Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
242341 4.9 警告 FreeBSD - FreeBSD のパイプ実装 の direct write 最適化の pipe_build_write_buffer 関数における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2009-1935 2012-06-26 16:10 2009-06-10 Show GitHub Exploit DB Packet Storm
242342 10 危険 gscripts - GScripts.net DNS Tools の dig.php における任意のコマンドを実行される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2009-1916 2012-06-26 16:10 2009-06-4 Show GitHub Exploit DB Packet Storm
242343 6.8 警告 Claudio Klingler - TWG で使用される QuiXplorer の .include/init.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-1911 2012-06-26 16:10 2009-06-4 Show GitHub Exploit DB Packet Storm
242344 4.3 警告 Claroline Consortium - Claroline の claroline/linker/notfound.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-1907 2012-06-26 16:10 2009-05-5 Show GitHub Exploit DB Packet Storm
242345 4.3 警告 The Perl Foundation
bzip.org
- Perl のCompress-Raw-Bzip2 モジュールの bzinflate 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2009-1884 2012-06-26 16:10 2009-08-19 Show GitHub Exploit DB Packet Storm
242346 7.5 危険 cmsnx - Million Dollar Text Links におけるアクセス権を取得される脆弱性 CWE-287
不適切な認証
CVE-2009-1854 2012-06-26 16:10 2009-06-1 Show GitHub Exploit DB Packet Storm
242347 7.5 危険 graphiks - Graphiks MyForum における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-1852 2012-06-26 16:10 2009-06-1 Show GitHub Exploit DB Packet Storm
242348 7.5 危険 benjamin curtis - phpBugTracker の include.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-1851 2012-06-26 16:10 2009-06-1 Show GitHub Exploit DB Packet Storm
242349 7.5 危険 benjamin curtis - phpBugTracker の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-1850 2012-06-26 16:10 2009-06-1 Show GitHub Exploit DB Packet Storm
242350 7.5 危険 easypx41 - Easy PX 41 CMS の index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-1847 2012-06-26 16:10 2009-06-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
267091 6.5 MEDIUM
Network
cisco adaptive_security_appliance_software The XML parser in Cisco Adaptive Security Appliance (ASA) Software through 9.5.2 allows remote authenticated users to cause a denial of service (instability, memory consumption, or device reload) by … CWE-119
CWE-399
Incorrect Access of Indexable Resource ('Range Error') 
 Resource Management Errors
CVE-2016-1385 2024-11-21 11:46 2016-05-27 Show GitHub Exploit DB Packet Storm
267092 7.5 HIGH
Network
cisco ios_xr Cisco IOS XR through 5.3.2 mishandles Local Packet Transport Services (LPTS) flow-base entries, which allows remote attackers to cause a denial of service (session drop) by making many connection att… CWE-20
 Improper Input Validation 
CVE-2016-1407 2024-11-21 11:46 2016-05-25 Show GitHub Exploit DB Packet Storm
267093 8.8 HIGH
Network
cisco evolved_programmable_network_manager
prime_infrastructure
The API web interface in Cisco Prime Infrastructure before 3.1 and Cisco Evolved Programmable Network Manager before 1.2.4 allows remote authenticated users to bypass intended RBAC restrictions and o… CWE-284
Improper Access Control
CVE-2016-1406 2024-11-21 11:46 2016-05-25 Show GitHub Exploit DB Packet Storm
267094 7.5 HIGH
Network
cisco telepresence_video_communication_server Cisco TelePresence Video Communications Server (VCS) X8.x before X8.7.2 allows remote attackers to cause a denial of service (service disruption) via a crafted URI in a SIP header, aka Bug ID CSCuy43… CWE-20
 Improper Input Validation 
CVE-2016-1400 2024-11-21 11:46 2016-05-25 Show GitHub Exploit DB Packet Storm
267095 7.5 HIGH
Network
cisco web_security_appliance_\(wsa\) Memory leak in Cisco AsyncOS through 8.8 on Web Security Appliance (WSA) devices allows remote attackers to cause a denial of service (memory consumption) via an unspecified HTTP status code, aka Bug… CWE-399
 Resource Management Errors
CVE-2016-1383 2024-11-21 11:46 2016-05-25 Show GitHub Exploit DB Packet Storm
267096 7.5 HIGH
Network
cisco web_security_appliance_\(wsa\) Cisco AsyncOS before 8.5.3-069 and 8.6 through 8.8 on Web Security Appliance (WSA) devices mishandles memory allocation for HTTP requests, which allows remote attackers to cause a denial of service (… CWE-20
 Improper Input Validation 
CVE-2016-1382 2024-11-21 11:46 2016-05-25 Show GitHub Exploit DB Packet Storm
267097 7.5 HIGH
Network
cisco web_security_appliance Memory leak in Cisco AsyncOS 8.5 through 9.0 before 9.0.1-162 on Web Security Appliance (WSA) devices allows remote attackers to cause a denial of service (memory consumption) via an HTTP file-range … CWE-399
 Resource Management Errors
CVE-2016-1381 2024-11-21 11:46 2016-05-25 Show GitHub Exploit DB Packet Storm
267098 7.5 HIGH
Network
cisco web_security_appliance Cisco AsyncOS 8.0 before 8.0.6-119 on Web Security Appliance (WSA) devices allows remote attackers to cause a denial of service (proxy-process hang) via a crafted HTTP POST request, aka Bug ID CSCuo1… CWE-20
 Improper Input Validation 
CVE-2016-1380 2024-11-21 11:46 2016-05-25 Show GitHub Exploit DB Packet Storm
267099 6.1 MEDIUM
Network
wordpress wordpress Multiple cross-site scripting (XSS) vulnerabilities in wp-includes/class-wp-theme.php in WordPress before 4.4.1 allow remote attackers to inject arbitrary web script or HTML via a (1) stylesheet name… CWE-79
Cross-site Scripting
CVE-2016-1564 2024-11-21 11:46 2016-05-22 Show GitHub Exploit DB Packet Storm
267100 7.5 HIGH
Network
cisco identity_services_engine_software The Active Directory (AD) integration component in Cisco Identity Service Engine (ISE) before 1.2.0.899 patch 7, when AD group-membership authorization is enabled, allows remote attackers to cause a … CWE-287
CWE-119
Improper Authentication
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-1402 2024-11-21 11:46 2016-05-21 Show GitHub Exploit DB Packet Storm