Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
242311 4 警告 Angry Donuts
Drupal
- Drupal のモジュールにおけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-2077 2012-06-26 16:10 2009-06-10 Show GitHub Exploit DB Packet Storm
242312 3.5 注意 Drupal - Drupal 用の Views モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-2076 2012-06-26 16:10 2009-06-10 Show GitHub Exploit DB Packet Storm
242313 7.5 危険 Angry Donuts
Drupal
- Drupal のモジュールの Nodequeue における詳細不明な脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-2075 2012-06-26 16:10 2009-06-10 Show GitHub Exploit DB Packet Storm
242314 3.5 注意 Drupal - Drupal 用の Nodequeue モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-2074 2012-06-26 16:10 2009-06-10 Show GitHub Exploit DB Packet Storm
242315 6.8 警告 シスコシステムズ - Linksys WRT160N ワイアレスルータにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2009-2073 2012-06-26 16:10 2009-06-15 Show GitHub Exploit DB Packet Storm
242316 5.4 警告 アップル - Apple Safari における任意の https サイトを偽装される脆弱性 CWE-287
不適切な認証
CVE-2009-2072 2012-06-26 16:10 2009-06-15 Show GitHub Exploit DB Packet Storm
242317 6.8 警告 アップル - Apple Safari における https サイトのコンテキスト内の Web スクリプトを実行される脆弱性 CWE-287
不適切な認証
CVE-2009-2066 2012-06-26 16:10 2009-06-15 Show GitHub Exploit DB Packet Storm
242318 6.8 警告 アップル - Apple Safari における https サイトコンテキスト内の任意の Web スクリプトを実行される脆弱性 CWE-287
不適切な認証
CVE-2009-2062 2012-06-26 16:10 2009-06-15 Show GitHub Exploit DB Packet Storm
242319 6.8 警告 アップル - Apple Safari における任意の Web スクリプトを実行される脆弱性 CWE-287
不適切な認証
CVE-2009-2058 2012-06-26 16:10 2009-06-15 Show GitHub Exploit DB Packet Storm
242320 7.5 危険 grestul - Grestul の admin/options.php における管理者アカウントを作成される脆弱性 CWE-287
不適切な認証
CVE-2009-2040 2012-06-26 16:10 2009-06-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 18, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
266891 5.5 MEDIUM
Local
xen xen VMX in Xen 4.6.x and earlier, when using an Intel or Cyrix CPU, allows local HVM guest users to cause a denial of service (guest crash) via vectors related to a non-canonical RIP. NVD-CWE-Other
CVE-2016-2271 2024-11-21 11:48 2016-02-20 Show GitHub Exploit DB Packet Storm
266892 6.8 MEDIUM
Network
debian
fedoraproject
xen
oracle
debian_linux
fedora
xen
vm_server
Xen 4.6.x and earlier allows local guest administrators to cause a denial of service (host reboot) via vectors related to multiple mappings of MMIO pages with different cachability settings. CWE-20
 Improper Input Validation 
CVE-2016-2270 2024-11-21 11:48 2016-02-20 Show GitHub Exploit DB Packet Storm
266893 5.3 MEDIUM
Adjacent
belden hirschmann_firmware
hirschmann_l2b
The password-sync feature on Belden Hirschmann Classic Platform switches L2B before 05.3.07 and L2E, L2P, L3E, and L3P before 09.0.06 sets an SNMP community to the same string as the administrator pa… CWE-200
Information Exposure
CVE-2016-2509 2024-11-21 11:48 2016-02-19 Show GitHub Exploit DB Packet Storm
266894 6.5 MEDIUM
Adjacent
comcast xfinity_home_security_system Comcast XFINITY Home Security System does not properly maintain base-station communication, which allows physically proximate attackers to defeat sensor functionality by interfering with ZigBee 2.4 G… CWE-254
 7PK - Security Features
CVE-2016-2398 2024-11-21 11:48 2016-02-18 Show GitHub Exploit DB Packet Storm
266895 9.8 CRITICAL
Network
sonicwall uma_em5000_firmware
analyzer
global_management_system
The cliserver implementation in Dell SonicWALL GMS, Analyzer, and UMA EM5000 7.2, 8.0, and 8.1 before Hotfix 168056 allows remote attackers to deserialize and execute arbitrary Java code via crafted … CWE-77
Command Injection
CVE-2016-2397 2024-11-21 11:48 2016-02-18 Show GitHub Exploit DB Packet Storm
266896 9.9 CRITICAL
Network
sonicwall analyzer
global_management_system
uma_em5000_firmware
The GMS ViewPoint (GMSVP) web application in Dell SonicWALL GMS, Analyzer, and UMA EM5000 7.2, 8.0, and 8.1 before Hotfix 168056 allows remote authenticated users to execute arbitrary commands via ve… CWE-77
Command Injection
CVE-2016-2396 2024-11-21 11:48 2016-02-18 Show GitHub Exploit DB Packet Storm
266897 7.5 HIGH
Network
sap netweaver Directory traversal vulnerability in the GetFileList function in the SAP Manufacturing Integration and Intelligence (xMII) component 15.0 for SAP NetWeaver 7.4 allows remote attackers to read arbitra… CWE-22
Path Traversal
CVE-2016-2389 2024-11-21 11:48 2016-02-17 Show GitHub Exploit DB Packet Storm
266898 6.1 MEDIUM
Network
sap netweaver Multiple cross-site scripting (XSS) vulnerabilities in the Java Proxy Runtime ProxyServer servlet in SAP NetWeaver 7.4 allow remote attackers to inject arbitrary web script or HTML via the (1) ns or … CWE-79
Cross-site Scripting
CVE-2016-2387 2024-11-21 11:48 2016-02-17 Show GitHub Exploit DB Packet Storm
266899 4.9 MEDIUM
Network
huawei mt882_firmware GlobespanVirata ftpd 1.0, as used on Huawei SmartAX MT882 devices V200R002B022 Arg, allows remote authenticated users to cause a denial of service (device outage) by using the FTP MKD command to crea… CWE-17
Code
CVE-2016-2314 2024-11-21 11:48 2016-02-15 Show GitHub Exploit DB Packet Storm
266900 9.8 CRITICAL
Network
huawei mt882_firmware The Windows-based Host Interface Program (WHIP) service on Huawei SmartAX MT882 devices V200R002B022 Arg relies on the client to send a length field that is consistent with a buffer size, which allow… CWE-19
 Data Processing Errors
CVE-2016-2231 2024-11-21 11:48 2016-02-15 Show GitHub Exploit DB Packet Storm