Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 30, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
242491 6.8 警告 Moodle - Moodle におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2011-4133 2012-07-18 17:27 2011-03-1 Show GitHub Exploit DB Packet Storm
242492 6.5 警告 DELL EMC (旧 EMC Corporation) - EMC Celerra Network Server、EMC VNX、および EMC VNXe におけるファイルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2282 2012-07-18 16:45 2012-07-16 Show GitHub Exploit DB Packet Storm
242493 5 警告 ジョンソンコントロールズ - Johnson Controls Pegasys P2000 サーバにおける不正なアラートを生成される脆弱性 CWE-20
不適切な入力確認
CVE-2012-4026 2012-07-18 16:45 2012-07-16 Show GitHub Exploit DB Packet Storm
242494 7.5 危険 ジョンソンコントロールズ - Johnson Controls CK721-A コントローラのファームウェアにおける任意のコマンドを実行される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2012-2607 2012-07-18 16:37 2012-07-16 Show GitHub Exploit DB Packet Storm
242495 5 警告 Tridium - Tridium Niagara AX Framework におけるディレクトリトラバーサルの脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4027 2012-07-18 11:49 2012-07-13 Show GitHub Exploit DB Packet Storm
242496 4.3 警告 ヒューレット・パッカード - HP AssetManager におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2021 2012-07-18 11:39 2012-07-12 Show GitHub Exploit DB Packet Storm
242497 5 警告 RSAセキュリティ - EMC RSA Authentication Manager および RSA SecurID Appliance における任意の Web スクリプトを挿入される脆弱性 CWE-Other
その他
CVE-2012-2280 2012-07-18 10:58 2012-07-13 Show GitHub Exploit DB Packet Storm
242498 6.4 警告 RSAセキュリティ - EMC RSA Authentication Manager および RSA SecurID Appliance におけるオープンリダイレクトの脆弱性 CWE-20
不適切な入力確認
CVE-2012-2279 2012-07-18 10:57 2012-07-13 Show GitHub Exploit DB Packet Storm
242499 4.3 警告 RSAセキュリティ - EMC RSA Authentication Manager および RSA SecurID Appliance におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2278 2012-07-18 10:56 2012-07-13 Show GitHub Exploit DB Packet Storm
242500 4.3 警告 CKEditor Team - FCKeditor におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4000 2012-07-17 16:44 2012-07-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 30, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
266471 9.8 CRITICAL
Network
fedoraproject
zend
fedora
zend_framework
The (1) order and (2) group methods in Zend_Db_Select in the Zend Framework before 1.12.19 might allow remote attackers to conduct SQL injection attacks via vectors related to use of the character pa… CWE-89
SQL Injection
CVE-2016-6233 2024-11-21 11:55 2017-02-17 Show GitHub Exploit DB Packet Storm
266472 6.1 MEDIUM
Network
ibm resilient IBM Resilient v26.0, v26.1, and v26.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality … CWE-79
Cross-site Scripting
CVE-2016-6062 2024-11-21 11:55 2017-02-17 Show GitHub Exploit DB Packet Storm
266473 7.5 HIGH
Network
ibm security_access_manager_for_web_7.0_firmware
security_access_manager_for_web_8.0_firmware
security_access_manager_for_mobile
security_access_manager_9.0_firmware
IBM Security Access Manager for Web 7.0.0, 8.0.0, and 9.0.0 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM Reference #: 1… CWE-326
Inadequate Encryption Strength
CVE-2016-5919 2024-11-21 11:55 2017-02-17 Show GitHub Exploit DB Packet Storm
266474 7.8 HIGH
Local
ibm aix
vios
IBM AIX 5.3, 6.1, 7.1, and 7.2 contains an unspecified vulnerability that would allow a locally authenticated user to obtain root level privileges. IBM APARs: IV88658, IV87981, IV88419, IV87640, IV88… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-6079 2024-11-21 11:55 2017-02-16 Show GitHub Exploit DB Packet Storm
266475 5.3 MEDIUM
Local
ibm cognos_disclosure_management IBM Cognos Disclosure Management 10.2 could allow a malicious attacker to execute commands as a lower privileged user that opens a malicious document. IBM Reference #: 1991584. CWE-284
Improper Access Control
CVE-2016-6077 2024-11-21 11:55 2017-02-16 Show GitHub Exploit DB Packet Storm
266476 4.3 MEDIUM
Network
ibm rational_requirements_composer
rational_doors_next_generation
An undisclosed vulnerability in IBM Rational DOORS Next Generation 4.0, 5.0, and 6.0 could allow a JazzGuest user to see project names. IBM Reference #: 1995547. CWE-200
Information Exposure
CVE-2016-6060 2024-11-21 11:55 2017-02-16 Show GitHub Exploit DB Packet Storm
266477 8.8 HIGH
Network
ibm tivoli_storage_manager_for_virtual_environments_data_protection_for_vmware
tivoli_storage_flashcopy_manager_for_vmware
IBM Tivoli Storage Manager for Virtual Environments 7.1 (VMware) is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted fr… CWE-352
 Origin Validation Error
CVE-2016-6033 2024-11-21 11:55 2017-02-16 Show GitHub Exploit DB Packet Storm
266478 9.8 CRITICAL
Network
schneider-electric powerlogic_pm8ecc_firmware An issue was discovered in Schneider Electric PowerLogic PM8ECC device 2.651 and older. Undocumented hard-coded credentials allow access to the device. CWE-798
 Use of Hard-coded Credentials
CVE-2016-5818 2024-11-21 11:55 2017-02-14 Show GitHub Exploit DB Packet Storm
266479 9.8 CRITICAL
Network
schneider-electric ion7600
ion7300
ion8650
ion7500
ion5000
ion8800
An issue was discovered on Schneider Electric IONXXXX series power meters ION73XX series, ION75XX series, ION76XX series, ION8650 series, ION8800 series, and PM5XXX series. No authentication is confi… CWE-284
Improper Access Control
CVE-2016-5815 2024-11-21 11:55 2017-02-14 Show GitHub Exploit DB Packet Storm
266480 5.3 MEDIUM
Network
visonic powerlink2_firmware An issue was discovered in Visonic PowerLink2, all versions prior to October 2016 firmware release. When a specific URL to an image is accessed, the downloaded image carries with it source code used … CWE-200
Information Exposure
CVE-2016-5813 2024-11-21 11:55 2017-02-14 Show GitHub Exploit DB Packet Storm