027 2012-07-18 11:49 2012-07-13 Show GitHub Exploit DB Packet Storm
242152 4.3 警告 ヒューレット・パッカード - HP AssetManager におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2021 2012-07-18 11:39 2012-07-12 Show GitHub Exploit DB Packet Storm
242153 5 警告 RSAセキュリティ - EMC RSA Authentication Manager および RSA SecurID Appliance における任意の Web スクリプトを挿入される脆弱性 CWE-Other
その他
CVE-2012-2280 2012-07-18 10:58 2012-07-13 Show GitHub Exploit DB Packet Storm
242154 6.4 警告 RSAセキュリティ - EMC RSA Authentication Manager および RSA SecurID Appliance におけるオープンリダイレクトの脆弱性 CWE-20
不適切な入力確認
CVE-2012-2279 2012-07-18 10:57 2012-07-13 Show GitHub Exploit DB Packet Storm
242155 4.3 警告 RSAセキュリティ - EMC RSA Authentication Manager および RSA SecurID Appliance におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2278 2012-07-18 10:56 2012-07-13 Show GitHub Exploit DB Packet Storm
242156 4.3 警告 CKEditor Team - FCKeditor におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4000 2012-07-17 16:44 2012-07-12 Show GitHub Exploit DB Packet Storm
242157 4.3 警告 Sayak Banerjee - Sticky Notes の admin/login.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-3999 2012-07-17 16:43 2012-07-12 Show GitHub Exploit DB Packet Storm
242158 7.5 危険 Sayak Banerjee - Sticky Notes における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-3998 2012-07-17 16:43 2012-07-12 Show GitHub Exploit DB Packet Storm
242159 4.3 警告 Sayak Banerjee - Sticky Notes におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-3997 2012-07-17 16:42 2012-07-12 Show GitHub Exploit DB Packet Storm
242160 6.8 警告 VideoLAN - VideoLAN VLC media player の OGG demuxer におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-3377 2012-07-17 16:36 2012-05-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 25, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
266601 4.7 MEDIUM
Network
oracle enterprise_manager_for_fusion_middleware Unspecified vulnerability in the Enterprise Manager for Fusion Middleware component in Oracle Enterprise Manager Grid Control 11.1.1.7, and 11.1.1.9 allows remote attackers to affect confidentiality … NVD-CWE-noinfo
CVE-2016-3496 2024-11-21 11:50 2016-07-21 Show GitHub Exploit DB Packet Storm
266602 6.5 MEDIUM
Adjacent
oracle enterprise_manager_ops_center Unspecified vulnerability in the Enterprise Manager Ops Center component in Oracle Enterprise Manager Grid Control 12.1.4, 12.2.2, and 12.3.2 allows remote attackers to affect availability via vector… NVD-CWE-noinfo
CVE-2016-3494 2024-11-21 11:50 2016-07-21 Show GitHub Exploit DB Packet Storm
266603 9.8 CRITICAL
Network
oracle hyperion_financial_reporting Unspecified vulnerability in the Hyperion Financial Reporting component in Oracle Hyperion 11.1.2.4 allows remote attackers to affect confidentiality, integrity, and availability via vectors related … NVD-CWE-noinfo
CVE-2016-3493 2024-11-21 11:50 2016-07-21 Show GitHub Exploit DB Packet Storm
266604 8.2 HIGH
Network
oracle crm_technical_foundation Unspecified vulnerability in the Oracle CRM Technical Foundation component in Oracle E-Business Suite 12.1.3 allows remote attackers to affect confidentiality and integrity via vectors related to Wir… NVD-CWE-noinfo
CVE-2016-3491 2024-11-21 11:50 2016-07-21 Show GitHub Exploit DB Packet Storm
266605 3.0 LOW
Network
oracle transportation_management Unspecified vulnerability in the Oracle Transportation Management component in Oracle Supply Chain Products Suite 6.3.0, 6.3.1, 6.3.2, 6.3.3, 6.3.4, 6.3.5, 6.3.6, 6.3.7, 6.4.0, and 6.4.1 allows remot… NVD-CWE-noinfo
CVE-2016-3490 2024-11-21 11:50 2016-07-21 Show GitHub Exploit DB Packet Storm
266606 6.7 MEDIUM
Local
oracle database Unspecified vulnerability in the Data Pump Import component in Oracle Database Server 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows local users to affect confidentiality, integrity, and availability via un… NVD-CWE-noinfo
CVE-2016-3489 2024-11-21 11:50 2016-07-21 Show GitHub Exploit DB Packet Storm
266607 4.4 MEDIUM
Local
oracle database Unspecified vulnerability in the DB Sharding component in Oracle Database Server 12.1.0.2 allows local users to affect integrity via unknown vectors. NVD-CWE-noinfo
CVE-2016-3488 2024-11-21 11:50 2016-07-21 Show GitHub Exploit DB Packet Storm
266608 8.1 HIGH
Network
oracle webcenter_sites Unspecified vulnerability in the Oracle WebCenter Sites component in Oracle Fusion Middleware 11.1.1.8, and 12.2.1.0 allows remote attackers to affect confidentiality, integrity, and availability via… NVD-CWE-noinfo
CVE-2016-3487 2024-11-21 11:50 2016-07-21 Show GitHub Exploit DB Packet Storm
266609 6.5 MEDIUM
Network
oracle
canonical
mysql
ubuntu_linux
Unspecified vulnerability in Oracle MySQL 5.6.30 and earlier and 5.7.12 and earlier allows remote authenticated users to affect availability via vectors related to Server: FTS. NVD-CWE-noinfo
CVE-2016-3486 2024-11-21 11:50 2016-07-21 Show GitHub Exploit DB Packet Storm
266610 2.9 LOW
Local
oracle jrockit
jdk
jre
Unspecified vulnerability in Oracle Java SE 6u115, 7u101, and 8u92; Java SE Embedded 8u91; and JRockit R28.3.10 allows local users to affect integrity via vectors related to Networking. NVD-CWE-noinfo
CVE-2016-3485 2024-11-21 11:50 2016-07-21 Show GitHub Exploit DB Packet Storm